CVE-2024-1305
https://notcve.org/view.php?id=CVE-2024-1305
tap-windows6 driver version 9.26 and earlier does not properly check the size data of incomming write operations which an attacker can use to overflow memory buffers, resulting in a bug check and potentially arbitrary code execution in kernel space La versión 9.26 y anteriores del controlador tap-windows6 no verifica correctamente los datos de tamaño de las operaciones de escritura entrantes que un atacante puede usar para desbordar los búfers de memoria, lo que resulta en una verificación de errores y la ejecución de código potencialmente arbitrario en el espacio del kernel. • https://community.openvpn.net/openvpn/wiki/CVE-2024-1305 https://www.mail-archive.com/openvpn-users@lists.sourceforge.net/msg07534.html • CWE-190: Integer Overflow or Wraparound •
CVE-2024-21778
https://notcve.org/view.php?id=CVE-2024-21778
A specially crafted .dat file can lead to arbitrary code execution. • https://talosintelligence.com/vulnerability_reports/TALOS-2024-1911 • CWE-122: Heap-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2023-49073
https://notcve.org/view.php?id=CVE-2023-49073
A specially crafted series of HTTP requests can lead to arbitrary code execution. • https://talosintelligence.com/vulnerability_reports/TALOS-2023-1875 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2023-48270
https://notcve.org/view.php?id=CVE-2023-48270
A specially crafted series of network requests can lead to arbitrary code execution. • https://talosintelligence.com/vulnerability_reports/TALOS-2023-1876 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •
CVE-2023-45742
https://notcve.org/view.php?id=CVE-2023-45742
A specially crafted series of HTTP requests can lead to arbitrary code execution. • https://talosintelligence.com/vulnerability_reports/TALOS-2023-1877 • CWE-190: Integer Overflow or Wraparound •