Search

Found 16,960 results in 945ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2019-14198 critical 9.8 9.8 FIX slesdebian debian denx 7y ago An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_read_reply when calling store_block in the NFSv3 case.
CVE-2019-14197 critical 9.1 9.1 FIX slesdebian debian denx 7y ago An issue was discovered in Das U-Boot through 2019.07. There is a read of out-of-bounds data at nfs_read_reply.
CVE-2019-14196 critical 9.8 9.8 FIX slesdebian debian denx 7y ago An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_lookup_reply.
CVE-2019-14195 critical 9.8 9.8 FIX slesdebian debian denx 7y ago An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with unvalidated length at nfs_readlink_reply in the "else" block after calculating the new path length.
CVE-2019-14194 critical 9.8 9.8 FIX slesdebian debian denx 7y ago An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_read_reply when calling store_block in the NFSv2 case.
CVE-2019-14193 critical 9.8 9.8 FIX slesdebian debian denx 7y ago An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with an unvalidated length at nfs_readlink_reply, in the "if" block after calculating the new path length.
CVE-2019-14192 critical 9.8 9.8 FIX slesdebian debian denx 7y ago An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy when parsing a UDP packet due to a net_process_received_packet integer underflow during an nc_input_packet call.
CVE-2019-11729 critical 9.5 FIX arch arch slesdebian debian 7y ago Empty or malformed p256-ECDH public keys may trigger a segmentation fault due values being improperly sanitized before being copied into memory and used. This vulnerability affects Firefox ESR < 60.8…
CVE-2019-11727 critical 9.5 FIX arch arch slesdebian debian 7y ago A vulnerability exists where it possible to force Network Security Services (NSS) to sign CertificateVerify with PKCS#1 v1.5 signatures when those are the only ones advertised by server in Certificat…
CVE-2019-11719 critical 9.5 FIX arch arch slesdebian debian 7y ago When importing a curve25519 private key in PKCS#8format with leading 0x00 bytes, it is possible to trigger an out-of-bounds read in the Network Security Services (NSS) library. This could lead to inf…
CVE-2019-10173 unknown FIX slesdebian debian 7y ago Deserialization of Untrusted Data and Code Injection in xstream
CVE-2018-11307 unknown FIX debian debian 7y ago Deserialization of Untrusted Data in jackson-databind
CVE-2019-1010292 critical 9.8 9.8 FIX debian debian 7y ago Linaro/OP-TEE OP-TEE Prior to version v3.4.0 is affected by: Boundary checks. The impact is: This could lead to corruption of any memory which the TA can access. The component is: optee_os. The fixed…
CVE-2019-1010298 critical 9.8 9.8 FIX debian debian 7y ago Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Code execution in the context of TEE core (kernel). The component is: optee_os. The fixed version is: 3.4.0 and …
CVE-2019-1010297 critical 9.8 9.8 FIX debian debian 7y ago Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Execution of code in TEE core (kernel) context. The component is: optee_os. The fixed version is: 3.4.0 and late…
CVE-2019-1010296 critical 9.8 9.8 FIX debian debian 7y ago Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Code execution in context of TEE core (kernel). The component is: optee_os. The fixed version is: 3.4.0 and late…
CVE-2019-1010295 critical 9.8 9.8 FIX debian debian 7y ago Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Memory corruption and disclosure of memory content. The component is: optee_os. The fixed version is: 3.4.0 and …
CVE-2019-1010293 critical 9.8 9.8 FIX debian debian 7y ago Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Boundary crossing. The impact is: Memory corruption of the TEE itself. The component is: optee_os. The fixed version is: 3.4.0 and later.
