Latest CVE Feed
-
5.5
MEDIUMCVE-2022-48281
processCropSelections in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based buffer overflow (e.g., "WRITE of size 307203") via a crafted TIFF image.... Read more
- Published: Jan. 23, 2023
- Modified: Apr. 03, 2025
-
5.5
MEDIUMCVE-2022-48067
An information disclosure vulnerability in Totolink A830R V4.1.2cu.5182 allows attackers to obtain the root password via a brute-force attack.... Read more
- Published: Jan. 27, 2023
- Modified: Mar. 28, 2025
-
5.5
MEDIUMCVE-2022-48063
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function load_separate_debug_files at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack.... Read more
Affected Products : binutils- Published: Aug. 22, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-47929
In the Linux kernel before 6.1.6, a NULL pointer dereference bug in the traffic control subsystem allows an unprivileged user to trigger a denial of service (system crash) via a crafted traffic control configuration that is set up with "tc qdisc" and "tc ... Read more
- Published: Jan. 17, 2023
- Modified: Apr. 04, 2025
-
5.5
MEDIUMCVE-2022-47662
GPAC MP4Box 2.1-DEV-rev649-ga8f438d20 has a segment fault (/stack overflow) due to infinite recursion in Media_GetSample isomedia/media.c:662... Read more
Affected Products : gpac- Published: Jan. 05, 2023
- Modified: Apr. 10, 2025
-
5.5
MEDIUMCVE-2022-47362
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.... Read more
- Published: Apr. 11, 2023
- Modified: Feb. 10, 2025
-
5.5
MEDIUMCVE-2022-47347
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.... Read more
- Published: Feb. 12, 2023
- Modified: Mar. 25, 2025
-
5.5
MEDIUMCVE-2022-47340
In h265 codec firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with no additional execution privileges.... Read more
- Published: May. 09, 2023
- Modified: Jan. 28, 2025
-
5.5
MEDIUMCVE-2022-47370
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.... Read more
- Published: Feb. 12, 2023
- Modified: Mar. 26, 2025
-
5.5
MEDIUMCVE-2022-47086
GPAC MP4Box v2.1-DEV-rev574-g9d5bb184b contains a segmentation violation via the function gf_sm_load_init_swf at scene_manager/swf_parse.c... Read more
Affected Products : gpac- Published: Jan. 05, 2023
- Modified: Apr. 10, 2025
-
5.5
MEDIUMCVE-2022-47011
An issue was discovered function parse_stab_struct_fields in stabs.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to memory leaks.... Read more
Affected Products : binutils- Published: Aug. 22, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-47346
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.... Read more
- Published: Feb. 12, 2023
- Modified: Mar. 25, 2025
-
5.5
MEDIUMCVE-2022-47008
An issue was discovered function make_tempdir, and make_tempname in bucomm.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to memory leaks.... Read more
Affected Products : binutils- Published: Aug. 22, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-47007
An issue was discovered function stab_demangle_v3_arg in stabs.c in Binutils 2.34 thru 2.38, allows attackers to cause a denial of service due to memory leaks.... Read more
Affected Products : binutils- Published: Aug. 22, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-46827
In JetBrains IntelliJ IDEA before 2022.3 an XXE attack leading to SSRF via requests to custom plugin repositories was possible.... Read more
Affected Products : intellij_idea- Published: Dec. 08, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-46702
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.2 and iPadOS 16.2. An app may be able to disclose kernel memory.... Read more
- Published: Dec. 15, 2022
- Modified: Apr. 21, 2025
-
5.5
MEDIUMCVE-2022-46704
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.1, macOS Big Sur 11.7.2, macOS Monterey 12.6.2. An app may be able to modify protected parts of the file system.... Read more
Affected Products : macos- Published: Feb. 27, 2023
- Modified: Mar. 11, 2025
-
5.5
MEDIUMCVE-2022-46718
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS 15.7.2, macOS Ventura 13.1, macOS Big Sur 11.7.2, macOS Monterey 12.6.2. An app may be able to read sensitive location information... Read more
- Published: Jun. 23, 2023
- Modified: Dec. 05, 2024