- EPSS 0.07%
- Published 07.05.2019 14:29:00
- Last modified 21.11.2024 04:21:48
An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read access to /proc/ioports after the ipmi_si module is removed, related to drivers/char/ipmi/ipmi_si_intf.c, drivers/char/ipmi/ipmi_si_mem_io.c, and ...
CVE-2019-2697
- EPSS 11.78%
- Published 23.04.2019 19:32:56
- Last modified 21.11.2024 04:41:23
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: 2D). Supported versions that are affected are Java SE: 7u211 and 8u202. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protoc...
CVE-2019-2698
- EPSS 5.97%
- Published 23.04.2019 19:32:56
- Last modified 21.11.2024 04:41:23
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: 2D). Supported versions that are affected are Java SE: 7u211 and 8u202. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protoc...
CVE-2019-2684
- EPSS 0.99%
- Published 23.04.2019 19:32:55
- Last modified 21.11.2024 04:41:21
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 7u211, 8u202, 11.0.2 and 12; Java SE Embedded: 8u201. Difficult to exploit vulnerability allows unauthen...
CVE-2019-2627
- EPSS 0.17%
- Published 23.04.2019 19:32:52
- Last modified 21.11.2024 04:41:14
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.6.43 and prior, 5.7.25 and prior and 8.0.15 and prior. Easily exploitable vulnerability allows high p...
CVE-2019-2614
- EPSS 0.16%
- Published 23.04.2019 19:32:51
- Last modified 21.11.2024 04:41:13
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.43 and prior, 5.7.25 and prior and 8.0.15 and prior. Difficult to exploit vulnerability allows high privileg...
CVE-2019-2602
- EPSS 0.27%
- Published 23.04.2019 19:32:50
- Last modified 21.11.2024 04:41:11
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 7u211, 8u202, 11.0.2 and 12; Java SE Embedded: 8u201. Easily exploitable vulnerability allows unau...
CVE-2019-0223
- EPSS 0.53%
- Published 23.04.2019 16:29:00
- Last modified 21.11.2024 04:16:31
While investigating bug PROTON-2014, we discovered that under some circumstances Apache Qpid Proton versions 0.9 to 0.27.0 (C library and its language bindings) can connect to a peer anonymously using TLS *even when configured to verify the peer cert...
CVE-2019-11235
- EPSS 9.92%
- Published 22.04.2019 11:29:03
- Last modified 21.11.2024 04:20:47
FreeRADIUS before 3.0.19 mishandles the "each participant verifies that the received scalar is within a range, and that the received group element is a valid point on the curve being used" protection mechanism, aka a "Dragonblood" issue, a similar is...
CVE-2019-10245
- EPSS 1.62%
- Published 19.04.2019 14:29:00
- Last modified 21.11.2024 04:18:43
In Eclipse OpenJ9 prior to the 0.14.0 release, the Java bytecode verifier incorrectly allows a method to execute past the end of bytecode array causing crashes. Eclipse OpenJ9 v0.14.0 correctly detects this case and rejects the attempted class load.