Show filters
827 Total Results
Displaying 51-60 of 827
Sort by:
Attacker Value
Unknown

CVE-2021-22426

Disclosure Date: February 25, 2022 (last updated February 23, 2025)
There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause malicious code to be executed.
Attacker Value
Unknown

CVE-2022-0729

Disclosure Date: February 23, 2022 (last updated February 23, 2025)
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440.
Attacker Value
Unknown

CVE-2022-24063

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sante DICOM Viewer Pro 13.2.0.21165. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-15105.
Attacker Value
Unknown

CVE-2021-46598

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JT files. The issue results from the lack of proper validation of user-supplied data, which can result in a memory corruption condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-15392.
Attacker Value
Unknown

CVE-2021-20325

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red Hat Enterprise Linux 8.5.0, causes a security regression compared to the versions shipped in Red Hat Enterprise Linux 8.4. A user who installs or updates to Red Hat Enterprise Linux 8.5.0 would be vulnerable to the mentioned CVEs, even if they were properly fixed in Red Hat Enterprise Linux 8.4. CVE-2021-20325 was assigned to that Red Hat specific security regression and it does not affect the upstream versions of httpd.
Attacker Value
Unknown

CVE-2021-3657

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
A flaw was found in mbsync versions prior to 1.4.4. Due to inadequate handling of extremely large (>=2GiB) IMAP literals, malicious or compromised IMAP servers, and hypothetically even external email senders, could cause several different buffer overflows, which could conceivably be exploited for remote code execution.
Attacker Value
Unknown

CVE-2022-0614

Disclosure Date: February 16, 2022 (last updated February 23, 2025)
Use of Out-of-range Pointer Offset in Homebrew mruby prior to 3.2.
Attacker Value
Unknown

CVE-2021-46461

Disclosure Date: February 14, 2022 (last updated February 23, 2025)
njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/njs_vmcode.c.
Attacker Value
Unknown

CVE-2022-0554

Disclosure Date: February 10, 2022 (last updated February 23, 2025)
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.
Attacker Value
Unknown

CVE-2021-39997

Disclosure Date: February 09, 2022 (last updated February 23, 2025)
There is a vulnerability of unstrict input parameter verification in the audio assembly.Successful exploitation of this vulnerability may cause out-of-bounds access.