Vulnerability Disclosure
Number | Title | Date | |
---|---|---|---|
CVE-2024-30085 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | Jun 11, 2024 | |
CVE-2024-20880 | Stack-based buffer overflow vulnerability in bootloader | Jun 04, 2024 | |
CVE-2024-20882 | Out-of-bounds read vulnerability in bootloader | Jun 04, 2024 | |
CVE-2024-30033 | Windows Search Service Elevation of Privilege Vulnerability | May 14, 2024 | |
CVE-2024-22267 | VMware Workstation and Fusion vbluetooth use-after-free vulnerability | May 14, 2024 | |
CVE-2024-22270 | VMware Workstation and Fusion HGFS information disclosure vulnerability | May 14, 2024 | |
CVE-2024-26924 | Linux Kernel netfilter: nft_set_pipapo: do not free live element | Apr 25, 2024 | |
CVE-2024-26643 | Linux Kernel nf_tables: mark set as dead when unbinding anonymous set with timeout | Mar 21, 2024 | |
CVE-2023-52620 | Linux kernel nf_tables: disallow timeout for anonymous sets | Mar 21, 2024 | |
CVE-2023-51779 | Linux kernel bluetooth socket UAF | Feb 28, 2024 | |
CVE-2023-51780 | Linux kernel atm socket UAF | Jan 11, 2024 | |
CVE-2023-51782 | Linux kernel rose socket UAF | Jan 11, 2024 | |
CVE-2023-51781 | Linux kernel appletalk socket UAF | Jan 11, 2024 | |
CVE-2024-0193 | Linux Kernel nf_tables: skip set commit for deleted/destroyed sets | Jan 02, 2024 | |
CVE-2023-34044 | Vmware WorkStation Uninitialized Variable Information Leak | Oct 20, 2023 | |
CVE-2023-5197 | Linux Kernel nftables immediate deactivate UAF | Sep 27, 2023 | |
CVE-2023-40406 | Apple ColorSync Arbitrary File Read | Sep 27, 2023 | |
CVE-2023-4015 | Linux Kernel nftables immediate deactivate UAF | Sep 06, 2023 | |
CVE-2023-3777 | Linux Kernel nftables delrule UAF | Sep 06, 2023 | |
CVE-2023-32426 | An app may be able to gain root privileges in macOS | Sep 05, 2023 | |
CVE-2023-4147 | Linux Kernel nftables newrule UAF | Aug 07, 2023 | |
CVE-2023-4073 | Google Chrome ANGLE Out-of-Bounds Read Vulnerability | Aug 02, 2023 | |
CVE-2023-3609 | Linux Kernel u32 Classifier UAF | Jul 21, 2023 | |
CVE-2023-35320 | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability | Jul 11, 2023 | |
CVE-2023-32050 | Windows Installer Elevation of Privilege Vulnerability | Jul 11, 2023 | |
CVE-2023-31248 | Ubuntu Desktop Elevation of Privilege | Jul 05, 2023 | |
CVE-2022-35757 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | May 31, 2023 | |
CVE-2023-2929 | Out of bounds write in Swiftshader in Google Chrome | May 30, 2023 | |
CVE-2023-27955 | An app may be able to read arbitrary files | May 08, 2023 | |
CVE-2023-32269 | there is a use-after-free because accept is also allowed for a successfully connected AF_NETROM socket | May 05, 2023 | |
CVE-2023-31436 | qfq_change_class in net/sched/sch_qfq.c in the Linux kernel before 6.2.13 allows an out-of-bounds write because lmax can exceed QFQ_MIN_LMAX. | Apr 27, 2023 | |
CVE-2023-28218 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability | Apr 11, 2023 | |
CVE-2022-42432 | This vulnerability allows local attackers to disclose sensitive information on affected installations of the Linux Kernel 6.0-rc2 | Mar 29, 2023 | |
ZDI-CAN-20717(Pwn2Own) | UAF against Ubuntu Desktop | Mar 24, 2023 | |
CVE-2023-1213 | Use after free in Swiftshader in Google Chrome | Mar 07, 2023 | |
CVE-2023-1095 | In nf_tables_updtable, if nf_tables_table_enable returns an error, nft_trans_destroy is called to free the transaction object. | Feb 28, 2023 | |
CVE-2023-21760 | Windows Print Spooler Elevation of Privilege Vulnerability | Jan 10, 2023 | |
CVE-2023-21542 | Windows Installer Elevation of Privilege Vulnerability | Jan 10, 2023 | |
