CVE-2020-15304
- EPSS 0.12%
- Veröffentlicht 26.06.2020 01:15:10
- Zuletzt bearbeitet 21.11.2024 05:05:17
An issue was discovered in OpenEXR before 2.5.2. An invalid tiled input file could cause invalid memory access in TiledInputFile::TiledInputFile() in IlmImf/ImfTiledInputFile.cpp, as demonstrated by a NULL pointer dereference.
CVE-2020-15305
- EPSS 0.11%
- Veröffentlicht 26.06.2020 01:15:10
- Zuletzt bearbeitet 21.11.2024 05:05:17
An issue was discovered in OpenEXR before 2.5.2. Invalid input could cause a use-after-free in DeepScanLineInputFile::DeepScanLineInputFile() in IlmImf/ImfDeepScanLineInputFile.cpp.
CVE-2020-15306
- EPSS 0.13%
- Veröffentlicht 26.06.2020 01:15:10
- Zuletzt bearbeitet 21.11.2024 05:05:17
An issue was discovered in OpenEXR before v2.5.2. Invalid chunkCount attributes could cause a heap buffer overflow in getChunkOffsetTableSize() in IlmImf/ImfMisc.cpp.
CVE-2020-10177
- EPSS 0.12%
- Veröffentlicht 25.06.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:54:55
Pillow before 7.1.0 has multiple out-of-bounds reads in libImaging/FliDecode.c.
CVE-2020-10378
- EPSS 0.33%
- Veröffentlicht 25.06.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:55:11
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
CVE-2020-10379
- EPSS 0.4%
- Veröffentlicht 25.06.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:55:11
In Pillow before 7.1.0, there are two Buffer Overflows in libImaging/TiffDecode.c.
CVE-2020-10994
- EPSS 0.44%
- Veröffentlicht 25.06.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:56:32
In libImaging/Jpeg2KDecode.c in Pillow before 7.1.0, there are multiple out-of-bounds reads via a crafted JP2 file.
CVE-2020-11538
- EPSS 0.43%
- Veröffentlicht 25.06.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:06
In libImaging/SgiRleDecode.c in Pillow through 7.0.0, a number of out-of-bounds reads exist in the parsing of SGI image files, a different issue than CVE-2020-5311.
CVE-2020-15005
- EPSS 0.74%
- Veröffentlicht 24.06.2020 23:15:10
- Zuletzt bearbeitet 21.11.2024 05:04:36
In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34.x before 1.34.2, private wikis behind a caching server using the img_auth.php image authorization security feature may have had their files cached publicly, so any unauthorized use...
CVE-2020-4030
- EPSS 0.04%
- Veröffentlicht 22.06.2020 22:15:13
- Zuletzt bearbeitet 21.11.2024 05:32:11
In FreeRDP before version 2.1.2, there is an out of bounds read in TrioParse. Logging might bypass string length checks due to an integer overflow. This is fixed in version 2.1.2.