Vulnerability index

Browse CVEs

598 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.1 CVE-2023-40181 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Integer… Debian Linux 2.11.0+ Fix from $2,3002023-08-31 CRITICAL 9.1 CVE-2023-39353 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to a missing … Debian Linux 2.11.0+ Fix from $2,3002023-08-31 CRITICAL 9.1 CVE-2023-39356 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a missing offset valid… Debian Linux 2.11.0+ Fix from $2,3002023-08-31 CRITICAL 9.8 CVE-2023-39352 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an invalid… Debian Linux 2.11.0+ Fix from $2,3002023-08-31 CRITICAL 9.8 CVE-2023-39355 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Versions of FreeRDP on the 3.x release bran… Debian Linux Patch available Fix from $2,3002023-08-31 CRITICAL 9.8 CVE-2023-41361 An issue was discovered in FRRouting FRR 9.0. bgpd/bgp_open.c does not check for an overly large length of the rcv software version. Debian Linux after 9.0 Fix from $2,3002023-08-29 CRITICAL 9.1 CVE-2023-41360 An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation. Debian Linux after 9.0 Fix from $2,3002023-08-29 CRITICAL 9.8 CVE-2022-48174 There is a stack overflow vulnerability in ash.c:6030 in busybox before 1.35. In the environment of Internet of Vehicles, this vulnerability can be e… Debian Linux after 1.36.1 Fix from $2,3002023-08-22 CRITICAL 9.8 CVE-2023-28879EPSS 6% In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interpreter, in… Debian Linux 10.01.0+ Fix from $2,3002023-03-31 CRITICAL 9.8 CVE-2022-23121EPSS 9% This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit… Debian Linux 3.1.13+ Fix from $2,3002023-03-28 CRITICAL 9.8 CVE-2022-23122 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit… Debian Linux 3.1.13+ Fix from $2,3002023-03-28 CRITICAL 9.8 CVE-2022-23123 This vulnerability allows remote attackers to disclose sensitive information on affected installations of Netatalk. Authentication is not required to… Debian Linux 3.1.13+ Fix from $2,3002023-03-28 CRITICAL 9.8 CVE-2022-23124 This vulnerability allows remote attackers to disclose sensitive information on affected installations of Netatalk. Authentication is not required to… Debian Linux 3.1.13+ Fix from $2,3002023-03-28 CRITICAL 9.8 CVE-2022-23125 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit… Debian Linux 3.1.13+ Fix from $2,3002023-03-28 CRITICAL 9.8 CVE-2022-0194 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit… Debian Linux 3.1.13+ Fix from $2,3002023-03-28 CRITICAL 9.8 CVE-2023-27372EPSS 100% SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions are 3.2.18,… Debian Linux 3.2.18 / 4.0.10+ Fix from $2,3002023-02-28 CRITICAL 9.8 CVE-2022-48337 GNU Emacs through 28.2 allows attackers to execute commands via shell metacharacters in the name of a source-code file, because lib-src/etags.c uses … Debian Linux after 28.2 Fix from $2,3002023-02-20 CRITICAL 9.1 CVE-2023-25725EPSS 5% HAProxy before 2.7.3 may allow a bypass of access control because HTTP/1 headers are inadvertently lost in some situations, aka "request smuggling." … Debian Linux 2.0.31 / 2.2.29+ Fix from $2,3002023-02-14 CRITICAL 9.8 CVE-2022-4338 An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch. Debian Linux 2.13.10 / 2.14.8+ Fix from $2,3002023-01-10 CRITICAL 9.8 CVE-2022-4337 An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch. Debian Linux 2.13.10 / 2.14.8+ Fix from $2,3002023-01-10 CRITICAL 9.8 CVE-2022-41794 A heap based buffer overflow vulnerability exists in the PSD thumbnail resource parsing code of OpenImageIO 2.3.19.0. A specially-crafted PSD file ca… Debian Linux No fix yet Fix from $2,3002022-12-22 CRITICAL 9.8 CVE-2022-41837 An out-of-bounds write vulnerability exists in the OpenImageIO::add_exif_item_to_spec functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Spec… Debian Linux No fix yet Fix from $2,3002022-12-22 CRITICAL 9.8 CVE-2022-41838 A code execution vulnerability exists in the DDS scanline parsing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially-crafted .dds… Debian Linux No fix yet Fix from $2,3002022-12-22 CRITICAL 9.8 CVE-2022-41639 A heap based buffer overflow vulnerability exists in tile decoding code of TIFF image parser in OpenImageIO master-branch-9aeece7a and v2.3.19.0. A s… Debian Linux No fix yet Fix from $2,3002022-12-22 CRITICAL 9.1 CVE-2022-41649 A heap out of bounds read vulnerability exists in the handling of IPTC data while parsing TIFF images in OpenImageIO v2.3.19.0. A specially-crafted T… Debian Linux No fix yet Fix from $2,3002022-12-22 CRITICAL 9.8 CVE-2022-47629 Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser. Debian Linux 1.6.3+ Fix from $2,3002022-12-20 CRITICAL 9.8 CVE-2022-23537 PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S… Debian Linux 2.13.1+ Fix from $2,3002022-12-20 CRITICAL 9.8 CVE-2022-23484 xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont… Debian Linux 0.9.21+ Fix from $2,3002022-12-09 CRITICAL 9.1 CVE-2022-23493 xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont… Debian Linux 0.9.21+ Fix from $2,3002022-12-09 CRITICAL 9.1 CVE-2022-23481 xrdp is an open source project which provides a graphical login to remote machines using Microsoft Remote Desktop Protocol (RDP). xrdp < v0.9.21 cont… Debian Linux 0.9.21+ Fix from $2,3002022-12-09