Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: operating-systems Clear
ID Title
CVE-2023-38545 Out-of-Bounds Write in haxx (CVE-2023-38545)
out-of-bounds write in haxx (CVE-2023-38545). Successful exploitation can lead to full system takeover.
CVE-2023-45898 Use-After-Free in c (CVE-2023-45898)
vulnerability in c (CVE-2023-45898). Successful exploitation can lead to full system takeover.
CVE-2023-44487 KEV [KEV] Vulnerability in Ietf golang.org/x/net (CVE-2023-44487)
vulnerability in Ietf golang.org/x/net (CVE-2023-44487). Risk of unauthorized operations or information disclosure. Exploitable via ``Channel``. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `0.17.0` or later.
CVE-2023-43615 Mbed TLS 2.x before 2.28.5 and 3.x before 3.5.0 has a Buffer Overflow.
Mbed TLS 2.x before 2.28.5 and 3.x before 3.5.0 has a Buffer Overflow.
CVE-2023-3576 Buffer Overflow in dos (CVE-2023-3576)
vulnerability in dos (CVE-2023-3576). Risk of unauthorized operations or information disclosure.
CVE-2023-42753 Out-of-Bounds Write in linux (CVE-2023-42753)
out-of-bounds write in linux (CVE-2023-42753). Successful exploitation can lead to full system takeover.
CVE-2023-4527 Vulnerability in gnu (CVE-2023-4527)
vulnerability in gnu (CVE-2023-4527). Risk of unauthorized operations or information disclosure.
CVE-2023-4806 Use-After-Free in gnu (CVE-2023-4806)
vulnerability in gnu (CVE-2023-4806). Risk of unauthorized operations or information disclosure.
CVE-2023-4244 Use-After-Free in privilege-escalation (CVE-2023-4244)
vulnerability in privilege-escalation (CVE-2023-4244). Successful exploitation can lead to full system takeover.
CVE-2023-4781 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.
CVE-2023-4733 Use After Free in GitHub repository vim/vim prior to 9.0.1840.
Use After Free in GitHub repository vim/vim prior to 9.0.1840.
CVE-2023-4750 Use After Free in GitHub repository vim/vim prior to 9.0.1857.
Use After Free in GitHub repository vim/vim prior to 9.0.1857.
CVE-2023-4736 Untrusted Search Path in GitHub repository vim/vim prior to 9.0.1833.
Untrusted Search Path in GitHub repository vim/vim prior to 9.0.1833.
CVE-2023-4735 Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1847.
Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1847.
CVE-2023-4734 Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1846.
Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1846.
CVE-2022-48174 Out-of-Bounds Write in c (CVE-2022-48174)
out-of-bounds write in c (CVE-2022-48174). Successful exploitation can lead to full system takeover.
CVE-2020-19189 Out-of-Bounds Write in c (CVE-2020-19189)
out-of-bounds write in c (CVE-2020-19189). Risk of unauthorized operations or information disclosure.
CVE-2023-38180 KEV [KEV] Vulnerability in Microsoft net-core-and-visual-studio (CVE-2023-38180)
vulnerability in Microsoft net-core-and-visual-studio (CVE-2023-38180). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2023-38559 Out-of-Bounds Read in c (CVE-2023-38559)
vulnerability in c (CVE-2023-38559). Risk of unauthorized operations or information disclosure.
CVE-2023-3640 Vulnerability in c (CVE-2023-3640)
vulnerability in c (CVE-2023-3640). Successful exploitation can lead to full system takeover.
CVE-2023-3609 Use-After-Free in privilege-escalation (CVE-2023-3609)
vulnerability in privilege-escalation (CVE-2023-3609). Successful exploitation can lead to full system takeover.
CVE-2023-36884 KEV [KEV] Vulnerability in Microsoft windows (CVE-2023-36884)
vulnerability in Microsoft windows (CVE-2023-36884). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2023-32046 KEV [KEV] Vulnerability in Microsoft windows (CVE-2023-32046)
vulnerability in Microsoft windows (CVE-2023-32046). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2023-32049 KEV [KEV] Vulnerability in Microsoft windows (CVE-2023-32049)
vulnerability in Microsoft windows (CVE-2023-32049). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2023-36874 KEV [KEV] Vulnerability in Microsoft windows (CVE-2023-36874)
vulnerability in Microsoft windows (CVE-2023-36874). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2022-27405 Out-of-Bounds Read in platform/external/freetype (CVE-2022-27405)
vulnerability in platform/external/freetype (CVE-2022-27405). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `13:2023-07-01` or later.
