CVE-2021-44224
- EPSS 10.96%
- Veröffentlicht 20.12.2021 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:30:37
A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL pointer dereference) or, for configurations mixing forward and reverse proxy declarations, can allow for requests to be directed to a declared Unix D...
CVE-2021-44790
- EPSS 87.09%
- Veröffentlicht 20.12.2021 12:15:07
- Zuletzt bearbeitet 01.05.2025 15:38:06
A carefully crafted request body can cause a buffer overflow in the mod_lua multipart parser (r:parsebody() called from Lua scripts). The Apache httpd team is not aware of an exploit for the vulnerabilty though it might be possible to craft one. This...
CVE-2021-4136
- EPSS 0.27%
- Veröffentlicht 19.12.2021 17:15:07
- Zuletzt bearbeitet 21.11.2024 06:36:58
vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-30821
- EPSS 0.29%
- Veröffentlicht 28.10.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:04:47
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.0.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A malicious application may be able to execute arbitrary code with kernel pr...
CVE-2021-30823
- EPSS 0.17%
- Veröffentlicht 28.10.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:04:47
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 14.8 and iPadOS 14.8, tvOS 15, Safari 15, watchOS 8. An attacker in a privileged network position may be able to bypass HSTS.
CVE-2021-30824
- EPSS 0.29%
- Veröffentlicht 28.10.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:04:47
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.0.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A malicious application may be able to execute arbitrary code with kernel p...
CVE-2021-30831
- EPSS 0.24%
- Veröffentlicht 28.10.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:04:48
An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing a maliciously crafted font may result in the disclosure of process memory.
CVE-2021-30833
- EPSS 3.05%
- Veröffentlicht 28.10.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:04:48
This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.0.1. Unpacking a maliciously crafted archive may allow an attacker to write arbitrary files.
CVE-2021-30834
- EPSS 0.34%
- Veröffentlicht 28.10.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:04:48
A logic issue was addressed with improved state management. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, iOS 15 and iPadOS 15, watchOS 8, Security Update 2021-007 Catalina. Processing a malicious audio file may result in unexpected appli...
CVE-2021-30836
- EPSS 0.12%
- Veröffentlicht 28.10.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:04:48
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing a maliciously crafted audio file may disclose restricted memory.