CVE-2020-8703
- EPSS 0.24%
- Published 09.06.2021 19:15:09
- Last modified 21.11.2024 05:39:17
Improper buffer restrictions in a subsystem in the Intel(R) CSME versions before 11.8.86, 11.12.86, 11.22.86, 12.0.81, 13.0.47, 13.30.17, 14.1.53, 14.5.32 and 15.0.22 may allow a privileged user to potentially enable escalation of privilege via local...
CVE-2020-12357
- EPSS 0.1%
- Published 09.06.2021 19:15:08
- Last modified 21.11.2024 04:59:34
Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
CVE-2020-12358
- EPSS 0.05%
- Published 09.06.2021 19:15:08
- Last modified 21.11.2024 04:59:34
Out of bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access.
CVE-2020-12359
- EPSS 0.37%
- Published 09.06.2021 19:15:08
- Last modified 21.11.2024 04:59:34
Insufficient control flow management in the firmware for some Intel(R) Processors may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
CVE-2020-12360
- EPSS 0.17%
- Published 09.06.2021 19:15:08
- Last modified 21.11.2024 04:59:34
Out of bounds read in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2020-24486
- EPSS 0.06%
- Published 09.06.2021 19:15:08
- Last modified 21.11.2024 05:14:53
Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via local access.
CVE-2019-25045
- EPSS 0.15%
- Published 07.06.2021 20:15:07
- Last modified 21.11.2024 04:39:49
An issue was discovered in the Linux kernel before 5.0.19. The XFRM subsystem has a use-after-free, related to an xfrm_state_fini panic, aka CID-dbb2483b2a46.
CVE-2021-3520
- EPSS 0.13%
- Published 02.06.2021 13:15:13
- Last modified 21.11.2024 06:21:44
There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. Th...
CVE-2021-33200
- EPSS 0.03%
- Published 27.05.2021 13:15:08
- Last modified 21.11.2024 06:08:30
kernel/bpf/verifier.c in the Linux kernel through 5.12.7 enforces incorrect limits for pointer arithmetic operations, aka CID-bb01a1bba579. This can be abused to perform out-of-bounds reads and writes in kernel memory, leading to local privilege esca...
- EPSS 0.13%
- Published 26.05.2021 12:15:15
- Last modified 21.11.2024 05:18:24
A flaw was found in Linux Kernel because access to the global variable fg_console is not properly synchronized leading to a use after free in con_font_op.