Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.2
CVE-2023-36401
Microsoft Remote Registry Service Remote Code Execution Vulnerability
Windows 10 1507
10.0.10240.20308 / 10.0.14393.6452+
HIGH 7.5
CVE-2023-36395
Windows Deployment Services Denial of Service Vulnerability
Windows Server 2008
Patch available
MEDIUM 6.7
CVE-2023-4949
An attacker with local access to a system (either through a disk or external drive) can present a modified XFS partition to grub-legacy in such a way…
Grub
after 0.97
HIGH 7.8
CVE-2023-4295
A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.
Mali Gpu Kernel Driver
No fix yet
HIGH 8.8
CVE-2023-5849
Integer overflow in USB in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …
Chrome
119.0.6045.105+
HIGH 7.8
CVE-2023-21375
In Sysproxy, there is a possible out of bounds write due to an integer underflow. This could lead to local escalation of privilege with no additional…
Android
14.0+
MEDIUM 6.7
CVE-2023-21370
In the Security Element API, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege wit…
Android
14.0+
MEDIUM 6.7
CVE-2023-21371
In Secure Element, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System e…
Android
14.0+
MEDIUM 5.5
CVE-2023-46246
Vim is an improved version of the good old UNIX editor Vi. Heap-use-after-free in memory allocated in the function `ga_grow_inner` in in the file `sr…
Vim
9.0.2068+
HIGH 8.8
CVE-2023-42295
An issue in OpenImageIO oiio v.2.4.12.0 allows a remote attacker to execute arbitrary code and cause a denial of service via the read_rle_image funct…
Openimageio
No fix yet
HIGH 7.8
CVE-2023-45681
stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory write past an allocated heap buff…
Stb Vorbis.c
Mitigation only
HIGH 7.8
CVE-2023-3487
An integer overflow in Silicon Labs Gecko Bootloader version 4.3.1 and earlier allows unbounded memory access when reading from or writing to storage…
Gecko Bootloader
after 4.3.1
HIGH 7.8
CVE-2023-38127
An integer overflow exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause the parser to m…
Easy Postcard Max
No fix yet
HIGH 7.8
CVE-2023-46228
zchunk before 1.3.2 has multiple integer overflows via malformed zchunk files to lib/comp/comp.c, lib/comp/zstd/zstd.c, lib/dl/multipart.c, or lib/he…
Zchunk
1.3.2+
CRITICAL 9.8
CVE-2023-45853
MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long filename, comment,…
Pyminizip
1.3.1+
MEDIUM 5.5
CVE-2023-42752
An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploi…
Linux Kernel
after 6.5.7
MEDIUM 5.5
CVE-2023-42298
An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSphere function of file src/bif…
Gpac
after 2.2.1
CRITICAL 9.8
CVE-2023-35967
Two heap-based buffer overflow vulnerabilities exist in the gwcfg_cgi_set_manage_post_data functionality of Yifan YF325 v1.0_20221108. A specially cr…
Yf325 Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-35968
Two heap-based buffer overflow vulnerabilities exist in the gwcfg_cgi_set_manage_post_data functionality of Yifan YF325 v1.0_20221108. A specially cr…
Yf325 Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-35965
Two heap-based buffer overflow vulnerabilities exist in the httpd manage_post functionality of Yifan YF325 v1.0_20221108. A specially crafted network…
Yf325 Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-35966
Two heap-based buffer overflow vulnerabilities exist in the httpd manage_post functionality of Yifan YF325 v1.0_20221108. A specially crafted network…
Yf325 Firmware
Mitigation only
HIGH 8.8
CVE-2023-37536
An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP request.
Xerces C\+\+
9.5.23 / 10.0.10+
HIGH 7.3
CVE-2023-36582
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Windows 10
10.0.10240.20232 / 10.0.14393.6351+
HIGH 7.3
CVE-2023-36593
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Windows 10
10.0.10240.20232 / 10.0.14393.6351+
MEDIUM 5.5
CVE-2023-36576
Windows Kernel Information Disclosure Vulnerability
Windows 10 1507
10.0.10240.20232 / 10.0.17763.4974+
HIGH 7.5
CVE-2023-36478
Eclipse Jetty provides a web server and servlet container. In versions 11.0.0 through 11.0.15, 10.0.0 through 10.0.15, and 9.0.0 through 9.4.52, an i…
Jenkins
2.414.3 / 2.428+
HIGH 7.8
CVE-2023-43787
A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an intege…
Enterprise Linux
1.8.7+
MEDIUM 6.5
CVE-2023-40745
LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application crash) or possibly execute …
Fedora
4.6.0+
MEDIUM 6.5
CVE-2023-41175
A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c. This flaw allows remote attackers to cause a denial o…
Fedora
4.6.0+
MEDIUM 6.7
CVE-2023-32828
In vpu, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution pr…
Iot Yocto
Mitigation only