Latest CVE Feed
-
5.5
MEDIUMCVE-2023-32424
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.4 and iPadOS 16.4, watchOS 9.4. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.... Read more
- EPSS Score: %0.01
- Published: Jan. 10, 2024
- Modified: Jun. 03, 2025
-
5.5
MEDIUMCVE-2023-32404
This issue was addressed with improved entitlements. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, macOS Ventura 13.4. An app may be able to bypass Privacy preferences.... Read more
- EPSS Score: %0.02
- Published: Jun. 23, 2023
- Modified: Dec. 05, 2024
-
5.5
MEDIUMCVE-2023-32389
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to disclose kernel memory.... Read more
- EPSS Score: %0.04
- Published: Jun. 23, 2023
- Modified: Dec. 05, 2024
-
5.5
MEDIUMCVE-2020-9811
An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A local user may be able to read kernel memory.... Read more
- EPSS Score: %0.32
- Published: Jun. 09, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32372
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. Processing an image may result in disclosure of process memory.... Read more
- EPSS Score: %0.03
- Published: Jun. 23, 2023
- Modified: Dec. 05, 2024
-
5.5
MEDIUMCVE-2023-32354
An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 9.5, tvOS 16.5, iOS 16.5 and iPadOS 16.5. An app may be able to disclose kernel memory.... Read more
- EPSS Score: %0.03
- Published: Jun. 23, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32275
An information disclosure vulnerability exists in the CtEnumCa() functionality of SoftEther VPN 4.41-9782-beta and 5.01.9674. Specially crafted network packets can lead to a disclosure of sensitive information. An attacker can send packets to trigger this... Read more
Affected Products : vpn- EPSS Score: %0.06
- Published: Oct. 12, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-32076
in-toto is a framework to protect supply chain integrity. The in-toto configuration is read from various directories and allows users to configure the behavior of the framework. The files are from directories following the XDG base directory specification... Read more
Affected Products : in-toto- EPSS Score: %0.04
- Published: May. 10, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-31669
WebAssembly wat2wasm v1.0.32 allows attackers to cause a libc++abi.dylib crash by putting '@' before a quote (").... Read more
Affected Products : webassembly_binary_toolkit- EPSS Score: %0.02
- Published: May. 23, 2023
- Modified: Jan. 31, 2025
-
5.5
MEDIUMCVE-2023-31082
An issue was discovered in drivers/tty/n_gsm.c in the Linux kernel 6.2. There is a sleeping function called from an invalid context in gsmld_write, which will block the kernel. Note: This has been disputed by 3rd parties as not a valid vulnerability.... Read more
Affected Products : linux_kernel- EPSS Score: %0.02
- Published: Apr. 24, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-31081
An issue was discovered in drivers/media/test-drivers/vidtv/vidtv_bridge.c in the Linux kernel 6.2. There is a NULL pointer dereference in vidtv_mux_stop_thread. In vidtv_stop_streaming, after dvb->mux=NULL occurs, it executes vidtv_mux_stop_thread(dvb->m... Read more
Affected Products : linux_kernel- EPSS Score: %0.02
- Published: Apr. 24, 2023
- Modified: Feb. 04, 2025
-
5.5
MEDIUMCVE-2023-30902
A privilege escalation vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker to unintentionally delete privileged Trend Micro registry keys including its own protected registry keys on affected installation... Read more
- EPSS Score: %0.04
- Published: Jun. 26, 2023
- Modified: Dec. 05, 2024
-
5.5
MEDIUMCVE-2020-9697
Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier have a disclosure of sensitive data vulnerability. Successful exploitation could lead to memory leak.... Read more
- EPSS Score: %2.44
- Published: Aug. 19, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-30259
A Buffer Overflow vulnerability in importshp plugin in LibreCAD 2.2.0 allows attackers to obtain sensitive information via a crafted DBF file.... Read more
Affected Products : librecad- EPSS Score: %0.04
- Published: Jun. 28, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-30207
A divide by zero issue discovered in Kodi Home Theater Software 19.5 and earlier allows attackers to cause a denial of service via use of crafted mp3 file.... Read more
Affected Products : kodi- EPSS Score: %0.02
- Published: Jul. 05, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-9649
Adobe Media Encoder versions 14.2 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.... Read more
Affected Products : media_encoder- EPSS Score: %2.61
- Published: Jul. 17, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-29939
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::spirv::TargetEnv::TargetEnv(mlir::spirv::TargetEnvAttr).... Read more
Affected Products : llvm- EPSS Score: %0.02
- Published: May. 05, 2023
- Modified: Jan. 29, 2025
-
5.5
MEDIUMCVE-2023-29935
llvm-project commit a0138390 was discovered to contain an assertion failure at !replacements.count(op) && "operation was already replaced.... Read more
Affected Products : llvm- EPSS Score: %0.03
- Published: May. 05, 2023
- Modified: Jan. 29, 2025
-
5.5
MEDIUMCVE-2023-29582
yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr1 at /nasm/nasm-parse.c. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not des... Read more
Affected Products : yasm- EPSS Score: %0.04
- Published: Apr. 24, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-29580
yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the component yasm_expr_create at /libyasm/expr.c.... Read more
Affected Products : yasm- EPSS Score: %0.06
- Published: Apr. 12, 2023
- Modified: Feb. 08, 2025