CVE-2012-4480
- EPSS 0.13%
- Veröffentlicht 02.12.2019 18:15:09
- Zuletzt bearbeitet 21.11.2024 01:42:58
mom creates world-writable pid files in /var/run
CVE-2019-19118
- EPSS 0.37%
- Veröffentlicht 02.12.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:34:13
Django 2.1 before 2.1.15 and 2.2 before 2.2.8 allows unintended model editing. A Django model admin displaying inline related models, where the user has view-only permissions to a parent model but edit permissions to the inline model, would be presen...
CVE-2019-19479
- EPSS 0.05%
- Veröffentlicht 01.12.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 04:34:48
An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/card-setcos.c has an incorrect read operation during parsing of a SETCOS file attribute.
CVE-2019-18609
- EPSS 2.76%
- Veröffentlicht 01.12.2019 22:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:21
An issue was discovered in amqp_handle_input in amqp_connection.c in rabbitmq-c 0.9.0. There is an integer overflow that leads to heap memory corruption in the handling of CONNECTION_STATE_HEADER. A rogue server could return a malicious frame header ...
CVE-2019-19269
- EPSS 1.78%
- Veröffentlicht 30.11.2019 23:15:18
- Zuletzt bearbeitet 21.11.2024 04:34:27
An issue was discovered in tls_verify_crl in ProFTPD through 1.3.6b. A dereference of a NULL pointer may occur. This pointer is returned by the OpenSSL sk_X509_REVOKED_value() function when encountering an empty CRL installed by a system administrato...
CVE-2019-19451
- EPSS 0.15%
- Veröffentlicht 29.11.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 04:34:45
When GNOME Dia before 2019-11-27 is launched with a filename argument that is not a valid codepoint in the current encoding, it enters an endless loop, thus endlessly writing text to stdout. If this launch is from a thumbnailer service, this output w...
- EPSS 5.47%
- Veröffentlicht 29.11.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:27:38
A heap overflow flaw was found in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The vulnerability allows a remote attacker to cause a system crash, resulting in a denial of service, or execute arbitrary co...
CVE-2019-14895
- EPSS 0.83%
- Veröffentlicht 29.11.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:27:37
A heap-based buffer overflow was discovered in the Linux kernel, all versions 3.x.x and 4.x.x before 4.18.0, in Marvell WiFi chip driver. The flaw could occur when the station attempts a connection negotiation during the handling of the remote device...
CVE-2019-18660
- EPSS 0.03%
- Veröffentlicht 27.11.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 04:33:28
The Linux kernel before 5.4.1 on powerpc allows Information Exposure because the Spectre-RSB mitigation is not in place for all applicable CPUs, aka CID-39e72bf96f58. This is related to arch/powerpc/kernel/entry_64.S and arch/powerpc/kernel/security....
CVE-2016-1000110
- EPSS 9.9%
- Veröffentlicht 27.11.2019 17:15:14
- Zuletzt bearbeitet 21.11.2024 02:42:52
The CGIHandler class in Python before 2.7.12 does not protect against the HTTP_PROXY variable name clash in a CGI script, which could allow a remote attacker to redirect HTTP requests.