Total
10481 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-34929 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the AddMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-34930 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the EditMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-34931 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the EditWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-34932 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the UpdateWanMode function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-34933 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the UpdateWanParams function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-34934 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the Edit_BasicSSID_5G function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-34935 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the AddWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-34936 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the UpdateMacClone function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-34937 | 1 H3c | 2 Magic B1st, Magic B1st Firmware | 2023-07-05 | N/A | 7.5 HIGH |
A stack overflow in the UpdateSnat function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request. | |||||
CVE-2023-29068 | 1 Autodesk | 17 Alias, Autocad, Autocad Advance Steel and 14 more | 2023-07-05 | N/A | 7.8 HIGH |
A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vulnerabilities in conjunction with other vulnerabilities could lead to code execution in the context of the current process. | |||||
CVE-2023-25003 | 1 Autodesk | 17 Alias, Autocad, Autocad Advance Steel and 14 more | 2023-07-05 | N/A | 7.8 HIGH |
A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read write / read vulnerabilities. Exploitation of this vulnerability may lead to code execution. | |||||
CVE-2023-2911 | 4 Debian, Fedoraproject, Isc and 1 more | 14 Debian Linux, Fedora, Bind and 11 more | 2023-07-03 | N/A | 7.5 HIGH |
If the `recursive-clients` quota is reached on a BIND 9 resolver configured with both `stale-answer-enable yes;` and `stale-answer-client-timeout 0;`, a sequence of serve-stale-related lookups could cause `named` to loop and terminate unexpectedly due to a stack overflow. This issue affects BIND 9 versions 9.16.33 through 9.16.41, 9.18.7 through 9.18.15, 9.16.33-S1 through 9.16.41-S1, and 9.18.11-S1 through 9.18.15-S1. | |||||
CVE-2023-30775 | 1 Libtiff | 1 Libtiff | 2023-07-03 | N/A | 5.5 MEDIUM |
A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSamples32bits, tiffcrop.c. | |||||
CVE-2023-28064 | 1 Dell | 140 Alienware M15 R6, Alienware M15 R6 Firmware, Alienware M15 R7 and 137 more | 2023-06-30 | N/A | 4.6 MEDIUM |
Dell BIOS contains an Out-of-bounds Write vulnerability. An unauthenticated physical attacker may potentially exploit this vulnerability, leading to denial of service. | |||||
CVE-2023-21157 | 1 Google | 1 Android | 2023-06-30 | N/A | 6.7 MEDIUM |
In encode of wlandata.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-263783137References: N/A | |||||
CVE-2023-36192 | 1 Irontec | 1 Sngrep | 2023-06-30 | N/A | 7.8 HIGH |
Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_ws_check_packet at /src/capture.c. | |||||
CVE-2023-21151 | 1 Google | 1 Android | 2023-06-30 | N/A | 6.7 MEDIUM |
In the Google BMS kernel module, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-265149414References: N/A | |||||
CVE-2023-21066 | 1 Google | 1 Android | 2023-06-30 | N/A | 9.8 CRITICAL |
In cd_CodeMsg of cd_codec.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-250100597References: N/A | |||||
CVE-2022-34287 | 1 Siemens | 1 Pads Viewer | 2023-06-29 | 4.3 MEDIUM | 5.5 MEDIUM |
A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected application contains a stack corruption vulnerability while parsing PCB files. An attacker could leverage this vulnerability to leak information in the context of the current process. (FG-VD-22-052, FG-VD-22-056) | |||||
CVE-2022-34291 | 1 Siemens | 1 Pads Viewer | 2023-06-29 | 4.3 MEDIUM | 5.5 MEDIUM |
A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected application contains a stack corruption vulnerability while parsing PCB files. An attacker could leverage this vulnerability to leak information in the context of the current process. (FG-VD-22-057, FG-VD-22-058, FG-VD-22-060) |