CVE-2022-4191 | Use after free in Sign-In in Google Chrome prior to 108.0.5359. | Nov 29, 2022 | |
CVE-2022-45919 | An issue was discovered in the Linux kernel through 6.0.10. | Nov 26, 2022 | |
CVE-2022-26717 | A use after free issue was addressed with improved memory management | Nov 01, 2022 | |
CVE-2022-3586 | A flaw was found in the Linux kernel’s networking code | Oct 19, 2022 | |
CVE-2022-38021 | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability. | Oct 11, 2022 | |
CVE-2022-3435 | A vulnerability classified as problematic has been found in Linux Kernel. | Oct 08, 2022 | |
CVE-2022-32912 | An out-of-bounds read was addressed with improved bounds checking | Sep 20, 2022 | |
CVE-2022-39190 | An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel before 5.19.6 | Sep 02, 2022 | |
CVE-2022-33649 | Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability | Aug 05, 2022 | |
CVE-2022-1479 | Use after free in ANGLE in Google Chrome | Jul 26, 2022 | |
CVE-2022-22041 | Windows Print Spooler Elevation of Privilege Vulnerability | Jul 12, 2022 | |
CVE-2022-30162 | Windows Kernel Information Disclosure Vulnerability. | Jun 15, 2022 | |
CVE-2022-26722 | A memory initialization issue was addressed. | May 26, 2022 | |
CVE-2022-26748 | An out-of-bounds write issue was addressed with improved input validation | May 26, 2022 | |
CVE-2022-26721 | A memory initialization issue was addressed. | May 26, 2022 | |
CVE-2022-24479 | Connected User Experiences and Telemetry Elevation of Privilege Vulnerability. | Apr 12, 2022 | |
CVE-2022-24499 | Windows Installer Elevation of Privilege Vulnerability | Apr 12, 2022 | |
CVE-2022-0792 | Out of bounds read in ANGLE in Google Chrome | Apr 04, 2022 | |
CVE-2022-23284 | Windows Print Spooler Elevation of Privilege Vulnerability. | Mar 09, 2022 | |
CVE-2021-4066 | Integer underflow in ANGLE in Google Chrome | Dec 22, 2021 | |
CVE-2021-38012 | Type confusion in V8 in Google Chrome | Dec 22, 2021 | |
CVE-2021-43231 | Windows NTFS Elevation of Privilege Vulnerability | Dec 15, 2021 | |
CVE-2021-43226 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | Dec 15, 2021 | |
CVE-2021-43207 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | Dec 15, 2021 | |
CVE-2021-41370 | NTFS Elevation of Privilege Vulnerability | Nov 09, 2021 | |
CVE-2021-37980 | Inappropriate implementation in Sandbox in Google Chrome | Nov 02, 2021 | |
CVE-2021-30628 | Stack buffer overflow in ANGLE in Google Chrome | Oct 08, 2021 | |
CVE-2021-30626 | Out of bounds memory access in ANGLE in Google Chrome | Oct 08, 2021 | |
CVE-2021-30743 | An out-of-bounds write was addressed with improved input validation | Sep 08, 2021 | |
CVE-2021-31961 | Windows InstallService Elevation of Privilege Vulnerability | Jul 14, 2021 | |
CVE-2021-31187 | Windows WalletService Elevation of Privilege Vulnerability | May 11, 2021 | |
ZDI-CAN-13246 | Parallels Desktop virtio-net Memory Corruption Privilege Escalation Vulnerability | Mar 24, 2021 | |
CVE-2021-26880 | Storage Spaces Controller Elevation of Privilege Vulnerability | Mar 09, 2021 | |
CVE-2021-1640 | Windows Print Spooler Elevation of Privilege Vulnerability | Mar 09, 2021 | |
CVE-2021-26900 | Windows Win32k Elevation of Privilege Vulnerability | Mar 09, 2021 | |
CVE-2021-27965 | Buffer overflow that allows privilege escalation via a crafted 0x80102040, 0x80102044, 0x80102050, or 0x80102054 IOCTL request. | Mar 04, 2021 | |
CVE-2021-1685 | Windows AppX Deployment Extensions Elevation of Privilege Vulnerability | Jan 12, 2021 | |
