Логотип exploitDog
source:"msrc"
Консоль
Логотип exploitDog

exploitDog

source:"msrc"

Количество 18 769

Количество 18 769

msrc логотип

CVE-2020-27780

около 5 лет назад

A flaw was found in Linux-Pam in versions prior to 1.5.1 in the way it handle empty passwords for non-existing users. When the user doesn't exist PAM try to authenticate with root and in the case of an empty password it successfully authenticate.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2020-27779

почти 5 лет назад

A flaw was found in grub2 in versions prior to 2.06. The cutmem command does not honor secure boot locking allowing an privileged attacker to remove address ranges from memory creating an opportunity to circumvent SecureBoot protections after proper triage about grub's memory layout. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2020-27777

около 5 лет назад

A flaw was found in the way RTAS handled memory accesses in userspace to kernel communication. On a locked down (usually due to Secure Boot) guest system running on top of PowerVM or KVM hypervisors (pseries platform) a root like local user could use this flaw to further increase their privileges to that of a running kernel.

CVSS3: 6.7
EPSS: Низкий
msrc логотип

CVE-2020-27749

почти 5 лет назад

A flaw was found in grub2 in versions prior to 2.06. Variable names present are expanded in the supplied command line into their corresponding variable contents using a 1kB stack buffer for temporary storage without sufficient bounds checking. If the function is called with a command line that references a variable with a sufficiently large payload it is possible to overflow the stack buffer corrupt the stack frame and control execution which could also circumvent Secure Boot protections. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 6.7
EPSS: Низкий
msrc логотип

CVE-2020-27748

4 месяца назад

A flaw was found in the xdg-email component of xdg-utils-1.1.0-rc1 and newer. When handling mailto: URIs, xdg-email allows attachments to be discreetly added via the URI when being passed to Thunderbird. An attacker could potentially send a victim a URI that automatically attaches a sensitive file to a new email. If a victim user does not notice that an attachment was added and sends the email, this could result in sensitive information disclosure. It has been confirmed that the code behind this issue is in xdg-email and not in Thunderbird.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2020-27675

больше 5 лет назад

An issue was discovered in the Linux kernel through 5.9.1 as used with Xen through 4.14.x. drivers/xen/events/events_base.c allows event-channel removal during the event-handling loop (a race condition). This can cause a use-after-free or NULL pointer dereference as demonstrated by a dom0 crash via events for an in-reconfiguration paravirtualized device aka CID-073d0552ead5.

CVSS3: 4.7
EPSS: Низкий
msrc логотип

CVE-2020-27661

больше 4 лет назад

A divide-by-zero issue was found in dwc2_handle_packet in hw/usb/hcd-dwc2.c in the hcd-dwc2 USB host controller emulation of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host resulting in a denial of service.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2020-27619

больше 5 лет назад

In Python 3 through 3.9.0 the Lib/test/multibytecodec_support.py CJK codec tests call eval() on content retrieved via HTTP.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2020-27618

почти 5 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-27545

5 месяцев назад

libdwarf before 20201017 has a one-byte out-of-bounds read because of an invalid pointer dereference via an invalid line table in a crafted object.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2020-27534

больше 4 лет назад

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2020-27304

больше 1 года назад

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2020-27194

больше 5 лет назад

An issue was discovered in the Linux kernel before 5.8.15. scalar32_min_max_or in kernel/bpf/verifier.c mishandles bounds tracking during use of 64-bit values aka CID-5b9fbeb75b6a.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-27171

почти 5 лет назад

An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c has an off-by-one error (with a resultant integer underflow) affecting out-of-bounds speculation on pointer arithmetic leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory aka CID-10d2bb2e6b1d.

CVSS3: 6
EPSS: Низкий
msrc логотип

CVE-2020-27170

почти 5 лет назад

An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory aka CID-f232326f6966. This affects pointer types that do not define a ptr_limit.

CVSS3: 4.7
EPSS: Низкий
msrc логотип

CVE-2020-27152

около 5 лет назад

An issue was discovered in ioapic_lazy_update_eoi in arch/x86/kvm/ioapic.c in the Linux kernel before 5.9.2. It has an infinite loop related to improper interaction between a resampler and edge triggering aka CID-77377064c3a9.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-26870

около 5 лет назад

Visual Studio Remote Code Execution Vulnerability

CVSS3: 7
EPSS: Низкий
msrc логотип

CVE-2020-26572

около 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-26571

около 4 лет назад

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-26570

около 4 лет назад

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2020-27780

A flaw was found in Linux-Pam in versions prior to 1.5.1 in the way it handle empty passwords for non-existing users. When the user doesn't exist PAM try to authenticate with root and in the case of an empty password it successfully authenticate.