CVE-2019-9811 critical 9.5 FIX arch arch slesdebian debian 7y ago As part of a winning Pwn2Own entry, a researcher demonstrated a sandbox escape by installing a malicious language pack and then opening a browser feature that used the compromised translation. This v…
CVE-2019-11730 critical 9.5 FIX arch archdebian debian rhel 7y ago A vulnerability exists where if a user opens a locally saved HTML file, this file can use file: URIs to access other files in the same directory or sub-directories if the names are known or guessed. …
CVE-2019-11717 critical 9.5 FIX arch arch slesdebian debian 7y ago A vulnerability exists where the caret ("^") character is improperly escaped constructing some URIs due to it being used as a separator, allowing for possible spoofing of origin attributes. This vuln…
CVE-2019-11715 critical 9.5 FIX arch archdebian debian rhel 7y ago Due to an error while parsing page content, it is possible for properly sanitized user input to be misinterpreted and lead to XSS hazards on web sites in certain circumstances. This vulnerability aff…
CVE-2019-11713 critical 9.5 FIX arch arch slesdebian debian 7y ago A use-after-free vulnerability can occur in HTTP/2 when a cached HTTP/2 stream is closed while still in use, resulting in a potentially exploitable crash. This vulnerability affects Firefox ESR < 60.…
CVE-2019-11712 critical 9.5 FIX arch archdebian debian rhel 7y ago POST requests made by NPAPI plugins, such as Flash, that receive a status 308 redirect response can bypass CORS requirements. This can allow an attacker to perform Cross-Site Request Forgery (CSRF) a…
CVE-2019-11711 critical 9.5 FIX arch archdebian debian rhel 7y ago When an inner window is reused, it does not consider the use of document.domain for cross-origin protections. If pages on different subdomains ever cooperatively use document.domain, then either page…
CVE-2019-11709 critical 9.5 FIX arch archdebian debian rhel 7y ago Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7. Some of these bugs showed evidence of memory corruption and we presume that with enoug…
CVE-2019-0228 unknown FIX debian debian 7y ago Vulnerability that affects org.apache.pdfbox:pdfbox
CVE-2019-10072 unknown FIX slesdebian debian 7y ago The fix for CVE-2019-0199 was incomplete and did not address HTTP/2 connection window exhaustion on write in Apache Tomcat versions 9.0.0.M1 to 9.0.19 and 8.5.0 to 8.5.40 . By not sending WINDOW_UPDA…
CVE-2019-3888 unknown FIX debian debian 7y ago Credential exposure through log files in Undertow
CVE-2019-0221 unknown 1.0 EXPFIX slesdebian debian 7y ago The SSI printenv command in Apache Tomcat 9.0.0.M1 to 9.0.0.17, 8.5.0 to 8.5.39 and 7.0.0 to 7.0.93 echoes user provided data without escaping and is, therefore, vulnerable to XSS. SSI is disabled by…
CVE-2019-0201 unknown FIX slesdebian debian 7y ago Access control bypass in Apache ZooKeeper
CVE-2013-7285 unknown 1.0 EXPFIX slesdebian debian 7y ago Command Injection in Xstream
CVE-2019-9820 critical 9.5 FIX arch arch slesdebian debian 7y ago A use-after-free vulnerability can occur in the chrome event handler when it is freed while still in use. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.…
CVE-2019-9819 critical 9.5 FIX arch arch slesdebian debian 7y ago A vulnerability where a JavaScript compartment mismatch can occur while working with the fetch API, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7, Firefo…
CVE-2019-9817 critical 9.5 FIX arch arch slesdebian debian 7y ago Images from a different domain can be read using a canvas object in some circumstances. This could be used to steal image data from a different site in violation of same-origin policy. This vulnerabi…
CVE-2019-9816 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago A possible vulnerability exists where type confusion can occur when manipulating JavaScript objects in object groups, allowing for the bypassing of security checks within these groups. *Note: this vu…
CVE-2019-9800 critical 9.5 FIX arch arch slesdebian debian 7y ago Mozilla developers and community members reported memory safety bugs present in Firefox 66, Firefox ESR 60.6, and Thunderbird 60.6. Some of these bugs showed evidence of memory corruption and we pres…
CVE-2019-9797 critical 9.5 FIX arch arch slesdebian debian 7y ago Cross-origin images can be read in violation of the same-origin policy by exporting an image after using createImageBitmap to read the image and then rendering the resulting bitmap image within a can…
