CVE-2021-2006
- EPSS 1.12%
- Veröffentlicht 20.01.2021 15:15:45
- Zuletzt bearbeitet 21.11.2024 06:02:09
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 8.0.19 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to c...
CVE-2021-2007
- EPSS 0.53%
- Veröffentlicht 20.01.2021 15:15:45
- Zuletzt bearbeitet 21.11.2024 06:02:09
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.19 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with ne...
CVE-2021-2010
- EPSS 0.36%
- Veröffentlicht 20.01.2021 15:15:45
- Zuletzt bearbeitet 21.11.2024 06:02:10
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.50 and prior, 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows low privileged attacker with net...
CVE-2021-2011
- EPSS 2.14%
- Veröffentlicht 20.01.2021 15:15:45
- Zuletzt bearbeitet 21.11.2024 06:02:10
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via m...
CVE-2021-20190
- EPSS 0.5%
- Veröffentlicht 19.01.2021 17:15:13
- Zuletzt bearbeitet 27.08.2025 21:15:36
A flaw was found in jackson-databind before 2.9.10.7. FasterXML mishandles the interaction between serialization gadgets and typing. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2021-3177
- EPSS 0.07%
- Veröffentlicht 19.01.2021 06:15:12
- Zuletzt bearbeitet 18.12.2025 15:15:48
Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execution in certain Python applications that accept floating-point numbers as untrusted input, as demonstrated by a 1e300 argument to ...
CVE-2020-8908
- EPSS 0.07%
- Veröffentlicht 10.12.2020 23:15:13
- Zuletzt bearbeitet 23.02.2026 21:17:30
A temp directory creation vulnerability exists in all versions of Guava, allowing an attacker with access to the machine to potentially access data in a temporary directory created by the Guava API com.google.common.io.Files.createTempDir(). By defau...
CVE-2020-29660
- EPSS 0.07%
- Veröffentlicht 09.12.2020 17:15:31
- Zuletzt bearbeitet 21.11.2024 05:24:22
A locking inconsistency issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_io.c and drivers/tty/tty_jobctrl.c may allow a read-after-free attack against TIOCGSID, aka CID-c8bcd9c5be24.
CVE-2020-29661
- EPSS 0.29%
- Veröffentlicht 09.12.2020 17:15:31
- Zuletzt bearbeitet 21.11.2024 05:24:23
A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.
CVE-2020-1971
- EPSS 0.35%
- Veröffentlicht 08.12.2020 16:15:11
- Zuletzt bearbeitet 21.11.2024 05:11:45
The X.509 GeneralName type is a generic type for representing different types of names. One of those name types is known as EDIPartyName. OpenSSL provides a function GENERAL_NAME_cmp which compares different instances of a GENERAL_NAME to see if they...