Aggregator
CVE-2021-44224 | Apache HTTP Server up to 2.4.51 Proxy null pointer dereference (Nessus ID 276163 / WID-SEC-2022-0727)
1 hour 34 minutes ago
A vulnerability was found in Apache HTTP Server up to 2.4.51. It has been declared as problematic. Impacted is an unknown function of the component Proxy Handler. The manipulation results in null pointer dereference.
This vulnerability is cataloged as CVE-2021-44224. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-44224 | Oracle HTTP Server 12.2.1.3.0/12.2.1.4.0 SSL Module null pointer dereference (Nessus ID 276163 / WID-SEC-2022-0727)
1 hour 34 minutes ago
A vulnerability labeled as critical has been found in Oracle HTTP Server 12.2.1.3.0/12.2.1.4.0. Affected by this issue is some unknown functionality of the component SSL Module. The manipulation results in null pointer dereference.
This vulnerability is reported as CVE-2021-44224. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.
vuldb.com
CVE-2021-44224 | Apple macOS up to 12.3 Apache null pointer dereference (HT213257 / Nessus ID 276163)
1 hour 34 minutes ago
A vulnerability, which was classified as problematic, has been found in Apple macOS up to 12.3. This affects an unknown function of the component Apache. This manipulation causes null pointer dereference.
This vulnerability is handled as CVE-2021-44224. The attack can only be done within the local network. There is not any exploit available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2018-25032 | Oracle Outside In Technology 8.5.6 Outside In Filters denial of service (Nessus ID 236737 / WID-SEC-2022-0005)
1 hour 34 minutes ago
A vulnerability was found in Oracle Outside In Technology 8.5.6. It has been declared as critical. Impacted is an unknown function of the component Outside In Filters. Executing manipulation can lead to denial of service.
This vulnerability is handled as CVE-2018-25032. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2018-25032 | Oracle Database Server 19c/21c denial of service (Nessus ID 236737 / WID-SEC-2022-0005)
1 hour 34 minutes ago
A vulnerability classified as critical was found in Oracle Database Server 19c/21c. Affected by this vulnerability is an unknown functionality of the component Oracle Database. The manipulation results in denial of service.
This vulnerability is identified as CVE-2018-25032. The attack can be executed remotely. There is not any exploit available.
vuldb.com
CVE-2018-25032 | Oracle HTTP Server 12.2.1.4.0 Centralized Thirdparty Jars denial of service (Nessus ID 236737 / WID-SEC-2022-0005)
1 hour 34 minutes ago
A vulnerability, which was classified as critical, has been found in Oracle HTTP Server 12.2.1.4.0. Affected is an unknown function of the component Centralized Thirdparty Jars. The manipulation leads to denial of service.
This vulnerability is listed as CVE-2018-25032. The attack may be initiated remotely. There is no available exploit.
vuldb.com
CVE-2018-25032 | Oracle Siebel CRM up to 23.6 Siebel Core denial of service (Nessus ID 236737 / WID-SEC-2022-0005)
1 hour 34 minutes ago
A vulnerability classified as critical was found in Oracle Siebel CRM up to 23.6. Affected is an unknown function of the component Siebel Core. The manipulation results in denial of service.
This vulnerability was named CVE-2018-25032. The attack may be performed from remote. There is no available exploit.
vuldb.com
CVE-2022-32091 | MariaDB up to 10.7 sanitizer_common_interceptors.inc __interceptor_memset memory corruption (MDEV-26431/MDEV-23809 / Nessus ID 280094)
1 hour 34 minutes ago
A vulnerability, which was classified as critical, has been found in MariaDB up to 10.7. The affected element is the function __interceptor_memset in the library /libsanitizer/sanitizer_common/sanitizer_common_interceptors.inc. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2022-32091. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
To fix this issue, it is recommended to deploy a patch.
vuldb.com
CVE-2022-32084 | MariaDB up to 10.8 sub_select memory corruption (MDEV-26427 / Nessus ID 280094)
1 hour 34 minutes ago
A vulnerability was found in MariaDB up to 10.8. It has been classified as critical. Affected is the function sub_select. Performing manipulation results in memory corruption.
This vulnerability was named CVE-2022-32084. The attack needs to be approached within the local network. In addition, an exploit is available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2022-32089 | MariaDB up to 10.9 exclude_level denial of service (MDEV-26410/MDEV-22001 / WID-SEC-2022-0641)
1 hour 34 minutes ago
A vulnerability labeled as problematic has been found in MariaDB up to 10.9. This issue affects the function st_select_lex_unit::exclude_level. Such manipulation leads to denial of service.
This vulnerability is listed as CVE-2022-32089. The attack must be carried out from within the local network. In addition, an exploit is available.
