CVE-2020-6079
- EPSS 0.31%
- Veröffentlicht 24.03.2020 21:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:03
An exploitable denial-of-service vulnerability exists in the resource allocation handling of Videolabs libmicrodns 0.1.0. When encountering errors while parsing mDNS messages, some allocated data is not freed, possibly leading to a denial-of-service ...
CVE-2020-6080
- EPSS 0.31%
- Veröffentlicht 24.03.2020 21:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:03
An exploitable denial-of-service vulnerability exists in the resource allocation handling of Videolabs libmicrodns 0.1.0. When encountering errors while parsing mDNS messages, some allocated data is not freed, possibly leading to a denial-of-service ...
CVE-2020-10941
- EPSS 0.71%
- Veröffentlicht 24.03.2020 20:15:14
- Zuletzt bearbeitet 21.11.2024 04:56:25
Arm Mbed TLS before 2.16.5 allows attackers to obtain sensitive information (an RSA private key) by measuring cache usage during an import.
CVE-2020-10938
- EPSS 2.9%
- Veröffentlicht 24.03.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:56:24
GraphicsMagick before 1.3.35 has an integer overflow and resultant heap-based buffer overflow in HuffmanDecodeImage in magick/compress.c.
CVE-2020-9359
- EPSS 2.64%
- Veröffentlicht 24.03.2020 14:15:13
- Zuletzt bearbeitet 21.11.2024 05:40:28
KDE Okular before 1.10.0 allows code execution via an action link in a PDF document.
CVE-2020-10684
- EPSS 0.02%
- Veröffentlicht 24.03.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 04:55:50
A flaw was found in Ansible Engine, all versions 2.7.x, 2.8.x and 2.9.x prior to 2.7.17, 2.8.9 and 2.9.6 respectively, when using ansible_facts as a subkey of itself and promoting it to a variable when inject is enabled, overwriting the ansible_facts...
CVE-2019-17559
- EPSS 1.41%
- Veröffentlicht 23.03.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:32:31
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and scheme parsing. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
CVE-2019-17565
- EPSS 1.21%
- Veröffentlicht 23.03.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:32:32
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and chunked encoding. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
CVE-2020-1944
- EPSS 1.21%
- Veröffentlicht 23.03.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:11:40
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and Transfer-Encoding and Content length headers. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
CVE-2020-8865
- EPSS 3.9%
- Veröffentlicht 23.03.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:39:35
This vulnerability allows remote attackers to execute local PHP files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The specific flaw exists within edit.php. When parsin...