CVE-2021-3595
- EPSS 0.03%
- Published 15.06.2021 21:15:10
- Last modified 21.11.2024 06:21:55
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the tftp_input() function and could occur while processing a udp packet that is smaller than the size of the 'tftp_t' structure. This...
CVE-2021-3592
- EPSS 0.02%
- Published 15.06.2021 21:15:09
- Last modified 21.11.2024 06:21:55
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the bootp_input() function and could occur while processing a udp packet that is smaller than the size of the 'bootp_t' structure. A ...
CVE-2021-3593
- EPSS 0.03%
- Published 15.06.2021 21:15:09
- Last modified 21.11.2024 06:21:55
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp6_input() function and could occur while processing a udp packet that is smaller than the size of the 'udphdr' structure. This...
CVE-2021-3594
- EPSS 0.02%
- Published 15.06.2021 21:15:09
- Last modified 21.11.2024 06:21:55
An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp_input() function and could occur while processing a udp packet that is smaller than the size of the 'udphdr' structure. This ...
CVE-2021-31618
- EPSS 18.52%
- Published 15.06.2021 09:15:07
- Last modified 21.11.2024 06:06:02
Apache HTTP Server protocol handler for the HTTP/2 protocol checks received request headers against the size limitations as configured for the server and used for the HTTP/1 protocol as well. On violation of these restrictions and HTTP response is se...
CVE-2021-34693
- EPSS 0.05%
- Published 14.06.2021 22:15:20
- Last modified 21.11.2024 06:10:57
net/can/bcm.c in the Linux kernel through 5.12.10 allows local users to obtain sensitive information from kernel stack memory because parts of a data structure are uninitialized.
CVE-2021-22898
- EPSS 0.13%
- Published 11.06.2021 16:15:11
- Last modified 21.11.2024 05:50:52
curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NE...
CVE-2021-22895
- EPSS 0.36%
- Published 11.06.2021 16:15:10
- Last modified 21.11.2024 05:50:51
Nextcloud Desktop Client before 3.3.1 is vulnerable to improper certificate validation due to lack of SSL certificate verification when using the "Register with a Provider" flow.
CVE-2021-27345
- EPSS 0.09%
- Published 10.06.2021 16:15:08
- Last modified 21.11.2024 05:57:49
A null pointer dereference was discovered in ucompthread in stream.c in Irzip 0.631 which allows attackers to cause a denial of service (DOS) via a crafted compressed file.
CVE-2021-27347
- EPSS 0.09%
- Published 10.06.2021 16:15:08
- Last modified 21.11.2024 05:57:49
Use after free in lzma_decompress_buf function in stream.c in Irzip 0.631 allows attackers to cause Denial of Service (DoS) via a crafted compressed file.