CVE-2020-25467
- EPSS 0.11%
- Veröffentlicht 10.06.2021 16:15:07
- Zuletzt bearbeitet 21.11.2024 05:18:00
A null pointer dereference was discovered lzo_decompress_buf in stream.c in Irzip 0.621 which allows an attacker to cause a denial of service (DOS) via a crafted compressed file.
CVE-2020-13950
- EPSS 17.37%
- Veröffentlicht 10.06.2021 07:15:07
- Zuletzt bearbeitet 21.11.2024 05:02:13
Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash (NULL pointer dereference) with specially crafted requests using both Content-Length and Transfer-Encoding headers, leading to a Denial of Service
CVE-2020-35452
- EPSS 14.97%
- Veröffentlicht 10.06.2021 07:15:07
- Zuletzt bearbeitet 21.11.2024 05:27:18
Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particula...
CVE-2021-26690
- EPSS 71.59%
- Veröffentlicht 10.06.2021 07:15:07
- Zuletzt bearbeitet 21.11.2024 05:56:40
Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service
CVE-2021-26691
- EPSS 38.43%
- Veröffentlicht 10.06.2021 07:15:07
- Zuletzt bearbeitet 21.11.2024 05:56:41
In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow
CVE-2021-30641
- EPSS 21.35%
- Veröffentlicht 10.06.2021 07:15:07
- Zuletzt bearbeitet 21.11.2024 06:04:21
Apache HTTP Server versions 2.4.39 to 2.4.46 Unexpected matching behavior with 'MergeSlashes OFF'
CVE-2020-24489
- EPSS 0.07%
- Veröffentlicht 09.06.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:14:54
Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2021-0089
- EPSS 0.06%
- Veröffentlicht 09.06.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:41:49
Observable response discrepancy in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
CVE-2021-0129
- EPSS 0.18%
- Veröffentlicht 09.06.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:42:01
Improper access control in BlueZ may allow an authenticated user to potentially enable information disclosure via adjacent access.
CVE-2020-24511
- EPSS 0.07%
- Veröffentlicht 09.06.2021 19:15:08
- Zuletzt bearbeitet 21.11.2024 05:14:56
Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.