CVE-2020-36230
- EPSS 1.92%
- Veröffentlicht 26.01.2021 18:15:57
- Zuletzt bearbeitet 21.11.2024 05:29:06
A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service.
CVE-2020-36221
- EPSS 47.65%
- Veröffentlicht 26.01.2021 18:15:56
- Zuletzt bearbeitet 21.11.2024 05:29:04
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the Certificate Exact Assertion processing, resulting in denial of service (schema_init.c serialNumberAndIssuerCheck).
CVE-2020-36222
- EPSS 27.19%
- Veröffentlicht 26.01.2021 18:15:56
- Zuletzt bearbeitet 21.11.2024 05:29:04
A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, resulting in denial of service.
CVE-2020-36223
- EPSS 6.67%
- Veröffentlicht 26.01.2021 18:15:56
- Zuletzt bearbeitet 21.11.2024 05:29:04
A flaw was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Values Return Filter control handling, resulting in denial of service (double free and out-of-bounds read).
CVE-2020-36224
- EPSS 0.87%
- Veröffentlicht 26.01.2021 18:15:56
- Zuletzt bearbeitet 21.11.2024 05:29:04
A flaw was discovered in OpenLDAP before 2.4.57 leading to an invalid pointer free and slapd crash in the saslAuthzTo processing, resulting in denial of service.
CVE-2020-8286
- EPSS 0.38%
- Veröffentlicht 14.12.2020 20:15:14
- Zuletzt bearbeitet 21.11.2024 05:38:39
curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP response.
CVE-2020-8284
- EPSS 0.1%
- Veröffentlicht 14.12.2020 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:38:39
A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about services that are otherwise private and not disclosed,...
CVE-2020-8285
- EPSS 0.74%
- Veröffentlicht 14.12.2020 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:38:39
curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing.
CVE-2020-13520
- EPSS 0.9%
- Veröffentlicht 11.12.2020 04:15:11
- Zuletzt bearbeitet 21.11.2024 05:01:25
An out of bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 reconstructs paths from binary USD files. A specially crafted malformed file can trigger an out of bounds memory modification which can result in remote code execu...
CVE-2020-27896
- EPSS 0.98%
- Veröffentlicht 08.12.2020 22:15:18
- Zuletzt bearbeitet 21.11.2024 05:22:00
A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able to modify the file system.