CVE-2019-5798 critical 9.5 FIX arch archdebian debian rhel 7y ago Lack of correct bounds checking in Skia in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
CVE-2019-11698 critical 9.5 FIX arch arch slesdebian debian 7y ago If a crafted hyperlink is dragged and dropped to the bookmark bar or sidebar and the resulting bookmark is subsequently dragged and dropped into the web content area, an arbitrary query of a user's b…
CVE-2019-11693 critical 9.5 FIX arch arch slesdebian debian 7y ago The bufferdata function in WebGL is vulnerable to a buffer overflow with specific graphics drivers on Linux. This could result in malicious content freezing a tab or triggering a potentially exploita…
CVE-2019-11692 critical 9.5 FIX arch arch slesdebian debian 7y ago A use-after-free vulnerability can occur when listeners are removed from the event listener manager while still in use, resulting in a potentially exploitable crash. This vulnerability affects Thunde…
CVE-2019-11691 critical 9.5 FIX arch arch slesdebian debian 7y ago A use-after-free vulnerability can occur when working with XMLHttpRequest (XHR) in an event loop, causing the XHR main thread to be called after it has been freed. This results in a potentially explo…
CVE-2019-2697 critical 10.0 EXPFIX slesdebian debian rhel 7y ago RHSA-2019:1238: java-1.8.0-ibm security update (Critical)
CVE-2019-2449 critical 9.5 FIX slesdebian debian rhel 7y ago RHSA-2019:1238: java-1.8.0-ibm security update (Critical)
CVE-2019-2422 critical 9.5 FIX slesdebian debian rhel 7y ago RHSA-2019:1238: java-1.8.0-ibm security update (Critical)
CVE-2018-11212 critical 9.5 FIX slesdebian debian rhel 7y ago RHSA-2019:1238: java-1.8.0-ibm security update (Critical)
CVE-2019-0227 unknown 1.0 EXP debian debian sles 7y ago Server Side Request Forgery in Apache Axis
CVE-2019-2698 critical 10.0 EXPFIX slesdebian debian rhel 7y ago RHSA-2019:1238: java-1.8.0-ibm security update (Critical)
CVE-2018-18509 critical 9.5 FIX arch archdebian debian rhel 7y ago multiple issues in thunderbird
CVE-2019-9813 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago Incorrect handling of __proto__ mutations may lead to type confusion in IonMonkey JIT code and can be leveraged for arbitrary memory read and write. This vulnerability affects Firefox < 66.0.1, Firef…
CVE-2019-9810 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. This vulnerability affects Firefox < 66.0.1, Firefox ESR…
CVE-2019-9796 critical 9.5 FIX arch arch slesdebian debian 7y ago A use-after-free vulnerability can occur when the SMIL animation controller incorrectly registers with the refresh driver twice when only a single registration is expected. When a registration is lat…
CVE-2019-9795 critical 9.5 FIX arch arch slesdebian debian 7y ago A vulnerability where type-confusion in the IonMonkey just-in-time (JIT) compiler could potentially be used by malicious JavaScript to trigger a potentially exploitable crash. This vulnerability affe…
CVE-2019-9793 critical 9.5 FIX arch arch slesdebian debian 7y ago A mechanism was discovered that removes some bounds checking for string, array, or typed array accesses if Spectre mitigations have been disabled. This vulnerability could allow an attacker to create…
CVE-2019-9792 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value can then be used by JavaScript to achieve memory c…
CVE-2019-9791 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just-in-time (JIT) compiler and when the con…
CVE-2019-9790 critical 9.5 FIX arch arch slesdebian debian 7y ago A use-after-free vulnerability can occur when a raw pointer to a DOM element on a page is obtained using JavaScript and the element is then removed while still in use. This results in a potentially e…
CVE-2019-9788 critical 9.5 FIX arch arch slesdebian debian 7y ago Mozilla developers and community members reported memory safety bugs present in Firefox 65, Firefox ESR 60.5, and Thunderbird 60.5. Some of these bugs showed evidence of memory corruption and we pres…
CVE-2018-18506 critical 9.5 FIX arch arch slesdebian debian 7y ago When proxy auto-detection is enabled, if a web server serves a Proxy Auto-Configuration (PAC) file or if a PAC file is loaded locally, this PAC file can specify that requests to the localhost are to …
CVE-2019-15542 unknown FIX debian debian 7y ago An issue was discovered in the ammonia crate before 2.1.0 for Rust. There is uncontrolled recursion during HTML DOM tree serialization.
