Логотип exploitDog
bind:"CVE-2023-3354" OR bind:"CVE-2022-40284"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-3354" OR bind:"CVE-2022-40284"

Количество 28

Количество 28

oracle-oval логотип

ELSA-2023-5264

почти 2 года назад

ELSA-2023-5264: virt:ol and virt-devel:rhel security and bug fix update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2022-40284

больше 2 лет назад

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2022-40284

больше 2 лет назад

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 3.3
EPSS: Низкий
nvd логотип

CVE-2022-40284

больше 2 лет назад

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2022-40284

больше 2 лет назад

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2022-40284

больше 2 лет назад

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted ...

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2023-3354

почти 2 года назад

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-3354

почти 2 года назад

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-3354

почти 2 года назад

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2023-3354

11 месяцев назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-3354

почти 2 года назад

A flaw was found in the QEMU built-in VNC server. When a client connec ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3866-1

больше 2 лет назад

Security update for ntfs-3g_ntfsprogs

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3865-1

больше 2 лет назад

Security update for ntfs-3g_ntfsprogs

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6167

больше 1 года назад

ELSA-2023-6167: libguestfs-winsupport security update (LOW)

EPSS: Низкий
fstec логотип

BDU:2022-06607

больше 2 лет назад

Уязвимость утилиты ntfs-3g набора драйверов NTFS-3G реализации файловой системы NTFS, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий
redos логотип

ROS-20230825-05

почти 2 года назад

Уязвимость qemu

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-vhf9-5f69-9hjm

почти 2 года назад

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2023-5094

почти 2 года назад

ELSA-2023-5094: qemu-kvm security and bug fix update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2023-05003

почти 2 года назад

Уязвимость эмулятора аппаратного обеспечения QEMU, связанная с разыменованием нулевого указателя, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20221103-05

больше 2 лет назад

Уязвимость утилиты ntfs-3g

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2023-5264

ELSA-2023-5264: virt:ol and virt-devel:rhel security and bug fix update (IMPORTANT)

почти 2 года назад
ubuntu логотип
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 3.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
msrc логотип
CVSS3: 7.8
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2022-40284

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted ...

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-3354

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
0%
Низкий
почти 2 года назад
redhat логотип
CVE-2023-3354

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-3354

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
0%
Низкий
почти 2 года назад
msrc логотип
CVSS3: 7.5
0%
Низкий
11 месяцев назад
debian логотип
CVE-2023-3354

A flaw was found in the QEMU built-in VNC server. When a client connec ...

CVSS3: 7.5
0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2022:3866-1

Security update for ntfs-3g_ntfsprogs

0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:3865-1

Security update for ntfs-3g_ntfsprogs

0%
Низкий
больше 2 лет назад
oracle-oval логотип
ELSA-2023-6167

ELSA-2023-6167: libguestfs-winsupport security update (LOW)

больше 1 года назад
fstec логотип
BDU:2022-06607

Уязвимость утилиты ntfs-3g набора драйверов NTFS-3G реализации файловой системы NTFS, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
redos логотип
ROS-20230825-05

Уязвимость qemu

CVSS3: 7.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-vhf9-5f69-9hjm

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake phase and fails, QEMU cleans up the connection again, resulting in a NULL pointer dereference issue. This could allow a remote unauthenticated client to cause a denial of service.

CVSS3: 7.5
0%
Низкий
почти 2 года назад
oracle-oval логотип
ELSA-2023-5094

ELSA-2023-5094: qemu-kvm security and bug fix update (IMPORTANT)

почти 2 года назад
fstec логотип
BDU:2023-05003

Уязвимость эмулятора аппаратного обеспечения QEMU, связанная с разыменованием нулевого указателя, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
почти 2 года назад
redos логотип
ROS-20221103-05

Уязвимость утилиты ntfs-3g

CVSS3: 7.8
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу