Show filters
524 Total Results
Displaying 51-60 of 524
Sort by:
Attacker Value
Unknown

CVE-2024-23516

Disclosure Date: February 10, 2024 (last updated February 17, 2024)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Calculators World CC BMI Calculator allows Stored XSS.This issue affects CC BMI Calculator: from n/a through 2.0.1.
Attacker Value
Unknown

CVE-2023-46932

Disclosure Date: December 09, 2023 (last updated December 13, 2023)
Heap Buffer Overflow vulnerability in GPAC version 2.3-DEV-rev617-g671976fcc-master, allows attackers to execute arbitrary code and cause a denial of service (DoS) via str2ulong class in src/media_tools/avilib.c in gpac/MP4Box.
Attacker Value
Unknown

CVE-2023-48958

Disclosure Date: December 07, 2023 (last updated December 13, 2023)
gpac 2.3-DEV-rev617-g671976fcc-master contains memory leaks in gf_mpd_resolve_url media_tools/mpd.c:4589.
Attacker Value
Unknown

CVE-2023-48090

Disclosure Date: November 20, 2023 (last updated December 01, 2023)
GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leaks in extract_attributes media_tools/m3u8.c:329.
Attacker Value
Unknown

CVE-2023-48039

Disclosure Date: November 20, 2023 (last updated December 01, 2023)
GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leak in gf_mpd_parse_string media_tools/mpd.c:75.
Attacker Value
Unknown

CVE-2023-47384

Disclosure Date: November 14, 2023 (last updated November 22, 2023)
MP4Box GPAC v2.3-DEV-rev617-g671976fcc-master was discovered to contain a memory leak in the function gf_isom_add_chapter at /isomedia/isom_write.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.
Attacker Value
Unknown

CVE-2023-4039

Disclosure Date: September 13, 2023 (last updated June 13, 2024)
** DISPUTED ** **DISPUTED**A failure in the -fstack-protector feature in GCC-based toolchains that target AArch64 allows an attacker to exploit an existing buffer overflow in dynamically-sized local variables in your application without this being detected. This stack-protector failure only applies to C99-style dynamically-sized local variables or those created using alloca(). The stack-protector operates as intended for statically-sized local variables. The default behavior when the stack-protector detects an overflow is to terminate your application, resulting in controlled loss of availability. An attacker who can exploit a buffer overflow without triggering the stack-protector might be able to change program flow control to cause an uncontrolled loss of availability or to go further and affect confidentiality or integrity. NOTE: The GCC project argues that this is a missed hardening bug and not a vulnerability by itself.
Attacker Value
Unknown

CVE-2023-34438

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Race condition in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2023-34086

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2023-32617

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Improper input validation in some Intel(R) NUC Rugged Kit, Intel(R) NUC Kit and Intel(R) Compute Element BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.