
CVE-2023-4752 – Use After Free in vim/vim
https://notcve.org/view.php?id=CVE-2023-4752
04 Sep 2023 — Use After Free in GitHub repository vim/vim prior to 9.0.1858. Use After Free en el repositorio de GitHub vim/vim anterior a 9.0.1858. A flaw was found in Vim, where it is vulnerable to a use-after-free in the ins_compl_get_exp function. This flaw allows a specially crafted file to crash software, use unexpected values, or possibly execute code when opened in Vim. An update for vim is now available for Red Hat Enterprise Linux 9. • http://seclists.org/fulldisclosure/2023/Oct/24 • CWE-416: Use After Free •

CVE-2023-4734 – Integer Overflow or Wraparound in vim/vim
https://notcve.org/view.php?id=CVE-2023-4734
02 Sep 2023 — Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1846. Un Desbordamiento de Enteros o Wraparound en el repositorio de GitHub vim/vim version anterior a 9.0.1846. It was discovered that Vim could be made to divide by zero. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 23.04. • http://seclists.org/fulldisclosure/2023/Oct/24 • CWE-190: Integer Overflow or Wraparound •

CVE-2020-36615
https://notcve.org/view.php?id=CVE-2020-36615
14 Aug 2023 — An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.0.1. Processing a maliciously crafted font may lead to arbitrary code execution. Se ha solucionado un problema de lectura fuera de los límites mejorando la comprobación de límites. Este problema se ha corregido en macOS Big Sur 11.0.1. • https://support.apple.com/en-us/HT211931 • CWE-125: Out-of-bounds Read •

CVE-2022-46706
https://notcve.org/view.php?id=CVE-2022-46706
14 Aug 2023 — A type confusion issue was addressed with improved state handling. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. An application may be able to execute arbitrary code with kernel privileges. Se ha solucionado un problema de confusión de tipos mejorando la gestión de estados. Este problema se ha corregido en la actualización de seguridad 2022-003 Catalina, macOS Monterey 12.3 y macOS Big Sur 11.6.5. • https://support.apple.com/en-us/HT213183 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •

CVE-2022-32876
https://notcve.org/view.php?id=CVE-2022-32876
14 Aug 2023 — A logic issue was addressed with improved restrictions. This issue is fixed in macOS Ventura 13. A shortcut may be able to view the hidden photos album without authentication. Se ha solucionado un problema de lógica mejorando las restricciones. Este problema se ha solucionado en macOS Ventura 13. • https://support.apple.com/en-us/HT213488 •

CVE-2022-42828
https://notcve.org/view.php?id=CVE-2022-42828
14 Aug 2023 — The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13. An app may be able to execute arbitrary code with kernel privileges. El problema se solucionó mejorando la gestión de la memoria. Este problema se ha solucionado en macOS Ventura 13. • https://support.apple.com/en-us/HT213488 •

CVE-2022-26699
https://notcve.org/view.php?id=CVE-2022-26699
14 Aug 2023 — A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13. An app may be able to cause a denial-of-service to Endpoint Security clients. Se ha solucionado un problema lógico mejorando la gestión de estados. Este problema se ha solucionado en macOS Ventura 13. • https://support.apple.com/en-us/HT213488 •

CVE-2022-46722
https://notcve.org/view.php?id=CVE-2022-46722
14 Aug 2023 — A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13. An app may be able to modify protected parts of the file system. Se ha solucionado un problema lógico con comprobaciones mejoradas. Este problema se ha solucionado en macOS Ventura 13. • https://support.apple.com/en-us/HT213488 •

CVE-2023-4073 – Gentoo Linux Security Advisory 202311-11
https://notcve.org/view.php?id=CVE-2023-4073
03 Aug 2023 — Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 115.0.5790.170 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Multiple vulnerabilities have been discovered in Chromium and its derivatives, the worst of which can lead to remote code execution. Versions greater than or equal to 120.0.6099.109 are affected. • https://chromereleases.googleblog.com/2023/08/stable-channel-update-for-desktop.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2023-37285
https://notcve.org/view.php?id=CVE-2023-37285
28 Jul 2023 — An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 15.7.8 and iPadOS 15.7.8, macOS Big Sur 11.7.9, macOS Monterey 12.6.8, macOS Ventura 13.5. An app may be able to execute arbitrary code with kernel privileges. • https://support.apple.com/en-us/HT213842 • CWE-125: Out-of-bounds Read •