Количество 26 087
Количество 26 087
CVE-2023-1220
Chromium: CVE-2023-1220 Heap buffer overflow in UMA
CVE-2023-1219
Chromium: CVE-2023-1219 Heap buffer overflow in Metrics
CVE-2023-1218
Chromium: CVE-2023-1218 Use after free in WebRTC
CVE-2023-1217
Chromium: CVE-2023-1217 Stack buffer overflow in Crash reporting
CVE-2023-1216
Chromium: CVE-2023-1216 Use after free in DevTools
CVE-2023-1215
Chromium: CVE-2023-1215 Type Confusion in CSS
CVE-2023-1214
Chromium: CVE-2023-1214 Type Confusion in V8
CVE-2023-1213
Chromium: CVE-2023-1213 Use after free in Swiftshader
CVE-2023-1206
A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth connection can increase the CPU usage of the server that accepts IPV6 connections up to 95%.
CVE-2023-1195
A use-after-free flaw was found in reconn_set_ipaddr_from_hostname in fs/cifs/connect.c in the Linux kernel. The issue occurs when it forgets to set the free pointer server->hostname to NULL leading to an invalid pointer request.
CVE-2023-1194
Use-after-free in parse_lease_state()
CVE-2023-1193
Use-after-free in setup_async_work()
CVE-2023-1192
Use-after-free in smb2_is_status_io_timeout()
CVE-2023-1175
Incorrect Calculation of Buffer Size in vim/vim
CVE-2023-1170
Heap-based Buffer Overflow in vim/vim
CVE-2023-1127
Divide By Zero in vim/vim
CVE-2023-1118
A flaw use after free in the Linux kernel integrated infrared receiver/transceiver driver was found in the way user detaching rc device. A local user could use this flaw to crash the system or potentially escalate their privileges on the system.
CVE-2023-1095
CVE-2023-1079
A flaw was found in the Linux kernel. A use-after-free may be triggered in asus_kbd_backlight_set when plugging/disconnecting in a malicious USB device which advertises itself as an Asus device. Similarly to the previous known CVE-2023-25012 but in asus devices the work_struct may be scheduled by the LED controller while the device is disconnecting triggering a use-after-free on the struct asus_kbd_leds *led structure. A malicious USB device may exploit the issue to cause memory corruption with controlled data.
CVE-2023-1018
CERT/CC: CVE-2023-1018 TPM2.0 Module Library Elevation of Privilege Vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-1220 Chromium: CVE-2023-1220 Heap buffer overflow in UMA | 1% Низкий | больше 3 лет назад | ||
CVE-2023-1219 Chromium: CVE-2023-1219 Heap buffer overflow in Metrics | 1% Низкий | больше 3 лет назад | ||
CVE-2023-1218 Chromium: CVE-2023-1218 Use after free in WebRTC | 1% Низкий | больше 3 лет назад | ||
CVE-2023-1217 Chromium: CVE-2023-1217 Stack buffer overflow in Crash reporting | 1% Низкий | больше 3 лет назад | ||
CVE-2023-1216 Chromium: CVE-2023-1216 Use after free in DevTools | 1% Низкий | больше 3 лет назад | ||
CVE-2023-1215 Chromium: CVE-2023-1215 Type Confusion in CSS | 1% Низкий | больше 3 лет назад | ||
CVE-2023-1214 Chromium: CVE-2023-1214 Type Confusion in V8 | 1% Низкий | больше 3 лет назад | ||
CVE-2023-1213 Chromium: CVE-2023-1213 Use after free in Swiftshader | 1% Низкий | больше 3 лет назад | ||
CVE-2023-1206 A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth connection can increase the CPU usage of the server that accepts IPV6 connections up to 95%. | CVSS3: 5.7 | 1% Низкий | около 3 лет назад | |
CVE-2023-1195 A use-after-free flaw was found in reconn_set_ipaddr_from_hostname in fs/cifs/connect.c in the Linux kernel. The issue occurs when it forgets to set the free pointer server->hostname to NULL leading to an invalid pointer request. | CVSS3: 5.5 | 0% Низкий | около 3 лет назад | |
CVE-2023-1194 Use-after-free in parse_lease_state() | CVSS3: 8.1 | 1% Низкий | почти 3 года назад | |
CVE-2023-1193 Use-after-free in setup_async_work() | CVSS3: 6.5 | 1% Низкий | почти 3 года назад | |
CVE-2023-1192 Use-after-free in smb2_is_status_io_timeout() | CVSS3: 6.5 | 1% Низкий | почти 3 года назад | |
CVE-2023-1175 Incorrect Calculation of Buffer Size in vim/vim | CVSS3: 6.6 | 0% Низкий | больше 3 лет назад | |
CVE-2023-1170 Heap-based Buffer Overflow in vim/vim | CVSS3: 6.6 | 0% Низкий | больше 3 лет назад | |
CVE-2023-1127 Divide By Zero in vim/vim | CVSS3: 7.8 | 0% Низкий | больше 3 лет назад | |
CVE-2023-1118 A flaw use after free in the Linux kernel integrated infrared receiver/transceiver driver was found in the way user detaching rc device. A local user could use this flaw to crash the system or potentially escalate their privileges on the system. | CVSS3: 7.8 | 0% Низкий | больше 3 лет назад | |
CVSS3: 5.5 | 0% Низкий | больше 3 лет назад | ||
CVE-2023-1079 A flaw was found in the Linux kernel. A use-after-free may be triggered in asus_kbd_backlight_set when plugging/disconnecting in a malicious USB device which advertises itself as an Asus device. Similarly to the previous known CVE-2023-25012 but in asus devices the work_struct may be scheduled by the LED controller while the device is disconnecting triggering a use-after-free on the struct asus_kbd_leds *led structure. A malicious USB device may exploit the issue to cause memory corruption with controlled data. | CVSS3: 6.8 | 0% Низкий | больше 3 лет назад | |
CVE-2023-1018 CERT/CC: CVE-2023-1018 TPM2.0 Module Library Elevation of Privilege Vulnerability | CVSS3: 8.8 | 6% Низкий | больше 3 лет назад |
Уязвимостей на страницу