CVE-2019-5846
- EPSS 0.97%
- Veröffentlicht 03.01.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:45:37
Out of bounds access in SwiftShader in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-5496
- EPSS 0.2%
- Veröffentlicht 03.01.2020 22:15:13
- Zuletzt bearbeitet 21.11.2024 05:34:10
FontForge 20190801 has a heap-based buffer overflow in the Type2NotDefSplines() function in splinesave.c.
CVE-2020-5395
- EPSS 0.28%
- Veröffentlicht 03.01.2020 20:15:12
- Zuletzt bearbeitet 21.11.2024 05:34:03
FontForge 20190801 has a use-after-free in SFD_GetFontMetaData in sfd.c.
CVE-2019-14864
- EPSS 0.94%
- Veröffentlicht 02.01.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 04:27:31
Ansible, versions 2.9.x before 2.9.1, 2.8.x before 2.8.7 and Ansible versions 2.7.x before 2.7.15, is not respecting the flag no_log set it to True when Sumologic and Splunk callback plugins are used send tasks results events to collectors. This woul...
- EPSS 0.21%
- Veröffentlicht 31.12.2019 02:15:10
- Zuletzt bearbeitet 21.11.2024 04:35:41
In the Linux kernel 5.0.0-rc7 (as distributed in ubuntu/linux.git on kernel.ubuntu.com), mounting a crafted f2fs filesystem image and performing some operations can lead to slab-out-of-bounds read access in ttm_put_pages in drivers/gpu/drm/ttm/ttm_pa...
CVE-2019-20095
- EPSS 0.13%
- Veröffentlicht 30.12.2019 05:15:11
- Zuletzt bearbeitet 21.11.2024 04:38:03
mwifiex_tm_cmd in drivers/net/wireless/marvell/mwifiex/cfg80211.c in the Linux kernel before 5.1.6 has some error-handling cases that did not free allocated hostcmd memory, aka CID-003b686ace82. This will cause a memory leak and denial of service.
CVE-2019-20053
- EPSS 0.37%
- Veröffentlicht 27.12.2019 22:15:11
- Zuletzt bearbeitet 11.04.2025 12:27:55
An invalid memory address dereference was discovered in the canUnpack function in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.
CVE-2019-20009
- EPSS 0.56%
- Veröffentlicht 27.12.2019 01:15:13
- Zuletzt bearbeitet 21.11.2024 04:37:52
An issue was discovered in GNU LibreDWG before 0.93. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_SPLINE_private in dwg.spec.
CVE-2019-20010
- EPSS 0.51%
- Veröffentlicht 27.12.2019 01:15:13
- Zuletzt bearbeitet 21.11.2024 04:37:52
An issue was discovered in GNU LibreDWG 0.92. There is a use-after-free in resolve_objectref_vector in decode.c.
CVE-2019-20011
- EPSS 0.51%
- Veröffentlicht 27.12.2019 01:15:13
- Zuletzt bearbeitet 21.11.2024 04:37:52
An issue was discovered in GNU LibreDWG 0.92. There is a heap-based buffer over-read in decode_R13_R2000 in decode.c.