Latest CVE Feed
-
5.5
MEDIUMCVE-2023-4042
A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.... Read more
Affected Products : enterprise_linux ghostscript enterprise_linux_for_power_little_endian codeready_linux_builder codeready_linux_builder_for_ibm_z_systems enterprise_linux_for_ibm_z_systems codeready_linux_builder_for_arm64 enterprise_linux_for_arm_64 codeready_linux_builder_for_power_little_endian- EPSS Score: %0.03
- Published: Aug. 23, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-1074
A memory leak flaw was found in the Linux kernel's Stream Control Transmission Protocol. This issue may occur when a user starts a malicious networking service and someone connects to this service. This could allow a local user to starve resources, causin... Read more
Affected Products : linux_kernel- EPSS Score: %0.01
- Published: Mar. 27, 2023
- Modified: Mar. 19, 2025
-
5.5
MEDIUMCVE-2023-4211
A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory. ... Read more
- Actively Exploited
- EPSS Score: %0.05
- Published: Oct. 01, 2023
- Modified: Feb. 04, 2025
-
5.5
MEDIUMCVE-2023-42754
A NULL pointer dereference flaw was found in the Linux kernel ipv4 stack. The socket buffer (skb) was assumed to be associated with a device before calling __ip_options_compile, which is not always the case if the skb is re-routed by ipvs. This issue may ... Read more
- EPSS Score: %0.01
- Published: Oct. 05, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-42894
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sonoma 14.2, macOS Ventura 13.6.3, macOS Monterey 12.7.2. An app may be able to access information about a user's contacts.... Read more
Affected Products : macos- EPSS Score: %0.02
- Published: Dec. 12, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2014-3610
The WRMSR processing functionality in the KVM subsystem in the Linux kernel through 3.17.2 does not properly handle the writing of a non-canonical address to a model-specific register, which allows guest OS users to cause a denial of service (host OS cras... Read more
- EPSS Score: %0.05
- Published: Nov. 10, 2014
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2023-4508
A user able to control file input to Gerbv, between versions 2.4.0 and 2.10.0, can cause a crash and cause denial-of-service with a specially crafted Gerber RS-274X file.... Read more
Affected Products : gerbv- EPSS Score: %0.04
- Published: Aug. 24, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-0909
Divide By Zero error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f8d0f9aa.... Read more
- EPSS Score: %0.07
- Published: Mar. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-22398
An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS). When an MPLS ping is pe... Read more
- EPSS Score: %0.04
- Published: Jan. 13, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-26404
Adobe Dimension version 3.4.8 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue ... Read more
- EPSS Score: %0.03
- Published: Apr. 12, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-32990
An issue in gimp_layer_invalidate_boundary of GNOME GIMP 2.10.30 allows attackers to trigger an unhandled exception via a crafted XCF file, causing a Denial of Service (DoS).... Read more
Affected Products : gimp- EPSS Score: %0.10
- Published: Jun. 24, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2018-8754
The libevt_record_values_read_event() function in libevt_record_values.c in libevt before 2018-03-17 does not properly check for out-of-bounds values of user SID data size, strings size, or data size. NOTE: the vendor has disputed this as described in lib... Read more
- EPSS Score: %0.05
- Published: Mar. 18, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-36141
SWFMill commit 53d7690 was discovered to contain a segmentation violation via SWF::MethodBody::write(SWF::Writer*, SWF::Context*).... Read more
Affected Products : swfmill- EPSS Score: %0.05
- Published: Aug. 16, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-52472
In the Linux kernel, the following vulnerability has been resolved: crypto: rsa - add a check for allocation failure Static checkers insist that the mpi_alloc() allocation can fail so add a check to prevent a NULL dereference. Small allocations like th... Read more
Affected Products : linux_kernel- Published: Feb. 26, 2024
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46047
A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_hinter_finalize function.... Read more
Affected Products : gpac- EPSS Score: %0.10
- Published: Jan. 10, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-52911
In the Linux kernel, the following vulnerability has been resolved: drm/msm: another fix for the headless Adreno GPU Fix another oops reproducible when rebooting the board with the Adreno GPU working in the headless mode (e.g. iMX platforms). Unable to... Read more
Affected Products : linux_kernel- Published: Aug. 21, 2024
- Modified: Sep. 12, 2024
-
5.5
MEDIUMCVE-2020-16295
A null pointer dereference vulnerability in clj_media_size() in devices/gdevclj.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.... Read more
- EPSS Score: %0.48
- Published: Aug. 13, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2024-37021
In the Linux kernel, the following vulnerability has been resolved: fpga: manager: add owner module and take its refcount The current implementation of the fpga manager assumes that the low-level module registers a driver for the parent device and uses ... Read more
Affected Products : linux_kernel- Published: Jun. 24, 2024
- Modified: Feb. 03, 2025
-
5.5
MEDIUMCVE-2021-46905
In the Linux kernel, the following vulnerability has been resolved: net: hso: fix NULL-deref on disconnect regression Commit 8a12f8836145 ("net: hso: fix null-ptr-deref during tty device unregistration") fixed the racy minor allocation reported by syzbo... Read more
Affected Products : linux_kernel- Published: Feb. 26, 2024
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2024-38548
In the Linux kernel, the following vulnerability has been resolved: drm: bridge: cdns-mhdp8546: Fix possible null pointer dereference In cdns_mhdp_atomic_enable(), the return value of drm_mode_duplicate() is assigned to mhdp_state->current_mode, and the... Read more
Affected Products : linux_kernel- Published: Jun. 19, 2024
- Modified: Apr. 01, 2025