CVE-2020-27830
- EPSS 0.15%
- Veröffentlicht 13.05.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 05:21:53
A vulnerability was found in Linux Kernel where in the spk_ttyio_receive_buf2() function, it would dereference spk_ttyio_synth without checking whether it is NULL or not, and may lead to a NULL-ptr deref crash.
CVE-2020-27824
- EPSS 0.25%
- Veröffentlicht 13.05.2021 14:15:17
- Zuletzt bearbeitet 21.11.2024 05:21:52
A flaw was found in OpenJPEG’s encoder in the opj_dwt_calc_explicit_stepsizes() function. This flaw allows an attacker who can supply crafted input to decomposition levels to cause a buffer overflow. The highest threat from this vulnerability is to s...
CVE-2021-31215
- EPSS 0.7%
- Veröffentlicht 13.05.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 06:05:18
SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7 allows remote code execution as SlurmUser because use of a PrologSlurmctld or EpilogSlurmctld script leads to environment mishandling.
CVE-2021-23134
- EPSS 0.03%
- Veröffentlicht 12.05.2021 23:15:07
- Zuletzt bearbeitet 21.11.2024 05:51:16
Use After Free vulnerability in nfc sockets in the Linux Kernel before 5.12.4 allows local attackers to elevate their privileges. In typical configurations, the issue can only be triggered by a privileged local user with the CAP_NET_RAW capability.
CVE-2020-27840
- EPSS 17.99%
- Veröffentlicht 12.05.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 05:21:54
A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces to instead write a zero-byte into out-of-bounds memory, resulting in a crash. The highest threat from...
CVE-2021-20277
- EPSS 14.91%
- Veröffentlicht 12.05.2021 14:15:11
- Zuletzt bearbeitet 21.11.2024 05:46:16
A flaw was found in Samba's libldb. Multiple, consecutive leading spaces in an LDAP attribute can lead to an out-of-bounds memory write, leading to a crash of the LDAP server process handling the request. The highest threat from this vulnerability is...
CVE-2021-3504
- EPSS 0.12%
- Veröffentlicht 11.05.2021 23:15:09
- Zuletzt bearbeitet 21.11.2024 06:21:42
A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memor...
CVE-2021-20309
- EPSS 0.24%
- Veröffentlicht 11.05.2021 23:15:08
- Zuletzt bearbeitet 21.11.2024 05:46:20
A flaw was found in ImageMagick in versions before 7.0.11 and before 6.9.12, where a division by zero in WaveImage() of MagickCore/visual-effects.c may trigger undefined behavior via a crafted image file submitted to an application using ImageMagick....
CVE-2021-20312
- EPSS 0.13%
- Veröffentlicht 11.05.2021 23:15:08
- Zuletzt bearbeitet 21.11.2024 05:46:21
A flaw was found in ImageMagick in versions 7.0.11, where an integer overflow in WriteTHUMBNAILImage of coders/thumbnail.c may trigger undefined behavior via a crafted image file that is submitted by an attacker and processed by an application using ...
CVE-2021-20313
- EPSS 0.19%
- Veröffentlicht 11.05.2021 23:15:08
- Zuletzt bearbeitet 21.11.2024 05:46:21
A flaw was found in ImageMagick in versions before 7.0.11. A potential cipher leak when the calculate signatures in TransformSignature is possible. The highest threat from this vulnerability is to data confidentiality.