|
161
|
5.5
-
|
MEDIUM
Local
|
A vulnerability was found in libXpm where a vulnerability exists due to a boundary condition, a local user can trigger an out-of-bounds read error and read contents of memory on the system.
|
CWE-125
Out-of-bounds Read
|
CVE-2023-43789
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:24
2023-10-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
162
|
7.5
-
|
HIGH
Network
|
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
|
NVD-CWE-noinfo
|
CVE-2023-44487
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2025-03-8 04:15
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
163
|
5.5
-
|
MEDIUM
Local
|
A vulnerability was found in libXpm due to a boundary condition within the XpmCreateXpmImageFromBuffer() function. This flaw allows a local attacker to trigger an out-of-bounds read error and read th…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-43788
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:24
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
164
|
7.8
-
|
HIGH
Local
|
A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevate…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2023-43787
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:24
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
165
|
5.5
-
|
MEDIUM
Local
|
A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function. This flaw allows a local user to consume all available system resources and cause a denial of service co…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2023-43786
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:24
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
166
|
5.5
-
|
MEDIUM
Local
|
A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an out-of-bounds read error and read the contents of me…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-43785
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:24
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
167
|
4.4
-
|
MEDIUM
Local
|
A flaw was found in the XFRM subsystem in the Linux kernel. The specific flaw exists within the processing of state filters, which can result in a read past the end of an allocated buffer. This flaw …
|
CWE-125
Out-of-bounds Read
|
CVE-2023-39194
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:14
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
168
|
6.0
-
|
MEDIUM
Local
|
A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an ou…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-39193
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:14
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
169
|
6.0
-
|
MEDIUM
Local
|
A flaw was found in the Netfilter subsystem in the Linux kernel. The xt_u32 module did not validate the fields in the xt_u32 structure. This flaw allows a local privileged attacker to trigger an out-…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-39192
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:14
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
170
|
6.0
-
|
MEDIUM
Local
|
A flaw was found in the Netfilter subsystem in the Linux kernel. The nfnl_osf_add_callback function did not validate the user mode controlled opt_num field. This flaw allows a local privileged (CAP_N…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-39189
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:14
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|