CVEs from 2019

3,174 normalized CVEs published or assigned in this year.

Total
3,174
critical
critical 231
high
high 484
medium
medium 482
low
low 94
% Critical
7.3%
% with KEV
3.7%
% with exploit
7.9%

Top products

  • u-boot 20
  • crimson 8
  • active_iq_unified_manager 7
  • weblogic_server 5
  • jdk 5
  • oncommand_workflow_automation 5
  • codeready_linux_builder_eus 4
  • oncommand_insight 4
0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2019-1003049 medium 5.5 4y ago multiple issues in jenkins
CVE-2019-25051 medium 5.5 4y ago RHSA-2022:1808: aspell security update (Moderate)
CVE-2019-19004 medium 5.5 5y ago RHSA-2021:4519: autotrace security update (Moderate)
CVE-2019-19005 medium 5.5 5y ago RHSA-2021:4519: autotrace security update (Moderate)
CVE-2019-17595 medium 5.5 5y ago RHSA-2021:4426: ncurses security update (Moderate)
CVE-2019-17594 medium 5.5 5y ago RHSA-2021:4426: ncurses security update (Moderate)
CVE-2019-5827 medium 5.5 5y ago Integer overflow in SQLite via WebSQL in Google Chrome prior to 74.0.3729.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2019-13750 medium 5.5 5y ago Insufficient data validation in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass defense-in-depth measures via a crafted HTML page.
CVE-2019-19603 medium 5.5 5y ago RHSA-2021:4396: sqlite security update (Moderate)
CVE-2019-13751 medium 5.5 5y ago Uninitialized data in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
CVE-2019-18218 medium 5.5 5y ago cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).
CVE-2019-14615 medium 5.5 5y ago Insufficient control flow in certain data structures for some Intel(R) Processors with Intel(R) Processor Graphics may allow an unauthenticated user to potentially enable information disclosure via l…
CVE-2019-12973 medium 5.5 5y ago RHSA-2021:4251: openjpeg2 security update (Moderate)
CVE-2019-14584 medium 5.5 5y ago RHSA-2021:4198: edk2 security, bug fix, and enhancement update (Moderate)
CVE-2019-15845 medium 5.5 5y ago RHSA-2021:2588: ruby:2.6 security, bug fix, and enhancement update (Moderate)
CVE-2019-16255 medium 5.5 5y ago RHSA-2021:2588: ruby:2.6 security, bug fix, and enhancement update (Moderate)
CVE-2019-16201 medium 5.5 5y ago RHSA-2021:2588: ruby:2.6 security, bug fix, and enhancement update (Moderate)
CVE-2019-16254 medium 5.5 5y ago RHSA-2021:2588: ruby:2.6 security, bug fix, and enhancement update (Moderate)
CVE-2019-20916 medium 5.5 5y ago The pip package before 19.2 for Python allows Directory Traversal when a URL is given in an install command, because a Content-Disposition header can have ../ in a filename, as demonstrated by overwr…
CVE-2019-20398 medium 5.5 5y ago RHEA-2021:1906: libyang bug fix and enhancement update (Moderate)
CVE-2019-20397 medium 5.5 5y ago RHEA-2021:1906: libyang bug fix and enhancement update (Moderate)
CVE-2019-20396 medium 5.5 5y ago RHEA-2021:1906: libyang bug fix and enhancement update (Moderate)
CVE-2019-20395 medium 5.5 5y ago RHEA-2021:1906: libyang bug fix and enhancement update (Moderate)
CVE-2019-20394 medium 5.5 5y ago RHEA-2021:1906: libyang bug fix and enhancement update (Moderate)
CVE-2019-20393 medium 5.5 5y ago RHEA-2021:1906: libyang bug fix and enhancement update (Moderate)
CVE-2019-20392 medium 5.5 5y ago RHEA-2021:1906: libyang bug fix and enhancement update (Moderate)
CVE-2019-20391 medium 5.5 5y ago RHEA-2021:1906: libyang bug fix and enhancement update (Moderate)
CVE-2019-20839 medium 5.5 5y ago libvncclient/sockets.c in LibVNCServer before 0.9.13 has a buffer overflow via a long socket filename.
CVE-2019-13012 medium 5.5 5y ago RHSA-2021:1586: GNOME security, bug fix, and enhancement update (Moderate)
CVE-2019-9169 medium 5.5 5y ago RHSA-2021:1585: glibc security, bug fix, and enhancement update (Moderate)
CVE-2019-25013 medium 5.5 5y ago RHSA-2021:1585: glibc security, bug fix, and enhancement update (Moderate)
CVE-2019-25041 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-25039 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-25040 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-25037 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-25038 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-25036 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-14866 medium 5.5 5y ago RHSA-2021:1582: cpio security update (Moderate)
CVE-2019-25042 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-25032 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-25034 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-25035 medium 5.5 5y ago RHSA-2021:1853: unbound security, bug fix, and enhancement update (Moderate)
CVE-2019-20477 medium 5.5 5y ago RHSA-2020:4641: python38:3.8 security, bug fix, and enhancement update (Moderate)
CVE-2019-20372 medium 5.5 6y ago RHSA-2020:5495: nginx:1.16 security update (Moderate)
CVE-2019-12420 medium 5.5 6y ago RHSA-2020:4625: spamassassin security update (Moderate)
CVE-2019-7572 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-7573 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-7575 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-15166 medium 5.5 6y ago RHSA-2020:4760: tcpdump security, bug fix, and enhancement update (Moderate)
CVE-2019-15892 medium 5.5 6y ago An issue was discovered in Varnish Cache before 6.0.4 LTS, and 6.1.x and 6.2.x before 6.2.1. An HTTP/1 parsing failure allows a remote attacker to trigger an assert by sending crafted HTTP/1 requests…
