CVE-2016-2124
- EPSS 0.79%
- Published 18.02.2022 18:15:08
- Last modified 21.11.2024 02:47:52
A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.
CVE-2020-25717
- EPSS 0.2%
- Published 18.02.2022 18:15:08
- Last modified 21.11.2024 05:18:33
A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cause possible privilege escalation.
- EPSS 0.28%
- Published 18.02.2022 18:15:08
- Last modified 21.11.2024 05:18:34
A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and a...
CVE-2021-4034
- EPSS 86.52%
- Published 28.01.2022 20:15:12
- Last modified 03.04.2025 18:53:12
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pk...
CVE-2020-27769
- EPSS 0.05%
- Published 14.05.2021 20:15:11
- Last modified 21.11.2024 05:21:48
In ImageMagick versions before 7.0.9-0, there are outside the range of representable values of type 'float' at MagickCore/quantize.c.
CVE-2020-3864
- EPSS 0.06%
- Published 27.10.2020 21:15:15
- Last modified 21.11.2024 05:31:51
A logic issue was addressed with improved validation. This issue is fixed in iCloud for Windows 7.17, iTunes 12.10.4 for Windows, iCloud for Windows 10.9.2, tvOS 13.3.1, Safari 13.0.5, iOS 13.3.1 and iPadOS 13.3.1. A DOM object context may not have h...
CVE-2019-8846
- EPSS 0.57%
- Published 27.10.2020 21:15:12
- Last modified 21.11.2024 04:50:35
A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing maliciously craf...
CVE-2019-8844
- EPSS 2.47%
- Published 27.10.2020 20:15:21
- Last modified 21.11.2024 04:50:35
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, watchOS 6.1.1, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Pr...
CVE-2019-8835
- EPSS 0.57%
- Published 27.10.2020 20:15:20
- Last modified 21.11.2024 04:50:34
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing malici...
CVE-2020-10531
- EPSS 0.79%
- Published 12.03.2020 19:15:13
- Last modified 21.11.2024 04:55:31
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.