CVE-2024-32458
- EPSS 1.47%
- Veröffentlicht 22.04.2024 21:15:49
- Zuletzt bearbeitet 03.11.2025 21:16:10
FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulnerable to out-of-bounds read. Versions 3.5.0 and 2.11.6 patch the issue. As a workaround, use `/gfx`...
CVE-2023-50008
- EPSS 0.03%
- Veröffentlicht 19.04.2024 17:15:52
- Zuletzt bearbeitet 06.06.2025 13:15:23
FFmpeg v.n6.1-3-g466799d4f5 allows memory consumption when using the colorcorrect filter, in the av_malloc function in libavutil/mem.c:105:9 component.
- EPSS 0.02%
- Veröffentlicht 19.04.2024 17:15:52
- Zuletzt bearbeitet 09.06.2025 16:15:34
FFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the ff_gaussian_blur_8 function in libavfilter/edge_template.c:116:5 component.
CVE-2023-50010
- EPSS 0.03%
- Veröffentlicht 19.04.2024 17:15:52
- Zuletzt bearbeitet 09.06.2025 16:15:34
FFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at ff_gradfun_blur_line_movdqa_sse2, as demonstrated by a call to the set_encoder_id function in /fftools/ffmpeg_enc.c component.
- EPSS 0.03%
- Veröffentlicht 19.04.2024 17:15:51
- Zuletzt bearbeitet 04.11.2025 18:15:43
Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the config_eq_output function in the libavfilter/asrc_afirsrc.c:495:30 component.
CVE-2023-49502
- EPSS 0.27%
- Veröffentlicht 19.04.2024 17:15:51
- Zuletzt bearbeitet 04.11.2025 18:15:43
Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the ff_bwdif_filter_intra_c function in the libavfilter/bwdifdsp.c:125:5 component.
- EPSS 0.03%
- Veröffentlicht 19.04.2024 17:15:51
- Zuletzt bearbeitet 06.06.2025 13:15:23
FFmpeg v.n6.1-3-g466799d4f5 allows an attacker to trigger use of a parameter of negative size in the av_samples_set_silence function in thelibavutil/samplefmt.c:260:9 component.
CVE-2024-22640
- EPSS 1.19%
- Veröffentlicht 19.04.2024 16:15:09
- Zuletzt bearbeitet 04.11.2025 18:15:51
TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color.
CVE-2023-3758
- EPSS 0.04%
- Veröffentlicht 18.04.2024 19:15:08
- Zuletzt bearbeitet 03.11.2025 21:15:59
A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately.
CVE-2024-32462
- EPSS 0.21%
- Veröffentlicht 18.04.2024 18:15:09
- Zuletzt bearbeitet 21.08.2025 00:43:47
Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. in versions before 1.10.9, 1.12.9, 1.14.6, and 1.15.8, a malicious or compromised Flatpak app could execute arbitrary code outside its sandbox. Norma...