Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 25 355

Количество 25 355

msrc логотип

CVE-2021-35269

больше 4 лет назад

NTFS-3G versions < 2021.8.22 when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag a heap buffer overflow can occur allowing for code execution and escalation of privileges.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-35268

больше 4 лет назад

In NTFS-3G versions < 2021.8.22 when a specially crafted NTFS inode is loaded in the function ntfs_inode_real_open a heap buffer overflow can occur allowing for code execution and escalation of privileges.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-35267

больше 4 лет назад

NTFS-3G versions < 2021.8.22 a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or escalation of privileges when setuid-root.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-35266

больше 4 лет назад

In NTFS-3G versions < 2021.8.22 when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting in memory disclosure denial of service and even code execution.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-3521

почти 4 года назад

There is a flaw in RPM's signature functionality. OpenPGP subkeys are associated with a primary key via a "binding signature." RPM does not check the binding signature of subkeys prior to importing them. If an attacker is able to add or socially engineer another party to add a malicious subkey to a legitimate public key RPM could wrongly trust a malicious signature. The greatest impact of this flaw is to data integrity. To exploit this flaw an attacker must either compromise an RPM repository or convince an administrator to install an untrusted RPM or public key. It is strongly recommended to only use RPMs and public keys from trusted sources.

CVSS3: 4.7
EPSS: Низкий
msrc логотип

CVE-2021-3520

11 месяцев назад

There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well.

EPSS: Низкий
msrc логотип

CVE-2021-3518

около 5 лет назад

There's a flaw in libxml2 in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by an application linked with libxml2 could trigger a use-after-free. The greatest impact from this flaw is to confidentiality integrity and availability.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2021-3517

около 5 лет назад

There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-of-bounds read. The most likely impact of this flaw is to application availability with some potential impact to confidentiality and integrity if an attacker is able to use memory information to further exploit the application.

CVSS3: 8.6
EPSS: Низкий
msrc логотип

CVE-2021-3507

10 месяцев назад

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2021-3506

больше 5 лет назад

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2021-3504

больше 4 лет назад

A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.

CVSS3: 5.4
EPSS: Низкий
msrc логотип

CVE-2021-35039

около 5 лет назад

kernel/module.c in the Linux kernel before 5.12.14 mishandles Signature Verification aka CID-0c18f29aae7c. Without CONFIG_MODULE_SIG verification that a kernel module is signed for loading via init_module does not occur for a module.sig_enforce=1 command-line argument.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-3502

6 месяцев назад

A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or dbus methods for invalid hostnames. The highest threat from this vulnerability is to the service availability.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-3501

около 5 лет назад

A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata in the KVM API is mapped to an array index which can be updated by a user process at anytime which could lead to an out-of-bounds write. The highest threat from this vulnerability is to data integrity and system availability.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2021-3487

больше 5 лет назад

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2021-3483

около 5 лет назад

A flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-linked list leading to a use-after-free when one of these devices is removed. The highest threat from this vulnerability is to confidentiality integrity as well as system availability. Versions before kernel 5.12-rc6 are affected

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-3482

больше 4 лет назад

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2021-34798

почти 5 лет назад

NULL pointer dereference in httpd core

CVSS3: 7.5
EPSS: Средний
msrc логотип

CVE-2021-3470

больше 5 лет назад

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2021-34693

около 5 лет назад

net/can/bcm.c in the Linux kernel through 5.12.10 allows local users to obtain sensitive information from kernel stack memory because parts of a data structure are uninitialized.

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2021-35269

NTFS-3G versions < 2021.8.22 when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag a heap buffer overflow can occur allowing for code execution and escalation of privileges.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-35268

In NTFS-3G versions < 2021.8.22 when a specially crafted NTFS inode is loaded in the function ntfs_inode_real_open a heap buffer overflow can occur allowing for code execution and escalation of privileges.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-35267

NTFS-3G versions < 2021.8.22 a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or escalation of privileges when setuid-root.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-35266

In NTFS-3G versions < 2021.8.22 when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting in memory disclosure denial of service and even code execution.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-3521

There is a flaw in RPM's signature functionality. OpenPGP subkeys are associated with a primary key via a "binding signature." RPM does not check the binding signature of subkeys prior to importing them. If an attacker is able to add or socially engineer another party to add a malicious subkey to a legitimate public key RPM could wrongly trust a malicious signature. The greatest impact of this flaw is to data integrity. To exploit this flaw an attacker must either compromise an RPM repository or convince an administrator to install an untrusted RPM or public key. It is strongly recommended to only use RPMs and public keys from trusted sources.

CVSS3: 4.7
0%
Низкий
почти 4 года назад
msrc логотип
CVE-2021-3520

There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well.

3%
Низкий
11 месяцев назад
msrc логотип
CVE-2021-3518

There's a flaw in libxml2 in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by an application linked with libxml2 could trigger a use-after-free. The greatest impact from this flaw is to confidentiality integrity and availability.

CVSS3: 8.8
4%
Низкий
около 5 лет назад
msrc логотип
CVE-2021-3517

There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-of-bounds read. The most likely impact of this flaw is to application availability with some potential impact to confidentiality and integrity if an attacker is able to use memory information to further exploit the application.

CVSS3: 8.6
8%
Низкий
около 5 лет назад
msrc логотип
CVE-2021-3507

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.

CVSS3: 6.1
0%
Низкий
10 месяцев назад
msrc логотип
CVSS3: 7.1
0%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-3504

A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.

CVSS3: 5.4
2%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-35039

kernel/module.c in the Linux kernel before 5.12.14 mishandles Signature Verification aka CID-0c18f29aae7c. Without CONFIG_MODULE_SIG verification that a kernel module is signed for loading via init_module does not occur for a module.sig_enforce=1 command-line argument.

CVSS3: 7.8
0%
Низкий
около 5 лет назад
msrc логотип
CVE-2021-3502

A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing a local attacker to crash the avahi service by requesting hostname resolutions through the avahi socket or dbus methods for invalid hostnames. The highest threat from this vulnerability is to the service availability.

CVSS3: 5.5
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2021-3501

A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata in the KVM API is mapped to an array index which can be updated by a user process at anytime which could lead to an out-of-bounds write. The highest threat from this vulnerability is to data integrity and system availability.

CVSS3: 7.1
0%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 6.5
больше 5 лет назад
msrc логотип
CVE-2021-3483

A flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-linked list leading to a use-after-free when one of these devices is removed. The highest threat from this vulnerability is to confidentiality integrity as well as system availability. Versions before kernel 5.12-rc6 are affected

CVSS3: 7.8
0%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 6.5
2%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-34798

NULL pointer dereference in httpd core

CVSS3: 7.5
65%
Средний
почти 5 лет назад
msrc логотип
CVSS3: 5.3
1%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-34693

net/can/bcm.c in the Linux kernel through 5.12.10 allows local users to obtain sensitive information from kernel stack memory because parts of a data structure are uninitialized.

CVSS3: 5.5
0%
Низкий
около 5 лет назад

Уязвимостей на страницу