CVE-2020-21041
- EPSS 1.7%
- Veröffentlicht 24.05.2021 18:15:07
- Zuletzt bearbeitet 21.11.2024 05:12:23
Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote malicious user cause a Denial of Service
CVE-2020-26558
- EPSS 0.02%
- Veröffentlicht 24.05.2021 18:15:07
- Zuletzt bearbeitet 04.11.2025 20:15:58
Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to identify the Passkey used during pairing (in the Passkey authentication procedure) by reflection of the public ke...
CVE-2020-36328
- EPSS 0.53%
- Veröffentlicht 21.05.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:29:17
A flaw was found in libwebp in versions before 1.0.1. A heap-based buffer overflow in function WebPDecodeRGBInto is possible due to an invalid check for buffer size. The highest threat from this vulnerability is to data confidentiality and integrity ...
CVE-2020-36329
- EPSS 0.5%
- Veröffentlicht 21.05.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:29:17
A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2020-36330
- EPSS 0.16%
- Veröffentlicht 21.05.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:29:18
A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ChunkVerifyAndAssign. The highest threat from this vulnerability is to data confidentiality and to the service availability.
CVE-2020-36331
- EPSS 0.19%
- Veröffentlicht 21.05.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:29:18
A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ChunkAssignData. The highest threat from this vulnerability is to data confidentiality and to the service availability.
CVE-2020-36332
- EPSS 0.82%
- Veröffentlicht 21.05.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:29:18
A flaw was found in libwebp in versions before 1.0.1. When reading a file libwebp allocates an excessive amount of memory. The highest threat from this vulnerability is to the service availability.
CVE-2021-31439
- EPSS 1.04%
- Veröffentlicht 21.05.2021 15:15:07
- Zuletzt bearbeitet 14.01.2025 19:29:55
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Synology DiskStation Manager. Authentication is not required to exploit this vulnerablity. The specific flaw exists within the processing of D...
CVE-2021-33477
- EPSS 1.11%
- Veröffentlicht 20.05.2021 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:08:54
rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape sequences (ESC G Q). A response is terminated by a newline.
CVE-2021-3426
- EPSS 0.08%
- Veröffentlicht 20.05.2021 13:15:07
- Zuletzt bearbeitet 18.12.2025 12:15:54
There's a flaw in Python 3's pydoc. A local or adjacent attacker who discovers or is able to convince another local or adjacent user to start a pydoc server could access the server and use it to disclose sensitive information belonging to the other u...