Latest CVE Feed
-
5.5
MEDIUMCVE-2022-34765
A CWE-73: External Control of File Name or Path vulnerability exists that could cause loading of unauthorized firmware images when user-controlled data is written to the file path. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V2... Read more
- EPSS Score: %0.27
- Published: Jul. 13, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-35020
Advancecomp v2.3 was discovered to contain a heap buffer overflow via the component __interceptor_memcpy at /sanitizer_common/sanitizer_common_interceptors.inc.... Read more
- EPSS Score: %0.03
- Published: Aug. 29, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-3543
A vulnerability, which was classified as problematic, has been found in Linux Kernel. This issue affects the function unix_sock_destructor/unix_release_sock of the file net/unix/af_unix.c of the component BPF. The manipulation leads to memory leak. It is ... Read more
Affected Products : linux_kernel- EPSS Score: %0.02
- Published: Oct. 17, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-26342
Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue... Read more
Affected Products : dimension- EPSS Score: %0.02
- Published: Mar. 28, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-21531
fig2dev 3.2.7b contains a global buffer overflow in the conv_pattern_index function in gencgm.c.... Read more
- EPSS Score: %0.12
- Published: Sep. 16, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-2700
A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory leak caused by a failure to free the virPCIVirtualFunction array within the parent struct's g_autoptr cle... Read more
- EPSS Score: %0.03
- Published: May. 15, 2023
- Modified: Jan. 28, 2025
-
5.5
MEDIUMCVE-2018-6616
In OpenJPEG 2.3.0, there is excessive iteration in the opj_t1_encode_cblks function of openjp2/t1.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file.... Read more
- EPSS Score: %0.08
- Published: Feb. 04, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-38334
XPDF v4.04 and earlier was discovered to contain a stack overflow via the function Catalog::countPageTree() at Catalog.cc.... Read more
Affected Products : xpdf- EPSS Score: %0.04
- Published: Sep. 15, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-38407
Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Explo... Read more
- EPSS Score: %0.03
- Published: Sep. 16, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-38600
Mplayer SVN-r38374-13.0.1 is vulnerable to Memory Leak via vf.c and vf_vo.c.... Read more
Affected Products : mplayer- EPSS Score: %0.05
- Published: Sep. 15, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-39190
An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel before 5.19.6. A denial of service can occur upon binding to an already bound chain.... Read more
- EPSS Score: %0.05
- Published: Sep. 02, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2016-8660
The XFS subsystem in the Linux kernel through 4.8.2 allows local users to cause a denial of service (fdatasync failure and system hang) by using the vfs syscall group in the trinity program, related to a "page lock order bug in the XFS seek hole/data impl... Read more
Affected Products : linux_kernel- EPSS Score: %0.12
- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2022-39837
An issue was discovered in Connected Vehicle Systems Alliance (COVESA) dlt-daemon through 2.18.8. Due to a faulty DLT file parser, a crafted DLT file that crashes the process can be created. This is due to missing validation checks. There is a NULL pointe... Read more
Affected Products : diagnostic_log_and_trace- EPSS Score: %0.03
- Published: Oct. 25, 2022
- Modified: May. 07, 2025
-
5.5
MEDIUMCVE-2017-6829
The decodeSample function in IMA.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.... Read more
Affected Products : audiofile- EPSS Score: %2.08
- Published: Mar. 20, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2022-4054
An issue has been discovered in GitLab affecting all versions starting from 9.3 before 15.4.6, all versions starting from 15.5 before 15.5.5, all versions starting from 15.6 before 15.6.1. It was possible for a project maintainer to leak a webhook secret ... Read more
Affected Products : gitlab- EPSS Score: %0.09
- Published: Jan. 26, 2023
- Modified: Apr. 02, 2025
-
5.5
MEDIUMCVE-2022-45586
Stack overflow vulnerability in function Dict::find in xpdf/Dict.cc in xpdf 4.04, allows local attackers to cause a denial of service.... Read more
Affected Products : xpdf- EPSS Score: %0.02
- Published: Feb. 15, 2023
- Modified: Mar. 19, 2025
-
5.5
MEDIUMCVE-2017-7067
An issue was discovered in certain Apple products. macOS before 10.12.6 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app.... Read more
- EPSS Score: %0.25
- Published: Jul. 20, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2022-48877
In the Linux kernel, the following vulnerability has been resolved: f2fs: let's avoid panic if extent_tree is not created This patch avoids the below panic. pc : __lookup_extent_tree+0xd8/0x760 lr : f2fs_do_write_data_page+0x104/0x87c sp : ffffffc010cb... Read more
Affected Products : linux_kernel- Published: Aug. 21, 2024
- Modified: Sep. 05, 2024
-
5.5
MEDIUMCVE-2022-43039
GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function gf_isom_meta_restore_items_ref at /isomedia/meta.c.... Read more
Affected Products : gpac- EPSS Score: %0.03
- Published: Oct. 19, 2022
- Modified: May. 08, 2025
-
5.5
MEDIUMCVE-2022-0544
An integer underflow in the DDS loader of Blender leads to an out-of-bounds read, possibly allowing an attacker to read sensitive data using a crafted DDS image file. This flaw affects Blender versions prior to 2.83.19, 2.93.8 and 3.1.... Read more
- EPSS Score: %0.17
- Published: Feb. 24, 2022
- Modified: Nov. 21, 2024