CVE-2021-46142
- EPSS 0.09%
- Veröffentlicht 06.01.2022 04:15:06
- Zuletzt bearbeitet 21.11.2024 06:33:40
An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriNormalizeSyntax.
CVE-2021-28711
- EPSS 0.03%
- Veröffentlicht 05.01.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:00:11
Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unp...
CVE-2021-28712
- EPSS 0.03%
- Veröffentlicht 05.01.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:00:11
Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unp...
CVE-2021-28713
- EPSS 0.03%
- Veröffentlicht 05.01.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:00:11
Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen offers the ability to run PV backends in regular unp...
CVE-2021-41141
- EPSS 0.31%
- Veröffentlicht 04.01.2022 19:15:14
- Zuletzt bearbeitet 21.11.2024 06:25:34
PJSIP is a free and open source multimedia communication library written in the C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In various parts of PJSIP, when error/failure occurs, it is found that the fu...
CVE-2021-3842
- EPSS 0.41%
- Veröffentlicht 04.01.2022 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:22:36
nltk is vulnerable to Inefficient Regular Expression Complexity
CVE-2021-45972
- EPSS 0.32%
- Veröffentlicht 01.01.2022 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:33:24
The giftrans function in giftrans 1.12.2 contains a stack-based buffer overflow because a value inside the input file determines the amount of data to write. This allows an attacker to overwrite up to 250 bytes outside of the allocated buffer with ar...
- EPSS 0.37%
- Veröffentlicht 01.01.2022 19:15:08
- Zuletzt bearbeitet 05.05.2025 17:17:28
In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
CVE-2021-41819
- EPSS 0.88%
- Veröffentlicht 01.01.2022 06:15:07
- Zuletzt bearbeitet 22.05.2025 15:15:54
CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.
CVE-2021-41817
- EPSS 0.54%
- Veröffentlicht 01.01.2022 05:15:08
- Zuletzt bearbeitet 21.11.2024 06:26:48
Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.