CVE-2021-27219
- EPSS 0.34%
- Veröffentlicht 15.02.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:37
An issue was discovered in GNOME GLib before 2.66.6 and 2.67.x before 2.67.3. The function g_bytes_new has an integer overflow on 64-bit platforms due to an implicit cast from 64 bits to 32 bits. The overflow could potentially lead to memory corrupti...
CVE-2021-27218
- EPSS 5.06%
- Veröffentlicht 15.02.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:37
An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with a buffer of 4GB or more on a 64-bit platform, the length would be truncated modulo 2**32, causing unintended length truncation.
CVE-2020-35496
- EPSS 0.05%
- Veröffentlicht 04.01.2021 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:27:25
There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutils which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The greatest threat of this flaw is to applicat...
CVE-2020-35495
- EPSS 0.21%
- Veröffentlicht 04.01.2021 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:27:25
There's a flaw in binutils /bfd/pef.c. An attacker who is able to submit a crafted input file to be processed by the objdump program could cause a null pointer dereference. The greatest threat from this flaw is to application availability. This flaw ...
CVE-2020-35494
- EPSS 0.21%
- Veröffentlicht 04.01.2021 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:27:25
There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input file to be processed by binutils could cause usage of uninitialized memory. The highest threat is to application availability with a lower threat to da...
CVE-2020-35493
- EPSS 0.3%
- Veröffentlicht 04.01.2021 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:27:24
A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects ...
CVE-2020-15436
- EPSS 0.12%
- Veröffentlicht 23.11.2020 21:15:11
- Zuletzt bearbeitet 21.11.2024 05:05:33
Use-after-free vulnerability in fs/block_dev.c in the Linux kernel before 5.8 allows local users to gain privileges or cause a denial of service by leveraging improper access to a certain error field.
CVE-2020-8648
- EPSS 0.04%
- Veröffentlicht 06.02.2020 01:15:10
- Zuletzt bearbeitet 21.11.2024 05:39:11
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.
CVE-2019-19063
- EPSS 0.07%
- Veröffentlicht 18.11.2019 06:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:06
Two memory leaks in the rtl_usb_probe() function in drivers/net/wireless/realtek/rtlwifi/usb.c in the Linux kernel through 5.3.11 allow attackers to cause a denial of service (memory consumption), aka CID-3f9361695113.
CVE-2019-19061
- EPSS 1.11%
- Veröffentlicht 18.11.2019 06:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:06
A memory leak in the adis_update_scan_mode_burst() function in drivers/iio/imu/adis_buffer.c in the Linux kernel before 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-9c0530e898f3.