CVE-2019-10246 unknown FIX debian debian 7y ago Information Exposure vulnerability in Eclipse Jetty
CVE-2019-10247 unknown FIX debian debian 7y ago Installation information leak in Eclipse Jetty
CVE-2019-10241 unknown FIX debian debian 7y ago Cross-site Scripting in Eclipse Jetty
CVE-2019-5427 unknown FIX debian debian sles 7y ago Billion laughs attack in c3p0
CVE-2019-11068 critical 9.8 9.8 FIX slesdebian debianubuntu ubuntu xmlsoftoraclenetapp 7y ago RHSA-2020:4464: libxslt security update (Moderate)
CVE-2019-0232 unknown 1.0 EXPFIX debian debian 7y ago When running on Windows with enableCmdLineArguments enabled, the CGI Servlet in Apache Tomcat 9.0.0.M1 to 9.0.17, 8.5.0 to 8.5.39 and 7.0.0 to 7.0.93 is vulnerable to Remote Code Execution due to a b…
CVE-2019-0222 unknown FIX debian debian 7y ago Improper Control of Generation of Code ('Code Injection') in org.apache.activemq:activemq-client
CVE-2019-10648 unknown FIX debian debian 7y ago Robocode through 1.9.3.5 allows remote attackers to cause external service interaction (DNS), as demonstrated by a query for a unique subdomain name within an attacker-controlled DNS zone, because of…
CVE-2018-12545 unknown FIX debian debian 7y ago Uncontrolled Resource Consumption in org.eclipse.jetty:jetty-server
CVE-2018-12022 unknown FIX debian debian 7y ago jackson-databind Deserialization of Untrusted Data vulnerability
CVE-2018-1324 unknown FIX debian debian 7y ago Apache Commons Compress vulnerable to denial of service due to infinite loop
CVE-2017-3164 unknown debian debian 7y ago Server-Side Request Forgery (SSRF) in org.apache.solr:solr-core
CVE-2019-0192 unknown FIX debian debian 7y ago Critical severity vulnerability that affects org.apache.solr:solr-core
CVE-2019-9658 unknown FIX debian debian 7y ago Moderate severity vulnerability that affects com.puppycrawl.tools:checkstyle
CVE-2019-5418 unknown 2.5 KEVEXPFIX slesdebian debian 7y ago Rails Ruby on Rails contains a path traversal vulnerability in Action View. Specially crafted accept headers in combination with calls to `render file:` can cause arbitrary files on the target server…
CVE-2019-0187 unknown debian debian 7y ago Unauthenticated Remote Code Execution in Apache JMeter
CVE-2018-1320 unknown FIX debian debian 8y ago Improper Input Validation in Apache Thrift
CVE-2018-11798 unknown FIX debian debian 8y ago Apache Thrift Node.js static web server sandbox escape
CVE-2018-20433 unknown FIX debian debian sles 8y ago XML External Entity Reference in mchange:c3p0
CVE-2018-14719 unknown FIX debian debian 8y ago Arbitrary Code Execution in jackson-databind
CVE-2018-14720 unknown FIX debian debian 8y ago XML External Entity Reference (XXE) in jackson-databind
CVE-2018-14721 unknown FIX debian debian 8y ago Server-Side Request Forgery (SSRF) in jackson-databind
CVE-2018-19362 unknown FIX debian debian 8y ago com.fasterxml.jackson.core:jackson-databind vulnerable to Deserialization of Untrusted Data
CVE-2018-19361 unknown FIX debian debian 8y ago Deserialization of Untrusted Data in jackson-databind
CVE-2018-19360 unknown FIX debian debian 8y ago Deserialization of Untrusted Data in jackson-databind due to polymorphic deserialization
CVE-2018-14718 unknown FIX debian debian 8y ago Arbitrary Code Execution in jackson-databind
CVE-2018-17197 unknown FIX slesdebian debian 8y ago Apache Tika Denial of Service due to Infinite Loop in Tika's SQLite3Parser
CVE-2018-17187 unknown FIX debian debian 8y ago Improper Certificate Validation in proton-j
CVE-2018-1337 unknown FIX debian debian 8y ago In Apache Directory LDAP API before 1.0.2, a bug in the way the SSL Filter was setup made it possible for another thread to use the connection before the TLS layer has been established, if the connec…
CVE-2018-8006 unknown FIX debian debian 8y ago Apache ActiveMQ web console vulnerable to Cross-site Scripting
CVE-2017-2666 unknown FIX debian debian 8y ago Undertow-core vulnerable to HTTP Request Smuggling
CVE-2017-2670 unknown FIX debian debian 8y ago Moderate severity vulnerability that affects io.undertow:undertow-core
CVE-2018-10936 unknown FIX slesdebian debian 8y ago Moderate severity vulnerability that affects org.postgresql:pgjdbc-aggregate
CVE-2018-11775 unknown FIX debian debian 8y ago Improper Certificate Validation in Apache activemq-client
CVE-2018-11771 unknown FIX debian debian 8y ago Moderate severity vulnerability that affects org.apache.commons:commons-compress
CVE-2017-7658 unknown FIX debian debian 8y ago Jetty vulnerable to authorization bypass due to inconsistent HTTP request handling (HTTP Request Smuggling)
CVE-2017-7656 unknown FIX debian debian 8y ago Jetty vulnerable to cache poisoning due to inconsistent HTTP request handling (HTTP Request Smuggling)
CVE-2018-12536 unknown FIX debian debian 8y ago Eclipse Jetty Server generates error message containing sensitive information
CVE-2017-7657 unknown FIX debian debian 8y ago Critical severity vulnerability that affects org.eclipse.jetty:jetty-server