- EPSS 94.43%
- Published 16.09.2021 15:15:07
- Last modified 16.05.2025 15:27:13
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.
CVE-2019-14850
- EPSS 0.4%
- Published 18.03.2021 19:15:12
- Last modified 21.11.2024 04:27:29
A denial of service vulnerability was discovered in nbdkit 1.12.7, 1.14.1 and 1.15.1. An attacker could connect to the nbdkit service and cause it to perform a large amount of work in initializing backend plugins, by simply opening a connection to th...
CVE-2020-3864
- EPSS 0.06%
- Published 27.10.2020 21:15:15
- Last modified 21.11.2024 05:31:51
A logic issue was addressed with improved validation. This issue is fixed in iCloud for Windows 7.17, iTunes 12.10.4 for Windows, iCloud for Windows 10.9.2, tvOS 13.3.1, Safari 13.0.5, iOS 13.3.1 and iPadOS 13.3.1. A DOM object context may not have h...
CVE-2019-8846
- EPSS 0.57%
- Published 27.10.2020 21:15:12
- Last modified 21.11.2024 04:50:35
A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing maliciously craf...
CVE-2019-8844
- EPSS 2.47%
- Published 27.10.2020 20:15:21
- Last modified 21.11.2024 04:50:35
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, watchOS 6.1.1, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Pr...
CVE-2019-8835
- EPSS 0.57%
- Published 27.10.2020 20:15:20
- Last modified 21.11.2024 04:50:34
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13.3, iCloud for Windows 10.9, iOS 13.3 and iPadOS 13.3, Safari 13.0.4, iTunes 12.10.3 for Windows, iCloud for Windows 7.16. Processing malici...
CVE-2020-14300
- EPSS 0.29%
- Published 13.07.2020 22:15:12
- Last modified 21.11.2024 05:02:57
The docker packages version docker-1.13.1-108.git4ef4b30.el7 as released for Red Hat Enterprise Linux 7 Extras via RHBA-2020:0053 (https://access.redhat.com/errata/RHBA-2020:0053) included an incorrect version of runc that was missing multiple bug an...
CVE-2020-14298
- EPSS 0.14%
- Published 13.07.2020 21:15:14
- Last modified 21.11.2024 05:02:57
The version of docker as released for Red Hat Enterprise Linux 7 Extras via RHBA-2020:0053 advisory included an incorrect version of runc missing the fix for CVE-2019-5736, which was previously fixed via RHSA-2019:0304. This issue could allow a malic...
CVE-2020-10751
- EPSS 0.08%
- Published 26.05.2020 15:15:10
- Last modified 21.11.2024 04:55:59
A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would only contain a single netlink message. The hook would incorrectly only validate the first netlink message in the ...
CVE-2020-10531
- EPSS 0.79%
- Published 12.03.2020 19:15:13
- Last modified 21.11.2024 04:55:31
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.