CVE-2019-19816
- EPSS 0.25%
- Published 17.12.2019 06:15:12
- Last modified 21.11.2024 04:35:26
In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image and performing some operations can cause slab-out-of-bounds write access in __btrfs_map_block in fs/btrfs/volumes.c, because a value of 1 for the number of data stripes is mishandl...
CVE-2019-19830
- EPSS 0.57%
- Published 17.12.2019 05:15:14
- Last modified 21.11.2024 04:35:28
_core_/plugins/medias in SPIP 3.2.x before 3.2.7 allows remote authenticated authors to inject content into the database.
CVE-2019-16779
- EPSS 0.56%
- Published 16.12.2019 20:15:15
- Last modified 21.11.2024 04:31:10
In RubyGem excon before 0.71.0, there was a race condition around persistent connections, where a connection which is interrupted (such as by a timeout) would leave data on the socket. Subsequent requests would then read this data, returning content ...
CVE-2019-19331
- EPSS 0.25%
- Published 16.12.2019 16:15:11
- Last modified 21.11.2024 04:34:35
knot-resolver before version 4.3.0 is vulnerable to denial of service through high CPU utilization. DNS replies with very many resource records might be processed very inefficiently, in extreme cases taking even several CPU seconds for each such unca...
CVE-2019-19783
- EPSS 1.35%
- Published 16.12.2019 14:15:12
- Last modified 21.11.2024 04:35:22
An issue was discovered in Cyrus IMAP before 2.5.15, 3.0.x before 3.0.13, and 3.1.x through 3.1.8. If sieve script uploading is allowed (3.x) or certain non-default sieve options are enabled (2.x), a user with a mail account on the service can use a ...
CVE-2014-8650
- EPSS 0.48%
- Published 15.12.2019 22:15:12
- Last modified 21.11.2024 02:19:30
python-requests-Kerberos through 0.5 does not handle mutual authentication
CVE-2014-4913
- EPSS 0.57%
- Published 15.12.2019 22:15:11
- Last modified 21.11.2024 02:11:06
ZF2014-03 has a potential cross site scripting vector in multiple view helpers
CVE-2014-8561
- EPSS 1.04%
- Published 15.12.2019 22:15:11
- Last modified 21.11.2024 02:19:20
imagemagick 6.8.9.6 has remote DOS via infinite loop
CVE-2019-19797
- EPSS 0.08%
- Published 15.12.2019 20:15:11
- Last modified 21.11.2024 04:35:24
read_colordef in read.c in Xfig fig2dev 3.2.7b has an out-of-bounds write.
CVE-2014-3495
- EPSS 0.28%
- Published 13.12.2019 14:15:12
- Last modified 21.11.2024 02:08:13
duplicity 0.6.24 has improper verification of SSL certificates