Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 26 087

Количество 26 087

msrc логотип

CVE-2022-47021

11 месяцев назад

A null pointer dereference issue was discovered in functions op_get_data and op_open1 in opusfile.c in xiph opusfile 0.9 thru 0.12 allows attackers to cause denial of service or other unspecified impacts.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2022-47015

11 месяцев назад

MariaDB Server before 10.3.34 thru 10.9.3 is vulnerable to Denial of Service. It is possible for function spider_db_mbase::print_warnings to dereference a null pointer.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2022-47011

больше 1 года назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-47010

больше 1 года назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-47008

больше 1 года назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-47007

больше 1 года назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-4696

больше 3 лет назад

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2022-46908

больше 3 лет назад

CVSS3: 7.3
EPSS: Низкий
msrc логотип

CVE-2022-46885

11 месяцев назад

Mozilla developers Timothy Nikkel, Ashley Hale, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 105. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 106.

EPSS: Низкий
msrc логотип

CVE-2022-46884

11 месяцев назад

A potential use-after-free vulnerability existed in SVG Images if the Refresh Driver was destroyed at an inopportune time. This could have lead to memory corruption or a potentially exploitable crash. *Note*: This advisory was added on December 13th, 2022 after discovering it was inadvertently left out of the original advisory. The fix was included in the original release of Firefox 106. This vulnerability affects Firefox < 106.

EPSS: Низкий
msrc логотип

CVE-2022-46883

11 месяцев назад

Mozilla developers Gabriele Svelto, Yulia Startsev, Andrew McCreight and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 106. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.<br />*Note*: This advisory was added on December 13th, 2022 after discovering it was inadvertently left out of the original advisory. The fix was included in the original release of Firefox 107. This vulnerability affects Firefox < 107.

EPSS: Низкий
msrc логотип

CVE-2022-46879

11 месяцев назад

Mozilla developers and community members Lukas Bernhard, Gabriele Svelto, Randell Jesup, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 107. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 108.

EPSS: Низкий
msrc логотип

CVE-2022-46663

больше 3 лет назад

In GNU Less before 609 crafted data can result in "less -R" not filtering ANSI escape sequences sent to the terminal.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2022-4662

больше 3 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-4645

больше 3 лет назад

LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948 allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources the fix is available with commit e8131125.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-46457

больше 3 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-46456

11 месяцев назад

NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2022-46392

больше 3 лет назад

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2022-46285

больше 3 лет назад

A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2022-46176

6 месяцев назад

Cargo did not verify SSH host keys

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2022-47021

A null pointer dereference issue was discovered in functions op_get_data and op_open1 in opusfile.c in xiph opusfile 0.9 thru 0.12 allows attackers to cause denial of service or other unspecified impacts.

CVSS3: 7.8
0%
Низкий
11 месяцев назад
msrc логотип
CVE-2022-47015

MariaDB Server before 10.3.34 thru 10.9.3 is vulnerable to Denial of Service. It is possible for function spider_db_mbase::print_warnings to dereference a null pointer.

CVSS3: 6.5
1%
Низкий
11 месяцев назад
msrc логотип
CVSS3: 5.5
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 5.5
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 5.5
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 5.5
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 7.8
0%
Низкий
больше 3 лет назад
msrc логотип
CVSS3: 7.3
0%
Низкий
больше 3 лет назад
msrc логотип
CVE-2022-46885

Mozilla developers Timothy Nikkel, Ashley Hale, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 105. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 106.

1%
Низкий
11 месяцев назад
msrc логотип
CVE-2022-46884

A potential use-after-free vulnerability existed in SVG Images if the Refresh Driver was destroyed at an inopportune time. This could have lead to memory corruption or a potentially exploitable crash. *Note*: This advisory was added on December 13th, 2022 after discovering it was inadvertently left out of the original advisory. The fix was included in the original release of Firefox 106. This vulnerability affects Firefox < 106.

0%
Низкий
11 месяцев назад
msrc логотип
CVE-2022-46883

Mozilla developers Gabriele Svelto, Yulia Startsev, Andrew McCreight and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 106. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.<br />*Note*: This advisory was added on December 13th, 2022 after discovering it was inadvertently left out of the original advisory. The fix was included in the original release of Firefox 107. This vulnerability affects Firefox < 107.

1%
Низкий
11 месяцев назад
msrc логотип
CVE-2022-46879

Mozilla developers and community members Lukas Bernhard, Gabriele Svelto, Randell Jesup, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 107. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 108.

1%
Низкий
11 месяцев назад
msrc логотип
CVE-2022-46663

In GNU Less before 609 crafted data can result in "less -R" not filtering ANSI escape sequences sent to the terminal.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
msrc логотип
CVSS3: 5.5
0%
Низкий
больше 3 лет назад
msrc логотип
CVE-2022-4645

LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948 allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources the fix is available with commit e8131125.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
msrc логотип
CVSS3: 5.5
0%
Низкий
больше 3 лет назад
msrc логотип
CVE-2022-46456

NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c.

CVSS3: 6.1
0%
Низкий
11 месяцев назад
msrc логотип
CVSS3: 5.3
1%
Низкий
больше 3 лет назад
msrc логотип
CVE-2022-46285

A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
msrc логотип
CVE-2022-46176

Cargo did not verify SSH host keys

CVSS3: 5.9
1%
Низкий
6 месяцев назад

Уязвимостей на страницу