CVE-2019-18425
- EPSS 4.87%
- Veröffentlicht 31.10.2019 14:15:12
- Zuletzt bearbeitet 21.11.2024 04:33:14
An issue was discovered in Xen through 4.12.x allowing 32-bit PV guest OS users to gain guest OS privileges by installing and using descriptors. There is missing descriptor table limit checking in x86 PV emulation. When emulating certain PV guest ope...
CVE-2019-18423
- EPSS 5.19%
- Veröffentlicht 31.10.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:33:14
An issue was discovered in Xen through 4.12.x allowing ARM guest OS users to cause a denial of service via a XENMEM_add_to_physmap hypercall. p2m->max_mapped_gfn is used by the functions p2m_resolve_translation_fault() and p2m_get_entry() to sanity c...
CVE-2019-18420
- EPSS 4.05%
- Veröffentlicht 31.10.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:13
An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to cause a denial of service via a VCPUOP_initialise hypercall. hypercall_create_continuation() is a variadic function which uses a printf-like format string to interpret it...
CVE-2019-18421
- EPSS 1.86%
- Veröffentlicht 31.10.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:13
An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to gain host OS privileges by leveraging race conditions in pagetable promotion and demotion operations. There are issues with restartable PV type change operations. To avoi...
CVE-2019-18422
- EPSS 3.47%
- Veröffentlicht 31.10.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:14
An issue was discovered in Xen through 4.12.x allowing ARM guest OS users to cause a denial of service or gain privileges by leveraging the erroneous enabling of interrupts. Interrupts are unconditionally unmasked in exception handlers. When an excep...
CVE-2010-0748
- EPSS 0.86%
- Veröffentlicht 30.10.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 01:12:52
Transmission before 1.92 allows an attacker to cause a denial of service (crash) or possibly have other unspecified impact via a large number of tr arguments in a magnet link.
CVE-2010-0749
- EPSS 0.73%
- Veröffentlicht 30.10.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 01:12:52
Transmission before 1.92 allows attackers to prevent download of a file by corrupted data during the endgame.
CVE-2018-5735
- EPSS 0.64%
- Veröffentlicht 30.10.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:09:16
The Debian backport of the fix for CVE-2017-3137 leads to assertion failure in validator.c:1858; Affects Debian versions 9.9.5.dfsg-9+deb8u15; 9.9.5.dfsg-9+deb8u18; 9.10.3.dfsg.P4-12.3+deb9u5; 9.11.5.P4+dfsg-5.1 No ISC releases are affected. Other pa...
CVE-2011-1408
- EPSS 0.61%
- Veröffentlicht 29.10.2019 20:15:10
- Zuletzt bearbeitet 21.11.2024 01:26:14
ikiwiki before 3.20110608 allows remote attackers to hijack root's tty and run symlink attacks.
CVE-2019-18602
- EPSS 0.41%
- Veröffentlicht 29.10.2019 19:15:19
- Zuletzt bearbeitet 21.11.2024 04:33:20
OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to an information disclosure vulnerability because uninitialized scalars are sent over the network to a peer.