A vulnerability was found in spice-vdagentd up to 0.20. It has been declared as problematic. This vulnerability affects unknown code of the file /run/spice-vdagentd/spice-vdagent-sock of the component Unix Domain Socket Handler. The manipulation leads to allocation of resources.
This vulnerability was named CVE-2020-25652. It is possible to launch the attack on the local host. There is no exploit available.
A vulnerability classified as problematic was found in spice-vdagentd up to 0.20. This vulnerability affects unknown code of the file /run/spice-vdagentd/spice-vdagent-sock of the component File Transfer Handler. The manipulation leads to allocation of resources.
This vulnerability was named CVE-2020-25650. Attacking locally is a requirement. There is no exploit available.
A vulnerability was found in spice-vdagent up to 0.20. It has been classified as problematic. This affects an unknown part of the component File Transfer Handler. The manipulation leads to race condition.
This vulnerability is uniquely identified as CVE-2020-25651. The attack can only be initiated within the local network. There is no exploit available.
A vulnerability was found in multipath-tools up to 0.9.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /dev/shm of the component multipathd. The manipulation leads to symlink following.
This vulnerability is known as CVE-2022-41973. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in multipath-tools up to 0.9.1. It has been rated as critical. Affected by this issue is some unknown functionality of the component Unix Domain Socket Handler. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2022-41974. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as very critical has been found in Oracle Communications Messaging Server 8.1. This affects an unknown part of the component Security. The manipulation leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2021-43527. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as very critical was found in Oracle Communications User Data Repository 12.4.0. This vulnerability affects unknown code of the component Platform. The manipulation leads to out-of-bounds write.
This vulnerability was named CVE-2021-43527. The attack can be initiated remotely. There is no exploit available.
A vulnerability, which was classified as very critical, was found in Oracle JD Edwards EnterpriseOne Tools up to 9.2.6.3. Affected is an unknown function of the component Enterprise Infrastructure SEC. The manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2021-43527. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability has been found in Mozilla Network Security Services up to 3.68.0/3.72 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Signature Handler. The manipulation leads to heap-based buffer overflow.
This vulnerability is known as CVE-2021-43527. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Communications Cloud Native Core Binding Support Function 1.11.0. It has been declared as very critical. Affected by this vulnerability is an unknown functionality of the component BSF. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2021-43527. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Communications Cloud Native Core Network Repository Function 1.15.0/1.15.1 and classified as very critical. Affected by this issue is some unknown functionality of the component OCNRF. The manipulation leads to out-of-bounds write.
This vulnerability is handled as CVE-2021-43527. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Communications Cloud Native Core Network Slice Selection Function 1.8.0. It has been rated as very critical. This issue affects some unknown processing of the component NSSF. The manipulation leads to out-of-bounds write.
The identification of this vulnerability is CVE-2021-43527. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Oracle Communications Policy Management 12.6.0.0.0 and classified as very critical. Affected by this vulnerability is an unknown functionality of the component CMP. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2021-43527. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Flatpak up to 1.10.3/1.11.x and classified as critical. This issue affects some unknown processing of the file /.flatpak-info of the component seccomp Filter Handler. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2021-41133. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
Some of the suspects allegedly “cold-called victims and used social engineering to convince them their accounts were the subject of cyberattacks and the enterprise callers were attempting to help secure their accounts,” according to the DOJ.