CVE-2019-20012
- EPSS 0.58%
- Veröffentlicht 27.12.2019 01:15:13
- Zuletzt bearbeitet 21.11.2024 04:37:53
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_HATCH_private in dwg.spec.
CVE-2019-20013
- EPSS 0.56%
- Veröffentlicht 27.12.2019 01:15:13
- Zuletzt bearbeitet 21.11.2024 04:37:53
An issue was discovered in GNU LibreDWG before 0.93. Crafted input will lead to an attempted excessive memory allocation in decode_3dsolid in dwg.spec.
CVE-2019-20014
- EPSS 0.51%
- Veröffentlicht 27.12.2019 01:15:13
- Zuletzt bearbeitet 21.11.2024 04:37:53
An issue was discovered in GNU LibreDWG before 0.93. There is a double-free in dwg_free in free.c.
CVE-2019-20015
- EPSS 0.58%
- Veröffentlicht 27.12.2019 01:15:13
- Zuletzt bearbeitet 21.11.2024 04:37:53
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_LWPOLYLINE_private in dwg.spec.
CVE-2019-15695
- EPSS 3.42%
- Veröffentlicht 26.12.2019 16:15:10
- Zuletzt bearbeitet 21.11.2024 04:29:16
TigerVNC version prior to 1.10.1 is vulnerable to stack buffer overflow, which could be triggered from CMsgReader::readSetCursor. This vulnerability occurs due to insufficient sanitization of PixelFormat. Since remote attacker can choose offset from ...
CVE-2019-15691
- EPSS 3.87%
- Veröffentlicht 26.12.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:29:16
TigerVNC version prior to 1.10.1 is vulnerable to stack use-after-return, which occurs due to incorrect usage of stack memory in ZRLEDecoder. If decoding routine would throw an exception, ZRLEDecoder may try to access stack variable, which has been a...
CVE-2019-15692
- EPSS 5.3%
- Veröffentlicht 26.12.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:29:16
TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow. Vulnerability could be triggered from CopyRectDecoder due to incorrect value checks. Exploitation of this vulnerability could potentially result into remote code execution. This ...
CVE-2019-15694
- EPSS 6.31%
- Veröffentlicht 26.12.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:29:16
TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow, which could be triggered from DecodeManager::decodeRect. Vulnerability occurs due to the signdness error in processing MemOutStream. Exploitation of this vulnerability could pote...
CVE-2019-19965
- EPSS 0.04%
- Veröffentlicht 25.12.2019 04:15:12
- Zuletzt bearbeitet 21.11.2024 04:35:45
In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of mishandling of port disconnection during discovery, related to a PHY down race condition, aka CID-f70267f379b5.
CVE-2019-19966
- EPSS 0.14%
- Veröffentlicht 25.12.2019 04:15:12
- Zuletzt bearbeitet 21.11.2024 04:35:45
In the Linux kernel before 5.1.6, there is a use-after-free in cpia2_exit() in drivers/media/usb/cpia2/cpia2_v4l.c that will cause denial of service, aka CID-dea37a972655.