CVE-2019-3500
- EPSS 0.11%
- Veröffentlicht 02.01.2019 07:29:00
- Zuletzt bearbeitet 21.11.2024 04:42:08
aria2c in aria2 1.33.1, when --log is used, can store an HTTP Basic Authentication username and password in a file, which might allow local users to obtain sensitive information by reading this file.
CVE-2018-20592
- EPSS 0.34%
- Veröffentlicht 30.12.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:01:48
In Mini-XML (aka mxml) v2.12, there is a use-after-free in the mxmlAdd function of the mxml-node.c file. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted xml file, as demonstrated by mxmldoc.
CVE-2018-20593
- EPSS 0.24%
- Veröffentlicht 30.12.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:01:48
In Mini-XML (aka mxml) v2.12, there is stack-based buffer overflow in the scan_file function in mxmldoc.c.
CVE-2018-20549
- EPSS 0.79%
- Veröffentlicht 28.12.2018 16:29:05
- Zuletzt bearbeitet 21.11.2024 04:01:42
There is an illegal WRITE memory access at caca/file.c (function caca_file_read) in libcaca 0.99.beta19.
CVE-2018-20545
- EPSS 1.63%
- Veröffentlicht 28.12.2018 16:29:04
- Zuletzt bearbeitet 21.11.2024 04:01:41
There is an illegal WRITE memory access at common-image.c (function load_image) in libcaca 0.99.beta19 for 4bpp data.
CVE-2018-20546
- EPSS 2.27%
- Veröffentlicht 28.12.2018 16:29:04
- Zuletzt bearbeitet 21.11.2024 04:01:42
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for the default bpp case.
CVE-2018-20547
- EPSS 0.86%
- Veröffentlicht 28.12.2018 16:29:04
- Zuletzt bearbeitet 21.11.2024 04:01:42
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for 24bpp data.
CVE-2018-20548
- EPSS 0.62%
- Veröffentlicht 28.12.2018 16:29:04
- Zuletzt bearbeitet 21.11.2024 04:01:42
There is an illegal WRITE memory access at common-image.c (function load_image) in libcaca 0.99.beta19 for 1bpp data.
CVE-2018-20406
- EPSS 2.01%
- Veröffentlicht 23.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 04:01:25
Modules/_pickle.c in Python before 3.7.1 has an integer overflow via a large LONG_BINPUT value that is mishandled during a "resize to twice the size" attempt. This issue might cause memory exhaustion, but is only relevant if the pickle format is used...
CVE-2018-20191
- EPSS 0.73%
- Veröffentlicht 20.12.2018 23:29:02
- Zuletzt bearbeitet 21.11.2024 04:01:03
hw/rdma/vmw/pvrdma_main.c in QEMU does not implement a read operation (such as uar_read by analogy to uar_write), which allows attackers to cause a denial of service (NULL pointer dereference).