CVE-2021-33560
- EPSS 0.63%
- Veröffentlicht 08.06.2021 11:15:07
- Zuletzt bearbeitet 21.11.2024 06:09:05
Libgcrypt before 1.8.8 and 1.9.x before 1.9.3 mishandles ElGamal encryption because it lacks exponent blinding to address a side-channel attack against mpi_powm, and the window size is not chosen appropriately. This, for example, affects use of ElGam...
CVE-2021-22222
- EPSS 0.4%
- Veröffentlicht 07.06.2021 13:15:07
- Zuletzt bearbeitet 21.11.2024 05:49:44
Infinite loop in DVB-S2-BB dissector in Wireshark 3.4.0 to 3.4.5 allows denial of service via packet injection or crafted capture file
CVE-2017-20005
- EPSS 3.23%
- Veröffentlicht 06.06.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 03:22:25
NGINX before 1.13.6 has a buffer overflow for years that exceed four digits, as demonstrated by a file with a modification date in 1969 that causes an integer overflow (or a false modification date far in the future), when encountered by the autoinde...
CVE-2021-28091
- EPSS 0.51%
- Veröffentlicht 04.06.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 05:59:04
Lasso all versions prior to 2.7.0 has improper verification of a cryptographic signature.
CVE-2021-33054
- EPSS 0.3%
- Veröffentlicht 04.06.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:08:11
SOGo 2.x before 2.4.1 and 3.x through 5.x before 5.1.1 does not validate the signatures of any SAML assertions it receives. Any actor with network access to the deployment could impersonate users when SAML is the authentication method. (Only versions...
CVE-2020-22054
- EPSS 1.55%
- Veröffentlicht 02.06.2021 18:15:09
- Zuletzt bearbeitet 21.11.2024 05:13:05
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the av_dict_set function in dict.c.
CVE-2015-1877
- EPSS 0.59%
- Veröffentlicht 02.06.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 02:26:19
The open_generic_xdg_mime function in xdg-open in xdg-utils 1.1.0 rc1 in Debian, when using dash, does not properly handle local variables, which allows remote attackers to execute arbitrary commands via a crafted file.
CVE-2020-22046
- EPSS 0.61%
- Veröffentlicht 02.06.2021 16:15:08
- Zuletzt bearbeitet 21.11.2024 05:13:04
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the avpriv_float_dsp_allocl function in libavutil/float_dsp.c.
CVE-2020-22048
- EPSS 0.88%
- Veröffentlicht 02.06.2021 16:15:08
- Zuletzt bearbeitet 21.11.2024 05:13:05
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_frame_pool_get function in framepool.c.
CVE-2020-22049
- EPSS 1.55%
- Veröffentlicht 02.06.2021 16:15:08
- Zuletzt bearbeitet 21.11.2024 05:13:05
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the wtvfile_open_sector function in wtvdec.c.