Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
HAProxy Community Edition 3
websocket-driver: Message corruption via abuse of protocol length headers
Zeroconf: Unvalidated rdlength in record payload readers allows LAN-local cache corruption via crafted mDNS packet
Improper Handling of Length Parameter Inconsistency (CWE-130) vulnerability exists in TTSSH2 plugin of Tera Term provided by TeraTerm Project
Envoy: PROXY Protocol v2 header generator emits "skipped" TLVs, causing 65 KB attacker-controlled spillover into the upstream application stream
Improper bounds validation in EmberZNet SDK
OpenTelemetry eBPF Instrumentation: CPU-mismatch fallback uses 256-byte buffer with 8KB size
mouse07410/asn1c: 1-byte Heap Out-of-Bounds Read in `INTEGER_decode_oer` via Malformed OER Payload
Potential denial-of-service vulnerability in ASGI requests via file upload limit bypass
Gnutls: gnutls: denial of service via heap buffer overflow in dtls handshake fragment reassembly
Heap overflow in libnv
An improper handling of the length parameter inconsistency vulnerability has been identified in Moxa’s Secure Router
rust-openssl: Unchecked callback-returned length in PSK and cookie generate trampolines can cause OpenSSL to leak adjacent memory to the network peer
Ovn: ovn: heap over-read in icmp error response generation
Ovn: ovn: information disclosure via crafted dhcpv6 packets
In rsync 3
An issue was discovered in HAProxy before 3
Net::CIDR::Lite versions before 0.23 for Perl mishandles IPv4 mapped IPv6 addresses, which may allow IP ACL bypass
Rack: Content-Length mismatch in Rack::Files error responses
python-ecdsa: Denial of Service via improper DER length validation in crafted private keys
Showing 1 - 20 of 1,000+ results