CVE-2021-37701
- EPSS 0.1%
- Veröffentlicht 31.08.2021 17:15:07
- Zuletzt bearbeitet 21.11.2024 06:15:44
The npm package "tar" (aka node-tar) before versions 4.4.16, 5.0.8, and 6.1.7 has an arbitrary file creation/overwrite and arbitrary code execution vulnerability. node-tar aims to guarantee that any file whose location would be modified by a symbolic...
CVE-2021-40330
- EPSS 0.45%
- Veröffentlicht 31.08.2021 04:15:10
- Zuletzt bearbeitet 21.11.2024 06:23:52
git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.
CVE-2020-35633
- EPSS 0.21%
- Veröffentlicht 30.08.2021 18:15:07
- Zuletzt bearbeitet 21.11.2024 05:27:44
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser<EW>::read_sface() store_sm_boundary_item() Edge_of.A specially crafted...
CVE-2020-35634
- EPSS 0.21%
- Veröffentlicht 30.08.2021 18:15:07
- Zuletzt bearbeitet 21.11.2024 05:27:45
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser<EW>::read_sface() sfh->boundary_entry_objects Sloop_of. A specially cr...
CVE-2020-35635
- EPSS 0.33%
- Veröffentlicht 30.08.2021 18:15:07
- Zuletzt bearbeitet 21.11.2024 05:27:45
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sface() store_sm_boundary_item() Sloop_of OOB read. A specially crafted malformed file can lead to...
CVE-2021-28694
- EPSS 0.14%
- Veröffentlicht 27.08.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:00:09
IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables to specify regions of memory which should be left u...
CVE-2021-28695
- EPSS 0.14%
- Veröffentlicht 27.08.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:00:09
IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables to specify regions of memory which should be left u...
CVE-2021-28696
- EPSS 0.09%
- Veröffentlicht 27.08.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:00:09
IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables to specify regions of memory which should be left u...
CVE-2021-28697
- EPSS 0.06%
- Veröffentlicht 27.08.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:00:09
grant table v2 status pages may remain accessible after de-allocation Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire lifetime. Grant table v2 statu...
CVE-2021-28698
- EPSS 0.06%
- Veröffentlicht 27.08.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:00:10
long running loops in grant table handling In order to properly monitor resource use, Xen maintains information on the grant mappings a domain may create to map grants offered by other domains. In the process of carrying out certain actions, Xen woul...