CVE-2021-4010
- EPSS 0.08%
- Veröffentlicht 17.12.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 06:36:43
A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SProcScreenSaverSuspend function. The highest threat from this vulnerability is to data confidentiality and integrity as well a...
CVE-2021-4011
- EPSS 0.1%
- Veröffentlicht 17.12.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 06:36:43
A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SwapCreateRegister function. The highest threat from this vulnerability is to data confidentiality and integrity as well as sys...
CVE-2021-45078
- EPSS 0.21%
- Veröffentlicht 15.12.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:31:54
stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write. NOTE: this issue exists b...
CVE-2021-43518
- EPSS 0.38%
- Veröffentlicht 15.12.2021 15:15:10
- Zuletzt bearbeitet 21.11.2024 06:29:20
Teeworlds up to and including 0.7.5 is vulnerable to Buffer Overflow. A map parser does not validate m_Channels value coming from a map file, leading to a buffer overflow. A malicious server may offer a specially crafted map that will overwrite clien...
- EPSS 94.34%
- Veröffentlicht 14.12.2021 19:15:07
- Zuletzt bearbeitet 27.10.2025 17:35:56
It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Thread Context Map (MDC) input data when the logging configuration uses a n...
CVE-2021-4104
- EPSS 73.69%
- Veröffentlicht 14.12.2021 12:15:12
- Zuletzt bearbeitet 21.11.2024 06:36:54
JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j configuration. The attacker can provide TopicBindingName and TopicConnectionFactoryBindingName configurations causing JMSAppen...
CVE-2021-43818
- EPSS 3.56%
- Veröffentlicht 13.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:29:51
lxml is a library for processing XML and HTML in the Python language. Prior to version 4.6.5, the HTML Cleaner in lxml.html lets certain crafted script content pass through, as well as script content in SVG files embedded using data URIs. Users that ...
CVE-2020-16156
- EPSS 0.02%
- Veröffentlicht 13.12.2021 18:15:07
- Zuletzt bearbeitet 21.11.2024 05:06:52
CPAN 2.28 allows Signature Verification Bypass.
CVE-2020-16154
- EPSS 0.02%
- Veröffentlicht 13.12.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:06:51
The App::cpanminus package 1.7044 for Perl allows Signature Verification Bypass.
CVE-2021-44847
- EPSS 2.23%
- Veröffentlicht 13.12.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:31:36
A stack-based buffer overflow in handle_request function in DHT.c in toxcore 0.1.9 through 0.1.11 and 0.2.0 through 0.2.12 (caused by an improper length calculation during the handling of received network packets) allows remote attackers to crash the...