VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Debian
> Critical
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2023-02-14
CVE-2023-25725
HAProxy before 2.7.3 may allow a bypass of access control because HTTP/1 headers are inadvertently lost in some situations, aka "request smuggling." The HTTP header parsers in HAProxy may accept empty header field names, which could be used to truncate the list of HTTP headers and thus make some headers disappear after being parsed and processed for HTTP/1.0 and HTTP/1.1.
network
low complexity
haproxy
debian
critical
9.1
9.1
2023-01-10
CVE-2022-4337
An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.
network
low complexity
openvswitch
debian
critical
9.8
9.8
2023-01-10
CVE-2022-4338
An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.
network
low complexity
openvswitch
debian
critical
9.8
9.8
2022-12-22
CVE-2022-41639
A heap based buffer overflow vulnerability exists in tile decoding code of TIFF image parser in OpenImageIO master-branch-9aeece7a and v2.3.19.0.
network
low complexity
openimageio
debian
critical
9.8
9.8
2022-12-22
CVE-2022-41649
A heap out of bounds read vulnerability exists in the handling of IPTC data while parsing TIFF images in OpenImageIO v2.3.19.0.
network
low complexity
openimageio
debian
critical
9.1
9.1
2022-12-22
CVE-2022-41794
A heap based buffer overflow vulnerability exists in the PSD thumbnail resource parsing code of OpenImageIO 2.3.19.0.
network
low complexity
openimageio
debian
critical
9.8
9.8
2022-12-22
CVE-2022-41837
An out-of-bounds write vulnerability exists in the OpenImageIO::add_exif_item_to_spec functionality of OpenImageIO Project OpenImageIO v2.4.4.2.
network
low complexity
openimageio
debian
critical
9.8
9.8
2022-12-22
CVE-2022-41838
A code execution vulnerability exists in the DDS scanline parsing functionality of OpenImageIO Project OpenImageIO v2.4.4.2.
network
low complexity
openimageio
debian
critical
9.8
9.8
2022-12-20
CVE-2022-47629
Integer Overflow or Wraparound vulnerability in multiple products
Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser.
network
low complexity
gnupg
debian
CWE-190
critical
9.8
9.8
2022-12-20
CVE-2022-23537
PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE.
network
low complexity
teluu
debian
critical
9.8
9.8
«
Previous
1
2
...
3
4
5
(current)
6
7
...
98
99
»
Next