CVE-2020-25661
- EPSS 2.09%
- Veröffentlicht 05.11.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:23
A Red Hat only CVE-2020-12351 regression issue was found in the way the Linux kernel's Bluetooth implementation handled L2CAP packets with A2MP CID. This flaw allows a remote attacker in an adjacent range to crash the system, causing a denial of serv...
CVE-2020-25662
- EPSS 0.76%
- Veröffentlicht 05.11.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:23
A Red Hat only CVE-2020-12352 regression issue was found in the way the Linux kernel's Bluetooth stack implementation handled the initialization of stack memory when handling certain AMP packets. This flaw allows a remote attacker in an adjacent rang...
CVE-2020-25648
- EPSS 0.09%
- Veröffentlicht 20.10.2020 22:15:43
- Zuletzt bearbeitet 21.11.2024 05:18:20
A flaw was found in the way NSS handled CCS (ChangeCipherSpec) messages in TLS 1.3. This flaw allows a remote attacker to send multiple CCS messages, causing a denial of service for servers compiled with the NSS library. The highest threat from this ...
CVE-2020-14355
- EPSS 1.11%
- Veröffentlicht 07.10.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:03:04
Multiple buffer overflow vulnerabilities were found in the QUIC image decoding process of the SPICE remote display system, before spice-0.14.2-1. Both the SPICE client (spice-gtk) and server are affected by these flaws. These flaws allow a malicious ...
CVE-2020-25743
- EPSS 0.04%
- Veröffentlicht 06.10.2020 15:15:15
- Zuletzt bearbeitet 21.11.2024 05:18:38
hw/ide/pci.c in QEMU before 5.1.1 can trigger a NULL pointer dereference because it lacks a pointer check before an ide_cancel_dma_sync call.
CVE-2020-25641
- EPSS 0.06%
- Veröffentlicht 06.10.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:18
A flaw was found in the Linux kernel's implementation of biovecs in versions before 5.9-rc7. A zero-length biovec request issued by the block subsystem could cause the kernel to enter an infinite loop, causing a denial of service. This flaw allows a ...
CVE-2020-25643
- EPSS 0.42%
- Veröffentlicht 06.10.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:19
A flaw was found in the HDLC_PPP module of the Linux kernel in versions before 5.9-rc7. Memory corruption and a read overflow is caused by improper input validation in the ppp_cp_parse_cr function which can cause the system to crash or cause a denial...
CVE-2020-14370
- EPSS 0.15%
- Veröffentlicht 23.09.2020 13:15:15
- Zuletzt bearbeitet 21.11.2024 05:03:06
An information disclosure vulnerability was found in containers/podman in versions before 2.0.5. When using the deprecated Varlink API or the Docker-compatible REST API, if multiple containers are created in a short duration, the environment variable...
CVE-2020-14382
- EPSS 0.28%
- Veröffentlicht 16.09.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:03:08
A vulnerability was found in upstream release cryptsetup-2.2.0 where, there's a bug in LUKS2 format validation code, that is effectively invoked on every device/image presenting itself as LUKS2 container. The bug is in segments validation code in fil...
- EPSS 0.01%
- Veröffentlicht 15.09.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:56:00
A PGP signature bypass flaw was found in fwupd (all versions), which could lead to the installation of unsigned firmware. As per upstream, a signature bypass is theoretically possible, but not practical because the Linux Vendor Firmware Service (LVFS...