CVE-2019-9071
- EPSS 0.39%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:55
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a stack consumption issue in d_count_templates_scopes in cp-demangle.c after many recursive calls.
CVE-2019-9072
- EPSS 0.28%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:55
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in setup_group in elf.c.
CVE-2019-9073
- EPSS 0.28%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:55
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in _bfd_elf_slurp_version_tables in elf.c.
CVE-2019-9074
- EPSS 0.12%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:56
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an out-of-bounds read leading to a SEGV in bfd_getl32 in libbfd.c, when called from pex64_get_runtime_function in pei-x86_64....
CVE-2019-9075
- EPSS 0.22%
- Published 24.02.2019 00:29:00
- Last modified 21.11.2024 04:50:56
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is a heap-based buffer overflow in _bfd_archive_64_bit_slurp_armap in archive64.c.
CVE-2019-9003
- EPSS 7.13%
- Published 22.02.2019 15:29:00
- Last modified 21.11.2024 04:50:47
In the Linux kernel before 4.20.5, attackers can trigger a drivers/char/ipmi/ipmi_msghandler.c use-after-free and OOPS by arranging for certain simultaneous execution of the code, as demonstrated by a "service ipmievd restart" loop.
CVE-2019-5736
- EPSS 53.41%
- Published 11.02.2019 19:29:00
- Last modified 21.11.2024 04:45:24
runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types ...
CVE-2017-7658
- EPSS 11.35%
- Published 26.06.2018 17:29:00
- Last modified 21.11.2024 03:32:23
In Eclipse Jetty Server, versions 9.2.x and older, 9.3.x (all non HTTP/1.x configurations), and 9.4.x (all HTTP/1.x configurations), when presented with two content-lengths headers, Jetty ignored the second. When presented with a content-length and a...
CVE-2017-5715
- EPSS 90.98%
- Published 04.01.2018 13:29:00
- Last modified 06.05.2025 15:15:51
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
CVE-2017-15906
- EPSS 2.76%
- Published 26.10.2017 03:29:00
- Last modified 20.04.2025 01:37:25
The process_open function in sftp-server.c in OpenSSH before 7.6 does not properly prevent write operations in readonly mode, which allows attackers to create zero-length files.