Show filters
1,184 Total Results
Displaying 181-190 of 1,184
Sort by:
Attacker Value
Unknown
CVE-2021-3623
Disclosure Date: March 02, 2022 (last updated February 23, 2025)
A flaw was found in libtpms. The flaw can be triggered by specially-crafted TPM 2 command packets containing illegal values and may lead to an out-of-bounds access when the volatile state of the TPM 2 is marshalled/written or unmarshalled/read. The highest threat from this vulnerability is to system availability.
0
Attacker Value
Unknown
CVE-2021-3677
Disclosure Date: March 02, 2022 (last updated February 23, 2025)
A flaw was found in postgresql. A purpose-crafted query can read arbitrary bytes of server memory. In the default configuration, any authenticated database user can complete this attack at will. The attack does not require the ability to create objects. If server settings include max_worker_processes=0, the known versions of this attack are infeasible. However, undiscovered variants of the attack may be independent of that setting.
0
Attacker Value
Unknown
CVE-2022-23308
Disclosure Date: February 26, 2022 (last updated February 23, 2025)
valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.
0
Attacker Value
Unknown
CVE-2022-25601
Disclosure Date: February 25, 2022 (last updated February 23, 2025)
Reflected Cross-Site Scripting (XSS) vulnerability affecting parameter &tab discovered in Contact Form X WordPress plugin (versions <= 2.4).
0
Attacker Value
Unknown
CVE-2022-0546
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
A missing bounds check in the image loader used in Blender 3.x and 2.93.8 leads to out-of-bounds heap access, allowing an attacker to cause denial of service, memory corruption or potentially code execution.
0
Attacker Value
Unknown
CVE-2021-3700
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.
0
Attacker Value
Unknown
CVE-2021-3610
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.
0
Attacker Value
Unknown
CVE-2021-3596
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
A NULL pointer dereference flaw was found in ImageMagick in versions prior to 7.0.10-31 in ReadSVGImage() in coders/svg.c. This issue is due to not checking the return value from libxml2's xmlCreatePushParserCtxt() and uses the value directly, which leads to a crash and segmentation fault.
0
Attacker Value
Unknown
CVE-2021-26252
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in pspdf_prepare_page(),in ps-pdf.cxx may lead to execute arbitrary code and denial of service.
0
Attacker Value
Unknown
CVE-2021-3608
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device in versions prior to 6.1.0. The issue occurs while handling a "PVRDMA_REG_DSRHIGH" write from the guest and may result in a crash of QEMU or cause undefined behavior due to the access of an uninitialized pointer. The highest threat from this vulnerability is to system availability.
0