Show filters
4,242 Total Results
Displaying 121-130 of 4,242
Sort by:
Attacker Value
Unknown
CVE-2023-3389
Disclosure Date: June 28, 2023 (last updated February 14, 2025)
A use-after-free vulnerability in the Linux Kernel io_uring subsystem can be exploited to achieve local privilege escalation.
Racing a io_uring cancel poll request with a linked timeout can cause a UAF in a hrtimer.
We recommend upgrading past commit ef7dfac51d8ed961b742218f526bd589f3900a59 (4716c73b188566865bdd79c3a6709696a224ac04 for 5.10 stable and 0e388fce7aec40992eadee654193cad345d62663 for 5.15 stable).
0
Attacker Value
Unknown
CVE-2023-35788
Disclosure Date: June 16, 2023 (last updated June 27, 2024)
An issue was discovered in fl_set_geneve_opt in net/sched/cls_flower.c in the Linux kernel before 6.3.7. It allows an out-of-bounds write in the flower classifier code via TCA_FLOWER_KEY_ENC_OPTS_GENEVE packets. This may result in denial of service or privilege escalation.
0
Attacker Value
Unknown
CVE-2023-32551
Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Landscape allowed URLs which caused open redirection.
0
Attacker Value
Unknown
CVE-2023-32550
Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Landscape's server-status page exposed sensitive system information. This data leak included GET requests which contain information to attack and leak further information from the Landscape API.
0
Attacker Value
Unknown
CVE-2023-32549
Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Landscape cryptographic keys were insecurely generated with a weak pseudo-random generator.
0
Attacker Value
Unknown
CVE-2023-2612
Disclosure Date: May 31, 2023 (last updated October 08, 2023)
Jean-Baptiste Cayrou discovered that the shiftfs file system in the Ubuntu Linux kernel contained a race condition when handling inode locking in some situations. A local attacker could use this to cause a denial of service (kernel deadlock).
0
Attacker Value
Unknown
CVE-2023-1764
Disclosure Date: May 17, 2023 (last updated October 08, 2023)
Canon IJ Network Tool/Ver.4.7.5 and earlier (supported OS: OS X 10.9.5-macOS 13),IJ Network Tool/Ver.4.7.3 and earlier (supported OS: OS X 10.7.5-OS X 10.8) allows an attacker to acquire sensitive information on the Wi-Fi connection setup of the printer from the communication of the software.
0
Attacker Value
Unknown
CVE-2023-1763
Disclosure Date: May 17, 2023 (last updated October 08, 2023)
Canon IJ Network Tool/Ver.4.7.5 and earlier (supported OS: OS X 10.9.5-macOS 13),IJ Network Tool/Ver.4.7.3 and earlier (supported OS: OS X 10.7.5-OS X 10.8) allows an attacker to acquire sensitive information on the Wi-Fi connection setup of the printer from the software.
0
Attacker Value
Unknown
CVE-2023-0859
Disclosure Date: May 11, 2023 (last updated October 08, 2023)
Arbitrary Files can be installed in the Setting Data Import function of Office / Small Office Multifunction Printers and Laser Printers(*). *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series firmware Ver.11.04 and earlier sold in Japan. Color imageCLASS LBP660C Series/LBP 620C Series/X LBP1127C/MF740C Series/MF640C Series/X MF1127C firmware Ver.11.04 and earlier sold in US. i-SENSYS LBP660C Series/LBP620C Series/MF740C Series/MF640C Series, C1127P, C1127iF, C1127i firmware Ver.11.04 and earlier sold in Europe.
0
Attacker Value
Unknown
CVE-2023-0858
Disclosure Date: May 11, 2023 (last updated October 08, 2023)
Improper Authentication of RemoteUI of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger unauthorized access to the product. *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series firmware Ver.11.04 and earlier sold in Japan. Color imageCLASS LBP660C Series/LBP 620C Series/X LBP1127C/MF740C Series/MF640C Series/X MF1127C firmware Ver.11.04 and earlier sold in US. i-SENSYS LBP660C Series/LBP620C Series/MF740C Series/MF640C Series, C1127P, C1127iF, C1127i firmware Ver.11.04 and earlier sold in Europe.
0