Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2023-42756 |
A flaw was found in the Netfilter subsystem of the Linux kernel. A race condition between IPSET_CMD_ADD and IPSET_CMD_SWAP can lead to a kernel panic due to the invocation of `__ip_set_put` on a wrong `set`. This issue may allow a local user to crash the system. Published: September 28, 2023; 10:15:21 AM -0400 |
V3.1: 4.7 MEDIUM V2.0:(not available) |
CVE-2023-44207 |
Stored cross-site scripting (XSS) vulnerability in protection plan name. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:39 AM -0400 |
V3.1: 5.4 MEDIUM V2.0:(not available) |
CVE-2023-44206 |
Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:39 AM -0400 |
V3.1: 9.1 CRITICAL V2.0:(not available) |
CVE-2023-44205 |
Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:39 AM -0400 |
V3.1: 5.3 MEDIUM V2.0:(not available) |
CVE-2023-44161 |
Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:38 AM -0400 |
V3.1: 6.5 MEDIUM V2.0:(not available) |
CVE-2023-44160 |
Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:38 AM -0400 |
V3.1: 6.5 MEDIUM V2.0:(not available) |
CVE-2023-44159 |
Sensitive information disclosure due to cleartext storage of sensitive information. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:38 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-44158 |
Sensitive information disclosure due to insufficient token field masking. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:37 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-44156 |
Sensitive information disclosure due to spell-jacking. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:37 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-44155 |
Sensitive information leak through log files. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:37 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-44154 |
Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979. Published: September 27, 2023; 11:19:37 AM -0400 |
V3.1: 8.1 HIGH V2.0:(not available) |
CVE-2023-44153 |
Sensitive information disclosure due to cleartext storage of sensitive information in memory. The following products are affected: Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979. Published: September 27, 2023; 11:19:37 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-44152 |
Sensitive information disclosure and manipulation due to improper authentication. The following products are affected: Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979. Published: September 27, 2023; 11:19:37 AM -0400 |
V3.1: 9.1 CRITICAL V2.0:(not available) |
CVE-2023-42753 |
An array indexing vulnerability was found in the netfilter subsystem of the Linux kernel. A missing macro could lead to a miscalculation of the `h->nets` array offset, providing attackers with the primitive to arbitrarily increment/decrement a memory buffer out-of-bound. This issue may allow a local user to crash the system or potentially escalate their privileges on the system. Published: September 25, 2023; 5:15:15 PM -0400 |
V3.1: 7.8 HIGH V2.0:(not available) |
CVE-2023-5158 |
A flaw was found in vringh_kiov_advance in drivers/vhost/vringh.c in the host side of a virtio ring in the Linux Kernel. This issue may result in a denial of service from guest to host via zero length descriptor. Published: September 25, 2023; 12:15:15 PM -0400 |
V3.1: 5.5 MEDIUM V2.0:(not available) |
CVE-2023-43767 |
Certain WithSecure products allow Denial of Service via the aepack archive unpack handler. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1. Published: September 22, 2023; 1:15:09 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-43766 |
Certain WithSecure products allow Local privilege escalation via the lhz archive unpack handler. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1. Published: September 22, 2023; 1:15:09 AM -0400 |
V3.1: 7.8 HIGH V2.0:(not available) |
CVE-2023-43765 |
Certain WithSecure products allow Denial of Service in the aeelf component. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1. Published: September 22, 2023; 1:15:09 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-43761 |
Certain WithSecure products allow Denial of Service (infinite loop). This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1. Published: September 22, 2023; 1:15:09 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2023-43760 |
Certain WithSecure products allow Denial of Service via a fuzzed PE32 file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements Endpoint Protection for Mac 17 and later, Linux Security 64 12.0 , Linux Protection 12.0, and WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1. Published: September 22, 2023; 1:15:09 AM -0400 |
V3.1: 7.5 HIGH V2.0:(not available) |