CVSS3: 9.8
0%
Низкий
около 5 лет назад
msrc логотип
CVE-2020-27779

A flaw was found in grub2 in versions prior to 2.06. The cutmem command does not honor secure boot locking allowing an privileged attacker to remove address ranges from memory creating an opportunity to circumvent SecureBoot protections after proper triage about grub's memory layout. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 7.5
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2020-27777

A flaw was found in the way RTAS handled memory accesses in userspace to kernel communication. On a locked down (usually due to Secure Boot) guest system running on top of PowerVM or KVM hypervisors (pseries platform) a root like local user could use this flaw to further increase their privileges to that of a running kernel.

CVSS3: 6.7
0%
Низкий
около 5 лет назад
msrc логотип
CVE-2020-27749

A flaw was found in grub2 in versions prior to 2.06. Variable names present are expanded in the supplied command line into their corresponding variable contents using a 1kB stack buffer for temporary storage without sufficient bounds checking. If the function is called with a command line that references a variable with a sufficiently large payload it is possible to overflow the stack buffer corrupt the stack frame and control execution which could also circumvent Secure Boot protections. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 6.7
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2020-27748

A flaw was found in the xdg-email component of xdg-utils-1.1.0-rc1 and newer. When handling mailto: URIs, xdg-email allows attachments to be discreetly added via the URI when being passed to Thunderbird. An attacker could potentially send a victim a URI that automatically attaches a sensitive file to a new email. If a victim user does not notice that an attachment was added and sends the email, this could result in sensitive information disclosure. It has been confirmed that the code behind this issue is in xdg-email and not in Thunderbird.

CVSS3: 6.5
0%
Низкий
4 месяца назад
msrc логотип
CVE-2020-27675

An issue was discovered in the Linux kernel through 5.9.1 as used with Xen through 4.14.x. drivers/xen/events/events_base.c allows event-channel removal during the event-handling loop (a race condition). This can cause a use-after-free or NULL pointer dereference as demonstrated by a dom0 crash via events for an in-reconfiguration paravirtualized device aka CID-073d0552ead5.

CVSS3: 4.7
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-27661

A divide-by-zero issue was found in dwc2_handle_packet in hw/usb/hcd-dwc2.c in the hcd-dwc2 USB host controller emulation of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host resulting in a denial of service.

CVSS3: 6.5
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2020-27619

In Python 3 through 3.9.0 the Lib/test/multibytecodec_support.py CJK codec tests call eval() on content retrieved via HTTP.

CVSS3: 9.8
1%
Низкий
больше 5 лет назад
msrc логотип
CVSS3: 5.5
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2020-27545

libdwarf before 20201017 has a one-byte out-of-bounds read because of an invalid pointer dereference via an invalid line table in a crafted object.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
msrc логотип
CVSS3: 5.3
1%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 9.8
1%
Низкий
больше 1 года назад
msrc логотип
CVE-2020-27194

An issue was discovered in the Linux kernel before 5.8.15. scalar32_min_max_or in kernel/bpf/verifier.c mishandles bounds tracking during use of 64-bit values aka CID-5b9fbeb75b6a.

CVSS3: 5.5
4%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-27171

An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c has an off-by-one error (with a resultant integer underflow) affecting out-of-bounds speculation on pointer arithmetic leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory aka CID-10d2bb2e6b1d.

CVSS3: 6
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2020-27170

An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory aka CID-f232326f6966. This affects pointer types that do not define a ptr_limit.

CVSS3: 4.7
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2020-27152

An issue was discovered in ioapic_lazy_update_eoi in arch/x86/kvm/ioapic.c in the Linux kernel before 5.9.2. It has an infinite loop related to improper interaction between a resampler and edge triggering aka CID-77377064c3a9.

CVSS3: 5.5
0%
Низкий
около 5 лет назад
msrc логотип
CVE-2020-26870

Visual Studio Remote Code Execution Vulnerability

CVSS3: 7
0%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 5.5
0%
Низкий
около 4 лет назад
msrc логотип
CVSS3: 5.5
0%
Низкий
около 4 лет назад
msrc логотип
CVSS3: 5.5
0%
Низкий
около 4 лет назад

Уязвимостей на страницу