Количество 26 087
Количество 26 087
CVE-2023-0778
A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal file in a volume with a symlink while exporting the volume, allowing for access to arbitrary files on the host file system.
CVE-2023-0705
Chromium: CVE-2023-0705 Integer overflow in Core
CVE-2023-0704
Chromium: CVE-2023-0704 Insufficient policy enforcement in DevTools
CVE-2023-0703
Chromium: CVE-2023-0703 Type Confusion in DevTools
CVE-2023-0702
Chromium: CVE-2023-0702 Type Confusion in Data Transfer
CVE-2023-0701
Chromium: CVE-2023-0701 Heap buffer overflow in WebUI
CVE-2023-0700
Chromium: CVE-2023-0700 Inappropriate implementation in Download
CVE-2023-0699
Chromium: CVE-2023-0699 Use after free in GPU
CVE-2023-0698
Chromium: CVE-2023-0698 Out of bounds read in WebRTC
CVE-2023-0697
Chromium: CVE-2023-0697 Inappropriate implementation in Full screen mode
CVE-2023-0696
Chromium: CVE-2023-0696 Type Confusion in V8
CVE-2023-0687
A vulnerability was found in GNU C Library 2.38. It has been declared as critical. This vulnerability affects the function __monstartup of the file gmon.c of the component Call Graph Monitor. The manipulation leads to buffer overflow. It is recommended to apply a patch to fix this issue. VDB-220246 is the identifier assigned to this vulnerability. NOTE: The real existence of this vulnerability is still doubted at the moment. The inputs that induce this vulnerability are basically addresses of the running application that is built with gmon enabled. It's basically trusted input or input that needs an actual security flaw to be compromised or controlled.
CVE-2023-0667
Wireshark MSMMS parsing buffer overflow
CVE-2023-0664
A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system.
CVE-2023-0662
DoS vulnerability when parsing multipart request body
CVE-2023-0615
A memory leak flaw and potential divide by zero and Integer overflow was found in the Linux kernel V4L2 and vivid test code functionality. This issue occurs when a user triggers ioctls such as VIDIOC_S_DV_TIMINGS ioctl. This could allow a local user to crash the system if vivid test code enabled.
CVE-2023-0614
CVE-2023-0590
CVE-2023-0568
Array overrun in common path resolve code
CVE-2023-0567
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-0778 A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal file in a volume with a symlink while exporting the volume, allowing for access to arbitrary files on the host file system. | CVSS3: 6.8 | 1% Низкий | 11 месяцев назад | |
CVE-2023-0705 Chromium: CVE-2023-0705 Integer overflow in Core | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0704 Chromium: CVE-2023-0704 Insufficient policy enforcement in DevTools | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0703 Chromium: CVE-2023-0703 Type Confusion in DevTools | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0702 Chromium: CVE-2023-0702 Type Confusion in Data Transfer | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0701 Chromium: CVE-2023-0701 Heap buffer overflow in WebUI | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0700 Chromium: CVE-2023-0700 Inappropriate implementation in Download | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0699 Chromium: CVE-2023-0699 Use after free in GPU | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0698 Chromium: CVE-2023-0698 Out of bounds read in WebRTC | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0697 Chromium: CVE-2023-0697 Inappropriate implementation in Full screen mode | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0696 Chromium: CVE-2023-0696 Type Confusion in V8 | 1% Низкий | больше 3 лет назад | ||
CVE-2023-0687 A vulnerability was found in GNU C Library 2.38. It has been declared as critical. This vulnerability affects the function __monstartup of the file gmon.c of the component Call Graph Monitor. The manipulation leads to buffer overflow. It is recommended to apply a patch to fix this issue. VDB-220246 is the identifier assigned to this vulnerability. NOTE: The real existence of this vulnerability is still doubted at the moment. The inputs that induce this vulnerability are basically addresses of the running application that is built with gmon enabled. It's basically trusted input or input that needs an actual security flaw to be compromised or controlled. | CVSS3: 4.6 | 1% Низкий | 11 месяцев назад | |
CVE-2023-0667 Wireshark MSMMS parsing buffer overflow | CVSS3: 6.5 | 2% Низкий | около 3 лет назад | |
CVE-2023-0664 A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system. | 0% Низкий | 11 месяцев назад | ||
CVE-2023-0662 DoS vulnerability when parsing multipart request body | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
CVE-2023-0615 A memory leak flaw and potential divide by zero and Integer overflow was found in the Linux kernel V4L2 and vivid test code functionality. This issue occurs when a user triggers ioctls such as VIDIOC_S_DV_TIMINGS ioctl. This could allow a local user to crash the system if vivid test code enabled. | CVSS3: 5.5 | 0% Низкий | больше 3 лет назад | |
CVSS3: 6.5 | 1% Низкий | почти 2 года назад | ||
CVSS3: 4.7 | 0% Низкий | больше 3 лет назад | ||
CVE-2023-0568 Array overrun in common path resolve code | CVSS3: 8.1 | 1% Низкий | больше 3 лет назад | |
CVSS3: 6.2 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу