Vulnerabilities (CVE)

Filtered by CWE-229
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-0607 3 Fedoraproject, Linux, Redhat 3 Fedora, Linux Kernel, Enterprise Linux 2024-01-26 N/A 6.6 MEDIUM
A flaw was found in the Netfilter subsystem in the Linux kernel. The issue is in the nft_byteorder_eval() function, where the code iterates through a loop and writes to the `dst` array. On each iteration, 8 bytes are written, but `dst` is an array of u32, so each element only has space for 4 bytes. That means every iteration overwrites part of the previous element corrupting this array of u32. This flaw allows a local user to cause a denial of service or potentially break NetFilter functionality.
CVE-2022-4851 1 Usememos 1 Memos 2023-12-10 N/A 5.3 MEDIUM
Improper Handling of Values in GitHub repository usememos/memos prior to 0.9.1.