CVE-2020-22035
- EPSS 0.57%
- Published 01.06.2021 19:15:07
- Last modified 21.11.2024 05:13:03
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in get_block_row at libavfilter/vf_bm3d.c, which might lead to memory corruption and other potential consequences.
CVE-2020-22036
- EPSS 0.78%
- Published 01.06.2021 19:15:07
- Last modified 21.11.2024 05:13:03
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_intra at libavfilter/vf_bwdif.c, which might lead to memory corruption and other potential consequences.
CVE-2021-3516
- EPSS 0.33%
- Published 01.06.2021 14:15:10
- Last modified 21.11.2024 06:21:43
There's a flaw in libxml2's xmllint in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by xmllint could trigger a use-after-free. The greatest impact of this flaw is to confidentiality, integrity, and availabi...
CVE-2021-29505
- EPSS 90.77%
- Published 28.05.2021 21:15:08
- Last modified 30.05.2025 00:15:20
XStream is software for serializing Java objects to XML and back again. A vulnerability in XStream versions prior to 1.4.17 may allow a remote attacker has sufficient rights to execute commands of the host only by manipulating the processed input str...
CVE-2021-33623
- EPSS 1.26%
- Published 28.05.2021 18:15:07
- Last modified 21.11.2024 06:09:12
The trim-newlines package before 3.0.1 and 4.x before 4.0.1 for Node.js has an issue related to regular expression denial-of-service (ReDoS) for the .end() method.
CVE-2021-33620
- EPSS 8.44%
- Published 28.05.2021 12:15:07
- Last modified 21.11.2024 06:09:12
Squid before 4.15 and 5.x before 5.0.6 allows remote servers to cause a denial of service (affecting availability to all clients) via an HTTP response. The issue trigger is a header that can be expected to exist in HTTP traffic without any malicious ...
CVE-2021-20292
- EPSS 0.02%
- Published 28.05.2021 11:15:08
- Last modified 21.11.2024 05:46:17
There is a flaw reported in the Linux kernel in versions before 5.9 in drivers/gpu/drm/nouveau/nouveau_sgdma.c in nouveau_sgdma_create_ttm in Nouveau DRM subsystem. The issue results from the lack of validating the existence of an object prior to per...
CVE-2020-25710
- EPSS 7%
- Published 28.05.2021 11:15:07
- Last modified 21.11.2024 05:18:32
A flaw was found in OpenLDAP in versions before 2.4.56. This flaw allows an attacker who sends a malicious packet processed by OpenLDAP to force a failed assertion in csnNormalize23(). The highest threat from this vulnerability is to system availabil...
- EPSS 0.02%
- Published 28.05.2021 11:15:07
- Last modified 21.11.2024 05:27:26
A NULL pointer dereference flaw was found in the SCSI emulation support of QEMU in versions before 6.0.0. This flaw allows a privileged guest user to crash the QEMU process on the host, resulting in a denial of service. The highest threat from this v...
CVE-2020-35505
- EPSS 0.02%
- Published 28.05.2021 11:15:07
- Last modified 21.11.2024 05:27:26
A NULL pointer dereference flaw was found in the am53c974 SCSI host bus adapter emulation of QEMU in versions before 6.0.0. This issue occurs while handling the 'Information Transfer' command. This flaw allows a privileged guest user to crash the QEM...