CVE-2020-35524
- EPSS 0.41%
- Veröffentlicht 09.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:27:29
A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, in...
CVE-2021-3411
- EPSS 0.11%
- Veröffentlicht 09.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 06:21:26
A flaw was found in the Linux kernel in versions prior to 5.10. A violation of memory access was found while detecting a padding of int3 in the linking state. The highest threat from this vulnerability is to data confidentiality and integrity as well...
CVE-2020-35521
- EPSS 0.1%
- Veröffentlicht 09.03.2021 20:15:12
- Zuletzt bearbeitet 21.11.2024 05:27:29
A flaw was found in libtiff. Due to a memory allocation failure in tif_read.c, a crafted TIFF file can lead to an abort, resulting in denial of service.
CVE-2020-35522
- EPSS 0.04%
- Veröffentlicht 09.03.2021 20:15:12
- Zuletzt bearbeitet 21.11.2024 05:27:29
In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to an abort, resulting in a remote denial of service attack.
CVE-2020-35523
- EPSS 0.26%
- Veröffentlicht 09.03.2021 20:15:12
- Zuletzt bearbeitet 21.11.2024 05:27:29
An integer overflow flaw was found in libtiff that exists in the tif_getimage.c file. This flaw allows an attacker to inject and execute arbitrary code when a user opens a crafted TIFF file. The highest threat from this vulnerability is to confidenti...
CVE-2021-20244
- EPSS 0.13%
- Veröffentlicht 09.03.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:46:12
A flaw was found in ImageMagick in MagickCore/visual-effects.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability ...
CVE-2021-20245
- EPSS 0.23%
- Veröffentlicht 09.03.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:46:12
A flaw was found in ImageMagick in coders/webp.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system a...
CVE-2021-20246
- EPSS 0.17%
- Veröffentlicht 09.03.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:46:12
A flaw was found in ImageMagick in MagickCore/resample.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to ...
CVE-2021-3403
- EPSS 0.89%
- Veröffentlicht 04.03.2021 22:15:14
- Zuletzt bearbeitet 21.11.2024 06:21:25
In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file.
CVE-2021-3404
- EPSS 2.07%
- Veröffentlicht 04.03.2021 22:15:14
- Zuletzt bearbeitet 21.11.2024 06:21:25
In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a heap buffer overflow which can be triggered via a crafted file.