Количество 25 356
Количество 25 356
CVE-2021-41072
CVE-2021-41054
tftpd_file.c in atftp through 0.7.4 has a buffer overflow because buffer-size handling does not properly consider the combination of data OACK and other options.
CVE-2021-4102
Chromium: CVE-2021-4102 Use after free in V8
CVE-2021-4101
Chromium: CVE-2021-4101 Heap buffer overflow in Swiftshader
CVE-2021-4100
Chromium: CVE-2021-4100 Object lifecycle issue in ANGLE
CVE-2021-4099
Chromium: CVE-2021-4099 Use after free in Swiftshader
CVE-2021-4098
Chromium: CVE-2021-4098 Insufficient data validation in Mojo
CVE-2021-4095
A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of service by issuing a KVM_XEN_HVM_SET_ATTR ioctl. This flaw affects Linux kernel versions prior to 5.17-rc1.
CVE-2021-4093
A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KVM guest using SEV-ES can trigger out-of-bounds reads and writes in the host kernel via a malicious VMGEXIT for a string I/O instruction (for example outs or ins) using the exit reason SVM_EXIT_IOIO. This issue results in a crash of the entire system or a potential guest-to-host escape scenario.
CVE-2021-4090
An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4_decode_bitmap4 in fs/nfsd/nfs4xdr.c. In this flaw a local attacker with user privilege may gain access to out-of-bounds memory leading to a system integrity and confidentiality threat.
CVE-2021-4083
A read-after-free memory flaw was found in the Linux kernel's garbage collection for Unix domain socket file handlers in the way users call close() and fget() simultaneously and can potentially trigger a race condition. This flaw allows a local user to crash the system or escalate their privileges on the system. This flaw affects Linux kernel versions prior to 5.16-rc4.
CVE-2021-40812
The GD Graphics Library (aka LibGD) through 2.3.2 has an out-of-bounds read because of the lack of certain gdGetBuf and gdPutBuf return value checks.
CVE-2021-4069
Use After Free in vim/vim
CVE-2021-4068
Chromium: CVE-2021-4068 Insufficient validation of untrusted input in new tab page
CVE-2021-4067
Chromium: CVE-2021-4067 Use after free in window manager
CVE-2021-4066
Chromium: CVE-2021-4066 Integer underflow in ANGLE
CVE-2021-4065
Chromium: CVE-2021-4065 Use after free in autofill
CVE-2021-4064
Chromium: CVE-2021-4064 Use after free in screen capture
CVE-2021-4063
Chromium: CVE-2021-4063 Use after free in developer tools
CVE-2021-40633
A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5.1.4 allows remote attackers trigger an out of memory exception or denial of service via a gif format file.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVSS3: 8.1 | 2% Низкий | больше 4 лет назад | ||
CVE-2021-41054 tftpd_file.c in atftp through 0.7.4 has a buffer overflow because buffer-size handling does not properly consider the combination of data OACK and other options. | CVSS3: 7.5 | 3% Низкий | почти 5 лет назад | |
CVE-2021-4102 Chromium: CVE-2021-4102 Use after free in V8 | 8% Низкий | больше 4 лет назад | ||
CVE-2021-4101 Chromium: CVE-2021-4101 Heap buffer overflow in Swiftshader | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4100 Chromium: CVE-2021-4100 Object lifecycle issue in ANGLE | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4099 Chromium: CVE-2021-4099 Use after free in Swiftshader | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4098 Chromium: CVE-2021-4098 Insufficient data validation in Mojo | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4095 A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of service by issuing a KVM_XEN_HVM_SET_ATTR ioctl. This flaw affects Linux kernel versions prior to 5.17-rc1. | CVSS3: 5.5 | 0% Низкий | больше 4 лет назад | |
CVE-2021-4093 A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KVM guest using SEV-ES can trigger out-of-bounds reads and writes in the host kernel via a malicious VMGEXIT for a string I/O instruction (for example outs or ins) using the exit reason SVM_EXIT_IOIO. This issue results in a crash of the entire system or a potential guest-to-host escape scenario. | CVSS3: 8.8 | 0% Низкий | больше 4 лет назад | |
CVE-2021-4090 An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4_decode_bitmap4 in fs/nfsd/nfs4xdr.c. In this flaw a local attacker with user privilege may gain access to out-of-bounds memory leading to a system integrity and confidentiality threat. | CVSS3: 7.1 | 0% Низкий | больше 4 лет назад | |
CVE-2021-4083 A read-after-free memory flaw was found in the Linux kernel's garbage collection for Unix domain socket file handlers in the way users call close() and fget() simultaneously and can potentially trigger a race condition. This flaw allows a local user to crash the system or escalate their privileges on the system. This flaw affects Linux kernel versions prior to 5.16-rc4. | CVSS3: 7 | 0% Низкий | больше 4 лет назад | |
CVE-2021-40812 The GD Graphics Library (aka LibGD) through 2.3.2 has an out-of-bounds read because of the lack of certain gdGetBuf and gdPutBuf return value checks. | CVSS3: 6.5 | 2% Низкий | больше 4 лет назад | |
CVE-2021-4069 Use After Free in vim/vim | CVSS3: 7.8 | 1% Низкий | больше 4 лет назад | |
CVE-2021-4068 Chromium: CVE-2021-4068 Insufficient validation of untrusted input in new tab page | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4067 Chromium: CVE-2021-4067 Use after free in window manager | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4066 Chromium: CVE-2021-4066 Integer underflow in ANGLE | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4065 Chromium: CVE-2021-4065 Use after free in autofill | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4064 Chromium: CVE-2021-4064 Use after free in screen capture | 1% Низкий | больше 4 лет назад | ||
CVE-2021-4063 Chromium: CVE-2021-4063 Use after free in developer tools | 1% Низкий | больше 4 лет назад | ||
CVE-2021-40633 A memory leak (out-of-memory) in gif2rgb in util/gif2rgb.c in giflib 5.1.4 allows remote attackers trigger an out of memory exception or denial of service via a gif format file. | CVSS3: 8.8 | 2% Низкий | больше 1 года назад |
Уязвимостей на страницу