CVE-2020-16592
- EPSS 0.31%
- Published 09.12.2020 21:15:15
- Last modified 21.11.2024 05:07:10
A use after free issue exists in the Binary File Descriptor (BFD) library (aka libbfd) in GNU Binutils 2.34 in bfd_hash_lookup, as demonstrated in nm-new, that can cause a denial of service via a crafted file.
CVE-2020-16593
- EPSS 0.3%
- Published 09.12.2020 21:15:15
- Last modified 21.11.2024 05:07:10
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in scan_unit_for_symbols, as demonstrated in addr2line, that can cause a denial of service via a crafted fi...
CVE-2020-16599
- EPSS 0.08%
- Published 09.12.2020 21:15:15
- Last modified 21.11.2024 05:07:10
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in _bfd_elf_get_symbol_version_string, as demonstrated in nm-new, that can cause a denial of service via a ...
CVE-2020-15999
- EPSS 92.97%
- Published 03.11.2020 03:15:14
- Last modified 05.02.2025 14:37:57
Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-14145
- EPSS 1.25%
- Published 29.06.2020 18:15:11
- Last modified 21.11.2024 05:02:44
The client side in OpenSSH 5.7 through 8.4 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This allows man-in-the-middle attackers to target initial connection attempts (where no host key for the server has ...
CVE-2020-14155
- EPSS 0.15%
- Published 15.06.2020 17:15:10
- Last modified 21.11.2024 05:02:45
libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring.
CVE-2020-13871
- EPSS 2.44%
- Published 06.06.2020 16:15:10
- Last modified 21.11.2024 05:02:02
SQLite 3.32.2 has a use-after-free in resetAccumulator in select.c because the parse tree rewrite for window functions is too late.
CVE-2020-11655
- EPSS 4.89%
- Published 09.04.2020 03:15:11
- Last modified 21.11.2024 04:58:20
SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.
CVE-2020-11656
- EPSS 8.47%
- Published 09.04.2020 03:15:11
- Last modified 21.11.2024 04:58:20
In SQLite through 3.31.1, the ALTER TABLE implementation has a use-after-free, as demonstrated by an ORDER BY clause that belongs to a compound SELECT statement.
CVE-2019-20388
- EPSS 0.56%
- Published 21.01.2020 23:15:13
- Last modified 21.11.2024 04:38:21
xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.