CVE-2023-38403
- EPSS 1.12%
- Veröffentlicht 17.07.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:13:29
iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field.
CVE-2023-38253
- EPSS 0.02%
- Veröffentlicht 14.07.2023 18:15:11
- Zuletzt bearbeitet 21.11.2024 08:13:11
An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file.
CVE-2023-38252
- EPSS 0.02%
- Veröffentlicht 14.07.2023 18:15:10
- Zuletzt bearbeitet 08.02.2025 04:15:08
An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file.
CVE-2022-24834
- EPSS 37.95%
- Veröffentlicht 13.07.2023 15:15:08
- Zuletzt bearbeitet 21.11.2024 06:51:12
Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all...
CVE-2023-3106
- EPSS 0.01%
- Veröffentlicht 12.07.2023 09:15:14
- Zuletzt bearbeitet 21.11.2024 08:16:28
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of...
CVE-2023-33170
- EPSS 0.22%
- Veröffentlicht 11.07.2023 18:15:15
- Zuletzt bearbeitet 01.01.2025 02:15:49
ASP.NET and Visual Studio Security Feature Bypass Vulnerability
CVE-2023-36824
- EPSS 90.84%
- Veröffentlicht 11.07.2023 17:15:13
- Zuletzt bearbeitet 10.04.2025 20:54:22
Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0.12, extracting key names from a command and a list of arguments may, in some cases, trigger a heap overflow and result in reading random heap memory, heap corruption and ...
CVE-2023-3354
- EPSS 0.07%
- Veröffentlicht 11.07.2023 17:15:13
- Zuletzt bearbeitet 21.11.2024 08:17:05
A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection hap...
CVE-2023-3269
- EPSS 0.22%
- Veröffentlicht 11.07.2023 12:15:10
- Zuletzt bearbeitet 21.11.2024 08:16:52
A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to exec...
CVE-2023-1672
- EPSS 0.03%
- Veröffentlicht 11.07.2023 12:15:09
- Zuletzt bearbeitet 21.11.2024 07:39:39
A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.