CVE-2022-43680 libexpat through 2.4.9 has a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.
This could lead to crashes and/or denial of service if a large number of entities were being parsed or if an attacker could supply
CVE-2022-41797 Inappropriate authorization in handler for custom URL scheme vu
t can lead to access to arbitrary website.
The attacker can send malicious links or emails to the user via malicious websites or take advantage of compromised user accounts. Invalid authorization can be
CVE-2022-26423 TUG server versions before 24 are affected by an unauthenticated attacker who can access hashed user credentials.
The vulnerability was detected by researchers at Cisco Talos and was assigned the identifier CVE-2018-7437. A remote attacker could trick a user into
CVE-2022-3635 A critical vulnerability has been found in the Linux Kernel affected by the tst_timer function of the IPsec component. It leads to use after free.
It was discovered by Hannes Frederic SUEß from the Google team. This issue has been assigned a CVSS v3 rating of 5.8. A serious
CVE-2022-3625 A vulnerability was found in Linux Kernel. It is classified as critical. The manipulation leads to use after free.
It has been discovered that the code of the Networking component of the Linux kernel is vulnerable to a denial of service. This issue is
Episode
00:00:00
00:00:00