CVE-2020-13253
- EPSS 0.12%
- Veröffentlicht 27.05.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:00:53
sd_wp_addr in hw/sd/sd.c in QEMU 4.2.0 uses an unvalidated address, which leads to an out-of-bounds read during sdhci_write() operations. A guest OS user can crash the QEMU process.
- EPSS 0.08%
- Veröffentlicht 27.05.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:01:38
ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature.
CVE-2020-6831
- EPSS 6.27%
- Veröffentlicht 26.05.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 05:36:15
A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.
CVE-2020-3811
- EPSS 0.42%
- Veröffentlicht 26.05.2020 13:15:10
- Zuletzt bearbeitet 21.11.2024 05:31:47
qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability.
CVE-2020-3812
- EPSS 0.05%
- Veröffentlicht 26.05.2020 13:15:10
- Zuletzt bearbeitet 21.11.2024 05:31:47
qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local attacker can test for the existence of files and directories anywhere in the filesystem because qmail-verify runs as root and tests for the existence o...
CVE-2020-13434
- EPSS 0.06%
- Veröffentlicht 24.05.2020 22:15:10
- Zuletzt bearbeitet 21.11.2024 05:01:15
SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c.
CVE-2020-13396
- EPSS 0.5%
- Veröffentlicht 22.05.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 05:01:10
An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in ntlm_read_ChallengeMessage in winpr/libwinpr/sspi/NTLM/ntlm_message.c.
CVE-2020-13397
- EPSS 0.1%
- Veröffentlicht 22.05.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 05:01:10
An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in security_fips_decrypt in libfreerdp/core/security.c due to an uninitialized value.
CVE-2020-13398
- EPSS 0.46%
- Veröffentlicht 22.05.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 05:01:10
An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) write vulnerability has been detected in crypto_rsa_common in libfreerdp/crypto/crypto.c.
CVE-2020-10711
- EPSS 5.44%
- Veröffentlicht 22.05.2020 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:55:54
A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the...