CVE-2023-3390 Use-After-Free in c (CVE-2023-3390)
vulnerability in c (CVE-2023-3390). Successful exploitation can lead to full system takeover.
CVE-2023-36664 Vulnerability in artifex (CVE-2023-36664)
vulnerability in artifex (CVE-2023-36664). Successful exploitation can lead to full system takeover.
CVE-2023-35823 Vulnerability in c (CVE-2023-35823)
vulnerability in c (CVE-2023-35823). Successful exploitation can lead to full system takeover.
CVE-2023-3268 Out-of-Bounds Read in c (CVE-2023-3268)
vulnerability in c (CVE-2023-3268). Confidential information can be exposed externally.
CVE-2023-34752 SQL Injection in sqli (CVE-2023-34752)
SQL injection in sqli (CVE-2023-34752). Successful exploitation can lead to full system takeover.
CVE-2014-0196 KEV [KEV] Vulnerability in Linux kernel (CVE-2014-0196)
vulnerability in Linux kernel (CVE-2014-0196). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2010-3904 KEV [KEV] Vulnerability in Linux kernel (CVE-2010-3904)
vulnerability in Linux kernel (CVE-2010-3904). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2016-8735 KEV [KEV] Vulnerability in Apache tomcat (CVE-2016-8735)
vulnerability in Apache tomcat (CVE-2016-8735). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2023-2609 NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531.
NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531.
CVE-2023-2235 Use-After-Free in privilege-escalation (CVE-2023-2235)
vulnerability in privilege-escalation (CVE-2023-2235). Successful exploitation can lead to full system takeover.
CVE-2023-27043 Vulnerability in libpython (CVE-2023-27043)
vulnerability in libpython (CVE-2023-27043). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.8.20, 3.10.15, 3.11.10, 3.12.6, 3.9.20` or later.
CVE-2019-8526 KEV [KEV] Use-After-Free in Apple macos (CVE-2019-8526)
vulnerability in Apple macos (CVE-2019-8526). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2023-2008 Vulnerability in linux (CVE-2023-2008)
vulnerability in linux (CVE-2023-2008). Successful exploitation can lead to full system takeover.
CVE-2023-29491 ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/...
ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable.
CVE-2023-1829 Use-After-Free in privilege-escalation (CVE-2023-1829)
vulnerability in privilege-escalation (CVE-2023-1829). Successful exploitation can lead to full system takeover.
CVE-2023-28252 KEV [KEV] Vulnerability in Microsoft windows (CVE-2023-28252)
vulnerability in Microsoft windows (CVE-2023-28252). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2019-1388 KEV [KEV] Privilege Escalation in Microsoft windows (CVE-2019-1388)
vulnerability in Microsoft windows (CVE-2019-1388). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2023-0266 KEV [KEV] Use-After-Free in Linux kernel (CVE-2023-0266)
vulnerability in Linux kernel (CVE-2023-0266). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2023-1652 Use-After-Free in c (CVE-2023-1652)
vulnerability in c (CVE-2023-1652). Confidential information can be exposed externally.
CVE-2023-1281 Use-After-Free in privilege-escalation (CVE-2023-1281)
vulnerability in privilege-escalation (CVE-2023-1281). Successful exploitation can lead to full system takeover.
CVE-2023-28531 Vulnerability in openbsd (CVE-2023-28531)
vulnerability in openbsd (CVE-2023-28531). Successful exploitation can lead to full system takeover.
CVE-2023-24880 KEV [KEV] Authorization Flaw in Microsoft windows (CVE-2023-24880)
vulnerability in Microsoft windows (CVE-2023-24880). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2023-26314 Vulnerability in dos (CVE-2023-26314)
vulnerability in dos (CVE-2023-26314). Successful exploitation can lead to full system takeover.
CVE-2023-0882 Vulnerability in krontech (CVE-2023-0882)
vulnerability in krontech (CVE-2023-0882). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →