CVE-2022-37967
- EPSS 2.35%
- Published 09.11.2022 22:15:14
- Last modified 02.01.2025 22:15:10
Windows Kerberos Elevation of Privilege Vulnerability
CVE-2022-37966
- EPSS 1.08%
- Published 09.11.2022 22:15:13
- Last modified 02.01.2025 22:15:09
Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability
CVE-2022-23824
- EPSS 0.03%
- Published 09.11.2022 21:15:13
- Last modified 21.11.2024 06:49:19
IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information disclosure.
CVE-2022-45062
- EPSS 0.89%
- Published 09.11.2022 07:15:10
- Last modified 01.05.2025 15:15:58
In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mime-helper.
CVE-2022-45061
- EPSS 0.08%
- Published 09.11.2022 07:15:09
- Last modified 01.05.2025 15:15:58
An issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing some inputs to the IDNA (RFC 3490) decoder, such that a crafted, unreasonably long name being presented to the decoder could lead t...
CVE-2022-45059
- EPSS 0.5%
- Published 09.11.2022 06:15:09
- Last modified 01.05.2025 15:15:57
An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1. A request smuggling attack can be performed on Varnish Cache servers by requesting that certain headers are made hop-by-hop, preventing the Varnish Cache servers from f...
CVE-2022-45060
- EPSS 0.76%
- Published 09.11.2022 06:15:09
- Last modified 01.05.2025 15:15:58
An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x before 7.2.1. An attacker may introduce characters through HTTP/2 pseudo-headers that are invalid in the context of an HTTP/1 request...
CVE-2022-3821
- EPSS 0.03%
- Published 08.11.2022 22:15:16
- Last modified 02.05.2025 18:15:24
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.
CVE-2022-39377
- EPSS 1.63%
- Published 08.11.2022 20:15:11
- Last modified 21.11.2024 07:18:10
sysstat is a set of system performance tools for the Linux operating system. On 32 bit systems, in versions 9.1.16 and newer but prior to 12.7.1, allocate_structures contains a size_t overflow in sa_common.c. The allocate_structures function insuffic...
CVE-2022-42920
- EPSS 4.03%
- Published 07.11.2022 13:15:10
- Last modified 21.11.2024 07:25:35
Apache Commons BCEL has a number of APIs that would normally only allow changing specific class characteristics. However, due to an out-of-bounds writing issue, these APIs can be used to produce arbitrary bytecode. This could be abused in application...