CVE-2018-14468
- EPSS 0.68%
- Veröffentlicht 03.10.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 03:49:08
The FRF.16 parser in tcpdump before 4.9.3 has a buffer over-read in print-fr.c:mfr_print().
CVE-2018-14469
- EPSS 1.74%
- Veröffentlicht 03.10.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 03:49:08
The IKEv1 parser in tcpdump before 4.9.3 has a buffer over-read in print-isakmp.c:ikev1_n_print().
CVE-2019-17068
- EPSS 0.47%
- Veröffentlicht 01.10.2019 17:15:10
- Zuletzt bearbeitet 21.11.2024 04:31:38
PuTTY before 0.73 mishandles the "bracketed paste mode" protection mechanism, which may allow a session to be affected by malicious clipboard content.
CVE-2019-17069
- EPSS 0.47%
- Veröffentlicht 01.10.2019 17:15:10
- Zuletzt bearbeitet 21.11.2024 04:31:38
PuTTY before 0.73 might allow remote SSH-1 servers to cause a denial of service by accessing freed memory locations via an SSH1_MSG_DISCONNECT message.
CVE-2019-17055
- EPSS 0.09%
- Veröffentlicht 01.10.2019 14:15:51
- Zuletzt bearbeitet 21.11.2024 04:31:36
base_sock_create in drivers/isdn/mISDN/socket.c in the AF_ISDN network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-b91ee4aa2a21.
CVE-2019-16276
- EPSS 10.83%
- Veröffentlicht 30.09.2019 19:15:08
- Zuletzt bearbeitet 21.11.2024 04:30:26
Go before 1.12.10 and 1.13.x before 1.13.1 allow HTTP Request Smuggling.
CVE-2019-16994
- EPSS 0.08%
- Veröffentlicht 30.09.2019 13:15:11
- Zuletzt bearbeitet 21.11.2024 04:31:30
In the Linux kernel before 5.0, a memory leak exists in sit_init_net() in net/ipv6/sit.c when register_netdev() fails to register sitn->fb_tunnel_dev, which may cause denial of service, aka CID-07f12b26e21a.
CVE-2019-16995
- EPSS 2%
- Veröffentlicht 30.09.2019 13:15:11
- Zuletzt bearbeitet 21.11.2024 04:31:30
In the Linux kernel before 5.0.3, a memory leak exits in hsr_dev_finalize() in net/hsr/hsr_device.c if hsr_add_port fails to add a port, which may cause denial of service, aka CID-6caabe7f197d.
CVE-2019-9433
- EPSS 3.02%
- Veröffentlicht 27.09.2019 19:15:29
- Zuletzt bearbeitet 21.11.2024 04:51:38
In libvpx, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVers...
CVE-2019-9371
- EPSS 9.25%
- Veröffentlicht 27.09.2019 19:15:24
- Zuletzt bearbeitet 21.11.2024 04:51:31
In libvpx, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: An...