Show filters
1,184 Total Results
Displaying 91-100 of 1,184
Sort by:
Attacker Value
Unknown
CVE-2022-1507
Disclosure Date: April 27, 2022 (last updated October 07, 2023)
chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a crafted input file. in GitHub repository hpjansson/chafa prior to 1.10.2. chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a crafted input file.
0
Attacker Value
Unknown
CVE-2022-27239
Disclosure Date: April 27, 2022 (last updated October 07, 2023)
In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges.
0
Attacker Value
Unknown
CVE-2022-24883
Disclosure Date: April 26, 2022 (last updated November 08, 2023)
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). Prior to version 2.7.0, server side authentication against a `SAM` file might be successful for invalid credentials if the server has configured an invalid `SAM` file path. FreeRDP based clients are not affected. RDP server implementations using FreeRDP to authenticate against a `SAM` file are affected. Version 2.7.0 contains a fix for this issue. As a workaround, use custom authentication via `HashCallback` and/or ensure the `SAM` database path configured is valid and the application has file handles left.
0
Attacker Value
Unknown
CVE-2022-24882
Disclosure Date: April 26, 2022 (last updated November 08, 2023)
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). In versions prior to 2.7.0, NT LAN Manager (NTLM) authentication does not properly abort when someone provides and empty password value. This issue affects FreeRDP based RDP Server implementations. RDP clients are not affected. The vulnerability is patched in FreeRDP 2.7.0. There are currently no known workarounds.
0
Attacker Value
Unknown
CVE-2022-27406
Disclosure Date: April 22, 2022 (last updated October 07, 2023)
FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function FT_Request_Size.
0
Attacker Value
Unknown
CVE-2022-27405
Disclosure Date: April 22, 2022 (last updated October 07, 2023)
FreeType commit 53dfdcd8198d2b3201a23c4bad9190519ba918db was discovered to contain a segmentation violation via the function FNT_Size_Request.
0
Attacker Value
Unknown
CVE-2022-27404
Disclosure Date: April 22, 2022 (last updated October 07, 2023)
FreeType commit 1e2eb65048f75c64b68708efed6ce904c31f3b2f was discovered to contain a heap buffer overflow via the function sfnt_init_face.
0
Attacker Value
Unknown
CVE-2022-1420
Disclosure Date: April 21, 2022 (last updated November 08, 2023)
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4774.
0
Attacker Value
Unknown
CVE-2022-29536
Disclosure Date: April 20, 2022 (last updated October 07, 2023)
In GNOME Epiphany before 41.4 and 42.x before 42.2, an HTML document can trigger a client buffer overflow (in ephy_string_shorten in the UI process) via a long page title. The issue occurs because the number of bytes for a UTF-8 ellipsis character is not properly considered.
0
Attacker Value
Unknown
CVE-2022-28327
Disclosure Date: April 20, 2022 (last updated October 07, 2023)
The generic P-256 feature in crypto/elliptic in Go before 1.17.9 and 1.18.x before 1.18.1 allows a panic via long scalar input.
0