CVE-2023-5475
- EPSS 0.04%
- Veröffentlicht 11.10.2023 23:15:10
- Zuletzt bearbeitet 21.11.2024 08:41:50
Inappropriate implementation in DevTools in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a user to install a malicious extension to bypass discretionary access control via a crafted Chrome Extension. (Chromium security sever...
CVE-2023-5484
- EPSS 0.16%
- Veröffentlicht 11.10.2023 23:15:10
- Zuletzt bearbeitet 21.11.2024 08:41:52
Inappropriate implementation in Navigation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Medium)
CVE-2023-39325
- EPSS 0.16%
- Veröffentlicht 11.10.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 08:15:09
A malicious HTTP/2 client which rapidly creates requests and immediately resets them can cause excessive server resource consumption. While the total number of requests is bounded by the http2.Server.MaxConcurrentStreams setting, resetting an in-prog...
CVE-2023-5535
- EPSS 0.03%
- Veröffentlicht 11.10.2023 20:15:10
- Zuletzt bearbeitet 21.11.2024 08:41:57
Use After Free in GitHub repository vim/vim prior to v9.0.2010.
CVE-2023-37536
- EPSS 1%
- Veröffentlicht 11.10.2023 07:15:10
- Zuletzt bearbeitet 21.11.2024 08:11:53
An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP request.
CVE-2023-45129
- EPSS 0.25%
- Veröffentlicht 10.10.2023 18:15:19
- Zuletzt bearbeitet 21.11.2024 08:26:24
Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. Prior to version 1.94.0, a malicious server ACL event can impact performance temporarily or permanently leading to a persistent denial of service. Homese...
CVE-2023-44487
- EPSS 94.46%
- Veröffentlicht 10.10.2023 14:15:10
- Zuletzt bearbeitet 07.11.2025 19:00:41
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
CVE-2023-43786
- EPSS 0.08%
- Veröffentlicht 10.10.2023 13:15:22
- Zuletzt bearbeitet 04.11.2025 20:17:07
A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function. This flaw allows a local user to consume all available system resources and cause a denial of service condition.
CVE-2023-43787
- EPSS 0.04%
- Veröffentlicht 10.10.2023 13:15:22
- Zuletzt bearbeitet 04.11.2025 20:17:07
A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.
CVE-2023-43788
- EPSS 0.02%
- Veröffentlicht 10.10.2023 13:15:22
- Zuletzt bearbeitet 04.11.2025 20:17:07
A vulnerability was found in libXpm due to a boundary condition within the XpmCreateXpmImageFromBuffer() function. This flaw allows a local attacker to trigger an out-of-bounds read error and read the contents of memory on the system.