CVE-2022-45188
- EPSS 0.06%
- Veröffentlicht 12.11.2022 05:15:12
- Zuletzt bearbeitet 13.02.2026 20:16:14
Netatalk through 3.1.13 has an afp_getappl heap-based buffer overflow resulting in code execution via a crafted .appl file. This provides remote root access on some platforms such as FreeBSD (used for TrueNAS).
CVE-2022-41854
- EPSS 0.09%
- Veröffentlicht 11.11.2022 13:15:11
- Zuletzt bearbeitet 21.11.2024 07:23:56
Those using Snakeyaml to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stack overflow. This effect m...
CVE-2022-45063
- EPSS 22.42%
- Veröffentlicht 10.11.2022 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:28:42
xterm before 375 allows code execution via font ops, e.g., because an OSC 50 response may have Ctrl-g and therefore lead to command execution within the vi line-editing mode of Zsh. NOTE: font ops are not allowed in the xterm default configurations o...
CVE-2022-38023
- EPSS 0.35%
- Veröffentlicht 09.11.2022 22:15:16
- Zuletzt bearbeitet 02.01.2025 22:15:15
Netlogon RPC Elevation of Privilege Vulnerability
CVE-2022-37967
- EPSS 2.98%
- Veröffentlicht 09.11.2022 22:15:14
- Zuletzt bearbeitet 02.01.2025 22:15:10
Windows Kerberos Elevation of Privilege Vulnerability
CVE-2022-37966
- EPSS 1.38%
- Veröffentlicht 09.11.2022 22:15:13
- Zuletzt bearbeitet 02.01.2025 22:15:09
Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability
CVE-2022-23824
- EPSS 0.05%
- Veröffentlicht 09.11.2022 21:15:13
- Zuletzt bearbeitet 21.11.2024 06:49:19
IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information disclosure.
CVE-2022-45062
- EPSS 3.55%
- Veröffentlicht 09.11.2022 07:15:10
- Zuletzt bearbeitet 01.05.2025 15:15:58
In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mime-helper.
CVE-2022-45061
- EPSS 0.11%
- Veröffentlicht 09.11.2022 07:15:09
- Zuletzt bearbeitet 03.11.2025 22:16:01
An issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing some inputs to the IDNA (RFC 3490) decoder, such that a crafted, unreasonably long name being presented to the decoder could lead t...
CVE-2022-45059
- EPSS 1.52%
- Veröffentlicht 09.11.2022 06:15:09
- Zuletzt bearbeitet 01.05.2025 15:15:57
An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1. A request smuggling attack can be performed on Varnish Cache servers by requesting that certain headers are made hop-by-hop, preventing the Varnish Cache servers from f...