CVE-2021-22926
- EPSS 0.51%
- Published 05.08.2021 21:15:11
- Last modified 21.11.2024 05:50:56
libcurl-using applications can ask for a specific client certificate to be used in a transfer. This is done with the `CURLOPT_SSLCERT` option (`--cert` with the command line tool).When libcurl is built to use the macOS native TLS library Secure Trans...
CVE-2021-36222
- EPSS 4.66%
- Published 22.07.2021 18:15:23
- Last modified 21.11.2024 06:13:20
ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return valu...
CVE-2021-2389
- EPSS 0.49%
- Published 21.07.2021 15:15:41
- Last modified 21.11.2024 06:03:01
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and prior and 8.0.25 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via ...
CVE-2021-2385
- EPSS 0.4%
- Published 21.07.2021 15:15:39
- Last modified 21.11.2024 06:03:00
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 5.7.34 and prior and 8.0.25 and prior. Difficult to exploit vulnerability allows high privileged attacker with networ...
CVE-2021-2372
- EPSS 0.23%
- Published 21.07.2021 15:15:32
- Last modified 21.11.2024 06:02:59
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and prior and 8.0.25 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via ...
- EPSS 0.44%
- Published 21.07.2021 15:15:18
- Last modified 21.11.2024 06:02:55
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.7.34 and prior and 8.0.25 and prior. Easily exploitable vulnerability allows high privileged attacker with network ac...
- EPSS 0.21%
- Published 21.07.2021 15:15:17
- Last modified 21.11.2024 06:02:55
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Memcached). Supported versions that are affected are 8.0.25 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pro...
CVE-2021-22901
- EPSS 0.34%
- Published 11.06.2021 16:15:11
- Last modified 21.11.2024 05:50:52
curl 7.75.0 through 7.76.1 suffers from a use-after-free vulnerability resulting in already freed memory being used when a TLS 1.3 session ticket arrives over a connection. A malicious server can use this in rare unfortunate circumstances to potentia...
CVE-2021-3522
- EPSS 0.11%
- Published 02.06.2021 15:15:07
- Last modified 21.11.2024 06:21:45
GStreamer before 1.18.4 may perform an out-of-bounds read when handling certain ID3v2 tags.
CVE-2021-3517
- EPSS 0.09%
- Published 19.05.2021 14:15:07
- Last modified 21.11.2024 06:21:44
There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-o...