|
211
|
7.8
-
|
HIGH
Local
|
A use-after-free flaw was found in the Linux kernel's netfilter in the way a user triggers the nft_pipapo_remove function with the element, without a NFT_SET_EXT_KEY_END. This issue could allow a loc…
|
CWE-416
Use After Free
|
CVE-2023-4004
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:34
2023-08-1
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212
|
4.4
-
|
MEDIUM
Local
|
A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem). This issue may allow a malicious user with CAP_NET_ADMIN privileges to cause a 4 byte out-of-bounds read…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-3773
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:18
2023-07-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213
|
4.4
-
|
MEDIUM
Local
|
A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem). This issue may allow a malicious user with CAP_NET_ADMIN privileges to directly dereference a NULL point…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-3772
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:18
2023-07-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214
|
7.5
-
|
HIGH
Network
|
A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections. This flaw allows an attacker to exhaust all avai…
|
CWE-834
Excessive Iteration
|
CVE-2023-38200
|
cpe:2.3:o:redhat:enterprise_linux:9.0:*
|
|
|
|
|
2024-11-21 17:13
2023-07-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215
|
7.8
-
|
HIGH
Local
|
An out-of-bounds memory access flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user generates a malicious (too big) networking packet when napi frags is enabled. Thi…
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2023-3812
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:18
2023-07-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
216
|
5.3
-
|
MEDIUM
Network
|
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a race condition and denial of service when attempting to lock the same o…
|
CWE-667
Improper Locking
|
CVE-2023-3750
|
cpe:2.3:o:redhat:enterprise_linux:9.0:*
|
|
|
|
|
2024-11-21 17:17
2023-07-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
217
|
7.8
-
|
HIGH
Local
|
A possible unauthorized memory access flaw was found in the Linux kernel's cpu_entry_area mapping of X86 CPU data to memory, where a user may guess the location of exception stacks or other important…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2023-3640
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:17
2023-07-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218
|
7.1
-
|
HIGH
Local
|
A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue may allow an attacker with local user access to cause a system crash or leak int…
|
CWE-416
Use After Free
|
CVE-2023-3567
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:17
2023-07-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219
|
6.5
-
|
MEDIUM
Local
|
A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resu…
|
CWE-416
Use After Free
|
CVE-2023-3019
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 17:16
2023-07-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220
|
6.7
-
|
MEDIUM
Local
|
A double-free vulnerability was found in handling vmw_buffer_object objects in the vmwgfx driver in the Linux kernel. This issue occurs due to the lack of validating the existence of an object prior …
|
CWE-415
Double Free
|
CVE-2023-33952
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:06
2023-07-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|