Show filters
365 Total Results
Displaying 121-130 of 365
Sort by:
Attacker Value
Unknown
CVE-2022-34750
Disclosure Date: June 28, 2022 (last updated February 24, 2025)
An issue was discovered in MediaWiki through 1.38.1. The lemma length of a Wikibase lexeme is currently capped at a thousand characters. Unfortunately, this length is not validated, allowing much larger lexemes to be created, which introduces various denial-of-service attack vectors within the Wikibase and WikibaseLexeme extensions. This is related to Special:NewLexeme and Special:NewProperty.
0
Attacker Value
Unknown
CVE-2021-40609
Disclosure Date: June 28, 2022 (last updated February 24, 2025)
The GetHintFormat function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.
0
Attacker Value
Unknown
CVE-2021-40607
Disclosure Date: June 28, 2022 (last updated February 24, 2025)
The schm_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.
0
Attacker Value
Unknown
CVE-2021-40941
Disclosure Date: June 27, 2022 (last updated February 24, 2025)
In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4_Array<AP4_TrunAtom::Entry>::EnsureCapacity in Ap4Array.h:172, as demonstrated by GPAC. This can cause a denial of service (DOS).
0
Attacker Value
Unknown
CVE-2022-31016
Disclosure Date: June 25, 2022 (last updated February 24, 2025)
Argo CD is a declarative continuous deployment for Kubernetes. Argo CD versions v0.7.0 and later are vulnerable to an uncontrolled memory consumption bug, allowing an authorized malicious user to crash the repo-server service, resulting in a Denial of Service. The attacker must be an authenticated Argo CD user authorized to deploy Applications from a repository which contains (or can be made to contain) a large file. The fix for this vulnerability is available in versions 2.3.5, 2.2.10, 2.1.16, and later. There are no known workarounds. Users are recommended to upgrade.
0
Attacker Value
Unknown
CVE-2022-27871
Disclosure Date: June 21, 2022 (last updated February 23, 2025)
Autodesk AutoCAD product suite, Revit, Design Review and Navisworks releases using PDFTron prior to 9.1.17 version may be used to write beyond the allocated buffer while parsing PDF files. This vulnerability may be exploited to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2022-22979
Disclosure Date: June 21, 2022 (last updated February 23, 2025)
In Spring Cloud Function versions prior to 3.2.6, it is possible for a user who directly interacts with framework provided lookup functionality to cause a denial-of-service condition due to the caching issue in the Function Catalog component of the framework.
0
Attacker Value
Unknown
CVE-2022-2134
Disclosure Date: June 20, 2022 (last updated February 23, 2025)
Allocation of Resources Without Limits or Throttling in GitHub repository inventree/inventree prior to 0.8.0.
0
Attacker Value
Unknown
CVE-2022-21952
Disclosure Date: June 20, 2022 (last updated February 23, 2025)
A Missing Authentication for Critical Function vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to easily exhaust available disk resources leading to DoS. This issue affects: SUSE Manager Server 4.1 spacewalk-java versions prior to 4.1.46. SUSE Manager Server 4.2 spacewalk-java versions prior to 4.2.37.
0
Attacker Value
Unknown
CVE-2022-29863
Disclosure Date: June 16, 2022 (last updated February 23, 2025)
OPC UA .NET Standard Stack 1.04.368 allows remote attacker to cause a crash via a crafted message that triggers excessive memory allocation.
0