CVE-2016-4980
- EPSS 0.13%
- Veröffentlicht 27.11.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 02:53:21
A password generation weakness exists in xquest through 2016-06-13.
CVE-2019-14812
- EPSS 0.54%
- Veröffentlicht 27.11.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:27:24
A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable...
- EPSS 0.87%
- Veröffentlicht 27.11.2019 09:15:11
- Zuletzt bearbeitet 21.11.2024 04:27:38
A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join...
CVE-2019-14867
- EPSS 2.61%
- Veröffentlicht 27.11.2019 09:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:32
A flaw was found in IPA, all 4.6.x versions before 4.6.7, all 4.7.x versions before 4.7.4 and all 4.8.x versions before 4.8.3, in the way the internal function ber_scanf() was used in some components of the IPA server, which parsed kerberos key data....
CVE-2019-10195
- EPSS 0.88%
- Veröffentlicht 27.11.2019 08:15:10
- Zuletzt bearbeitet 21.11.2024 04:18:37
A flaw was found in IPA, all 4.6.x versions before 4.6.7, all 4.7.x versions before 4.7.4 and all 4.8.x versions before 4.8.3, in the way that FreeIPA's batch processing API logged operations. This included passing user passwords in clear text on Fre...
CVE-2019-18679
- EPSS 38.43%
- Veröffentlicht 26.11.2019 17:15:13
- Zuletzt bearbeitet 21.11.2024 04:33:31
An issue was discovered in Squid 2.x, 3.x, and 4.x through 4.8. Due to incorrect data management, it is vulnerable to information disclosure when processing HTTP Digest Authentication. Nonce tokens contain the raw byte value of a pointer that sits wi...
CVE-2019-18676
- EPSS 1.37%
- Veröffentlicht 26.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:33:30
An issue was discovered in Squid 3.x and 4.x through 4.8. Due to incorrect input validation, there is a heap-based buffer overflow that can result in Denial of Service to all clients using the proxy. Severity is high due to this vulnerability occurri...
CVE-2019-18677
- EPSS 4.21%
- Veröffentlicht 26.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:33:30
An issue was discovered in Squid 3.x and 4.x through 4.8 when the append_domain setting is used (because the appended characters do not properly interact with hostname length restrictions). Due to incorrect message processing, it can inappropriately ...
CVE-2019-18678
- EPSS 9.96%
- Veröffentlicht 26.11.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:33:30
An issue was discovered in Squid 3.x and 4.x through 4.8. It allows attackers to smuggle HTTP requests through frontend software to a Squid instance that splits the HTTP Request pipeline differently. The resulting Response messages corrupt caches (be...
CVE-2019-12523
- EPSS 0.56%
- Veröffentlicht 26.11.2019 17:15:10
- Zuletzt bearbeitet 21.11.2024 04:23:01
An issue was discovered in Squid before 4.9. When handling a URN request, a corresponding HTTP request is made. This HTTP request doesn't go through the access checks that incoming HTTP requests go through. This causes all access checks to be bypasse...