A vulnerability has been found in ZBar 0.23.90 and classified as critical. Affected by this vulnerability is the function lookup_sequence of the component QR Code Handler. The manipulation leads to stack-based buffer overflow.
This vulnerability is known as CVE-2023-40890. It is possible to launch the attack on the physical device. There is no exploit available.
A vulnerability was found in Rakuten WiFi Pocket. It has been classified as critical. Affected is an unknown function of the component Management Screen. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2023-40282. Access to the local network is required for this attack. There is no exploit available.
A vulnerability classified as problematic has been found in Artifex Ghostscript on Red Hat. This affects an unknown part of the component Incomplete Fix CVE-2020-16305. The manipulation leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2023-4042. An attack has to be approached locally. There is no exploit available.
A vulnerability was found in Google Chrome. It has been classified as problematic. Affected is an unknown function of the component CSS. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2023-4428. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in vLLM up to 0.7.x. This vulnerability affects unknown code of the component ZMQ/TCP. The manipulation leads to deserialization.
This vulnerability was named CVE-2025-29783. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
The attack uses sideloading to deliver a variant of the popular Gh0stRAT malware and lures victims by posing — among other things — as a purported installer for DeepSeek's LLM.