CVE-2020-11758
- EPSS 0.64%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:32
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h.
CVE-2020-11759
- EPSS 1.06%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:32
An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of-bounds pointer.
CVE-2020-11760
- EPSS 0.64%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:32
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during RLE uncompression in rleUncompress in ImfRle.cpp.
CVE-2020-11761
- EPSS 0.58%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:33
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonstrated by FastHufDecoder::refill in ImfFastHuf.cpp.
CVE-2020-11762
- EPSS 0.58%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:33
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read and write in DwaCompressor::uncompress in ImfDwaCompressor.cpp when handling the UNKNOWN compression case.
CVE-2020-11763
- EPSS 0.58%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:33
An issue was discovered in OpenEXR before 2.4.1. There is an std::vector out-of-bounds read and write, as demonstrated by ImfTileOffsets.cpp.
CVE-2020-11764
- EPSS 0.78%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:33
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds write in copyIntoFrameBuffer in ImfMisc.cpp.
CVE-2020-11765
- EPSS 0.58%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:33
An issue was discovered in OpenEXR before 2.4.1. There is an off-by-one error in use of the ImfXdr.h read function by DwaCompressor::Classifier::Classifier, leading to an out-of-bounds read.
CVE-2020-5260
- EPSS 36.81%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:47
Affected versions of Git have a vulnerability whereby Git can be tricked into sending private credentials to a host controlled by an attacker. Git uses external "credential helper" programs to store and retrieve passwords or other credentials from se...
CVE-2020-11736
- EPSS 0.06%
- Veröffentlicht 13.04.2020 19:15:11
- Zuletzt bearbeitet 21.11.2024 04:58:30
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location.