Show filters
794 Total Results
Displaying 91-100 of 794
Sort by:
Attacker Value
Unknown
CVE-2022-48065
Disclosure Date: August 22, 2023 (last updated February 25, 2025)
GNU Binutils before 2.40 was discovered to contain a memory leak vulnerability var the function find_abstract_instance in dwarf2.c.
0
Attacker Value
Unknown
CVE-2022-48064
Disclosure Date: August 22, 2023 (last updated February 25, 2025)
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfd_dwarf2_find_nearest_line_with_alt at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack.
0
Attacker Value
Unknown
CVE-2023-38909
Disclosure Date: August 22, 2023 (last updated May 07, 2024)
An issue in TPLink Smart Bulb Tapo series L530 before 1.2.4, L510E before 1.1.0, L630 before 1.0.4, P100 before 1.5.0, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the IV component in the AES128-CBC function.
0
Attacker Value
Unknown
CVE-2023-38908
Disclosure Date: August 22, 2023 (last updated May 07, 2024)
An issue in TPLink Smart Bulb Tapo series L530 before 1.2.4, L510E before 1.1.0, L630 before 1.0.4, P100 before 1.5.0, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the TSKEP authentication function.
0
Attacker Value
Unknown
CVE-2023-38906
Disclosure Date: August 22, 2023 (last updated May 07, 2024)
An issue in TPLink Smart Bulb Tapo series L530 1.1.9, L510E 1.0.8, L630 1.0.3, P100 1.4.9, Smart Camera Tapo series C200 1.1.18, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the authentication code for the UDP message.
0
Attacker Value
Unknown
CVE-2023-36054
Disclosure Date: August 07, 2023 (last updated February 25, 2025)
lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count.
0
Attacker Value
Unknown
CVE-2023-3107
Disclosure Date: August 01, 2023 (last updated February 25, 2025)
A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field. This allows an attacker to trigger a kernel panic, resulting in a denial of service.
0
Attacker Value
Unknown
CVE-2023-37920
Disclosure Date: July 25, 2023 (last updated February 25, 2025)
Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi prior to version 2023.07.22 recognizes "e-Tugra" root certificates. e-Tugra's root certificates were subject to an investigation prompted by reporting of security issues in their systems. Certifi 2023.07.22 removes root certificates from "e-Tugra" from the root store.
0
Attacker Value
Unknown
CVE-2023-38403
Disclosure Date: July 17, 2023 (last updated February 25, 2025)
iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field.
0
Attacker Value
Unknown
CVE-2023-2507
Disclosure Date: July 15, 2023 (last updated February 25, 2025)
CleverTap Cordova Plugin version 2.6.2 allows a remote attacker to execute JavaScript code in any application that is opened via a specially constructed deeplink by an attacker.
This is possible because the plugin does not correctly validate the data coming from the deeplinks before using them.
0