All CVEs — page 221 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
This vulnerability in the Linux kernel allows an attacker to perform an out-of-bounds write, potentially leading to a kernel panic or other severe issues.
The flaw allows an attacker to read out-of-bounds heap memory via a crafted EA record, leading to potential heap memory leaks to userspace.
The flaw involves an out-of-bounds page array access in the Linux kernel's isofs module, specifically in the handling of empty zisofs blocks. This can lead to a kernel crash or potentially arbitrary code execution if an attacker can craft a malicious ISO9660 image.
This flaw involves a use-after-free condition in the Linux kernel's vfio/pci subsystem, where the vdev->msi_perm pointer is left dangling after a memory allocation failure, leading to potential reuse and double-free issues.
The flaw allows an attacker to misinterpret the size of a TLB invalidation, leading to potential security issues, especially in virtualized environments using KVM and arm64 architecture.
This vulnerability allows for a use-after-free condition in the Linux kernel's Bluetooth SCO connection handling, which could lead to a denial of service or potentially other attacks if exploited.
The flaw allows an attacker to maintain access to a user's account after their password is changed, due to the lack of session invalidation.
This flaw allows an attacker to maintain access to a user's account after their password is reset, due to improper session cleanup.
The vulnerability in Unbound up to 1.26.0 allows an attacker to cause a denial of service or execute remote code through a maliciously crafted DNSKEY, due to improper handling of DNSKEY RDATA.