Show filters
708 Total Results
Displaying 41-50 of 708
Sort by:
Attacker Value
Unknown

CVE-2023-2136

Disclosure Date: April 19, 2023 (last updated October 08, 2023)
Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-2135

Disclosure Date: April 19, 2023 (last updated October 08, 2023)
Use after free in DevTools in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who convinced a user to enable specific preconditions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-2134

Disclosure Date: April 19, 2023 (last updated October 08, 2023)
Out of bounds memory access in Service Worker API in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-2133

Disclosure Date: April 19, 2023 (last updated October 08, 2023)
Out of bounds memory access in Service Worker API in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-28856

Disclosure Date: April 18, 2023 (last updated October 08, 2023)
Redis is an open source, in-memory database that persists on disk. Authenticated users can use the `HINCRBYFLOAT` command to create an invalid hash field that will crash Redis on access in affected versions. This issue has been addressed in in versions 7.0.11, 6.2.12, and 6.0.19. Users are advised to upgrade. There are no known workarounds for this issue.
Attacker Value
Unknown

CVE-2021-43612

Disclosure Date: April 15, 2023 (last updated October 08, 2023)
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
Attacker Value
Unknown

CVE-2023-2033

Disclosure Date: April 14, 2023 (last updated June 28, 2024)
Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-1994

Disclosure Date: April 12, 2023 (last updated October 21, 2023)
GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Attacker Value
Unknown

CVE-2023-1993

Disclosure Date: April 12, 2023 (last updated October 21, 2023)
LISP dissector large loop in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Attacker Value
Unknown

CVE-2023-1992

Disclosure Date: April 12, 2023 (last updated October 21, 2023)
RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file