CVE-2019-19062
- EPSS 0.1%
- Veröffentlicht 18.11.2019 06:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:06
A memory leak in the crypto_report() function in crypto/crypto_user_base.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering crypto_report_alg() failures, aka CID-ffdde5932042.
CVE-2019-19066
- EPSS 0.08%
- Veröffentlicht 18.11.2019 06:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:07
A memory leak in the bfad_im_get_stats() function in drivers/scsi/bfa/bfad_attr.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering bfa_port_get_stats() failures, aka CID-0e62395da2bd.
CVE-2019-19068
- EPSS 0.09%
- Veröffentlicht 18.11.2019 06:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:07
A memory leak in the rtl8xxxu_submit_int_urb() function in drivers/net/wireless/realtek/rtl8xxxu/rtl8xxxu_core.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() fail...
CVE-2019-19051
- EPSS 0.04%
- Veröffentlicht 18.11.2019 06:15:11
- Zuletzt bearbeitet 21.11.2024 04:34:04
A memory leak in the i2400m_op_rfkill_sw_toggle() function in drivers/net/wimax/i2400m/op-rfkill.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption), aka CID-6f3ef5c25cc7.
CVE-2019-19052
- EPSS 1.7%
- Veröffentlicht 18.11.2019 06:15:11
- Zuletzt bearbeitet 21.11.2024 04:34:04
A memory leak in the gs_can_open() function in drivers/net/can/usb/gs_usb.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering usb_submit_urb() failures, aka CID-fb5be6a7b486.
CVE-2019-19012
- EPSS 14.78%
- Veröffentlicht 17.11.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:33:59
An integer overflow in the search_in_range function in regexec.c in Oniguruma 6.x before 6.9.4_rc2 leads to an out-of-bounds read, in which the offset of this read is under the control of an attacker. (This only affects the 32-bit compiled version). ...
CVE-2011-0703
- EPSS 0.43%
- Veröffentlicht 15.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:24:39
In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 session.
CVE-2011-2726
- EPSS 0.38%
- Veröffentlicht 15.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:28:50
An access bypass issue was found in Drupal 7.x before version 7.5. If a Drupal site has the ability to attach File upload fields to any entity type in the system or has the ability to point individual File upload fields to the private file directory ...
CVE-2011-2910
- EPSS 0.13%
- Veröffentlicht 15.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 01:29:15
The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping privileges but if the call fails the daemon would continue to run with root privileges which can allo...
CVE-2016-5285
- EPSS 0.65%
- Veröffentlicht 15.11.2019 16:15:10
- Zuletzt bearbeitet 21.11.2024 02:53:59
A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_ComputeRecordMACConstantTime, which could let a remote malicious user cause a Denial of Service.