Show filters
698 Total Results
Displaying 161-170 of 698
Sort by:
Attacker Value
Unknown
CVE-2022-3970
Disclosure Date: November 13, 2022 (last updated February 24, 2025)
A vulnerability was found in LibTIFF. It has been classified as critical. This affects the function TIFFReadRGBATileExt of the file libtiff/tif_getimage.c. The manipulation leads to integer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 227500897dfb07fb7d27f7aa570050e62617e3be. It is recommended to apply a patch to fix this issue. The identifier VDB-213549 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2022-44797
Disclosure Date: November 07, 2022 (last updated December 22, 2024)
btcd before 0.23.2, as used in Lightning Labs lnd before 0.15.2-beta and other Bitcoin-related products, mishandles witness size checking.
0
Attacker Value
Unknown
CVE-2022-3627
Disclosure Date: October 21, 2022 (last updated February 24, 2025)
LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6860, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 236b7191.
0
Attacker Value
Unknown
CVE-2022-3626
Disclosure Date: October 21, 2022 (last updated February 24, 2025)
LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemset in libtiff/tif_unix.c:340 when called from processCropSelections, tools/tiffcrop.c:7619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 236b7191.
0
Attacker Value
Unknown
CVE-2022-3599
Disclosure Date: October 21, 2022 (last updated February 24, 2025)
LibTIFF 4.4.0 has an out-of-bounds read in writeSingleSection in tools/tiffcrop.c:7345, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit e8131125.
0
Attacker Value
Unknown
CVE-2022-3598
Disclosure Date: October 21, 2022 (last updated February 24, 2025)
LibTIFF 4.4.0 has an out-of-bounds write in extractContigSamplesShifted24bits in tools/tiffcrop.c:3604, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit cfbb883b.
0
Attacker Value
Unknown
CVE-2022-3597
Disclosure Date: October 21, 2022 (last updated February 24, 2025)
LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6826, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 236b7191.
0
Attacker Value
Unknown
CVE-2022-3570
Disclosure Date: October 21, 2022 (last updated February 24, 2025)
Multiple heap buffer overflows in tiffcrop.c utility in libtiff library Version 4.4.0 allows attacker to trigger unsafe or out of bounds memory access via crafted TIFF image file which could result into application crash, potential information disclosure or any other context-dependent impact
0
Attacker Value
Unknown
CVE-2022-38619
Disclosure Date: September 21, 2022 (last updated February 24, 2025)
SmartVista SVFE2 v2.2.22 was discovered to contain a SQL injection vulnerability via the UserForm:j_id90 parameter at /SVFE2/pages/feegroups/mcc_group.jsf.
0
Attacker Value
Unknown
CVE-2022-38618
Disclosure Date: September 19, 2022 (last updated February 24, 2025)
SmartVista SVFE2 v2.2.22 was discovered to contain a SQL injection vulnerability via the UserForm:j_id88, UserForm:j_id90, and UserForm:j_id92 parameters at /SVFE2/pages/feegroups/country_group.jsf.
0