Количество 26 124
Количество 26 124
CVE-2025-29786
Memory Exhaustion in Expr Parser with Unrestricted Input
CVE-2025-29768
Vim vulnerable to potential data loss with zip.vim and special crafted zip files
CVE-2025-2953
PyTorch torch.mkldnn_max_pool2d denial of service
CVE-2025-29481
Buffer Overflow vulnerability in libbpf 1.5.0 allows a local attacker to execute arbitrary code via the bpf_object__init_prog` function of libbpf.
CVE-2025-29478
An issue in fluent-bit v.3.7.2 allows a local attacker to cause a denial of service via the cfl_list_size in cfl_list.h:165.
CVE-2025-29477
An issue in fluent-bit v.3.7.2 allows a local attacker to cause a denial of service via the function consume_event.
CVE-2025-2926
HDF5 H5Ocache.c H5O__cache_chk_serialize null pointer dereference
CVE-2025-2925
HDF5 H5MM.c H5MM_realloc double free
CVE-2025-2924
HDF5 H5HLcache.c H5HL__fl_deserialize heap-based overflow
CVE-2025-2923
HDF5 H5Fint.c H5F_addr_encode_len heap-based overflow
CVE-2025-2915
HDF5 H5Faccum.c H5F__accum_free heap-based overflow
CVE-2025-2914
HDF5 H5FScache.c H5FS__sinfo_Srialize_Sct_cb heap-based overflow
CVE-2025-2913
HDF5 H5FL.c H5FL__blk_gc_list use after free
CVE-2025-2912
HDF5 H5Omessage.c H5O_msg_flush heap-based overflow
CVE-2025-29087
In SQLite 3.44.0 through 3.49.0 before 3.49.1, the concat_ws() SQL function can cause memory to be written beyond the end of a malloc-allocated buffer. If the separator argument is attacker-controlled and has a large string (e.g., 2MB or more), an integer overflow occurs in calculating the size of the result buffer, and thus malloc may not allocate enough memory.
CVE-2025-29070
A heap buffer overflow vulnerability has been identified in thesmooth2() in cmsgamma.c in lcms2-2.16 which allows a remote attacker to cause a denial of service. NOTE: the Supplier disputes this because "this is not exploitable as this function is never called on normal color management, is there only as a helper for low-level programming and investigation."
CVE-2025-2884
Cert CC: CVE-2025-2884 Out-of-Bounds read vulnerability in TCG TPM2.0 reference implementation
CVE-2025-2784
Libsoup: heap buffer over-read in `skip_insignificant_space` when sniffing content
CVE-2025-2783
Chromium: CVE-2025-2783 Incorrect handle provided in unspecified circumstances in Mojo on Windows
CVE-2025-27810
Mbed TLS before 2.28.10 and 3.x before 3.6.3, in some cases of failed memory allocation or hardware errors, uses uninitialized stack memory to compose the TLS Finished message, potentially leading to authentication bypasses such as replays.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-29786 Memory Exhaustion in Expr Parser with Unrestricted Input | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2025-29768 Vim vulnerable to potential data loss with zip.vim and special crafted zip files | CVSS3: 4.4 | 0% Низкий | больше 1 года назад | |
CVE-2025-2953 PyTorch torch.mkldnn_max_pool2d denial of service | CVSS3: 3.3 | 0% Низкий | около 1 года назад | |
CVE-2025-29481 Buffer Overflow vulnerability in libbpf 1.5.0 allows a local attacker to execute arbitrary code via the bpf_object__init_prog` function of libbpf. | CVSS3: 6.2 | 0% Низкий | больше 1 года назад | |
CVE-2025-29478 An issue in fluent-bit v.3.7.2 allows a local attacker to cause a denial of service via the cfl_list_size in cfl_list.h:165. | 0% Низкий | 12 месяцев назад | ||
CVE-2025-29477 An issue in fluent-bit v.3.7.2 allows a local attacker to cause a denial of service via the function consume_event. | 0% Низкий | 12 месяцев назад | ||
CVE-2025-2926 HDF5 H5Ocache.c H5O__cache_chk_serialize null pointer dereference | CVSS3: 3.3 | 0% Низкий | 12 месяцев назад | |
CVE-2025-2925 HDF5 H5MM.c H5MM_realloc double free | CVSS3: 3.3 | 0% Низкий | 8 месяцев назад | |
CVE-2025-2924 HDF5 H5HLcache.c H5HL__fl_deserialize heap-based overflow | CVSS3: 3.3 | 0% Низкий | 12 месяцев назад | |
CVE-2025-2923 HDF5 H5Fint.c H5F_addr_encode_len heap-based overflow | CVSS3: 3.3 | 0% Низкий | 12 месяцев назад | |
CVE-2025-2915 HDF5 H5Faccum.c H5F__accum_free heap-based overflow | CVSS3: 7.5 | 0% Низкий | 7 месяцев назад | |
CVE-2025-2914 HDF5 H5FScache.c H5FS__sinfo_Srialize_Sct_cb heap-based overflow | CVSS3: 3.3 | 0% Низкий | 12 месяцев назад | |
CVE-2025-2913 HDF5 H5FL.c H5FL__blk_gc_list use after free | CVSS3: 3.3 | 0% Низкий | 12 месяцев назад | |
CVE-2025-2912 HDF5 H5Omessage.c H5O_msg_flush heap-based overflow | 0% Низкий | 12 месяцев назад | ||
CVE-2025-29087 In SQLite 3.44.0 through 3.49.0 before 3.49.1, the concat_ws() SQL function can cause memory to be written beyond the end of a malloc-allocated buffer. If the separator argument is attacker-controlled and has a large string (e.g., 2MB or more), an integer overflow occurs in calculating the size of the result buffer, and thus malloc may not allocate enough memory. | 0% Низкий | 12 месяцев назад | ||
CVE-2025-29070 A heap buffer overflow vulnerability has been identified in thesmooth2() in cmsgamma.c in lcms2-2.16 which allows a remote attacker to cause a denial of service. NOTE: the Supplier disputes this because "this is not exploitable as this function is never called on normal color management, is there only as a helper for low-level programming and investigation." | 1% Низкий | 12 дней назад | ||
CVE-2025-2884 Cert CC: CVE-2025-2884 Out-of-Bounds read vulnerability in TCG TPM2.0 reference implementation | CVSS3: 5.3 | 0% Низкий | 6 месяцев назад | |
CVE-2025-2784 Libsoup: heap buffer over-read in `skip_insignificant_space` when sniffing content | CVSS3: 7 | 1% Низкий | больше 1 года назад | |
CVE-2025-2783 Chromium: CVE-2025-2783 Incorrect handle provided in unspecified circumstances in Mojo on Windows | 8% Низкий | больше 1 года назад | ||
CVE-2025-27810 Mbed TLS before 2.28.10 and 3.x before 3.6.3, in some cases of failed memory allocation or hardware errors, uses uninitialized stack memory to compose the TLS Finished message, potentially leading to authentication bypasses such as replays. | 0% Низкий | 12 месяцев назад |
Уязвимостей на страницу