Show filters
392 Total Results
Displaying 21-30 of 392
Sort by:
Attacker Value
Unknown

CVE-2020-27631

Disclosure Date: October 10, 2023 (last updated October 14, 2023)
In Oryx CycloneTCP 1.9.6, TCP ISNs are improperly random.
Attacker Value
Unknown

CVE-2020-27630

Disclosure Date: October 10, 2023 (last updated October 14, 2023)
In Silicon Labs uC/TCP-IP 3.6.0, TCP ISNs are improperly random.
Attacker Value
Unknown

CVE-2023-35849

Disclosure Date: June 19, 2023 (last updated October 08, 2023)
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not properly check whether header sizes would result in accessing data outside of a packet.
Attacker Value
Unknown

CVE-2023-35848

Disclosure Date: June 19, 2023 (last updated October 08, 2023)
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 lacks certain size calculations before attempting to set a value of an mss structure member.
Attacker Value
Unknown

CVE-2023-35847

Disclosure Date: June 19, 2023 (last updated October 08, 2023)
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not have an MSS lower bound (e.g., it could be zero).
Attacker Value
Unknown

CVE-2023-35846

Disclosure Date: June 19, 2023 (last updated October 08, 2023)
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not check the transport layer length in a frame before performing port filtering.
Attacker Value
Unknown

CVE-2023-30463

Disclosure Date: April 19, 2023 (last updated October 08, 2023)
Altran picoTCP through 1.7.0 allows memory corruption (and subsequent denial of service) because of an integer overflow in pico_ipv6_alloc when processing large ICMPv6 packets. This affects installations with Ethernet support in which a packet size greater than 65495 may occur.
Attacker Value
Unknown

CVE-2023-1801

Disclosure Date: April 07, 2023 (last updated October 08, 2023)
The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network packet.
Attacker Value
Unknown

CVE-2023-0027

Disclosure Date: March 17, 2023 (last updated November 08, 2023)
Rockwell Automation Modbus TCP Server AOI prior to 2.04.00 is vulnerable to an unauthorized user sending a malformed message that could cause the controller to respond with a copy of the most recent response to the last valid request. If exploited, an unauthorized user could read the connected device’s Modbus TCP Server AOI information.
Attacker Value
Unknown

CVE-2023-27789

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at the cidr.c:178 endpoint.