Skip to main content

CWE archive

CWE-131 CVEs

Programmatic archive

206 CVEs tagged with CWE-13133 Critical, 91 High, 67 Medium, 15 Low, 0 Unrated.

CVE-2023-30575

Published Jun 7, 2023

Apache Guacamole 1.5.1 and older may incorrectly calculate the lengths of instruction elements sent during the Guacamole protocol handshake, potentially allowing an attacker to in…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-24819

Published Apr 24, 2023

RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to process 6LoWPAN frames. Prior to version 2022.10, an attacker c…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-1175

Published Mar 4, 2023

Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378.

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0568

Published Feb 16, 2023

In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, core path resolution function allocate buffer one byte too small. When resolving paths with lengths close t…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-4378

Published Jan 5, 2023

A stack overflow flaw was found in the Linux kernel's SYSCTL subsystem in how a user changes certain kernel parameters and variables. This flaw allows a local user to crash or pot…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-41907

Published Nov 18, 2022

TensorFlow is an open source platform for machine learning. When `tf.raw_ops.ResizeNearestNeighborGrad` is given a large `size` input, it overflows. We have patched the issue in G…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-41887

Published Nov 18, 2022

TensorFlow is an open source platform for machine learning. `tf.keras.losses.poisson` receives a `y_pred` and `y_true` that are passed through `functor::mul` in `BinaryOp`. If the…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-41886

Published Nov 18, 2022

TensorFlow is an open source platform for machine learning. When `tf.raw_ops.ImageProjectiveTransformV2` is given a large output shape, it overflows. We have patched the issue in…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-41885

Published Nov 18, 2022

TensorFlow is an open source platform for machine learning. When `tf.raw_ops.FusedResizeAndPadConv2D` is given a large tensor shape, it overflows. We have patched the issue in Git…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-31630

Published Nov 14, 2022

In PHP versions prior to 7.4.33, 8.0.25 and 8.1.12, when using imageloadfont() function in gd extension, it is possible to supply a specially crafted font file, such as if the loa…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-43945

Published Nov 4, 2022

The Linux kernel NFSD implementation prior to versions 5.19.17 and 6.0.2 are vulnerable to buffer overflow. NFSD tracks the number of pages held by each NFSD thread by combining t…

CVSS 7.5 · High
Showing 101-125 of 206 CVEsPage 5 of 9