Opensuse

Leap

1897 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3%
  • Published 29.11.2019 14:15:11
  • Last modified 21.11.2024 04:27:37

A heap-based buffer overflow was discovered in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The flaw could occur when the station attempts a connection negotiation during the handling of the remote device...

Exploit
  • EPSS 0.35%
  • Published 28.11.2019 00:15:11
  • Last modified 21.11.2024 04:34:34

In the Linux kernel 5.3.11, mounting a crafted btrfs image twice can cause an rwsem_down_write_slowpath use-after-free because (in rwsem_can_spin_on_owner in kernel/locking/rwsem.c) rwsem_owner_flags returns an already freed pointer,

Exploit
  • EPSS 0.44%
  • Published 27.11.2019 23:15:11
  • Last modified 21.11.2024 04:34:34

In the Linux kernel before 5.2, a setxattr operation, after a mount of a crafted ext4 image, can cause a slab-out-of-bounds write access because of an ext4_xattr_set_entry use-after-free in fs/ext4/xattr.c when a large old_size value is used in a mem...

  • EPSS 0.03%
  • Published 27.11.2019 23:15:10
  • Last modified 21.11.2024 04:33:28

The Linux kernel before 5.4.1 on powerpc allows Information Exposure because the Spectre-RSB mitigation is not in place for all applicable CPUs, aka CID-39e72bf96f58. This is related to arch/powerpc/kernel/entry_64.S and arch/powerpc/kernel/security....

Exploit
  • EPSS 1.27%
  • Published 26.11.2019 18:15:15
  • Last modified 21.11.2024 04:30:24

Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 allows code injection if the first argument (aka the "command" argument) to Shell#[] or Shell#test in lib/shell.rb is untrusted data. An attacker can exploit this to call an arbitrary R...

  • EPSS 0.56%
  • Published 26.11.2019 17:15:10
  • Last modified 21.11.2024 04:23:01

An issue was discovered in Squid before 4.9. When handling a URN request, a corresponding HTTP request is made. This HTTP request doesn't go through the access checks that incoming HTTP requests go through. This causes all access checks to be bypasse...

  • EPSS 33.64%
  • Published 26.11.2019 17:15:10
  • Last modified 21.11.2024 04:23:02

An issue was discovered in Squid before 4.9. URN response handling in Squid suffers from a heap-based buffer overflow. When receiving data from a remote server in response to an URN request, Squid fails to ensure that the response can fit within the ...

  • EPSS 0.37%
  • Published 26.11.2019 14:15:11
  • Last modified 21.11.2024 04:27:30

ansible before versions 2.8.6, 2.7.14, 2.6.20 is vulnerable to a None

Warning Exploit
  • EPSS 90.14%
  • Published 25.11.2019 15:15:33
  • Last modified 05.02.2025 13:59:15

Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

  • EPSS 0.32%
  • Published 25.11.2019 11:15:11
  • Last modified 21.11.2024 04:18:40

The containers/image library used by the container tools Podman, Buildah, and Skopeo in Red Hat Enterprise Linux version 8 and CRI-O in OpenShift Container Platform, does not enforce TLS connections to the container registry authorization service. An...