Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 57 013

Количество 57 013

redhat логотип

CVE-2023-47466

больше 1 года назад

TagLib before 2.0 allows a segmentation violation and application crash during tag writing via a crafted WAV file in which an id3 chunk is the only valid chunk.

CVSS3: 2.5
EPSS: Низкий
redhat логотип

CVE-2023-4738

около 3 лет назад

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1848.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2023-4736

около 3 лет назад

Untrusted Search Path in GitHub repository vim/vim prior to 9.0.1833.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2023-4735

около 3 лет назад

Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1847.

CVSS3: 7.3
EPSS: Низкий
redhat логотип

CVE-2023-4734

около 3 лет назад

Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1846.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2023-4733

около 3 лет назад

Use After Free in GitHub repository vim/vim prior to 9.0.1840.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2023-4732

около 3 лет назад

A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In this flaw, an attacker with a local user privilege may cause a denial of service problem due to a BUG statement referencing pmd_t x.

CVSS3: 4.7
EPSS: Низкий
redhat логотип

CVE-2023-4727

больше 2 лет назад

A flaw was found in dogtag-pki and pki-core. The token authentication scheme can be bypassed with a LDAP injection. By passing the query string parameter sessionID=*, an attacker can authenticate with an existing session saved in the LDAP directory server, which may lead to escalation of privilege.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-47235

почти 3 года назад

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-47234

почти 3 года назад

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when processing a crafted BGP UPDATE message with a MP_UNREACH_NLRI attribute and additional NLRI data (that lacks mandatory path attributes).

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-47233

почти 3 года назад

The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this "could be exploited in a real world scenario." This is related to brcmf_cfg80211_escan_timeout_worker in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2023-47108

почти 3 года назад

OpenTelemetry-Go Contrib is a collection of third-party packages for OpenTelemetry-Go. Starting in version 0.37.0 and prior to version 0.46.0, the grpc Unary Server Interceptor out of the box adds labels `net.peer.sock.addr` and `net.peer.sock.port` that have unbound cardinality. It leads to the server's potential memory exhaustion when many malicious requests are sent. An attacker can easily flood the peer address and port for requests. Version 0.46.0 contains a fix for this issue. As a workaround to stop being affected, a view removing the attributes can be used. The other possibility is to disable grpc metrics instrumentation by passing `otelgrpc.WithMeterProvider` option with `noop.NewMeterProvider`.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-47100

почти 3 года назад

A flaw was found in Perl due to improper handling of the property name by the S_parse_uniprop_string function in regcomp.c. This issue could allow an attacker to to bypass security restrictions and use a specially crafted regular expression input to write to unallocated space.

EPSS: Низкий
redhat логотип

CVE-2023-47039

почти 3 года назад

A vulnerability was found in Perl. This security issue occurs while Perl for Windows relies on the system path environment variable to find the shell (`cmd.exe`). When running an executable that uses the Windows Perl interpreter, Perl attempts to find and execute `cmd.exe` within the operating system. However, due to path search order issues, Perl initially looks for cmd.exe in the current working directory. This flaw allows an attacker with limited privileges to place`cmd.exe` in locations with weak permissions, such as `C:\ProgramData`. By doing so, arbitrary code can be executed when an administrator attempts to use this executable from these compromised locations.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2023-47038

почти 3 года назад

A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an attacker controlled byte buffer overflow in a heap allocated buffer.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2023-47004

почти 3 года назад

Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-46998

почти 3 года назад

Cross Site Scripting vulnerability in BootBox Bootbox.js v.3.2 through 6.0 allows a remote attacker to execute arbitrary code via a crafted payload to alert(), confirm(), prompt() functions.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2023-4693

почти 3 года назад

An out-of-bounds read flaw was found on grub2's NTFS filesystem driver. This issue may allow a physically present attacker to present a specially crafted NTFS file system image to read arbitrary memory locations. A successful attack allows sensitive data cached in memory or EFI variable values to be leaked, presenting a high Confidentiality risk.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-4692

почти 3 года назад

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-46894

почти 3 года назад

An issue discovered in esptool 4.6.2 allows attackers to view sensitive information via weak cryptographic algorithm.

CVSS3: 3.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2023-47466

TagLib before 2.0 allows a segmentation violation and application crash during tag writing via a crafted WAV file in which an id3 chunk is the only valid chunk.

