7558 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-0834
Workforce Access General
7.0
HIGH
EPSS
0.2%
2023 CWE-732 1 PoC

Incorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on MacOS allows Privilege Escalation.This issue affects Workforce Access: from 6.12 before 8.1.

CVE-2023-28466
Software Genérico General
7.0
HIGH
EPSS
0.0%
2023 1 PoC

do_tls_getsockopt in net/tls/tls_main.c in the Linux kernel through 6.2.6 lacks a lock_sock call, leading to a race condition (with a resultant use-after-free or NULL pointer dereference).

CVE-2023-4677
Pandora FMS General
7.0
HIGH
EPSS
0.1%
2023 CWE-287 1 PoC

Cron log backup files contain administrator session IDs. It is trivial for any attacker who can reach the Pandora FMS Console to scrape the cron logs directory for cron log backups. The contents of these log files can then be abused to authenticate to the application as an administrator. This issue affects Pandora FMS <= 772.

CVE-2023-36427
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
9.9%
2023 1 PoC

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2023-38652
GTKWave General
7.0
HIGH
EPSS
0.0%
2023 CWE-190 1 PoC

Multiple integer overflow vulnerabilities exist in the VZT vzt_rd_block_vch_decode dict parsing functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to memory corruption. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the integer overflow when num_time_ticks is not zero.

CVE-2023-36403
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
0.2%
2023 CWE-591 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-6546
Red Hat Enterprise Linux 8 General
7.0
HIGH
EPSS
0.3%
2023 CWE-366 7 PoCs

A race condition was found in the GSM 0710 tty multiplexor in the Linux kernel. This issue occurs when two threads execute the GSMIOC_SETCONF ioctl on the same tty file descriptor with the gsm line discipline enabled, and can lead to a use-after-free problem on a struct gsm_dlci while restarting the gsm mux. This could allow a local unprivileged user to escalate their privileges on the system.

CVE-2023-4504
CUPS General
7.0
HIGH
EPSS
0.0%
2023 CWE-122 1 PoC

Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are susceptible to a heap-based buffer overflow and possibly code execution. This issue has been fixed in CUPS version 2.4.7, released in September of 2023.

CVE-2023-22660
Ichitaro General
7.0
HIGH
EPSS
0.4%
2023 CWE-122 2 PoCs

A heap-based buffer overflow vulnerability exists in the way Ichitaro version 2022 1.0.1.57600 processes certain LayoutBox stream record types. A specially crafted document can cause a buffer overflow, leading to memory corruption, which can result in arbitrary code execution.To trigger this vulnerability, the victim would need to open a malicious, attacker-created document.

CVE-2023-22291
Ichitaro General
7.0
HIGH
EPSS
0.2%
2023 CWE-590 2 PoCs

An invalid free vulnerability exists in the Frame stream parser functionality of Ichitaro 2022 1.0.1.57600. A specially crafted document can lead to an attempt to free a stack pointer, which causes memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2023-5097
Workforce Access Windows
7.0
HIGH
EPSS
0.1%
2023 CWE-22 1 PoC

Improper Input Validation vulnerability in HYPR Workforce Access on Windows allows Path Traversal.This issue affects Workforce Access: before 8.7.

CVE-2023-5249
Bifrost GPU Kernel Driver General
7.0
HIGH
EPSS
0.1%
2023 CWE-416 1 PoC

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper memory processing operations to exploit a software race condition. If the system’s memory is carefully prepared by the user, then this in turn cause a use-after-free.This issue affects Bifrost GPU Kernel Driver: from r35p0 through r40p0; Valhall GPU Kernel Driver: from r35p0 through r40p0.

CVE-2023-46813
Software Genérico General
7.0
HIGH
EPSS
0.3%
2023 2 PoCs

An issue was discovered in the Linux kernel before 6.5.9, exploitable by local users with userspace access to MMIO registers. Incorrect access checking in the #VC handler and instruction emulation of the SEV-ES emulation of MMIO accesses could lead to arbitrary write access to kernel memory (and thus privilege escalation). This depends on a race condition through which userspace can replace an instruction before the #VC handler reads it.

CVE-2023-29007
git General
7.0
HIGH
EPSS
0.7%
2023 CWE-74 3 PoCs

Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, a specially crafted `.gitmodules` file with submodule URLs that are longer than 1024 characters can used to exploit a bug in `config.c::git_config_copy_or_rename_section_in_file()`. This bug can be used to inject arbitrary configuration into a user's `$GIT_DIR/config` when attempting to remove the configuration section associated with that submodule. When the attacker injects configuration values which specify executables to run (such as `core.pager`,

CVE-2023-42753
Red Hat Enterprise Linux 7 General
7.0
HIGH
EPSS
0.0%
2023 CWE-787 3 PoCs

An array indexing vulnerability was found in the netfilter subsystem of the Linux kernel. A missing macro could lead to a miscalculation of the `h->nets` array offset, providing attackers with the primitive to arbitrarily increment/decrement a memory buffer out-of-bound. This issue may allow a local user to crash the system or potentially escalate their privileges on the system.

CVE-2023-35828
Software Genérico General
7.0
HIGH
EPSS
0.0%
2023 3 PoCs

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in renesas_usb3_remove in drivers/usb/gadget/udc/renesas_usb3.c.

CVE-2023-35823
Software Genérico General
7.0
HIGH
EPSS
0.0%
2023 1 PoC

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in saa7134_finidev in drivers/media/pci/saa7134/saa7134-core.c.

CVE-2023-0887
TFTPD64-SE General
7.0
HIGH
EPSS
0.1%
2023 CWE-428 1 PoC

A vulnerability was found in phjounin TFTPD64-SE 4.64 and classified as critical. This issue affects some unknown processing of the file tftpd64_svc.exe. The manipulation leads to unquoted search path. An attack has to be approached locally. The complexity of an attack is rather high. The exploitation is known to be difficult. The associated identifier of this vulnerability is VDB-221351.

CVE-2023-5184
Zephyr General
7.0
HIGH
EPSS
0.3%
2023 CWE-120 1 PoC

Two potential signed to unsigned conversion errors and buffer overflow vulnerabilities at the following locations in the Zephyr IPM drivers.

CVE-2023-35824
Software Genérico General
7.0
HIGH
EPSS
0.0%
2023 1 PoC

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in dm1105_remove in drivers/media/pci/dm1105/dm1105.c.