CVE-2019-1010238
- EPSS 4.92%
- Veröffentlicht 19.07.2019 17:15:11
- Zuletzt bearbeitet 21.11.2024 04:18:04
Gnome Pango 1.42 and later is affected by: Buffer Overflow. The impact is: The heap based buffer overflow can be used to get code execution. The component is: function name: pango_log2vis_get_embedding_levels, assignment of nchars and the loop condit...
CVE-2019-13962
- EPSS 3.29%
- Veröffentlicht 18.07.2019 20:15:12
- Zuletzt bearbeitet 21.11.2024 04:25:47
lavc_CopyPicture in modules/codec/avcodec/video.c in VideoLAN VLC media player through 3.0.7 has a heap-based buffer over-read because it does not properly validate the width and height.
CVE-2019-13619
- EPSS 9.82%
- Veröffentlicht 17.07.2019 20:15:11
- Zuletzt bearbeitet 21.11.2024 04:25:22
In Wireshark 3.0.0 to 3.0.2, 2.6.0 to 2.6.9, and 2.4.0 to 2.4.15, the ASN.1 BER dissector and related dissectors could crash. This was addressed in epan/asn1.c by properly restricting buffer increments.
CVE-2019-13272
- EPSS 81.25%
- Veröffentlicht 17.07.2019 13:15:10
- Zuletzt bearbeitet 06.11.2025 16:51:07
In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to create a ptrace relationship, which allows local users to obtain root access by leveraging certain scenarios with...
CVE-2019-9848
- EPSS 86.56%
- Veröffentlicht 17.07.2019 12:15:10
- Zuletzt bearbeitet 21.11.2024 04:52:25
LibreOffice has a feature where documents can specify that pre-installed scripts can be executed on various document events such as mouse-over, etc. LibreOffice is typically also bundled with LibreLogo, a programmable turtle vector graphics script, w...
CVE-2019-9849
- EPSS 3.56%
- Veröffentlicht 17.07.2019 12:15:10
- Zuletzt bearbeitet 21.11.2024 04:52:26
LibreOffice has a 'stealth mode' in which only documents from locations deemed 'trusted' are allowed to retrieve remote resources. This mode is not the default mode, but can be enabled by users who want to disable LibreOffice's ability to include rem...
CVE-2019-13616
- EPSS 6.52%
- Veröffentlicht 16.07.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:25:22
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.
CVE-2019-1010305
- EPSS 0.6%
- Veröffentlicht 15.07.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:18:08
libmspack 0.9.1alpha is affected by: Buffer Overflow. The impact is: Information Disclosure. The component is: function chmd_read_headers() in libmspack(file libmspack/mspack/chmd.c). The attack vector is: the victim must open a specially crafted chm...
CVE-2019-1010006
- EPSS 0.53%
- Veröffentlicht 15.07.2019 02:15:10
- Zuletzt bearbeitet 21.11.2024 04:17:54
Evince 3.26.0 is affected by buffer overflow. The impact is: DOS / Possible code execution. The component is: backend/tiff/tiff-document.c. The attack vector is: Victim must open a crafted PDF file. The issue occurs because of an incorrect integer ov...
CVE-2019-13602
- EPSS 0.55%
- Veröffentlicht 14.07.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 04:25:19
An Integer Underflow in MP4_EIA608_Convert() in modules/demux/mp4/mp4.c in VideoLAN VLC media player through 3.0.7.1 allows remote attackers to cause a denial of service (heap-based buffer overflow and crash) or possibly have unspecified other impact...