Opensuse

Leap

1897 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.09%
  • Veröffentlicht 11.09.2019 16:15:11
  • Zuletzt bearbeitet 21.11.2024 04:30:20

drivers/scsi/qla2xxx/qla_os.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.

  • EPSS 0.06%
  • Veröffentlicht 11.09.2019 16:15:11
  • Zuletzt bearbeitet 21.11.2024 04:30:20

drivers/net/wireless/intel/iwlwifi/pcie/trans.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.

Exploit
  • EPSS 0.24%
  • Veröffentlicht 09.09.2019 17:15:13
  • Zuletzt bearbeitet 21.11.2024 04:30:11

sysstat before 12.1.6 has memory corruption due to an Integer Overflow in remap_struct() in sa_common.c.

  • EPSS 0.32%
  • Veröffentlicht 08.09.2019 16:15:11
  • Zuletzt bearbeitet 21.11.2024 02:45:07

IMAPFilter through 2.6.12 does not validate the hostname in an SSL certificate.

  • EPSS 0.02%
  • Veröffentlicht 06.09.2019 22:15:13
  • Zuletzt bearbeitet 21.11.2024 04:51:40

In the Android kernel in the video driver there is a kernel pointer leak due to a WARN_ON statement. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

  • EPSS 0.16%
  • Veröffentlicht 06.09.2019 22:15:13
  • Zuletzt bearbeitet 21.11.2024 04:51:40

In the Android kernel in Pixel C USB monitor driver there is a possible OOB write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation...

  • EPSS 0.02%
  • Veröffentlicht 06.09.2019 22:15:13
  • Zuletzt bearbeitet 21.11.2024 04:51:40

In the Android kernel in the video driver there is a use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • EPSS 0.67%
  • Veröffentlicht 06.09.2019 19:15:12
  • Zuletzt bearbeitet 21.11.2024 04:52:26

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify tha...

  • EPSS 0.76%
  • Veröffentlicht 06.09.2019 19:15:11
  • Zuletzt bearbeitet 21.11.2024 04:52:26

LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events such as mouse-over, document-open etc. Access is intended to be restricted to scripts under the share/Scripts/python, user/Script...

  • EPSS 0.58%
  • Veröffentlicht 06.09.2019 18:15:15
  • Zuletzt bearbeitet 21.11.2024 04:29:57

An issue was discovered in Python through 2.7.16, 3.x through 3.5.7, 3.6.x through 3.6.9, and 3.7.x through 3.7.4. The email module wrongly parses email addresses that contain multiple @ characters. An application that uses the email module and imple...