CVE-2021-3571
- EPSS 0.72%
- Veröffentlicht 09.07.2021 11:15:08
- Zuletzt bearbeitet 21.11.2024 06:21:52
A flaw was found in the ptp4l program of the linuxptp package. When ptp4l is operating on a little-endian architecture as a PTP transparent clock, a remote attacker could send a crafted one-step sync message to cause an information leak or crash. The...
CVE-2021-3598
- EPSS 0.16%
- Veröffentlicht 06.07.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:21:56
There's a flaw in OpenEXR's ImfDeepScanLineInputFile functionality in versions prior to 3.0.5. An attacker who is able to submit a crafted file to an application linked with OpenEXR could cause an out-of-bounds read. The greatest risk from this flaw ...
CVE-2021-3595
- EPSS 0.02%
- Veröffentlicht 15.06.2021 21:15:10
- Zuletzt bearbeitet 21.11.2024 06:21:55
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the tftp_input() function and could occur while processing a udp packet that is smaller than the size of the 'tftp_t' structure. This...
CVE-2021-3592
- EPSS 0.03%
- Veröffentlicht 15.06.2021 21:15:09
- Zuletzt bearbeitet 21.11.2024 06:21:55
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the bootp_input() function and could occur while processing a udp packet that is smaller than the size of the 'bootp_t' structure. A ...
CVE-2021-3593
- EPSS 0.02%
- Veröffentlicht 15.06.2021 21:15:09
- Zuletzt bearbeitet 21.11.2024 06:21:55
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp6_input() function and could occur while processing a udp packet that is smaller than the size of the 'udphdr' structure. This...
CVE-2021-3594
- EPSS 0.03%
- Veröffentlicht 15.06.2021 21:15:09
- Zuletzt bearbeitet 21.11.2024 06:21:55
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp_input() function and could occur while processing a udp packet that is smaller than the size of the 'udphdr' structure. This ...
CVE-2021-0129
- EPSS 0.14%
- Veröffentlicht 09.06.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:42:01
Improper access control in BlueZ may allow an authenticated user to potentially enable information disclosure via adjacent access.
CVE-2021-3565
- EPSS 0.16%
- Veröffentlicht 04.06.2021 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:21:51
A flaw was found in tpm2-tools in versions before 5.1.1 and before 4.3.2. tpm2_import used a fixed AES key for the inner wrapper, potentially allowing a MITM attacker to unwrap the inner portion and reveal the key being imported. The highest threat f...
CVE-2021-3569
- EPSS 0.05%
- Veröffentlicht 03.06.2021 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:21:52
A stack corruption bug was found in libtpms in versions before 0.7.2 and before 0.8.0 while decrypting data using RSA. This flaw could result in a SIGBUS (bad memory access) and termination of swtpm. The highest threat from this vulnerability is to s...
CVE-2019-12067
- EPSS 0.17%
- Veröffentlicht 02.06.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 04:22:10
The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NULL dereference) when the command header 'ad->cur_cmd' is null.