Opensuse

Leap

1897 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.23%
  • Published 29.05.2020 16:15:09
  • Last modified 21.11.2024 04:56:35

In FreeRDP less than or equal to 2.0.0, by providing manipulated input a malicious client can create a double free condition and crash the server. This is fixed in version 2.1.0.

  • EPSS 0.1%
  • Published 28.05.2020 15:15:11
  • Last modified 21.11.2024 05:01:07

In QEMU 5.0.0 and earlier, megasas_lookup_frame in hw/scsi/megasas.c has an out-of-bounds read via a crafted reply_queue_head field from a guest OS user.

  • EPSS 0.08%
  • Published 28.05.2020 14:15:11
  • Last modified 21.11.2024 04:39:24

In Vim before 8.1.0881, users can circumvent the rvim restricted mode and execute arbitrary OS commands via scripting interfaces (e.g., Python, Ruby, or Lua).

  • EPSS 0.1%
  • Published 28.05.2020 14:15:11
  • Last modified 21.11.2024 05:01:06

In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.

Exploit
  • EPSS 0.58%
  • Published 26.05.2020 23:15:10
  • Last modified 21.11.2024 05:01:36

An issue was discovered in ssl.c in Axel before 2.17.8. The TLS implementation lacks hostname verification.

  • EPSS 13.13%
  • Published 26.05.2020 18:15:11
  • Last modified 21.11.2024 05:36:15

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

  • EPSS 0.4%
  • Published 22.05.2020 18:15:11
  • Last modified 21.11.2024 05:01:10

An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in ntlm_read_ChallengeMessage in winpr/libwinpr/sspi/NTLM/ntlm_message.c.

  • EPSS 0.11%
  • Published 22.05.2020 18:15:11
  • Last modified 21.11.2024 05:01:10

An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in security_fips_decrypt in libfreerdp/core/security.c due to an uninitialized value.

  • EPSS 0.6%
  • Published 22.05.2020 18:15:11
  • Last modified 21.11.2024 05:01:10

An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) write vulnerability has been detected in crypto_rsa_common in libfreerdp/crypto/crypto.c.

  • EPSS 1.18%
  • Published 22.05.2020 15:15:11
  • Last modified 21.11.2024 04:55:54

A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the...