🚨 CVE-2022-35087
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via MovieAddFrame at /src/gif2swf.c.
🎖@cveNotify
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via MovieAddFrame at /src/gif2swf.c.
🎖@cveNotify
GitHub
Poc/CVE-2022-35087.md at main · Cvjark/Poc
记录自己使用 fuzz 发现的漏洞,包括产品 version、reproduce 步骤、威胁 rank。也自觉发现这些 POC 并不是重点,可能往后有进一步分析的必要,因此在此记录。 - Poc/CVE-2022-35087.md at main · Cvjark/Poc
🚨 CVE-2022-35086
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via /multiarch/memmove-vec-unaligned-erms.S.
🎖@cveNotify
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via /multiarch/memmove-vec-unaligned-erms.S.
🎖@cveNotify
GitHub
Poc/CVE-2022-35086.md at main · Cvjark/Poc
记录自己使用 fuzz 发现的漏洞,包括产品 version、reproduce 步骤、威胁 rank。也自觉发现这些 POC 并不是重点,可能往后有进一步分析的必要,因此在此记录。 - Poc/CVE-2022-35086.md at main · Cvjark/Poc
🚨 CVE-2022-35085
SWFTools commit 772e55a2 was discovered to contain a memory leak via /lib/mem.c.
🎖@cveNotify
SWFTools commit 772e55a2 was discovered to contain a memory leak via /lib/mem.c.
🎖@cveNotify
🚨 CVE-2022-41222
mm/mremap.c in the Linux kernel before 5.13.3 has a use-after-free via a stale TLB because an rmap lock is not held during a PUD move.
🎖@cveNotify
mm/mremap.c in the Linux kernel before 5.13.3 has a use-after-free via a stale TLB because an rmap lock is not held during a PUD move.
🎖@cveNotify
🚨 CVE-2022-40754
In Apache Airflow 2.3.0 through 2.3.4, there was an open redirect in the webserver's `/confirm` endpoint.
🎖@cveNotify
In Apache Airflow 2.3.0 through 2.3.4, there was an open redirect in the webserver's `/confirm` endpoint.
🎖@cveNotify
🚨 CVE-2022-40604
In Apache Airflow 2.3.0 through 2.3.4, part of a url was unnecessarily formatted, allowing for possible information extraction.
🎖@cveNotify
In Apache Airflow 2.3.0 through 2.3.4, part of a url was unnecessarily formatted, allowing for possible information extraction.
🎖@cveNotify
🚨 CVE-2022-2315
Database Software Accreditation Tracking/Presentation Module product before version 2 has an unauthenticated SQL Injection vulnerability. This is fixed in version 2.
🎖@cveNotify
Database Software Accreditation Tracking/Presentation Module product before version 2 has an unauthenticated SQL Injection vulnerability. This is fixed in version 2.
🎖@cveNotify
🚨 CVE-2022-41220
** DISPUTED ** md2roff 1.9 has a stack-based buffer overflow via a Markdown file, a different vulnerability than CVE-2022-34913. NOTE: the vendor's position is that the product is not intended for untrusted input.
🎖@cveNotify
** DISPUTED ** md2roff 1.9 has a stack-based buffer overflow via a Markdown file, a different vulnerability than CVE-2022-34913. NOTE: the vendor's position is that the product is not intended for untrusted input.
🎖@cveNotify
🚨 CVE-2022-41218
In drivers/media/dvb-core/dmxdev.c in the Linux kernel through 5.19.10, there is a use-after-free caused by refcount races, affecting dvb_demux_open and dvb_dmxdev_release.
🎖@cveNotify
In drivers/media/dvb-core/dmxdev.c in the Linux kernel through 5.19.10, there is a use-after-free caused by refcount races, affecting dvb_demux_open and dvb_dmxdev_release.
🎖@cveNotify
🚨 CVE-2022-3080
By sending specific queries to the resolver, an attacker can cause named to crash.
🎖@cveNotify
By sending specific queries to the resolver, an attacker can cause named to crash.
🎖@cveNotify
kb.isc.org
CVE-2022-3080: BIND 9 resolvers configured to answer from stale cache
🚨 CVE-2022-38178
By spoofing the target resolver with responses that have a malformed EdDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.
🎖@cveNotify
By spoofing the target resolver with responses that have a malformed EdDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.
