| Fermium ID | CVE Number | Title | Remarks |
|---|---|---|---|
| FM-2022-0059 | CVE-2022-42432 | Linux Kernel nftables Uninitialized Variable Information Disclosure Vulnerability | |
| FM-2022-0064 | CVE-2022-38050 | Microsoft Windows Windows Desktop Manager CInjectionAnimation Heap Overflow Vulnerability | |
| FM-2022-0076 | CVE-2022-41128 | Microsoft Jscript9 JIT OptArraySrc Type Confusion Vulnerability | In-The-Wild |
| FM-2022-0079 | CVE-2022-0000 | Microsoft Teams Desktop pluginHost Sandbox Escape Vulnerability | Pwn2Own |
| FM-2023-0003 | CVE-2023-21674 | Windows ALPC Message WaitingThread Dangling Pointer Elevation of Privilege Vulnerability | In-The-Wild |
| FM-2023-0010 | CVE-2022-20452 | Android LazyValue negative object length unvalidate vulnerability | |
| FM-2023-0015 | CVE-2022-22047 | Microsoft Windows Client Server Run-time Subsystem (CSRSS) Cache Poisoning Elevation of Privilege Vulnerability | In-The-Wild |
| FM-2023-0019 | CVE-2023-28218 | Microsoft Windows Ancillary Function Driver for WinSock Double Fetch Elevation of Privilege Vulnerability | |
| FM-2023-0023 | CVE-2023-21542 | Microsoft Windows Installer Service Icon Create Elevation of Privilege by TOCTOU | |
| FM-2023-0024 | CVE-2023-21092 | Android Registering Broadcast Receiver Permission Bypass Vulnerability | |
| FM-2023-0027 | CVE-2023-21991 | Oracle VirtualBox VGA MMIO Handling Out-Of-Bounds Read Information Disclosure Vulnerability | |
| FM-2023-0028 | CVE-2023-20870 | VMware Workstation VBluetooth Uninitialized Variable Information Disclosure Vulnerability | Pwn2Own |
| FM-2023-0032 | CVE-2023-20869 | VMware Workstation VBluetooth SDP Stack Buffer Overflow Vulnerability | Pwn2Own |
| FM-2023-0033 | CVE-2023-3269 | Linux Kernel Memory Management Race Condition Vulnerability | kCTF |
| FM-2023-0035 | CVE-2023-21987 | Oracle VirtualBox TPM MMIO Handling Stack-based Buffer Overflow Vulnerability | Pwn2Own |
| FM-2023-0039 | CVE-2023-27997 | Fortigate Heap buffer overflow in sslvpn pre-authentication | |
| FM-2023-0040 | CVE-2023-31248 | Linux Kernel Netfilter Subsystem nft_chain_lookup_byid Use-After-Free Vulnerability | |
| FM-2023-0042 | CVE-2023-35320 | Microsoft Windows Diagtrack Service Arbitrary File Creation Elevation of Privilege Vulnerability | |
| FM-2023-0045 | CVE-2023-2033 | Google Chrome Type confusion in V8 Stack trace API | In-The-Wild |
| FM-2023-0046 | CVE-2023-3079 | Google Chrome Improper Inline Cache Handler for JSStrictArgumentsObject Hole Leak Vulnerability | In-The-Wild |
| FM-2023-0049 | CVE-2023-38831 | RARLAB WinRAR Invalid File Path Validation Remote Code Execution Vulnerability | In-The-Wild |
| FM-2023-0050 | CVE-2023-36802 | Microsoft Windows Streaming Service mskssrv Driver Type Confusion Vulnerability | In-The-Wild |
| FM-2023-0051 | CVE-2023-36874 | Microsoft Windows Error Reporting Service Elevation of Privilege Vulnerability | In-The-Wild |
| FM-2023-0055 | CVE-2023-34044 | VMware Workstation VBluetooth Class Request Information Disclosure Vulnerability | |
| FM-2023-0056 | CVE-2023-4762 | Google Chrome Type Confusion in V8 | In-The-Wild |
| FM-2023-0062 | CVE-2023-0000 | Google Chrome Type Confusion in V8 | v8CTF |
| FM-2023-0064 | CVE-2023-22098 | Oracle VirtualBox VirtIO-Net Heap Out-Of-Bound Write Vulnerability | |
| FM-2023-0069 | CVE-2023-36033 | Windows Desktop Windows Manager CKeyframeAnimation Untrusted Pointer Reference Elevation of Privilege Vulnerability | In-The-Wild |
| FM-2023-0070 | CVE-2023-36036 | Microsoft Windows Cloud Files Mini Filter Driver HsmpRpCommitNoLock Buffer Overflow Vulnerability | In-The-Wild |
| FM-2024-0001 | CVE-2024-0517 | Google Chrome Out-of-Bounds Write in V8 | v8CTF |
-
-
Save kkokkokye/ab827a2df82ff37fdeca929183f85ce1 to your computer and use it in GitHub Desktop.
ferm_list
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment