CVE-2019-12387
- EPSS 0.54%
- Published 10.06.2019 12:29:00
- Last modified 25.11.2024 18:12:24
In Twisted before 19.2.1, twisted.web did not validate or sanitize URIs or HTTP methods, allowing an attacker to inject invalid characters such as CRLF.
CVE-2019-10160
- EPSS 1.8%
- Published 07.06.2019 18:29:00
- Last modified 21.11.2024 04:18:32
A security regression of CVE-2019-9636 was discovered in python since commit d537ab0ff9767ef024f26246899728f0116b1ec3 affecting versions 2.7, 3.5, 3.6, 3.7 and from v3.8.0a4 through v3.8.0b1, which still allows an attacker to exploit CVE-2019-9636 by...
CVE-2019-12614
- EPSS 0.09%
- Published 03.06.2019 22:29:00
- Last modified 21.11.2024 04:23:11
An issue was discovered in dlpar_parse_cc_property in arch/powerpc/platforms/pseries/dlpar.c in the Linux kernel through 5.1.6. There is an unchecked kstrdup of prop->name, which might allow an attacker to cause a denial of service (NULL pointer dere...
CVE-2019-11356
- EPSS 28.61%
- Published 03.06.2019 20:29:00
- Last modified 21.11.2024 04:20:56
The CalDAV feature in httpd in Cyrus IMAP 2.5.x through 2.5.12 and 3.0.x through 3.0.9 allows remote attackers to execute arbitrary code via a crafted HTTP PUT operation for an event with a long iCalendar property name.
CVE-2019-3846
- EPSS 0.38%
- Published 03.06.2019 19:29:02
- Last modified 21.11.2024 04:42:41
A flaw that allowed an attacker to corrupt memory and possibly escalate privileges was found in the mwifiex kernel module while connecting to a malicious wireless network.
CVE-2019-11091
- EPSS 1.73%
- Published 30.05.2019 16:29:01
- Last modified 21.11.2024 04:20:31
Microarchitectural Data Sampling Uncacheable Memory (MDSUM): Uncacheable memory on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access....
CVE-2019-8457
- EPSS 27.14%
- Published 30.05.2019 16:29:01
- Last modified 21.11.2024 04:49:56
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables.
CVE-2018-12126
- EPSS 0.43%
- Published 30.05.2019 16:29:00
- Last modified 21.11.2024 03:44:38
Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. A list of ...
CVE-2018-12127
- EPSS 0.43%
- Published 30.05.2019 16:29:00
- Last modified 21.11.2024 03:44:38
Microarchitectural Load Port Data Sampling (MLPDS): Load ports on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. A list of impact...
CVE-2018-12130
- EPSS 0.41%
- Published 30.05.2019 16:29:00
- Last modified 21.11.2024 03:44:38
Microarchitectural Fill Buffer Data Sampling (MFBDS): Fill buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. A list of im...