CVE-2019-7574
- EPSS 6.12%
- Veröffentlicht 07.02.2019 07:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:21
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decode in audio/SDL_wave.c.
CVE-2019-7575
- EPSS 2.23%
- Veröffentlicht 07.02.2019 07:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:21
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in MS_ADPCM_decode in audio/SDL_wave.c.
CVE-2019-7576
- EPSS 5.67%
- Veröffentlicht 07.02.2019 07:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:21
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (outside the wNumCoef loop).
CVE-2019-7577
- EPSS 6.12%
- Veröffentlicht 07.02.2019 07:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:21
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in SDL_LoadWAV_RW in audio/SDL_wave.c.
CVE-2019-7548
- EPSS 1.11%
- Veröffentlicht 06.02.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:48:18
SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled.
CVE-2019-3820
- EPSS 0.05%
- Veröffentlicht 06.02.2019 20:29:00
- Zuletzt bearbeitet 21.11.2024 04:42:36
It was discovered that the gnome-shell lock screen since version 3.15.91 did not properly restrict all contextual actions. An attacker with physical access to a locked workstation could invoke certain keyboard shortcuts, and potentially other actions...
CVE-2018-18506
- EPSS 2.44%
- Veröffentlicht 05.02.2019 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:04
When proxy auto-detection is enabled, if a web server serves a Proxy Auto-Configuration (PAC) file or if a PAC file is loaded locally, this PAC file can specify that requests to the localhost are to be sent through the proxy to another server. This b...
CVE-2018-8793
- EPSS 8.1%
- Veröffentlicht 05.02.2019 20:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:19
rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function cssp_read_tsrequest() that results in a memory corruption and probably even a remote code execution.
CVE-2018-8794
- EPSS 6.07%
- Veröffentlicht 05.02.2019 20:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:19
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to an Out-Of-Bounds Write in function process_bitmap_updates() and results in a memory corruption and possibly even a remote code execution.
CVE-2018-8795
- EPSS 6.79%
- Veröffentlicht 05.02.2019 20:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:19
rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in function process_bitmap_updates() and results in a memory corruption and probably even a remote code execution.