Show filters
1,878 Total Results
Displaying 141-150 of 1,878
Sort by:
Attacker Value
Unknown

CVE-2023-20842

Disclosure Date: September 04, 2023 (last updated October 08, 2023)
In imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07354259; Issue ID: ALPS07340477.
Attacker Value
Unknown

CVE-2023-20841

Disclosure Date: September 04, 2023 (last updated October 08, 2023)
In imgsys, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326455; Issue ID: ALPS07326441.
Attacker Value
Unknown

CVE-2023-20840

Disclosure Date: September 04, 2023 (last updated October 08, 2023)
In imgsys, there is a possible out of bounds read and write due to a missing valid range checking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326430; Issue ID: ALPS07326430.
Attacker Value
Unknown

CVE-2023-20839

Disclosure Date: September 04, 2023 (last updated October 08, 2023)
In imgsys, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326455; Issue ID: ALPS07326409.
Attacker Value
Unknown

CVE-2023-20838

Disclosure Date: September 04, 2023 (last updated October 08, 2023)
In imgsys, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07326455; Issue ID: ALPS07326418.
Attacker Value
Unknown

CVE-2023-38802

Disclosure Date: August 29, 2023 (last updated December 23, 2023)
FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation).
Attacker Value
Unknown

CVE-2020-24165

Disclosure Date: August 28, 2023 (last updated May 15, 2024)
An issue was discovered in TCG Accelerator in QEMU 4.2.0, allows local attackers to execute arbitrary code, escalate privileges, and cause a denial of service (DoS). Note: This is disputed as a bug and not a valid security issue by multiple third parties.
Attacker Value
Unknown

CVE-2023-23908

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Improper access control in some 3rd Generation Intel(R) Xeon(R) Scalable processors may allow a privileged user to potentially enable information disclosure via local access.
Attacker Value
Unknown

CVE-2022-41804

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2022-40982

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.