CVE-2020-10015
- EPSS 0.24%
- Published 02.04.2021 18:15:14
- Last modified 21.11.2024 04:54:39
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1. An application may be able to execute arbit...
CVE-2020-36226
- EPSS 0.57%
- Published 26.01.2021 18:15:57
- Last modified 21.11.2024 05:29:05
A flaw was discovered in OpenLDAP before 2.4.57 leading to a memch->bv_len miscalculation and slapd crash in the saslAuthzTo processing, resulting in denial of service.
CVE-2020-36229
- EPSS 1.98%
- Published 26.01.2021 18:15:57
- Last modified 21.11.2024 05:29:06
A flaw was discovered in ldap_X509dn2bv in OpenLDAP before 2.4.57 leading to a slapd crash in the X.509 DN parsing in ad_keystring, resulting in denial of service.
CVE-2020-36230
- EPSS 1.72%
- Published 26.01.2021 18:15:57
- Last modified 21.11.2024 05:29:06
A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service.
CVE-2020-36221
- EPSS 47.65%
- Published 26.01.2021 18:15:56
- Last modified 21.11.2024 05:29:04
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the Certificate Exact Assertion processing, resulting in denial of service (schema_init.c serialNumberAndIssuerCheck).
CVE-2020-36222
- EPSS 29.74%
- Published 26.01.2021 18:15:56
- Last modified 21.11.2024 05:29:04
A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, resulting in denial of service.
CVE-2020-36223
- EPSS 6.01%
- Published 26.01.2021 18:15:56
- Last modified 21.11.2024 05:29:04
A flaw was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Values Return Filter control handling, resulting in denial of service (double free and out-of-bounds read).
CVE-2020-36224
- EPSS 0.78%
- Published 26.01.2021 18:15:56
- Last modified 21.11.2024 05:29:04
A flaw was discovered in OpenLDAP before 2.4.57 leading to an invalid pointer free and slapd crash in the saslAuthzTo processing, resulting in denial of service.
CVE-2020-8286
- EPSS 0.28%
- Published 14.12.2020 20:15:14
- Last modified 21.11.2024 05:38:39
curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP response.
CVE-2020-8284
- EPSS 0.1%
- Published 14.12.2020 20:15:13
- Last modified 21.11.2024 05:38:39
A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about services that are otherwise private and not disclosed,...