CVE-2020-10936
- EPSS 0.11%
- Veröffentlicht 27.05.2020 18:15:12
- Zuletzt bearbeitet 21.11.2024 04:56:24
Sympa before 6.2.56 allows privilege escalation.
CVE-2020-13632
- EPSS 0.02%
- Veröffentlicht 27.05.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:01:38
ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query.
CVE-2020-13253
- EPSS 0.03%
- Veröffentlicht 27.05.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:00:53
sd_wp_addr in hw/sd/sd.c in QEMU 4.2.0 uses an unvalidated address, which leads to an out-of-bounds read during sdhci_write() operations. A guest OS user can crash the QEMU process.
- EPSS 0.08%
- Veröffentlicht 27.05.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:01:38
ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature.
CVE-2020-13631
- EPSS 0.05%
- Veröffentlicht 27.05.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:01:38
SQLite before 3.32.0 allows a virtual table to be renamed to the name of one of its shadow tables, related to alter.c and build.c.
CVE-2020-12392
- EPSS 0.14%
- Veröffentlicht 26.05.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:59:37
The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resul...
CVE-2020-6831
- EPSS 6.27%
- Veröffentlicht 26.05.2020 18:15:11
- Zuletzt bearbeitet 21.11.2024 05:36:15
A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.
- EPSS 1.28%
- Veröffentlicht 26.05.2020 17:15:10
- Zuletzt bearbeitet 21.11.2024 04:59:38
Mozilla developers and community members reported memory safety bugs present in Firefox 75 and Firefox ESR 68.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to...
CVE-2020-3811
- EPSS 0.42%
- Veröffentlicht 26.05.2020 13:15:10
- Zuletzt bearbeitet 21.11.2024 05:31:47
qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability.
CVE-2020-3812
- EPSS 0.05%
- Veröffentlicht 26.05.2020 13:15:10
- Zuletzt bearbeitet 21.11.2024 05:31:47
qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local attacker can test for the existence of files and directories anywhere in the filesystem because qmail-verify runs as root and tests for the existence o...