CVE-2017-20005
- EPSS 3.25%
- Veröffentlicht 06.06.2021 22:15:08
- Zuletzt bearbeitet 05.12.2025 15:15:49
NGINX before 1.13.6 has a buffer overflow for years that exceed four digits, as demonstrated by a file with a modification date in 1969 that causes an integer overflow (or a false modification date far in the future), when encountered by the autoinde...
CVE-2021-28091
- EPSS 0.51%
- Veröffentlicht 04.06.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 05:59:04
Lasso all versions prior to 2.7.0 has improper verification of a cryptographic signature.
CVE-2021-33054
- EPSS 0.3%
- Veröffentlicht 04.06.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:08:11
SOGo 2.x before 2.4.1 and 3.x through 5.x before 5.1.1 does not validate the signatures of any SAML assertions it receives. Any actor with network access to the deployment could impersonate users when SAML is the authentication method. (Only versions...
CVE-2020-22054
- EPSS 1.55%
- Veröffentlicht 02.06.2021 18:15:09
- Zuletzt bearbeitet 21.11.2024 05:13:05
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the av_dict_set function in dict.c.
CVE-2015-1877
- EPSS 1.36%
- Veröffentlicht 02.06.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 02:26:19
The open_generic_xdg_mime function in xdg-open in xdg-utils 1.1.0 rc1 in Debian, when using dash, does not properly handle local variables, which allows remote attackers to execute arbitrary commands via a crafted file.
CVE-2020-22046
- EPSS 0.61%
- Veröffentlicht 02.06.2021 16:15:08
- Zuletzt bearbeitet 21.11.2024 05:13:04
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the avpriv_float_dsp_allocl function in libavutil/float_dsp.c.
CVE-2020-22048
- EPSS 0.88%
- Veröffentlicht 02.06.2021 16:15:08
- Zuletzt bearbeitet 21.11.2024 05:13:05
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_frame_pool_get function in framepool.c.
CVE-2020-22049
- EPSS 1.55%
- Veröffentlicht 02.06.2021 16:15:08
- Zuletzt bearbeitet 21.11.2024 05:13:05
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the wtvfile_open_sector function in wtvdec.c.
CVE-2021-3468
- EPSS 0.01%
- Veröffentlicht 02.06.2021 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:21:36
A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loo...
CVE-2019-12067
- EPSS 0.17%
- Veröffentlicht 02.06.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 04:22:10
The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NULL dereference) when the command header 'ad->cur_cmd' is null.