Show filters
561 Total Results
Displaying 81-90 of 561
Sort by:
Attacker Value
Unknown

CVE-2023-4147

Disclosure Date: August 07, 2023 (last updated August 27, 2024)
A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID. This flaw allows a local user to crash or escalate their privileges on the system.
Attacker Value
Unknown

CVE-2022-2127

Disclosure Date: July 20, 2023 (last updated April 25, 2024)
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.
Attacker Value
Unknown

CVE-2023-38253

Disclosure Date: July 14, 2023 (last updated December 30, 2023)
An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file.
Attacker Value
Unknown

CVE-2023-38252

Disclosure Date: July 14, 2023 (last updated April 25, 2024)
An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file.
Attacker Value
Unknown

CVE-2023-3269

Disclosure Date: July 11, 2023 (last updated October 11, 2023)
A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to execute arbitrary kernel code, escalate containers, and gain root privileges.
Attacker Value
Unknown

CVE-2023-34432

Disclosure Date: July 10, 2023 (last updated October 08, 2023)
A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of service, code execution, or information disclosure.
Attacker Value
Unknown

CVE-2023-34318

Disclosure Date: July 10, 2023 (last updated October 08, 2023)
A heap buffer overflow vulnerability was found in sox, in the startread function at sox/src/hcom.c:160:41. This flaw can lead to a denial of service, code execution, or information disclosure.
Attacker Value
Unknown

CVE-2023-32627

Disclosure Date: July 10, 2023 (last updated October 08, 2023)
A floating point exception vulnerability was found in sox, in the read_samples function at sox/src/voc.c:334:18. This flaw can lead to a denial of service.
Attacker Value
Unknown

CVE-2023-26590

Disclosure Date: July 10, 2023 (last updated October 08, 2023)
A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58. This flaw can lead to a denial of service.
Attacker Value
Unknown

CVE-2023-3212

Disclosure Date: June 23, 2023 (last updated October 27, 2023)
A NULL pointer dereference issue was found in the gfs2 file system in the Linux kernel. It occurs on corrupt gfs2 file systems when the evict code tries to reference the journal descriptor structure after it has been freed and set to NULL. A privileged local user could use this flaw to cause a kernel panic.