CVE-2021-28116
- EPSS 7.04%
- Veröffentlicht 09.03.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:59:06
Squid through 4.14 and 5.x through 5.0.5, in some configurations, allows information disclosure because of an out-of-bounds read in WCCP protocol data. This can be leveraged as part of a chain for remote code execution as nobody.
CVE-2020-35524
- EPSS 0.41%
- Veröffentlicht 09.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:27:29
A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, in...
CVE-2021-20255
- EPSS 0.17%
- Veröffentlicht 09.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:46:13
A stack overflow via an infinite recursion vulnerability was found in the eepro100 i8255x device emulator of QEMU. This issue occurs while processing controller commands due to a DMA reentry issue. This flaw allows a guest user or process to consume ...
CVE-2021-21300
- EPSS 65.68%
- Veröffentlicht 09.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:47:58
Git is an open-source distributed revision control system. In affected versions of Git a specially crafted repository that contains symbolic links as well as files using a clean/smudge filter such as Git LFS, may cause just-checked out script to be e...
CVE-2020-35523
- EPSS 0.26%
- Veröffentlicht 09.03.2021 20:15:12
- Zuletzt bearbeitet 21.11.2024 05:27:29
An integer overflow flaw was found in libtiff that exists in the tif_getimage.c file. This flaw allows an attacker to inject and execute arbitrary code when a user opens a crafted TIFF file. The highest threat from this vulnerability is to confidenti...
CVE-2021-20244
- EPSS 0.13%
- Veröffentlicht 09.03.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:46:12
A flaw was found in ImageMagick in MagickCore/visual-effects.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability ...
CVE-2021-20245
- EPSS 0.23%
- Veröffentlicht 09.03.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:46:12
A flaw was found in ImageMagick in coders/webp.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system a...
CVE-2021-20246
- EPSS 0.17%
- Veröffentlicht 09.03.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:46:12
A flaw was found in ImageMagick in MagickCore/resample.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to ...
CVE-2021-21295
- EPSS 0.36%
- Veröffentlicht 09.03.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:47:57
Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. In Netty (io.netty:netty-codec-http2) before version 4.1.60.Final there is a vulnerabi...
CVE-2021-21176
- EPSS 0.97%
- Veröffentlicht 09.03.2021 18:15:17
- Zuletzt bearbeitet 21.11.2024 05:47:42
Inappropriate implementation in full screen mode in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.