CVE-2012-2142
- EPSS 1.33%
- Veröffentlicht 09.01.2020 21:15:10
- Zuletzt bearbeitet 21.11.2024 01:38:35
The error function in Error.cc in poppler before 0.21.4 allows remote attackers to execute arbitrary commands via a PDF containing an escape sequence for a terminal emulator.
CVE-2019-19332
- EPSS 0.02%
- Veröffentlicht 09.01.2020 15:15:10
- Zuletzt bearbeitet 21.11.2024 04:34:35
An out-of-bounds memory write issue was found in the Linux Kernel, version 3.13 through 5.4, in the way the Linux kernel's KVM hypervisor handled the 'KVM_GET_EMULATED_CPUID' ioctl(2) request to get CPUID features emulated by the KVM hypervisor. A us...
CVE-2019-17024
- EPSS 3.28%
- Veröffentlicht 08.01.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:31:34
Mozilla developers reported memory safety bugs present in Firefox 71 and Firefox ESR 68.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. T...
CVE-2019-14906
- EPSS 1.07%
- Veröffentlicht 07.01.2020 21:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:39
A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while c...
CVE-2019-14866
- EPSS 0.03%
- Veröffentlicht 07.01.2020 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:27:32
In all versions of cpio before 2.13 does not properly validate input files when generating TAR archives. When cpio is used to create TAR archives from paths an attacker can write to, the resulting archive may contain files with permissions the attack...
CVE-2012-4451
- EPSS 1.78%
- Veröffentlicht 03.01.2020 17:15:11
- Zuletzt bearbeitet 21.11.2024 01:42:55
Multiple cross-site scripting (XSS) vulnerabilities in Zend Framework 2.0.x before 2.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified input to (1) Debug, (2) Feed\PubSubHubbub, (3) Log\Formatter\Xml, (4) Tag\Cloud\Dec...
CVE-2019-14864
- EPSS 0.94%
- Veröffentlicht 02.01.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 04:27:31
Ansible, versions 2.9.x before 2.9.1, 2.8.x before 2.8.7 and Ansible versions 2.7.x before 2.7.15, is not respecting the flag no_log set it to True when Sumologic and Splunk callback plugins are used send tasks results events to collectors. This woul...
CVE-2011-3585
- EPSS 0.55%
- Veröffentlicht 31.12.2019 20:15:11
- Zuletzt bearbeitet 21.11.2024 01:30:48
Multiple race conditions in the (1) mount.cifs and (2) umount.cifs programs in Samba 3.6 allow local users to cause a denial of service (mounting outage) via a SIGKILL signal during a time window when the /etc/mtab~ file exists.
CVE-2019-18389
- EPSS 0.07%
- Veröffentlicht 23.12.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:33:11
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service, or QEMU guest-to-host escape and code execution, via VIRGL_CCMD_RESO...
CVE-2019-18390
- EPSS 0.03%
- Veröffentlicht 23.12.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:33:11
An out-of-bounds read in the vrend_blit_need_swizzle function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_BLIT commands.