Логотип exploitDog
bind:"CVE-2023-3354" OR bind:"CVE-2022-40284"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-3354" OR bind:"CVE-2022-40284"

Количество 28

Количество 28

oracle-oval логотип

ELSA-2023-5264

почти 2 года назад

ELSA-2023-5264: virt:ol and virt-devel:rhel security and bug fix update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2022-40284

почти 3 года назад

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2022-40284

почти 3 года назад

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2022-40284

почти 3 года назад

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2022-40284

больше 2 лет назад

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2022-40284

почти 3 года назад

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted ...

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2023-3354

около 2 лет назад

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-3354

около 2 лет назад

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-3354

около 2 лет назад

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2023-3354

около 1 года назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-3354

около 2 лет назад

A flaw was found in the QEMU built-in VNC server. When a client connec ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3866-1

почти 3 года назад

Security update for ntfs-3g_ntfsprogs

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3865-1

почти 3 года назад

Security update for ntfs-3g_ntfsprogs

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6167

почти 2 года назад

ELSA-2023-6167: libguestfs-winsupport security update (LOW)

EPSS: Низкий
fstec логотип

BDU:2022-06607

почти 3 года назад

Уязвимость утилиты ntfs-3g набора драйверов NTFS-3G реализации файловой системы NTFS, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий
redos логотип

ROS-20230825-05

почти 2 года назад

Уязвимость qemu

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-vhf9-5f69-9hjm

около 2 лет назад

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2023-5094

почти 2 года назад

ELSA-2023-5094: qemu-kvm security and bug fix update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2023-05003

около 2 лет назад

Уязвимость эмулятора аппаратного обеспечения QEMU, связанная с разыменованием нулевого указателя, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20221103-05

почти 3 года назад

Уязвимость утилиты ntfs-3g

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2023-5264

ELSA-2023-5264: virt:ol and virt-devel:rhel security and bug fix update (IMPORTANT)

почти 2 года назад
ubuntu логотип
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 7.8
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 3.3
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 7.8
0%
Низкий
почти 3 года назад
msrc логотип
CVSS3: 7.8
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted ...

CVSS3: 7.8
0%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2023-3354

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
redhat логотип
CVE-2023-3354

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-3354

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2023-3354

A flaw was found in the QEMU built-in VNC server. When a client connec ...

CVSS3: 7.5
0%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:3866-1

Security update for ntfs-3g_ntfsprogs

0%
Низкий
почти 3 года назад
suse-cvrf логотип
SUSE-SU-2022:3865-1

Security update for ntfs-3g_ntfsprogs

0%
Низкий
почти 3 года назад
oracle-oval логотип
ELSA-2023-6167

ELSA-2023-6167: libguestfs-winsupport security update (LOW)

почти 2 года назад
fstec логотип
BDU:2022-06607

Уязвимость утилиты ntfs-3g набора драйверов NTFS-3G реализации файловой системы NTFS, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
0%
Низкий
почти 3 года назад
redos логотип
ROS-20230825-05

Уязвимость qemu

CVSS3: 7.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-vhf9-5f69-9hjm

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
oracle-oval логотип
ELSA-2023-5094

ELSA-2023-5094: qemu-kvm security and bug fix update (IMPORTANT)

почти 2 года назад
fstec логотип
BDU:2023-05003

Уязвимость эмулятора аппаратного обеспечения QEMU, связанная с разыменованием нулевого указателя, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
около 2 лет назад
redos логотип
ROS-20221103-05

Уязвимость утилиты ntfs-3g

CVSS3: 7.8
0%
Низкий
почти 3 года назад

Уязвимостей на страницу