CVE-2020-25692
- EPSS 1.22%
- Veröffentlicht 08.12.2020 01:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:29
A NULL pointer dereference was found in OpenLDAP server and was fixed in openldap 2.4.55, during a request for renaming RDNs. An unauthenticated attacker could remotely crash the slapd process by sending a specially crafted request, causing a Denial ...
CVE-2020-29573
- EPSS 0.14%
- Veröffentlicht 06.12.2020 00:15:11
- Zuletzt bearbeitet 21.11.2024 05:24:14
sysdeps/i386/ldbl2mpn.c in the GNU C Library (aka glibc or libc6) before 2.23 on x86 targets has a stack-based buffer overflow if the input to any of the printf family of functions is an 80-bit long double with a non-canonical bit pattern, as seen wh...
CVE-2020-27772
- EPSS 0.09%
- Veröffentlicht 04.12.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:21:48
A flaw was found in ImageMagick in coders/bmp.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type `unsigned int`. This would most likely lead to a...
CVE-2020-27773
- EPSS 0.09%
- Veröffentlicht 04.12.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:21:48
A flaw was found in ImageMagick in MagickCore/gem-private.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type `unsigned char` or division by zero....
CVE-2020-27774
- EPSS 0.09%
- Veröffentlicht 04.12.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:21:48
A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of a too large shift for 64-bit type `ssize_t`. This would most likely lea...
CVE-2020-27775
- EPSS 0.09%
- Veröffentlicht 04.12.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:21:48
A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type unsigned char. This would most likely le...
CVE-2020-27776
- EPSS 0.07%
- Veröffentlicht 04.12.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:21:48
A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type unsigned long. This would most likely ...
CVE-2020-27765
- EPSS 0.09%
- Veröffentlicht 04.12.2020 15:15:10
- Zuletzt bearbeitet 21.11.2024 05:21:47
A flaw was found in ImageMagick in MagickCore/segment.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. This would most likely lead to an impact to applic...
CVE-2020-27767
- EPSS 0.09%
- Veröffentlicht 04.12.2020 15:15:10
- Zuletzt bearbeitet 21.11.2024 05:21:47
A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of types `float` and `unsigned char`. This would...
CVE-2020-27771
- EPSS 0.11%
- Veröffentlicht 04.12.2020 15:15:10
- Zuletzt bearbeitet 21.11.2024 05:21:48
In RestoreMSCWarning() of /coders/pdf.c there are several areas where calls to GetPixelIndex() could result in values outside the range of representable for the unsigned char type. The patch casts the return value of GetPixelIndex() to ssize_t type t...