CVE-2021-32292
- EPSS 0.17%
- Veröffentlicht 22.08.2023 19:16:20
- Zuletzt bearbeitet 25.06.2025 16:55:47
An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overflow exists in the auxiliary sample program json_parse which is located in the function parseit.
CVE-2020-19189
- EPSS 2.55%
- Veröffentlicht 22.08.2023 19:16:01
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19190
- EPSS 6.19%
- Veröffentlicht 22.08.2023 19:16:01
- Zuletzt bearbeitet 21.11.2024 05:09:01
Buffer Overflow vulnerability in _nc_find_entry in tinfo/comp_hash.c:70 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19188
- EPSS 7.29%
- Veröffentlicht 22.08.2023 19:16:00
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in fmt_entry function in progs/dump_entry.c:1116 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19187
- EPSS 4.83%
- Veröffentlicht 22.08.2023 19:15:59
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in fmt_entry function in progs/dump_entry.c:1100 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19186
- EPSS 4.83%
- Veröffentlicht 22.08.2023 19:15:58
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in _nc_find_entry function in tinfo/comp_hash.c:66 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19185
- EPSS 4.83%
- Veröffentlicht 22.08.2023 19:15:57
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in one_one_mapping function in progs/dump_entry.c:1373 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2023-36054
- EPSS 0.65%
- Veröffentlicht 07.08.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 08:09:15
lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate t...
CVE-2023-37920
- EPSS 0.11%
- Veröffentlicht 25.07.2023 21:15:10
- Zuletzt bearbeitet 13.02.2025 13:50:15
Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi prior to version 2023.07.22 recognizes "e-Tugra" root certificates. e-Tugra's root certific...
- EPSS 0.14%
- Veröffentlicht 20.07.2023 01:15:10
- Zuletzt bearbeitet 21.11.2024 06:57:49
Out-of-bounds write when handling split HTTP headers; When handling split HTTP headers, GRUB2 HTTP code accidentally moves its internal data buffer point by one position. This can lead to a out-of-bound write further when parsing the HTTP request, wr...