- EPSS 0.67%
- Veröffentlicht 20.10.2021 11:16:18
- Zuletzt bearbeitet 21.11.2024 06:03:12
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.26 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple prot...
CVE-2021-42739
- EPSS 0.04%
- Veröffentlicht 20.10.2021 07:15:09
- Zuletzt bearbeitet 21.11.2024 06:28:04
The firewire subsystem in the Linux kernel through 5.14.13 has a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandles bounds checking.
CVE-2021-3746
- EPSS 0.19%
- Veröffentlicht 19.10.2021 15:15:08
- Zuletzt bearbeitet 21.11.2024 06:22:19
A flaw was found in the libtpms code that may cause access beyond the boundary of internal buffers. The vulnerability is triggered by specially-crafted TPM2 command packets that then trigger the issue when the state of the TPM2's volatile state is wr...
CVE-2021-30846
- EPSS 0.63%
- Veröffentlicht 19.10.2021 14:15:09
- Zuletzt bearbeitet 21.11.2024 06:04:49
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, Safari 15, tvOS 15, iOS 15 and iPadOS 15, watchOS 8. Processing maliciously crafted web content may lead to arbitrary code executi...
CVE-2021-3872
- EPSS 0.13%
- Veröffentlicht 19.10.2021 13:15:11
- Zuletzt bearbeitet 03.11.2025 21:15:42
vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-41990
- EPSS 1.93%
- Veröffentlicht 18.10.2021 14:15:10
- Zuletzt bearbeitet 21.11.2024 06:27:01
The gmp plugin in strongSwan before 5.9.4 has a remote integer overflow via a crafted certificate with an RSASSA-PSS signature. For example, this can be triggered by an unrelated self-signed CA certificate sent by an initiator. Remote code execution ...
CVE-2021-41991
- EPSS 1.87%
- Veröffentlicht 18.10.2021 14:15:10
- Zuletzt bearbeitet 21.11.2024 06:27:02
The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less...
CVE-2021-38562
- EPSS 0.1%
- Veröffentlicht 18.10.2021 09:15:08
- Zuletzt bearbeitet 21.11.2024 06:17:27
Best Practical Request Tracker (RT) 4.2 before 4.2.17, 4.4 before 4.4.5, and 5.0 before 5.0.2 allows sensitive information disclosure via a timing attack against lib/RT/REST2/Middleware/Auth.pm.
CVE-2021-41611
- EPSS 2.16%
- Veröffentlicht 18.10.2021 09:15:08
- Zuletzt bearbeitet 21.11.2024 06:26:31
An issue was discovered in Squid 5.0.6 through 5.1.x before 5.2. When validating an origin server or peer certificate, Squid may incorrectly classify certain certificates as trusted. This problem allows a remote server to obtain security trust well i...
CVE-2021-38297
- EPSS 5.85%
- Veröffentlicht 18.10.2021 06:15:06
- Zuletzt bearbeitet 21.11.2024 06:16:44
Go before 1.16.9 and 1.17.x before 1.17.2 has a Buffer Overflow via large arguments in a function invocation from a WASM module, when GOARCH=wasm GOOS=js is used.