- EPSS 0.76%
- Veröffentlicht 22.04.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 06:02:33
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.33 and prior and 8.0.23 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mu...
- EPSS 1.23%
- Veröffentlicht 22.04.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 06:02:35
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.23 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pro...
- EPSS 1.73%
- Veröffentlicht 22.04.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 06:02:28
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 5.7.33 and prior and 8.0.23 and prior. Easily exploitable vulnerability allows high privileged attacker with network acce...
- EPSS 0.18%
- Veröffentlicht 22.04.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 06:02:29
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 5.7.33 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols...
CVE-2021-0232
- EPSS 0.45%
- Veröffentlicht 22.04.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:42:15
An authentication bypass vulnerability in the Juniper Networks Paragon Active Assurance Control Center may allow an attacker with specific information about the deployment to mimic an already registered Test Agent and access its configuration includi...
- EPSS 0.08%
- Veröffentlicht 22.04.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 05:51:16
A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr...
CVE-2021-28965
- EPSS 0.36%
- Veröffentlicht 21.04.2021 07:15:07
- Zuletzt bearbeitet 21.11.2024 06:00:27
The REXML gem before 3.2.5 in Ruby before 2.6.7, 2.7.x before 2.7.3, and 3.x before 3.0.1 does not properly address XML round-trip issues. An incorrect document can be produced after parsing and serializing.
CVE-2021-29155
- EPSS 0.21%
- Veröffentlicht 20.04.2021 16:15:10
- Zuletzt bearbeitet 21.11.2024 06:00:47
An issue was discovered in the Linux kernel through 5.11.x. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information f...
CVE-2021-20208
- EPSS 0.34%
- Veröffentlicht 19.04.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:46:07
A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity...
CVE-2021-3505
- EPSS 0.13%
- Veröffentlicht 19.04.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 06:21:42
A flaw was found in libtpms in versions before 0.8.0. The TPM 2 implementation returns 2048 bit keys with ~1984 bit strength due to a bug in the TCG specification. The bug is in the key creation algorithm in RsaAdjustPrimeCandidate(), which is called...