CVE-2021-1695 | Windows Print Spooler Elevation of Privilege Vulnerability | Jan 12, 2021 | |
CVE-2021-1697 | Windows InstallService Elevation of Privilege Vulnerability | Jan 12, 2021 | |
CVE-2020-10007 | A malicious application may be able to determine kernel memory layout. | Dec 08, 2020 | |
CVE-2020-17042 | Windows Print Spooler Remote Code Execution Vulnerability | Nov 10, 2020 | |
CVE-2020-17041 | Windows Print Configuration Elevation of Privilege Vulnerability | Nov 10, 2020 | |
CVE-2020-17024 | Windows Client Side Rendering Print Provider Elevation of Privilege Vulnerability | Nov 10, 2020 | |
CVE-2020-17014 | Windows Print Spooler Elevation of Privilege Vulnerability | Nov 10, 2020 | |
CVE-2020-17010 | Win32k Elevation of Privilege Vulnerability | Nov 10, 2020 | |
CVE-2020-16005 | Insufficient policy enforcement in ANGLE in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | Nov 02, 2020 | |
CVE-2020-27675 | drivers/xen/events/events_base.c allows event-channel removal during the event-handling loop (a race condition). | Oct 22, 2020 | |
CVE-2020-16919 | Windows Enterprise App Management Service Information Disclosure Vulnerability | Oct 13, 2020 | |
CVE-2020-25773 | A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to execute arbitrary code on affected products | Sep 28, 2020 | |
CVE-2020-6545 | Use after free in audio in Google Chrom allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | Sep 21, 2020 | |
CVE-2020-17402 | Allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.4 (47270) | Aug 25, 2020 | |
CVE-2020-7822 | Heap-based overflow vulnerability, triggered when the user opens a malformed image file that is mishandled by Daview.exe | Aug 04, 2020 | |
CVE-2020-7823 | Memory corruption vulnerability, triggered when the user opens a malformed image file that is mishandled by Daview.exe. | Aug 04, 2020 | |
CVE-2020-7827 | Use-After-Free vulnerability, triggered when the user opens a malformed specific file that is mishandled by Daview.exe | Jul 30, 2020 | |
CVE-2020-7829 | Heap-based overflow vulnerability, triggered when the user opens a malformed specific file that is mishandled by Daview.exe. | Jul 30, 2020 | |
CVE-2020-7828 | Heap-based overflow vulnerability, triggered when the user opens a malformed specific file that is mishandled by Daview.exe. | Jul 30, 2020 | |
CVE-2020-6534 | Heap buffer overflow in WebRTC in Google Chrome allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | Jul 22, 2020 | |
CVE-2020-7818 | Heap-based overflow vulnerability, triggered when the user opens a malformed PDF file that is mishandled by Daview.exe | Jul 17, 2020 | |
CVE-2020-1405 | Windows Mobile Device Management Diagnostics Elevation of Privilege Vulnerability | Jul 14, 2020 | |
CVE-2020-1330 | Windows Mobile Device Management Diagnostics Information Disclosure Vulnerability | Jul 14, 2020 | |
CVE-2020-9801 | A malicious process may cause Safari to launch an application. | Jun 09, 2020 | |
CVE-2020-9850 | A remote attacker may be able to cause arbitrary code execution. | Jun 09, 2020 | |
CVE-2020-9839 | An application may be able to gain elevated privileges. (iOS, iPadOS, macOS, tvOS, watchOS) | Jun 09, 2020 | |
CVE-2020-9856 | An application may be able to gain elevated privileges. (Apple macOS) | Jun 09, 2020 | |
CVE-2020-1081 | Windows Printer Service Elevation of Privilege Vulnerability | May 12, 2020 | |
CVE-2020-1078 | Windows Installer Elevation of Privilege Vulnerability | May 12, 2020 | |
CVE-2020-1154 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | May 12, 2020 | |
CVE-2020-3839 | An application may be able to read restricted memory. | Feb 27, 2020 |