CVE-2019-20637 medium 5.5 6y ago An issue was discovered in Varnish Cache before 6.0.5 LTS, 6.1.x and 6.2.x before 6.2.2, and 6.3.x before 6.3.1. It does not clear a pointer between the handling of one client request and the next re…
CVE-2019-7574 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-9278 medium 5.5 6y ago RHSA-2020:4766: libexif security, bug fix, and enhancement update (Moderate)
CVE-2019-14559 medium 5.5 6y ago RHSA-2020:4805: edk2 security, bug fix, and enhancement update (Moderate)
CVE-2019-7576 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-15946 medium 5.5 6y ago RHSA-2020:4483: opensc security, bug fix, and enhancement update (Moderate)
CVE-2019-13627 medium 5.5 6y ago RHSA-2020:4482: libgcrypt security, bug fix, and enhancement update (Moderate)
CVE-2019-19479 medium 5.5 6y ago RHSA-2020:4483: opensc security, bug fix, and enhancement update (Moderate)
CVE-2019-15945 medium 5.5 6y ago RHSA-2020:4483: opensc security, bug fix, and enhancement update (Moderate)
CVE-2019-19481 medium 5.5 6y ago RHSA-2020:4483: opensc security, bug fix, and enhancement update (Moderate)
CVE-2019-10179 medium 5.5 6y ago RHSA-2020:4847: pki-core:10.6 and pki-deps:10.6 security, bug fix, and enhancement update (Moderate)
CVE-2019-10221 medium 5.5 6y ago RHSA-2020:4847: pki-core:10.6 and pki-deps:10.6 security, bug fix, and enhancement update (Moderate)
CVE-2019-20807 medium 5.5 6y ago RHSA-2020:4453: vim security update (Moderate)
CVE-2019-20388 medium 5.5 6y ago RHSA-2020:4479: libxml2 security update (Moderate)
CVE-2019-20792 medium 5.5 6y ago RHSA-2020:4483: opensc security, bug fix, and enhancement update (Moderate)
CVE-2019-7577 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-14889 medium 5.5 6y ago RHSA-2020:4545: libssh security, bug fix, and enhancement update (Moderate)
CVE-2019-19956 medium 5.5 6y ago RHSA-2020:4479: libxml2 security update (Moderate)
CVE-2019-16680 medium 5.5 6y ago RHSA-2020:4820: file-roller security update (Moderate)
CVE-2019-20812 medium 5.5 6y ago An issue was discovered in the Linux kernel before 5.4.7. The prb_calc_retire_blk_tmo() function in net/packet/af_packet.c can result in a denial of service (CPU consumption and soft lockup) in a cer…
CVE-2019-20218 medium 5.5 6y ago RHSA-2020:4442: sqlite security update (Moderate)
CVE-2019-19783 medium 5.5 6y ago RHSA-2020:4655: cyrus-imapd security update (Moderate)
CVE-2019-5018 medium 5.5 6y ago RHSA-2020:4442: sqlite security update (Moderate)
CVE-2019-7638 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-7637 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-7635 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-7636 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-7578 medium 5.5 6y ago RHSA-2020:4627: SDL security update (Moderate)
CVE-2019-17185 medium 5.5 6y ago RHSA-2020:4799: freeradius:3.0 security and bug fix update (Moderate)
CVE-2019-18928 medium 5.5 6y ago RHSA-2020:4655: cyrus-imapd security update (Moderate)
CVE-2019-20387 medium 5.5 6y ago repodata_schema2id in repodata.c in libsolv before 0.7.6 has a heap-based buffer over-read via a last schema whose length is less than the length of the input schema.
CVE-2019-10146 medium 5.5 6y ago RHSA-2020:4847: pki-core:10.6 and pki-deps:10.6 security, bug fix, and enhancement update (Moderate)
CVE-2019-13225 medium 5.5 6y ago RHSA-2020:4827: oniguruma security update (Moderate)
CVE-2019-10097 medium 5.5 6y ago In Apache HTTP Server 2.4.32-2.4.39, when mod_remoteip was configured to use a trusted intermediary proxy server using the "PROXY" protocol, a specially crafted PROXY header could trigger a stack buf…
CVE-2019-0196 medium 5.5 6y ago A vulnerability was found in Apache HTTP Server 2.4.17 to 2.4.38. Using fuzzed network input, the http/2 request handling could be made to access freed memory in string comparison when determining th…
CVE-2019-0197 medium 5.5 6y ago A vulnerability was found in Apache HTTP Server 2.4.34 to 2.4.38. When HTTP/2 was enabled for a http: host or H2Upgrade was enabled for h2 on a https: host, an Upgrade request from http/1.1 to http/2…
CVE-2019-10082 medium 5.5 6y ago In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during connection shutdown.
CVE-2019-10081 medium 5.5 6y ago HTTP/2 (2.4.20 through 2.4.39) very early pushes, for example configured with "H2PushResource", could lead to an overwrite of memory in the pushing request's pool, leading to crashes. The memory copi…
CVE-2019-12528 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-18676 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-12529 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-12526 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-12521 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-18678 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-12520 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-18860 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-12854 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-12524 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-18679 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-18677 medium 5.5 6y ago RHSA-2020:4743: squid:4 security, bug fix, and enhancement update (Moderate)