Количество 26 124
Количество 26 124
CVE-2023-7250
Iperf3: possible denial of service
CVE-2023-7207
Debian's cpio contains a path traversal vulnerability. This issue was introduced by reverting CVE-2015-1197 patches which had caused a regression in --no-absolute-filenames. Upstream has since provided a proper fix to --no-absolute-filenames.
CVE-2023-7192
Kernel: refcount leak in ctnetlink_create_conntrack()
CVE-2023-7104
CVE-2023-7024
Chromium: CVE-2023-7024 Heap buffer overflow in WebRTC
CVE-2023-7008
Systemd-resolved: unsigned name response in signed zone is not refused when dnssec=yes
CVE-2023-6992
Memory corruption issues is Cloudflare zlib implementation
CVE-2023-6937
Improper (D)TLS key boundary enforcement
CVE-2023-6936
Heap-buffer over-read with WOLFSSL_CALLBACKS
CVE-2023-6935
Marvin Attack vulnerability in SP Math All RSA
CVE-2023-6932
Use-after-free in Linux kernel's ipv4: igmp component
CVE-2023-6931
Out-of-bounds write in Linux kernel's Performance Events system component
CVE-2023-6918
Libssh: missing checks for return values for digests
CVE-2023-6915
Kernel: null pointer dereference vulnerability in ida_free in lib/idr.c
CVE-2023-6873
Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 121.
CVE-2023-6869
A `<dialog>` element could have been manipulated to paint content outside of a sandboxed iframe. This could allow untrusted content to display under the guise of trusted content. This vulnerability affects Firefox < 121.
CVE-2023-6866
TypedArrays can be fallible and lacked proper exception handling. This could lead to abuse in other APIs which expect TypedArrays to always succeed. This vulnerability affects Firefox < 121.
CVE-2023-6864
Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.
CVE-2023-6863
The `ShutdownObserver()` was susceptible to potentially undefined behavior due to its reliance on a dynamic type that lacked a virtual destructor. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.
CVE-2023-6860
The `VideoBridge` allowed any content process to use textures produced by remote decoders. This could be abused to escape the sandbox. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-7250 Iperf3: possible denial of service | CVSS3: 5.3 | 1% Низкий | 6 месяцев назад | |
CVE-2023-7207 Debian's cpio contains a path traversal vulnerability. This issue was introduced by reverting CVE-2015-1197 patches which had caused a regression in --no-absolute-filenames. Upstream has since provided a proper fix to --no-absolute-filenames. | 1% Низкий | 6 дней назад | ||
CVE-2023-7192 Kernel: refcount leak in ctnetlink_create_conntrack() | CVSS3: 4.4 | 0% Низкий | больше 2 лет назад | |
CVSS3: 7.3 | 1% Низкий | больше 2 лет назад | ||
CVE-2023-7024 Chromium: CVE-2023-7024 Heap buffer overflow in WebRTC | 7% Низкий | больше 2 лет назад | ||
CVE-2023-7008 Systemd-resolved: unsigned name response in signed zone is not refused when dnssec=yes | CVSS3: 5.9 | 1% Низкий | около 1 года назад | |
CVE-2023-6992 Memory corruption issues is Cloudflare zlib implementation | CVSS3: 4 | 0% Низкий | больше 1 года назад | |
CVE-2023-6937 Improper (D)TLS key boundary enforcement | CVSS3: 5.3 | 1% Низкий | больше 1 года назад | |
CVE-2023-6936 Heap-buffer over-read with WOLFSSL_CALLBACKS | CVSS3: 5.3 | 1% Низкий | больше 1 года назад | |
CVE-2023-6935 Marvin Attack vulnerability in SP Math All RSA | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
CVE-2023-6932 Use-after-free in Linux kernel's ipv4: igmp component | CVSS3: 7 | 0% Низкий | 6 месяцев назад | |
CVE-2023-6931 Out-of-bounds write in Linux kernel's Performance Events system component | CVSS3: 7 | 1% Низкий | около 2 лет назад | |
CVE-2023-6918 Libssh: missing checks for return values for digests | CVSS3: 3.7 | 1% Низкий | больше 2 лет назад | |
CVE-2023-6915 Kernel: null pointer dereference vulnerability in ida_free in lib/idr.c | CVSS3: 5.5 | 0% Низкий | 6 месяцев назад | |
CVE-2023-6873 Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 121. | 1% Низкий | 12 месяцев назад | ||
CVE-2023-6869 A `<dialog>` element could have been manipulated to paint content outside of a sandboxed iframe. This could allow untrusted content to display under the guise of trusted content. This vulnerability affects Firefox < 121. | 1% Низкий | 6 месяцев назад | ||
CVE-2023-6866 TypedArrays can be fallible and lacked proper exception handling. This could lead to abuse in other APIs which expect TypedArrays to always succeed. This vulnerability affects Firefox < 121. | 1% Низкий | 6 месяцев назад | ||
CVE-2023-6864 Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121. | 1% Низкий | 12 месяцев назад | ||
CVE-2023-6863 The `ShutdownObserver()` was susceptible to potentially undefined behavior due to its reliance on a dynamic type that lacked a virtual destructor. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121. | 1% Низкий | 12 месяцев назад | ||
CVE-2023-6860 The `VideoBridge` allowed any content process to use textures produced by remote decoders. This could be abused to escape the sandbox. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121. | 1% Низкий | 6 месяцев назад |
Уязвимостей на страницу