CVE-2019-19527
- EPSS 0.09%
- Veröffentlicht 03.12.2019 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:53
In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/hid/usbhid/hiddev.c driver, aka CID-9c09b214f30e.
CVE-2013-4235
- EPSS 0.07%
- Veröffentlicht 03.12.2019 15:15:10
- Zuletzt bearbeitet 21.11.2024 01:55:11
shadow: TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees
CVE-2013-2106
- EPSS 0.4%
- Veröffentlicht 03.12.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 01:51:02
webauth before 4.6.1 has authentication credential disclosure
CVE-2012-4576
- EPSS 0.1%
- Veröffentlicht 02.12.2019 18:15:10
- Zuletzt bearbeitet 21.11.2024 01:43:10
FreeBSD: Input Validation Flaw allows local users to gain elevated privileges
CVE-2012-4428
- EPSS 33.32%
- Veröffentlicht 02.12.2019 18:15:09
- Zuletzt bearbeitet 21.11.2024 01:42:52
openslp: SLPIntersectStringList()' Function has a DoS vulnerability
CVE-2019-19479
- EPSS 0.05%
- Veröffentlicht 01.12.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 04:34:48
An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-setcos.c has an incorrect read operation during parsing of a SETCOS file attribute.
CVE-2019-18609
- EPSS 2.76%
- Veröffentlicht 01.12.2019 22:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:21
An issue was discovered in amqp_handle_input in amqp_connection.c in rabbitmq-c 0.9.0. There is an integer overflow that leads to heap memory corruption in the handling of CONNECTION_STATE_HEADER. A rogue server could return a malicious frame header ...
CVE-2019-19269
- EPSS 1.78%
- Veröffentlicht 30.11.2019 23:15:18
- Zuletzt bearbeitet 21.11.2024 04:34:27
An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. A dereference of a NULL pointer may occur. This pointer is returned by the OpenSSL sk_X509_REVOKED_value() function when encountering an empty CRL installed by a system administrato...
CVE-2019-19462
- EPSS 0.1%
- Veröffentlicht 30.11.2019 01:15:10
- Zuletzt bearbeitet 21.11.2024 04:34:47
relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as relay blockage) by triggering a NULL alloc_percpu result.
CVE-2014-3591
- EPSS 0.14%
- Veröffentlicht 29.11.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 02:08:27
Libgcrypt before 1.6.3 and GnuPG before 1.4.19 does not implement ciphertext blinding for Elgamal decryption, which allows physically proximate attackers to obtain the server's private key by determining factors using crafted ciphertext and the fluct...