Vulnerabilities (CVE)

Filtered by CWE-696
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-48965 1 Arm 1 Mbed Tls 2025-08-07 N/A 7.5 HIGH
Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL but val.len greater than zero.
CVE-2021-47688 2025-06-23 N/A N/A
In WhiteBeam 0.2.0 through 0.2.1 before 0.2.2, a user with local access to a server can bypass the allow-list functionality because a file can be truncated in the OpenFileDescriptor action before the VerifyCanWrite action is performed.
CVE-2025-20012 2025-05-13 N/A N/A
Incorrect behavior order for some Intel(R) Coreā„¢ Ultra Processors may allow an unauthenticated user to potentially enable information disclosure via physical access.
CVE-2023-44386 1 Vapor 1 Vapor 2023-10-11 N/A 5.3 MEDIUM
Vapor is an HTTP web framework for Swift. There is a denial of service vulnerability impacting all users of affected versions of Vapor. The HTTP1 error handler closed connections when HTTP parse errors occur instead of passing them on. The issue is fixed as of Vapor release 4.84.2.