CVE-2023-41105
- EPSS 0.33%
- Veröffentlicht 23.08.2023 07:15:08
- Zuletzt bearbeitet 21.11.2024 08:20:35
An issue was discovered in Python 3.11 through 3.11.4. If a path containing '\0' bytes is passed to os.path.normpath(), the path will be truncated unexpectedly at the first '\0' byte. There are plausible cases in which an application would have rejec...
CVE-2022-48566
- EPSS 0.09%
- Veröffentlicht 22.08.2023 19:16:32
- Zuletzt bearbeitet 21.11.2024 07:33:31
An issue was discovered in compare_digest in Lib/hmac.py in Python through 3.9.1. Constant-time-defeating optimisations were possible in the accumulator variable in hmac.compare_digest.
CVE-2022-48564
- EPSS 0.11%
- Veröffentlicht 22.08.2023 19:16:31
- Zuletzt bearbeitet 21.11.2024 07:33:30
read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple Property List files in binary format.
CVE-2021-32292
- EPSS 0.17%
- Veröffentlicht 22.08.2023 19:16:20
- Zuletzt bearbeitet 25.06.2025 16:55:47
An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overflow exists in the auxiliary sample program json_parse which is located in the function parseit.
CVE-2020-19189
- EPSS 1.95%
- Veröffentlicht 22.08.2023 19:16:01
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19190
- EPSS 6.19%
- Veröffentlicht 22.08.2023 19:16:01
- Zuletzt bearbeitet 21.11.2024 05:09:01
Buffer Overflow vulnerability in _nc_find_entry in tinfo/comp_hash.c:70 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19188
- EPSS 7.29%
- Veröffentlicht 22.08.2023 19:16:00
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in fmt_entry function in progs/dump_entry.c:1116 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19187
- EPSS 6.19%
- Veröffentlicht 22.08.2023 19:15:59
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in fmt_entry function in progs/dump_entry.c:1100 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19186
- EPSS 6.19%
- Veröffentlicht 22.08.2023 19:15:58
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in _nc_find_entry function in tinfo/comp_hash.c:66 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19185
- EPSS 6.19%
- Veröffentlicht 22.08.2023 19:15:57
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in one_one_mapping function in progs/dump_entry.c:1373 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.