Show filters
1,221 Total Results
Displaying 71-80 of 1,221
Sort by:
Attacker Value
Unknown
CVE-2023-6206
Disclosure Date: November 21, 2023 (last updated November 29, 2023)
The black fade animation when exiting fullscreen is roughly the length of the anti-clickjacking delay on permission prompts. It was possible to use this fact to surprise users by luring them to click where the permission grant button would be about to appear. This vulnerability affects Firefox < 120, Firefox ESR < 115.5.0, and Thunderbird < 115.5.
0
Attacker Value
Unknown
CVE-2023-6205
Disclosure Date: November 21, 2023 (last updated November 29, 2023)
It was possible to cause the use of a MessagePort after it had already been freed, which could potentially have led to an exploitable crash. This vulnerability affects Firefox < 120, Firefox ESR < 115.5.0, and Thunderbird < 115.5.
0
Attacker Value
Unknown
CVE-2023-6204
Disclosure Date: November 21, 2023 (last updated November 29, 2023)
On some systems—depending on the graphics settings and drivers—it was possible to force an out-of-bounds read and leak memory data into the images created on the canvas element. This vulnerability affects Firefox < 120, Firefox ESR < 115.5.0, and Thunderbird < 115.5.
0
Attacker Value
Unknown
CVE-2023-6174
Disclosure Date: November 16, 2023 (last updated November 29, 2023)
SSH dissector crash in Wireshark 4.0.0 to 4.0.10 allows denial of service via packet injection or crafted capture file
0
Attacker Value
Unknown
CVE-2023-6112
Disclosure Date: November 15, 2023 (last updated January 27, 2024)
Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
0
Attacker Value
Unknown
CVE-2023-5997
Disclosure Date: November 15, 2023 (last updated January 27, 2024)
Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
0
Attacker Value
Unknown
CVE-2023-23583
Disclosure Date: November 14, 2023 (last updated November 29, 2023)
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.
0
Attacker Value
Unknown
CVE-2023-46850
Disclosure Date: November 11, 2023 (last updated November 29, 2023)
Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buffers to a remote peer.
0
Attacker Value
Unknown
CVE-2023-46849
Disclosure Date: November 11, 2023 (last updated November 29, 2023)
Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.
0
Attacker Value
Unknown
CVE-2023-5996
Disclosure Date: November 08, 2023 (last updated November 16, 2023)
Use after free in WebAudio in Google Chrome prior to 119.0.6045.123 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
0