It is advisable to implement a patch to correct this issue.
vuldb.com
CVE-2022-32082 | MariaDB 10.5/10.6/10.7.0 dict0dict.cc get_ref_count assertion (MDEV-26433 / Nessus ID 252498)
1 hour 34 minutes ago
A vulnerability has been found in MariaDB 10.5/10.6/10.7.0 and classified as problematic. This affects the function get_ref_count of the file dict0dict.cc. This manipulation causes reachable assertion.
This vulnerability is handled as CVE-2022-32082. The attack can only be done within the local network. Additionally, an exploit exists.
Applying a patch is the recommended action to fix this issue.
vuldb.com
CVE-2022-32088 | MariaDB up to 10.7 report_use/filesort memory corruption (MDEV-26419 / Nessus ID 236542)
1 hour 34 minutes ago
A vulnerability identified as critical has been detected in MariaDB up to 10.7. This vulnerability affects the function Exec_time_tracker::get_loops/Filesort_tracker::report_use/filesort. This manipulation causes memory corruption.
This vulnerability is tracked as CVE-2022-32088. The attack is only possible within the local network. Moreover, an exploit is present.
To fix this issue, it is recommended to deploy a patch.
vuldb.com
CVE-2022-32081 | MariaDB 10.4/10.5/10.6/10.7 handler0alter.cc prepare_inplace_add_virtual memory corruption (MDEV-26420 / WID-SEC-2022-0641)
1 hour 34 minutes ago
A vulnerability, which was classified as critical, was found in MariaDB 10.4/10.5/10.6/10.7. The impacted element is the function prepare_inplace_add_virtual of the file /storage/innobase/handler/handler0alter.cc. The manipulation results in memory corruption.
This vulnerability is known as CVE-2022-32081. Access to the local network is required for this attack. Furthermore, an exploit is available.
It is advisable to implement a patch to correct this issue.
vuldb.com
CVE-2022-38791 | MariaDB up to 10.9.1 ds_compress.cc compress_write deadlock (Nessus ID 280094 / WID-SEC-2022-1258)
1 hour 53 minutes ago
A vulnerability was found in MariaDB up to 10.9.1 and classified as problematic. Affected by this issue is the function compress_write of the file extra/mariabackup/ds_compress.cc. Such manipulation leads to deadlock.
This vulnerability is listed as CVE-2022-38791. The attack must be carried out locally. There is no available exploit.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2022-40674 | libexpat up to 2.4.8 xmlparse.c doContent use after free (DLA 3119-1 / Nessus ID 208595)
1 hour 53 minutes ago
A vulnerability labeled as critical has been found in libexpat up to 2.4.8. This vulnerability affects the function doContent of the file xmlparse.c. The manipulation results in use after free.
This vulnerability is identified as CVE-2022-40674. The attack can only be performed from the local network. There is not any exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2022-31629 | PHP up to 7.4.30/8.0.23/8.1.10 Cookie input validation (Bug 81727 / Nessus ID 211146)
1 hour 53 minutes ago
A vulnerability was found in PHP up to 7.4.30/8.0.23/8.1.10 and classified as problematic. The affected element is an unknown function of the component Cookie Handler. Executing manipulation can lead to improper input validation.
This vulnerability is registered as CVE-2022-31629. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2022-31629 | Oracle Communications Diameter Signaling Router 8.6.0.0 Platform input validation (Nessus ID 211146 / WID-SEC-2022-1567)
1 hour 53 minutes ago
A vulnerability labeled as critical has been found in Oracle Communications Diameter Signaling Router 8.6.0.0. Affected by this issue is some unknown functionality of the component Platform. Such manipulation leads to improper input validation.
This vulnerability is listed as CVE-2022-31629. The attack may be performed from remote. There is no available exploit.
vuldb.com
CVE-2022-37454 | eXtended Keccak Code Package Hash Update buffer overflow (EUVD-2023-1219 / Nessus ID 211307)
1 hour 53 minutes ago
A vulnerability classified as critical was found in eXtended Keccak Code Package. The affected element is an unknown function of the component Hash Update Handler. The manipulation results in buffer overflow.
This vulnerability is reported as CVE-2022-37454. The attack can be launched remotely. No exploit exists.
vuldb.com
CVE-2022-37454 | Oracle Communications Unified Assurance up to 5.5.9 User Interface integer overflow (EUVD-2023-1219 / Nessus ID 211307)
1 hour 53 minutes ago
A vulnerability has been found in Oracle Communications Unified Assurance up to 5.5.9 and classified as very critical. The affected element is an unknown function of the component User Interface. The manipulation leads to integer overflow.
This vulnerability is listed as CVE-2022-37454. The attack may be initiated remotely. There is no available exploit.
vuldb.com