Количество 25 379
Количество 25 379
CVE-2022-23253
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
CVE-2022-23252
Microsoft Office Information Disclosure Vulnerability
CVE-2022-23222
kernel/bpf/verifier.c in the Linux kernel through 5.15.14 allows local users to gain privileges because of the availability of pointer arithmetic via certain *_OR_NULL pointer types.
CVE-2022-23219
The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length which may result in a buffer overflow potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution.
CVE-2022-23218
The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length which may result in a buffer overflow potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution.
CVE-2022-2318
There are use-after-free vulnerabilities caused by timer handler in net/rose/rose_timer.c of linux that allow attackers to crash linux kernel without any privileges.
CVE-2022-2309
NULL Pointer Dereference in lxml/lxml
CVE-2022-2304
Stack-based Buffer Overflow in vim/vim
CVE-2022-2295
Chromium: CVE-2022-2295 Type Confusion in V8
CVE-2022-2294
Chromium: CVE-2022-2294 Heap buffer overflow in WebRTC
CVE-2022-2289
Use After Free in vim/vim
CVE-2022-2288
Out-of-bounds Write in vim/vim
CVE-2022-2287
Out-of-bounds Read in vim/vim
CVE-2022-2286
Out-of-bounds Read in vim/vim
CVE-2022-2285
Integer Overflow or Wraparound in vim/vim
CVE-2022-2284
Heap-based Buffer Overflow in vim/vim
CVE-2022-22844
LibTIFF 4.3.0 has an out-of-bounds read in _TIFFmemcpy in tif_unix.c in certain situations involving a custom tag and 0x0200 as the second word of the DE field.
CVE-2022-22827
storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2022-22826
nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2022-22825
lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-23253 Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability | CVSS3: 6.5 | 56% Средний | больше 4 лет назад | |
CVE-2022-23252 Microsoft Office Information Disclosure Vulnerability | CVSS3: 5.5 | 1% Низкий | больше 4 лет назад | |
CVE-2022-23222 kernel/bpf/verifier.c in the Linux kernel through 5.15.14 allows local users to gain privileges because of the availability of pointer arithmetic via certain *_OR_NULL pointer types. | CVSS3: 7.8 | 2% Низкий | больше 4 лет назад | |
CVE-2022-23219 The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length which may result in a buffer overflow potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution. | CVSS3: 9.8 | 4% Низкий | больше 4 лет назад | |
CVE-2022-23218 The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length which may result in a buffer overflow potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution. | CVSS3: 9.8 | 5% Низкий | больше 4 лет назад | |
CVE-2022-2318 There are use-after-free vulnerabilities caused by timer handler in net/rose/rose_timer.c of linux that allow attackers to crash linux kernel without any privileges. | CVSS3: 5.5 | 0% Низкий | около 4 лет назад | |
CVE-2022-2309 NULL Pointer Dereference in lxml/lxml | CVSS3: 7.5 | 2% Низкий | около 4 лет назад | |
CVE-2022-2304 Stack-based Buffer Overflow in vim/vim | CVSS3: 7.8 | 1% Низкий | около 4 лет назад | |
CVE-2022-2295 Chromium: CVE-2022-2295 Type Confusion in V8 | 1% Низкий | около 4 лет назад | ||
CVE-2022-2294 Chromium: CVE-2022-2294 Heap buffer overflow in WebRTC | 70% Высокий | около 4 лет назад | ||
CVE-2022-2289 Use After Free in vim/vim | CVSS3: 7.8 | 1% Низкий | около 4 лет назад | |
CVE-2022-2288 Out-of-bounds Write in vim/vim | CVSS3: 7.8 | 1% Низкий | около 4 лет назад | |
CVE-2022-2287 Out-of-bounds Read in vim/vim | CVSS3: 7.1 | 1% Низкий | около 4 лет назад | |
CVE-2022-2286 Out-of-bounds Read in vim/vim | CVSS3: 7.8 | 1% Низкий | около 4 лет назад | |
CVE-2022-2285 Integer Overflow or Wraparound in vim/vim | CVSS3: 7.8 | 1% Низкий | около 4 лет назад | |
CVE-2022-2284 Heap-based Buffer Overflow in vim/vim | CVSS3: 7.8 | 1% Низкий | около 4 лет назад | |
CVE-2022-22844 LibTIFF 4.3.0 has an out-of-bounds read in _TIFFmemcpy in tif_unix.c in certain situations involving a custom tag and 0x0200 as the second word of the DE field. | CVSS3: 5.5 | 1% Низкий | больше 4 лет назад | |
CVE-2022-22827 storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. | CVSS3: 8.8 | 3% Низкий | больше 4 лет назад | |
CVE-2022-22826 nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. | CVSS3: 8.8 | 3% Низкий | больше 4 лет назад | |
CVE-2022-22825 lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. | CVSS3: 8.8 | 3% Низкий | больше 4 лет назад |
Уязвимостей на страницу