Show filters
801 Total Results
Displaying 51-60 of 801
Sort by:
Attacker Value
Unknown

CVE-2023-5178

Disclosure Date: November 01, 2023 (last updated June 19, 2024)
A use-after-free vulnerability was found in drivers/nvme/target/tcp.c` in `nvmet_tcp_free_crypto` due to a logical bug in the NVMe/TCP subsystem in the Linux kernel. This issue may allow a malicious user to cause a use-after-free and double-free problem, which may permit remote code execution or lead to local privilege escalation.
Attacker Value
Unknown

CVE-2023-45862

Disclosure Date: October 14, 2023 (last updated January 09, 2024)
An issue was discovered in drivers/usb/storage/ene_ub6250.c for the ENE UB6250 reader driver in the Linux kernel before 6.2.5. An object could potentially extend beyond the end of an allocation.
Attacker Value
Unknown

CVE-2023-40745

Disclosure Date: October 05, 2023 (last updated April 30, 2024)
LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application crash) or possibly execute an arbitrary code via a crafted tiff image, which triggers a heap-based buffer overflow.
Attacker Value
Unknown

CVE-2023-41993

Disclosure Date: September 21, 2023 (last updated December 21, 2024)
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.
Attacker Value
Unknown

CVE-2023-4813

Disclosure Date: September 12, 2023 (last updated April 25, 2024)
A flaw was found in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge.
Attacker Value
Unknown

CVE-2023-41105

Disclosure Date: August 23, 2023 (last updated November 02, 2023)
An issue was discovered in Python 3.11 through 3.11.4. If a path containing '\0' bytes is passed to os.path.normpath(), the path will be truncated unexpectedly at the first '\0' byte. There are plausible cases in which an application would have rejected a filename for security reasons in Python 3.10.x or earlier, but that filename is no longer rejected in Python 3.11.x.
Attacker Value
Unknown

CVE-2022-48566

Disclosure Date: August 22, 2023 (last updated October 14, 2023)
An issue was discovered in compare_digest in Lib/hmac.py in Python through 3.9.1. Constant-time-defeating optimisations were possible in the accumulator variable in hmac.compare_digest.
Attacker Value
Unknown

CVE-2022-48564

Disclosure Date: August 22, 2023 (last updated December 16, 2023)
read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple Property List files in binary format.
Attacker Value
Unknown

CVE-2020-19190

Disclosure Date: August 22, 2023 (last updated October 21, 2023)
Buffer Overflow vulnerability in _nc_find_entry in tinfo/comp_hash.c:70 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
Attacker Value
Unknown

CVE-2020-19189

Disclosure Date: August 22, 2023 (last updated October 21, 2023)
Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.