CVE-2022-48566
- EPSS 0.1%
- Veröffentlicht 22.08.2023 19:16:32
- Zuletzt bearbeitet 21.11.2024 07:33:31
An issue was discovered in compare_digest in Lib/hmac.py in Python through 3.9.1. Constant-time-defeating optimisations were possible in the accumulator variable in hmac.compare_digest.
CVE-2022-48564
- EPSS 0.1%
- Veröffentlicht 22.08.2023 19:16:31
- Zuletzt bearbeitet 21.11.2024 07:33:30
read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple Property List files in binary format.
CVE-2021-32292
- EPSS 0.13%
- Veröffentlicht 22.08.2023 19:16:20
- Zuletzt bearbeitet 25.06.2025 16:55:47
An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overflow exists in the auxiliary sample program json_parse which is located in the function parseit.
CVE-2020-19189
- EPSS 1.95%
- Veröffentlicht 22.08.2023 19:16:01
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19190
- EPSS 4.82%
- Veröffentlicht 22.08.2023 19:16:01
- Zuletzt bearbeitet 21.11.2024 05:09:01
Buffer Overflow vulnerability in _nc_find_entry in tinfo/comp_hash.c:70 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19188
- EPSS 6.09%
- Veröffentlicht 22.08.2023 19:16:00
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in fmt_entry function in progs/dump_entry.c:1116 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19187
- EPSS 4.83%
- Veröffentlicht 22.08.2023 19:15:59
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in fmt_entry function in progs/dump_entry.c:1100 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19186
- EPSS 6.19%
- Veröffentlicht 22.08.2023 19:15:58
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in _nc_find_entry function in tinfo/comp_hash.c:66 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2020-19185
- EPSS 6.19%
- Veröffentlicht 22.08.2023 19:15:57
- Zuletzt bearbeitet 21.11.2024 05:09:00
Buffer Overflow vulnerability in one_one_mapping function in progs/dump_entry.c:1373 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command.
CVE-2023-36054
- EPSS 0.7%
- Veröffentlicht 07.08.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 08:09:15
lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate t...