2 results (0.005 seconds)

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 1

20 Jun 2023 — Buffer Overflow vulnerability in Antirez Kilo before commit 7709a04ae8520c5b04d261616098cebf742f5a23 allows a remote attacker to cause a denial of service via the editorUpdateRow function in kilo.c. • https://github.com/antirez/kilo/issues/60 • CWE-190: Integer Overflow or Wraparound •

CVSS: 6.8EPSS: 0%CPEs: 6EXPL: 0

19 Jun 2015 — OpenStack Cinder before 2014.1.5 (icehouse), 2014.2.x before 2014.2.4 (juno), and 2015.1.x before 2015.1.1 (kilo) allows remote authenticated users to read arbitrary files via a crafted qcow2 signature in an image to the upload-to-image command. OpenStack Cinder anterior a 2014.1.5 (icehouse), 2014.2.x anterior a 2014.2.4 (juno), y 2015.1.x anterior a 2015.1.1 (kilo) permite a usuarios remotos autenticados leer ficheros arbitrarios a través de una firma qcow2 manipulada en una imagen en el comando 'subir a ... • http://lists.openstack.org/pipermail/openstack-announce/2015-June/000367.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •