CVE-2020-8647
- EPSS 0.08%
 - Veröffentlicht 06.02.2020 01:15:10
 - Zuletzt bearbeitet 21.11.2024 05:39:10
 
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vc_do_resize function in drivers/tty/vt/vt.c.
CVE-2020-8648
- EPSS 0.04%
 - Veröffentlicht 06.02.2020 01:15:10
 - Zuletzt bearbeitet 21.11.2024 05:39:11
 
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.
CVE-2020-8649
- EPSS 0.09%
 - Veröffentlicht 06.02.2020 01:15:10
 - Zuletzt bearbeitet 21.11.2024 05:39:11
 
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.
CVE-2020-5208
- EPSS 0.57%
 - Veröffentlicht 05.02.2020 14:15:11
 - Zuletzt bearbeitet 21.11.2024 05:33:40
 
It's been found that multiple functions in ipmitool before 1.8.19 neglect proper checking of the data received from a remote LAN party, which may lead to buffer overflows and potentially to remote code execution on the ipmitool side. This is especial...
CVE-2020-8631
- EPSS 0.12%
 - Veröffentlicht 05.02.2020 14:15:11
 - Zuletzt bearbeitet 21.11.2024 05:39:09
 
cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.
CVE-2020-8632
- EPSS 0.14%
 - Veröffentlicht 05.02.2020 14:15:11
 - Zuletzt bearbeitet 21.11.2024 05:39:09
 
In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.
CVE-2019-12528
- EPSS 20.52%
 - Veröffentlicht 04.02.2020 21:15:10
 - Zuletzt bearbeitet 21.11.2024 04:23:02
 
An issue was discovered in Squid before 4.10. It allows a crafted FTP server to trigger disclosure of sensitive information from heap memory, such as information associated with other users' sessions or non-Squid processes.
CVE-2020-8449
- EPSS 3.29%
 - Veröffentlicht 04.02.2020 20:15:14
 - Zuletzt bearbeitet 21.11.2024 05:38:52
 
An issue was discovered in Squid before 4.10. Due to incorrect input validation, it can interpret crafted HTTP requests in unexpected ways to access server resources prohibited by earlier security filters.
CVE-2020-8450
- EPSS 43.09%
 - Veröffentlicht 04.02.2020 20:15:14
 - Zuletzt bearbeitet 21.11.2024 05:38:52
 
An issue was discovered in Squid before 4.10. Due to incorrect buffer management, a remote client can cause a buffer overflow in a Squid instance acting as a reverse proxy.
CVE-2020-8597
- EPSS 63.74%
 - Veröffentlicht 03.02.2020 23:15:11
 - Zuletzt bearbeitet 21.11.2024 05:39:05
 
eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.