CVSS3: 2.5
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2023-4738

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1848.

CVSS3: 7.8
1%
Низкий
около 3 лет назад
redhat логотип
CVE-2023-4736

Untrusted Search Path in GitHub repository vim/vim prior to 9.0.1833.

CVSS3: 7.8
1%
Низкий
около 3 лет назад
redhat логотип
CVE-2023-4735

Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1847.

CVSS3: 7.3
1%
Низкий
около 3 лет назад
redhat логотип
CVE-2023-4734

Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1846.

CVSS3: 7.8
1%
Низкий
около 3 лет назад
redhat логотип
CVE-2023-4733

Use After Free in GitHub repository vim/vim prior to 9.0.1840.

CVSS3: 7
1%
Низкий
около 3 лет назад
redhat логотип
CVE-2023-4732

A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In this flaw, an attacker with a local user privilege may cause a denial of service problem due to a BUG statement referencing pmd_t x.

CVSS3: 4.7
0%
Низкий
около 3 лет назад
redhat логотип
CVE-2023-4727

A flaw was found in dogtag-pki and pki-core. The token authentication scheme can be bypassed with a LDAP injection. By passing the query string parameter sessionID=*, an attacker can authenticate with an existing session saved in the LDAP directory server, which may lead to escalation of privilege.

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
redhat логотип
CVE-2023-47235

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EOR is processed, because the presence of EOR does not lead to a treat-as-withdraw outcome.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-47234

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when processing a crafted BGP UPDATE message with a MP_UNREACH_NLRI attribute and additional NLRI data (that lacks mandatory path attributes).

CVSS3: 7.5
1%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-47233

The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this "could be exploited in a real world scenario." This is related to brcmf_cfg80211_escan_timeout_worker in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c.

CVSS3: 4.3
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-47108

OpenTelemetry-Go Contrib is a collection of third-party packages for OpenTelemetry-Go. Starting in version 0.37.0 and prior to version 0.46.0, the grpc Unary Server Interceptor out of the box adds labels `net.peer.sock.addr` and `net.peer.sock.port` that have unbound cardinality. It leads to the server's potential memory exhaustion when many malicious requests are sent. An attacker can easily flood the peer address and port for requests. Version 0.46.0 contains a fix for this issue. As a workaround to stop being affected, a view removing the attributes can be used. The other possibility is to disable grpc metrics instrumentation by passing `otelgrpc.WithMeterProvider` option with `noop.NewMeterProvider`.

CVSS3: 7.5
2%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-47100

A flaw was found in Perl due to improper handling of the property name by the S_parse_uniprop_string function in regcomp.c. This issue could allow an attacker to to bypass security restrictions and use a specially crafted regular expression input to write to unallocated space.

почти 3 года назад
redhat логотип
CVE-2023-47039

A vulnerability was found in Perl. This security issue occurs while Perl for Windows relies on the system path environment variable to find the shell (`cmd.exe`). When running an executable that uses the Windows Perl interpreter, Perl attempts to find and execute `cmd.exe` within the operating system. However, due to path search order issues, Perl initially looks for cmd.exe in the current working directory. This flaw allows an attacker with limited privileges to place`cmd.exe` in locations with weak permissions, such as `C:\ProgramData`. By doing so, arbitrary code can be executed when an administrator attempts to use this executable from these compromised locations.

CVSS3: 7.8
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-47038

A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an attacker controlled byte buffer overflow in a heap allocated buffer.

CVSS3: 7
1%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-47004

Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-46998

Cross Site Scripting vulnerability in BootBox Bootbox.js v.3.2 through 6.0 allows a remote attacker to execute arbitrary code via a crafted payload to alert(), confirm(), prompt() functions.

CVSS3: 6.5
1%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-4693

An out-of-bounds read flaw was found on grub2's NTFS filesystem driver. This issue may allow a physically present attacker to present a specially crafted NTFS file system image to read arbitrary memory locations. A successful attack allows sensitive data cached in memory or EFI variable values to be leaked, presenting a high Confidentiality risk.

CVSS3: 5.3
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-4692

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-46894

An issue discovered in esptool 4.6.2 allows attackers to view sensitive information via weak cryptographic algorithm.

CVSS3: 3.3
0%
Низкий
почти 3 года назад

Уязвимостей на страницу