CVE-2021-3407
- EPSS 1.19%
- Veröffentlicht 23.02.2021 23:15:14
- Zuletzt bearbeitet 21.11.2024 06:21:25
A flaw was found in mupdf 1.18.0. Double free of object during linearization may lead to memory corruption and other potential consequences.
CVE-2021-3410
- EPSS 0.21%
- Veröffentlicht 23.02.2021 23:15:14
- Zuletzt bearbeitet 21.11.2024 06:21:26
A flaw was found in libcaca v0.99.beta19. A buffer overflow issue in caca_resize function in libcaca/caca/canvas.c may lead to local execution of arbitrary code in the user context.
CVE-2021-26927
- EPSS 0.08%
- Veröffentlicht 23.02.2021 20:15:12
- Zuletzt bearbeitet 21.11.2024 05:57:03
A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.
CVE-2021-3405
- EPSS 1.48%
- Veröffentlicht 23.02.2021 20:15:12
- Zuletzt bearbeitet 21.11.2024 06:21:25
A flaw was found in libebml before 1.4.2. A heap overflow bug exists in the implementation of EbmlString::ReadData and EbmlUnicodeString::ReadData in libebml.
CVE-2021-20247
- EPSS 1.45%
- Veröffentlicht 23.02.2021 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:46:12
A flaw was found in mbsync before v1.3.5 and v1.4.1. Validations of the mailbox names returned by IMAP LIST/LSUB do not occur allowing a malicious or compromised server to use specially crafted mailbox names containing '..' path components to access ...
CVE-2021-26926
- EPSS 0.11%
- Veröffentlicht 23.02.2021 18:15:14
- Zuletzt bearbeitet 21.11.2024 05:57:03
A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.
CVE-2021-20229
- EPSS 0.09%
- Veröffentlicht 23.02.2021 18:15:13
- Zuletzt bearbeitet 21.11.2024 05:46:10
A flaw was found in PostgreSQL in versions before 13.2. This flaw allows a user with SELECT privilege on one column to craft a special query that returns all columns of the table. The highest threat from this vulnerability is to confidentiality.
CVE-2021-21149
- EPSS 0.87%
- Veröffentlicht 22.02.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:47:39
Stack buffer overflow in Data Transfer in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page.
CVE-2021-21150
- EPSS 0.86%
- Veröffentlicht 22.02.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:47:39
Use after free in Downloads in Google Chrome on Windows prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
CVE-2021-21151
- EPSS 0.73%
- Veröffentlicht 22.02.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:47:39
Use after free in Payments in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.