2785 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-3640
Red Hat Enterprise Linux 9 General
7.0
HIGH
EPSS
0.2%
2023 CWE-203 1 PoC

A possible unauthorized memory access flaw was found in the Linux kernel's cpu_entry_area mapping of X86 CPU data to memory, where a user may guess the location of exception stacks or other important data. Based on the previous CVE-2023-0597, the 'Randomize per-cpu entry area' feature was implemented in /arch/x86/mm/cpu_entry_area.c, which works through the init_cea_offsets() function when KASLR is enabled. However, despite this feature, there is still a risk of per-cpu entry area leaks. This issue could allow a local user to gain access to some important data with memory in an expected locati

CVE-2023-6546
Red Hat Enterprise Linux 8 General
7.0
HIGH
EPSS
0.3%
2023 CWE-366 7 PoCs

A race condition was found in the GSM 0710 tty multiplexor in the Linux kernel. This issue occurs when two threads execute the GSMIOC_SETCONF ioctl on the same tty file descriptor with the gsm line discipline enabled, and can lead to a use-after-free problem on a struct gsm_dlci while restarting the gsm mux. This could allow a local unprivileged user to escalate their privileges on the system.

CVE-2023-36403
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
0.2%
2023 CWE-591 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-38652
GTKWave General
7.0
HIGH
EPSS
0.0%
2023 CWE-190 1 PoC

Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode dict parsing functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to memory corruption. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the integer overflow when num_time_ticks is not zero.

CVE-2023-38653
GTKWave General
7.0
HIGH
EPSS
0.0%
2023 CWE-190 1 PoC

Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode dict parsing functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to memory corruption. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the integer overflow when num_time_ticks is zero.