Количество 18 769
Количество 18 769
CVE-2021-1637
Windows DNS Query Information Disclosure Vulnerability
CVE-2021-1636
Microsoft SQL Elevation of Privilege Vulnerability
CVE-2021-1405
CVE-2021-1404
CVE-2021-1386
CVE-2021-1252
CVE-2020-9490
Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the 'Cache-Digest' header in a HTTP/2 request would result in a crash when the server actually tries to HTTP/2 PUSH a resource afterwards. Configuring the HTTP/2 feature via "H2Push off" will mitigate this vulnerability for unpatched servers.
CVE-2020-9383
An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it aka CID-2e90ca68b0d2.
CVE-2020-9327
In SQLite 3.31.1, isAuxiliaryVtabOperator allows attackers to trigger a NULL pointer dereference and segmentation fault because of generated column optimizations.
CVE-2020-8992
CVE-2020-8927
Brotli Library Buffer Overflow Vulnerability
CVE-2020-8910
Auth Bypass in Google's Closure-Library
CVE-2020-8908
CVE-2020-8649
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.
CVE-2020-8648
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.
CVE-2020-8647
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vc_do_resize function in drivers/tty/vt/vt.c.
CVE-2020-8632
In cloud-init through 19.4 rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value which makes it easier for attackers to guess passwords.
CVE-2020-8631
cloud-init through 19.4 relies on Mersenne Twister for a random password which makes it easier for attackers to predict passwords because rand_str in cloudinit/util.py calls the random.choice function.
CVE-2020-8625
A vulnerability in BIND's GSSAPI security policy negotiation can be targeted by a buffer overflow attack
CVE-2020-8624
update-policy rules of type "subdomain" are enforced incorrectly
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-1637 Windows DNS Query Information Disclosure Vulnerability | CVSS3: 5.5 | 0% Низкий | около 5 лет назад | |
CVE-2021-1636 Microsoft SQL Elevation of Privilege Vulnerability | CVSS3: 8.8 | 5% Низкий | около 5 лет назад | |
CVSS3: 7.5 | 1% Низкий | почти 5 лет назад | ||
CVSS3: 7.5 | 0% Низкий | почти 5 лет назад | ||
CVSS3: 7.8 | 0% Низкий | почти 5 лет назад | ||
CVSS3: 7.5 | 1% Низкий | почти 5 лет назад | ||
CVE-2020-9490 Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the 'Cache-Digest' header in a HTTP/2 request would result in a crash when the server actually tries to HTTP/2 PUSH a resource afterwards. Configuring the HTTP/2 feature via "H2Push off" will mitigate this vulnerability for unpatched servers. | CVSS3: 7.5 | 76% Высокий | больше 5 лет назад | |
CVE-2020-9383 An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it aka CID-2e90ca68b0d2. | CVSS3: 7.1 | 0% Низкий | больше 5 лет назад | |
CVE-2020-9327 In SQLite 3.31.1, isAuxiliaryVtabOperator allows attackers to trigger a NULL pointer dereference and segmentation fault because of generated column optimizations. | 1% Низкий | 5 месяцев назад | ||
CVSS3: 5.5 | 0% Низкий | больше 5 лет назад | ||
CVE-2020-8927 Brotli Library Buffer Overflow Vulnerability | CVSS3: 6.5 | 0% Низкий | почти 4 года назад | |
CVE-2020-8910 Auth Bypass in Google's Closure-Library | 0% Низкий | 5 месяцев назад | ||
CVSS3: 3.3 | 0% Низкий | почти 3 года назад | ||
CVE-2020-8649 There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c. | CVSS3: 5.9 | 0% Низкий | больше 5 лет назад | |
CVE-2020-8648 There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c. | CVSS3: 7.1 | 0% Низкий | больше 5 лет назад | |
CVE-2020-8647 There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vc_do_resize function in drivers/tty/vt/vt.c. | CVSS3: 6.1 | 0% Низкий | больше 5 лет назад | |
CVE-2020-8632 In cloud-init through 19.4 rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value which makes it easier for attackers to guess passwords. | CVSS3: 5.5 | 0% Низкий | больше 5 лет назад | |
CVE-2020-8631 cloud-init through 19.4 relies on Mersenne Twister for a random password which makes it easier for attackers to predict passwords because rand_str in cloudinit/util.py calls the random.choice function. | CVSS3: 5.5 | 0% Низкий | больше 5 лет назад | |
CVE-2020-8625 A vulnerability in BIND's GSSAPI security policy negotiation can be targeted by a buffer overflow attack | CVSS3: 8.1 | 11% Средний | почти 5 лет назад | |
CVE-2020-8624 update-policy rules of type "subdomain" are enforced incorrectly | CVSS3: 4.3 | 2% Низкий | больше 5 лет назад |
Уязвимостей на страницу