CVE-2020-8617
- EPSS 89.74%
- Veröffentlicht 19.05.2020 14:15:11
- Zuletzt bearbeitet 21.11.2024 05:39:07
Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local se...
CVE-2020-12888
- EPSS 0.1%
- Veröffentlicht 15.05.2020 18:15:13
- Zuletzt bearbeitet 21.11.2024 05:00:29
The VFIO PCI driver in the Linux kernel through 5.6.13 mishandles attempts to access disabled memory space.
CVE-2018-10756
- EPSS 2.38%
- Veröffentlicht 15.05.2020 16:15:11
- Zuletzt bearbeitet 21.11.2024 03:41:59
Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted torrent file.
CVE-2020-3810
- EPSS 0.57%
- Veröffentlicht 15.05.2020 14:15:11
- Zuletzt bearbeitet 21.11.2024 05:31:47
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
CVE-2020-1945
- EPSS 0.04%
- Veröffentlicht 14.05.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:11:42
Apache Ant 1.1 to 1.9.14 and 1.10.0 to 1.10.7 uses the default temporary directory identified by the Java system property java.io.tmpdir for several tasks and may thus leak sensitive information. The fixcrlf and replaceregexp tasks also copy files fr...
CVE-2020-3327
- EPSS 8.03%
- Veröffentlicht 13.05.2020 03:15:11
- Zuletzt bearbeitet 21.11.2024 05:30:48
A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a heap bu...
CVE-2020-3341
- EPSS 4.11%
- Veröffentlicht 13.05.2020 03:15:11
- Zuletzt bearbeitet 21.11.2024 05:30:50
A vulnerability in the PDF archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.101 - 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a...
CVE-2020-12823
- EPSS 1.51%
- Veröffentlicht 12.05.2020 18:15:13
- Zuletzt bearbeitet 21.11.2024 05:00:20
OpenConnect 8.09 has a buffer overflow, causing a denial of service (application crash) or possibly unspecified other impact, via crafted certificate data to get_cert_name in gnutls.c.
- EPSS 0.26%
- Veröffentlicht 12.05.2020 13:15:13
- Zuletzt bearbeitet 21.11.2024 05:38:24
A missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.
CVE-2020-8151
- EPSS 0.29%
- Veröffentlicht 12.05.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 05:38:23
There is a possible information disclosure issue in Active Resource <v5.1.1 that could allow an attacker to create specially crafted requests to access data in an unexpected way and possibly leak information.