🎖@cveNotify
kb.isc.org
CVE-2022-38178: Memory leaks in EdDSA DNSSEC verification code
🚨 CVE-2022-38177
By spoofing the target resolver with responses that have a malformed ECDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.
🎖@cveNotify
By spoofing the target resolver with responses that have a malformed ECDSA signature, an attacker can trigger a small memory leak. It is possible to gradually erode available memory to the point where named crashes for lack of resources.
🎖@cveNotify
kb.isc.org
CVE-2022-38177: Memory leak in ECDSA DNSSEC verification code
🚨 CVE-2022-2906
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.
🎖@cveNotify
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.
🎖@cveNotify
kb.isc.org
CVE-2022-2906 Memory Leak in DH Code
🚨 CVE-2022-2881
The underlying bug might cause read past end of the buffer and either read memory it should not read, or crash the process.
🎖@cveNotify
The underlying bug might cause read past end of the buffer and either read memory it should not read, or crash the process.
🎖@cveNotify
kb.isc.org
CVE-2022-2881: Buffer overread in statistics channel code
🚨 CVE-2022-2795
By flooding the target resolver with queries exploiting this flaw an attacker can significantly impair the resolver's performance, effectively denying legitimate clients access to the DNS resolution service.
🎖@cveNotify
By flooding the target resolver with queries exploiting this flaw an attacker can significantly impair the resolver's performance, effectively denying legitimate clients access to the DNS resolution service.
🎖@cveNotify
kb.isc.org
CVE-2022-2795: Processing large delegations may severely degrade resolver performance
🚨 CVE-2022-2872
Unrestricted Upload of File with Dangerous Type in GitHub repository octoprint/octoprint prior to 1.8.3.
🎖@cveNotify
Unrestricted Upload of File with Dangerous Type in GitHub repository octoprint/octoprint prior to 1.8.3.
🎖@cveNotify
GitHub
🔒️ Enforce valid type on copy/move of uploads · OctoPrint/OctoPrint@3e3c118
Also enforce that on downloads and mirror it on the
API.
Prevents accidental or intentional renaming of
valid files to something like .html to e.g. attempt
to run arbitrary JS code in the browser ...
API.
Prevents accidental or intentional renaming of
valid files to something like .html to e.g. attempt
to run arbitrary JS code in the browser ...
🚨 CVE-2022-39003
Buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability will affect the confidentiality and integrity of trusted components.
🎖@cveNotify
Buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability will affect the confidentiality and integrity of trusted components.
🎖@cveNotify
🚨 CVE-2022-39004
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
🎖@cveNotify
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
🎖@cveNotify
Harmonyos
September-2022-Huawei Phone/Tablet Security Bulletins-Updates-HarmonyOSDevice
September
HarmonyOS Security Bulletins for Huawei Phones and Tablets - Sep……
HarmonyOS Security Bulletins for Huawei Phones and Tablets - Sep……
🚨 CVE-2022-39005
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
🎖@cveNotify
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
🎖@cveNotify
Harmonyos
September-2022-Huawei Phone/Tablet Security Bulletins-Updates-HarmonyOSDevice
September
HarmonyOS Security Bulletins for Huawei Phones and Tablets - Sep……
HarmonyOS Security Bulletins for Huawei Phones and Tablets - Sep……
🚨 CVE-2022-25873
The package vuetify from 2.0.0-beta.4 and before 2.6.10 are vulnerable to Cross-site Scripting (XSS) due to improper input sanitization in the 'eventName' function within the VCalendar component.
🎖@cveNotify
The package vuetify from 2.0.0-beta.4 and before 2.6.10 are vulnerable to Cross-site Scripting (XSS) due to improper input sanitization in the 'eventName' function within the VCalendar component.
🎖@cveNotify
Learn more about Maven with Snyk Open Source Vulnerability Database
Cross-site Scripting (XSS) in org.webjars.npm:vuetify | CVE-2022-25873 | Snyk
Medium severity (4.6) Cross-site Scripting (XSS) in org.webjars.npm:vuetify | CVE-2022-25873
🚨 CVE-2022-39006
The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
🎖@cveNotify
The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
🎖@cveNotify
Harmonyos
September-2022-Huawei Phone/Tablet Security Bulletins-Updates-HarmonyOSDevice
September
HarmonyOS Security Bulletins for Huawei Phones and Tablets - Sep……
HarmonyOS Security Bulletins for Huawei Phones and Tablets - Sep……