CVE-2019-2914
- EPSS 0.55%
- Veröffentlicht 16.10.2019 18:15:28
- Zuletzt bearbeitet 21.11.2024 04:41:47
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 5.7.27 and prior and 8.0.17 and prior. Easily exploitable vulnerability allows low privileged attacker with ...
- EPSS 0.13%
- Veröffentlicht 16.10.2019 18:15:27
- Zuletzt bearbeitet 21.11.2024 04:41:47
Vulnerability in the MySQL Server product of Oracle MySQL (component: Information Schema). Supported versions that are affected are 5.6.45 and prior, 5.7.27 and prior and 8.0.17 and prior. Easily exploitable vulnerability allows high privileged attac...
CVE-2019-11281
- EPSS 1.02%
- Veröffentlicht 16.10.2019 16:15:10
- Zuletzt bearbeitet 21.11.2024 04:20:50
Pivotal RabbitMQ, versions prior to v3.7.18, and RabbitMQ for PCF, versions 1.15.x prior to 1.15.13, versions 1.16.x prior to 1.16.6, and versions 1.17.x prior to 1.17.3, contain two components, the virtual host limits page, and the federation manage...
CVE-2019-17592
- EPSS 0.58%
- Veröffentlicht 14.10.2019 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:32:35
The csv-parse module before 4.4.6 for Node.js is vulnerable to Regular Expression Denial of Service. The __isInt() function contains a malformed regular expression that processes large crafted input very slowly. This is triggered when using the cast ...
CVE-2019-17545
- EPSS 2.25%
- Veröffentlicht 14.10.2019 02:15:11
- Zuletzt bearbeitet 21.11.2024 04:32:29
GDAL through 3.0.1 has a poolDestroy double free in OGRExpatRealloc in ogr/ogr_expat.cpp when the 10MB threshold is exceeded.
CVE-2019-17455
- EPSS 7.08%
- Veröffentlicht 10.10.2019 18:15:11
- Zuletzt bearbeitet 21.11.2024 04:32:21
Libntlm through 1.5 relies on a fixed buffer size for tSmbNtlmAuthRequest, tSmbNtlmAuthChallenge, and tSmbNtlmAuthResponse read and write operations, as demonstrated by a stack-based buffer over-read in buildSmbNtlmAuthRequest in smbutil.c for a craf...
CVE-2019-17041
- EPSS 1.11%
- Veröffentlicht 07.10.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:31:34
An issue was discovered in Rsyslog v8.1908.0. contrib/pmaixforwardedfrom/pmaixforwardedfrom.c has a heap overflow in the parser for AIX log messages. The parser tries to locate a log message delimiter (in this case, a space or a colon) but fails to a...
CVE-2019-17042
- EPSS 0.37%
- Veröffentlicht 07.10.2019 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:31:35
An issue was discovered in Rsyslog v8.1908.0. contrib/pmcisconames/pmcisconames.c has a heap overflow in the parser for Cisco log messages. The parser tries to locate a log message delimiter (in this case, a space or a colon), but fails to account fo...
CVE-2019-16865
- EPSS 5.2%
- Veröffentlicht 04.10.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:31:13
An issue was discovered in Pillow before 6.2.0. When reading specially crafted invalid image files, the library can either allocate very large amounts of memory or take an extremely long period of time to process the image.
CVE-2019-15165
- EPSS 1.19%
- Veröffentlicht 03.10.2019 19:15:09
- Zuletzt bearbeitet 21.11.2024 04:28:11
sf-pcapng.c in libpcap before 1.9.1 does not properly validate the PHB header length before allocating memory.