CVE-2020-1702
- EPSS 0.17%
- Veröffentlicht 27.05.2021 20:15:07
- Zuletzt bearbeitet 21.11.2024 05:11:12
A malicious container image can consume an unbounded amount of memory when being pulled to a container runtime host, such as Red Hat Enterprise Linux using podman, or OpenShift Container Platform. An attacker can use this flaw to trick a user, with p...
CVE-2021-30500
- EPSS 0.16%
- Veröffentlicht 27.05.2021 00:15:08
- Zuletzt bearbeitet 11.04.2025 12:27:55
Null pointer dereference was found in upx PackLinuxElf::canUnpack() in p_lx_elf.cpp,in version UPX 4.0.0. That allow attackers to execute arbitrary code and cause a denial of service via a crafted file.
CVE-2021-30501
- EPSS 0.13%
- Veröffentlicht 27.05.2021 00:15:08
- Zuletzt bearbeitet 11.04.2025 12:27:55
An assertion abort was found in upx MemBuffer::alloc() in mem.cpp, in version UPX 4.0.0. The flow allows attackers to cause a denial of service (abort) via a crafted file.
CVE-2021-30469
- EPSS 0.17%
- Veröffentlicht 26.05.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:03:58
A flaw was found in PoDoFo 0.9.7. An use-after-free in PoDoFo::PdfVecObjects::Clear() function can cause a denial of service via a crafted PDF file.
CVE-2021-30470
- EPSS 0.04%
- Veröffentlicht 26.05.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:03:59
A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call among PdfTokenizer::ReadArray(), PdfTokenizer::GetNextVariant() and PdfTokenizer::ReadDataType() functions can lead to a stack overflow.
CVE-2021-30471
- EPSS 0.04%
- Veröffentlicht 26.05.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:03:59
A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call in PdfNamesTree::AddToDictionary function in src/podofo/doc/PdfNamesTree.cpp can lead to a stack overflow.
CVE-2021-3527
- EPSS 0.03%
- Veröffentlicht 26.05.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:21:45
A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically all...
CVE-2021-20297
- EPSS 0.1%
- Veröffentlicht 26.05.2021 21:15:08
- Zuletzt bearbeitet 21.11.2024 05:46:18
A flaw was found in NetworkManager in versions before 1.30.0. Setting match.path and activating a profile crashes NetworkManager. The highest threat from this vulnerability is to system availability.
CVE-2018-25009
- EPSS 0.45%
- Veröffentlicht 21.05.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 04:03:20
A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in GetLE16().
CVE-2018-25010
- EPSS 0.51%
- Veröffentlicht 21.05.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 04:03:20
A heap-based buffer overflow was found in libwebp in versions before 1.0.1 in ApplyFilter().