DE EN FR
hlukh.ch MàJ : 2026-02-26T18:02:00.643Z · week: 2023-W50

Alertes de sécurité

Sélectionnées à partir d'avis publics. Objectif : visibilité, contexte et export rapide — sans clickbait.

Alertes récentes
CVE-2022-26592
<vuln:Note Title="Mariner" Type="Tag" Ordinal="20">Mariner
2026‑02‑20 · CVE-2022-26592
MSRC 2026‑02‑20 Élevée
CVE-2023-51781
An issue was discovered in the Linux kernel before 6.6.8. atalk_ioctl in net/appletalk/ddp.c has a use-after-free because of an atalk_recvmsg race condition.
2026‑02‑20 · CVE-2023-51781
MSRC 2026‑02‑20 Élevée
CVE-2023-51780
An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in net/atm/ioctl.c has a use-after-free because of a vcc_recvmsg race condition.
2026‑02‑20 · CVE-2023-51780
MSRC 2026‑02‑20 Élevée
CVE-2023-51782
An issue was discovered in the Linux kernel before 6.6.8. rose_ioctl in net/rose/af_rose.c has a use-after-free because of a rose_accept race condition.
2026‑02‑20 · CVE-2023-51782
MSRC 2026‑02‑20 Élevée
CVE-2023-35624
Azure Connected Machine Agent Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-35624
MSRC 2026‑02‑20 Élevée
CVE-2023-45287
Before Go 1.20, the RSA based key exchange methods in crypto/tls may exhibit a timing side channel
2026‑02‑20 · CVE-2023-45287
MSRC 2026‑02‑20 Élevée
CVE-2023-50471
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c.
2026‑02‑20 · CVE-2023-50471
MSRC 2026‑02‑20 Élevée
CVE-2023-50472
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.
2026‑02‑20 · CVE-2023-50472
MSRC 2026‑02‑20 Élevée
CVE-2023-45285
Command 'go get' may unexpectedly fallback to insecure git in cmd/go
2026‑02‑20 · CVE-2023-45285
MSRC 2026‑02‑20 Élevée
CVE-2023-35638
DHCP Server Service Denial of Service Vulnerability
2026‑02‑20 · CVE-2023-35638
MSRC 2026‑02‑20 Élevée
CVE-2023-35643
DHCP Server Service Information Disclosure Vulnerability
2026‑02‑20 · CVE-2023-35643
MSRC 2026‑02‑20 Élevée
CVE-2023-35641
Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2023-35641
MSRC 2026‑02‑20 Élevée
CVE-2023-35630
Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2023-35630
MSRC 2026‑02‑20 Élevée
CVE-2023-6546
Kernel: gsm multiplexing race condition leads to privilege escalation
2026‑02‑20 · CVE-2023-6546
MSRC 2026‑02‑20 Élevée
CVE-2023-36391
Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-36391
MSRC 2026‑02‑20 Élevée
CVE-2023-6864
Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR &lt; 115.6, Thunderbird &lt; 115.6, and Firefox &lt; 121.
2026‑02‑20 · CVE-2023-6864
MSRC 2026‑02‑20 Élevée
CVE-2023-36010
Microsoft Defender Denial of Service Vulnerability
2026‑02‑20 · CVE-2023-36010
MSRC 2026‑02‑20 Élevée
CVE-2023-36020
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
2026‑02‑20 · CVE-2023-36020
MSRC 2026‑02‑20 Élevée
CVE-2023-35621
Microsoft Dynamics 365 Finance and Operations Denial of Service Vulnerability
2026‑02‑20 · CVE-2023-35621
MSRC 2026‑02‑20 Élevée
CVE-2023-35639
Microsoft ODBC Driver Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2023-35639
MSRC 2026‑02‑20 Élevée
CVE-2023-36006
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2023-36006
MSRC 2026‑02‑20 Élevée
CVE-2023-6931
Out-of-bounds write in Linux kernel's Performance Events system component
2026‑02‑20 · CVE-2023-6931
MSRC 2026‑02‑20 Élevée
CVE-2023-5869
Postgresql: buffer overrun from integer overflow in array modification
2026‑02‑20 · CVE-2023-5869
MSRC 2026‑02‑20 Élevée
CVE-2023-7104
SQLite SQLite3 make alltest sqlite3session.c sessionReadRecord heap-based overflow
2026‑02‑20 · CVE-2023-7104
MSRC 2026‑02‑20 Élevée
CVE-2023-42465
Sudo before 1.9.15 might allow row hammer attacks (for authentication bypass or privilege escalation) because application logic sometimes is based on not equaling an error value (instead of equaling a success value) and because the values do not resist flips of a single bit.
2026‑02‑20 · CVE-2023-42465
MSRC 2026‑02‑20 Élevée
CVE-2023-50658
The jose2go component before 1.6.0 for Go allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.
2026‑02‑20 · CVE-2023-50658
MSRC 2026‑02‑20 Élevée
CVE-2023-6856
The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could allow an attacker to perform remote code execution and sandbox escape. This vulnerability affects Firefox ESR &lt; 115.6, Thunderbird &lt; 115.6, and Firefox &lt; 121.
2026‑02‑20 · CVE-2023-6856
MSRC 2026‑02‑20 Élevée
CVE-2023-36011
Win32k Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-36011
MSRC 2026‑02‑20 Élevée
CVE-2023-35631
Win32k Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-35631
MSRC 2026‑02‑20 Élevée
CVE-2023-35632
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-35632
MSRC 2026‑02‑20 Élevée
CVE-2023-35634
Windows Bluetooth Driver Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2023-35634
MSRC 2026‑02‑20 Élevée
CVE-2023-36696
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-36696
MSRC 2026‑02‑20 Élevée
CVE-2023-35622
Windows DNS Spoofing Vulnerability
2026‑02‑20 · CVE-2023-35622
MSRC 2026‑02‑20 Élevée
CVE-2023-36004
Windows DPAPI (Data Protection Application Programming Interface) Spoofing Vulnerability
2026‑02‑20 · CVE-2023-36004
MSRC 2026‑02‑20 Élevée
CVE-2023-35633
Windows Kernel Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-35633
MSRC 2026‑02‑20 Élevée
CVE-2023-21740
Windows Media Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2023-21740
MSRC 2026‑02‑20 Élevée
CVE-2023-35628
Windows MSHTML Platform Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2023-35628
MSRC 2026‑02‑20 Élevée
CVE-2023-35644
Windows Sysmain Service Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-35644
MSRC 2026‑02‑20 Élevée
CVE-2023-36005
Windows Telephony Server Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2023-36005
MSRC 2026‑02‑20 Élevée
CVE-2023-6478
Xorg-x11-server: out-of-bounds memory read in rrchangeoutputproperty and rrchangeproviderproperty
2026‑02‑20 · CVE-2023-6478
MSRC 2026‑02‑20 Élevée
CVE-2023-6377
Xorg-x11-server: out-of-bounds memory reads/writes in xkb button actions
2026‑02‑20 · CVE-2023-6377
MSRC 2026‑02‑20 Élevée
CVE-2023-6448
Unitronics Vision PLC and HMI Insecure Default Password Vulnerability
2023‑12‑11 · CVE-2023-6448
CISA-KEV 2023‑12‑11 Élevée
Page 1