Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-33222

When handling contactless cards, usage of a specific function to get additional information from the card which doesn’t check the boundary on the data received while reading. This allows a stack-based buffer overflow that could lead to a potential Remote Code Execution on the targeted device

CVE
#rce#pdf#buffer_overflow

%PDF-1.7 %���� 1 0 obj <>/Metadata 416 0 R/ViewerPreferences 417 0 R>> endobj 2 0 obj <> endobj 3 0 obj <> endobj 4 0 obj <>/ExtGState<>/Font<>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI] >>/MediaBox[ 0 0 595.32 841.92] /Contents 5 0 R/Group<>/Tabs/S/StructParents 0>> endobj 5 0 obj <> stream x��]]s�8�}OU�����1E|����rl’�[�����n��bӎ�ڒ#�������� %J"���IE���h�O 48��Ƿ��9�����|>���ݰ?������_�������n<��������o��N���_ث�c6xs�����/��|!M$�N"-�4i�,�i��Y����e��1��’��/_ ���̰�)�-ϐ�4҆IG

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907