|
171
|
5.5
-
|
MEDIUM
Local
|
A flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertisement packets between virtual machines to bypass OpenFlow rules. This issue may allow a local attacker to create specially crafted…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2023-5366
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 17:41
2023-10-7
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
172
|
5.5
-
|
MEDIUM
Local
|
A NULL pointer dereference flaw was found in the Linux kernel ipv4 stack. The socket buffer (skb) was assumed to be associated with a device before calling __ip_options_compile, which is not always t…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-42754
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:23
2023-10-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
173
|
5.5
-
|
MEDIUM
Local
|
A flaw was found in the IPv4 Resource Reservation Protocol (RSVP) classifier in the Linux kernel. The xprt pointer may go beyond the linear part of the skb, leading to an out-of-bounds read in the `r…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-42755
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:23
2023-10-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
174
|
6.5
-
|
MEDIUM
Network
|
A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c. This flaw allows remote attackers to cause a denial of service or possibly execute an arbitrary code vi…
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2023-41175
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-24 21:15
2023-10-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
175
|
6.5
-
|
MEDIUM
Network
|
LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application crash) or possibly execute an arbitrary code via a crafted tiff image, which …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2023-40745
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:20
2023-10-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
176
|
5.5
-
|
MEDIUM
Local
|
A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, allowing an attacker to pass a crafted TIFF image file to tiffcrop utility, …
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2023-3576
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:17
2023-10-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
177
|
8.2
-
|
HIGH
Local
|
An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers within user-supplied eBPF programs prior…
|
NVD-CWE-noinfo
|
CVE-2023-39191
|
cpe:2.3:o:redhat:enterprise_linux:9.0:*
|
|
|
|
|
2024-11-21 17:14
2023-10-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
178
|
5.9
-
|
MEDIUM
Network
|
A flaw was found in JSS. A memory leak in JSS requires non-standard configuration but is a low-effort DoS vector if configured that way (repeatedly hitting the login page).
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2022-4132
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 16:34
2023-10-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
179
|
7.8
-
|
HIGH
Local
|
A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to use maliciously craft…
|
CWE-787
Out-of-bounds Write
|
CVE-2023-4911
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:36
2023-10-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
180
|
4.7
-
|
MEDIUM
Local
|
A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In this flaw, an attacker with a local user privilege may cause a denial of service problem due to a BUG…
|
CWE-362
Race Condition
|
CVE-2023-4732
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:35
2023-10-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|