Логотип exploitDog
source:"msrc"
Консоль
Логотип exploitDog

exploitDog

source:"msrc"

Количество 19 534

Количество 19 534

msrc логотип

CVE-2025-6141

7 месяцев назад

GNU ncurses parse_entry.c postprocess_termcap stack-based overflow

CVSS3: 3.3
EPSS: Низкий
msrc логотип

CVE-2025-6140

8 месяцев назад

spdlog pattern_formatter-inl.h scoped_padder resource consumption

CVSS3: 3.3
EPSS: Низкий
msrc логотип

CVE-2025-61145

около 1 месяца назад

libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c.

EPSS: Низкий
msrc логотип

CVE-2025-61144

около 1 месяца назад

libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2025-61143

около 1 месяца назад

libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component libtiff/tif_open.c.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2025-61107

3 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61106

5 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61105

около 1 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61104

5 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61103

около 1 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_lan_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61102

3 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61101

5 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61100

5 месяцев назад

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) under specific malformed LSA conditions.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61099

5 месяцев назад

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-60876

4 месяца назад

BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20).

EPSS: Низкий
msrc логотип

CVE-2025-6075

5 месяцев назад

Quadratic complexity in os.path.expandvars() with user-controlled template

EPSS: Низкий
msrc логотип

CVE-2025-60753

около 1 месяца назад

An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s substitution rules. This can cause unbounded memory allocation and lead to denial of service (Out-of-Memory crash).

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2025-60728

5 месяцев назад

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 4.3
EPSS: Низкий
msrc логотип

CVE-2025-60727

5 месяцев назад

Microsoft Excel Remote Code Execution Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2025-60726

5 месяцев назад

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2025-6141

GNU ncurses parse_entry.c postprocess_termcap stack-based overflow

CVSS3: 3.3
0%
Низкий
7 месяцев назад
msrc логотип
CVE-2025-6140

spdlog pattern_formatter-inl.h scoped_padder resource consumption

CVSS3: 3.3
0%
Низкий
8 месяцев назад
msrc логотип
CVE-2025-61145

libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c.

0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-61144

libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function.

CVSS3: 9.8
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-61143

libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component libtiff/tif_open.c.

CVSS3: 5.5
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-61107

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet.

CVSS3: 7.5
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61106

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-61105

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-61104

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-61103

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_lan_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-61102

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61101

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-61100

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) under specific malformed LSA conditions.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-61099

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-60876

BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20).

0%
Низкий
4 месяца назад
msrc логотип
CVE-2025-6075

Quadratic complexity in os.path.expandvars() with user-controlled template

0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-60753

An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s substitution rules. This can cause unbounded memory allocation and lead to denial of service (Out-of-Memory crash).

CVSS3: 5.5
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-60728

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 4.3
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-60727

Microsoft Excel Remote Code Execution Vulnerability

CVSS3: 7.8
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-60726

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 7.1
0%
Низкий
5 месяцев назад

Уязвимостей на страницу