CVE-2022-23634
- EPSS 0.6%
- Veröffentlicht 11.02.2022 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:48:58
Puma is a Ruby/Rack web server built for parallelism. Prior to `puma` version `5.6.2`, `puma` may not always call `close` on the response body. Rails, prior to version `7.0.2.2`, depended on the response body being closed in order for its `CurrentAtt...
CVE-2022-0561
- EPSS 0.1%
- Veröffentlicht 11.02.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:38:55
Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, t...
CVE-2022-0562
- EPSS 0.06%
- Veröffentlicht 11.02.2022 18:15:11
- Zuletzt bearbeitet 21.11.2024 06:38:55
Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory() in tif_dirread.c in libtiff versions from 4.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, a fix...
CVE-2022-24958
- EPSS 0.03%
- Veröffentlicht 11.02.2022 06:15:06
- Zuletzt bearbeitet 21.11.2024 06:51:27
drivers/usb/gadget/legacy/inode.c in the Linux kernel through 5.16.8 mishandles dev->buf release.
CVE-2022-0554
- EPSS 0.29%
- Veröffentlicht 10.02.2022 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:38:54
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.
CVE-2022-0391
- EPSS 1.92%
- Veröffentlicht 09.02.2022 23:15:16
- Zuletzt bearbeitet 03.11.2025 22:15:54
A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r...
CVE-2022-0529
- EPSS 0.24%
- Veröffentlicht 09.02.2022 23:15:16
- Zuletzt bearbeitet 21.11.2024 06:38:51
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code ex...
CVE-2022-0530
- EPSS 0.12%
- Veröffentlicht 09.02.2022 23:15:16
- Zuletzt bearbeitet 21.11.2024 06:38:51
A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code ex...
CVE-2022-21986
- EPSS 2.12%
- Veröffentlicht 09.02.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:45:50
.NET Denial of Service Vulnerability
CVE-2022-0522
- EPSS 0.36%
- Veröffentlicht 08.02.2022 21:15:20
- Zuletzt bearbeitet 21.11.2024 06:38:50
Access of Memory Location Before Start of Buffer in NPM radare2.js prior to 5.6.2.