|
251
|
7.5
-
|
HIGH
Network
|
A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-2953
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 16:59
2023-05-31
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252
|
6.5
-
|
MEDIUM
Network
|
A NULL pointer dereference was found In libssh during re-keying with algorithm guessing. This issue may allow an authenticated client to cause a denial of service.
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-1667
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 16:39
2023-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253
|
5.5
-
|
MEDIUM
Local
|
A vulnerability was found in the avahi library. This flaw allows an unprivileged user to make a dbus call, causing the avahi daemon to crash.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2023-1981
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 16:40
2023-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254
|
6.5
-
|
MEDIUM
Network
|
A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pki_verify_data_signature` function in memory allocation problems. This issue may h…
|
CWE-287
Improper Authentication
|
CVE-2023-2283
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 16:58
2023-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
255
|
6.4
-
|
MEDIUM
Physics
|
The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/net/ethernet/qualcomm/emac/emac.c if a physically proximate attacker unplugs an emac based device.
|
CWE-362
Race Condition
|
CVE-2023-33203
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 17:05
2023-05-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256
|
7.5
-
|
HIGH
Network
|
A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptable crypto algorithms, and the response packet is no…
|
NVD-CWE-noinfo
|
CVE-2023-2295
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 16:58
2023-05-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257
|
5.5
-
|
MEDIUM
Local
|
A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-2731
|
cpe:2.3:o:redhat:enterprise_linux:9.0:*
|
|
|
|
|
2024-11-21 16:59
2023-05-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
258
|
7.8
-
|
HIGH
Local
|
A flaw was found in the Emacs text editor. Processing a specially crafted org-mode code with the "org-babel-execute:latex" function in ob-latex.el can result in arbitrary command execution. This CVE …
|
CWE-77
Command Injection
|
CVE-2023-2491
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 16:58
2023-05-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
259
|
8.8
-
|
HIGH
Network
|
A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability. This flaw allows attackers with network access to pass specially crafted web …
|
CWE-416
Use After Free
|
CVE-2023-2203
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 16:58
2023-05-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
260
|
5.5
-
|
MEDIUM
Local
|
A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory leak caused by a failure to free the virPCIVirtua…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2023-2700
|
cpe:2.3:o:redhat:enterprise_linux:9.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 16:59
2023-05-16
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|