|
521
|
7.8
6.8
|
HIGH
Local
|
Null pointer dereference was found in upx PackLinuxElf::canUnpack() in p_lx_elf.cpp,in version UPX 4.0.0. That allow attackers to execute arbitrary code and cause a denial of service via a crafted fi…
|
-
|
CVE-2021-30500
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 15:04
2021-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
522
|
5.5
2.1
|
MEDIUM
Local
|
A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined s…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2021-3527
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 15:21
2021-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
523
|
5.5
4.3
|
MEDIUM
Local
|
A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call in PdfNamesTree::AddToDictionary function in src/podofo/doc/PdfNamesTree.cpp can lead to a stack overflow.
|
CWE-674
Uncontrolled Recursion
|
CVE-2021-30471
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 15:03
2021-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
524
|
5.5
4.3
|
MEDIUM
Local
|
A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call among PdfTokenizer::ReadArray(), PdfTokenizer::GetNextVariant() and PdfTokenizer::ReadDataType() functions can lead to a stack overflo…
|
CWE-674
Uncontrolled Recursion
|
CVE-2021-30470
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 15:03
2021-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
525
|
5.5
4.3
|
MEDIUM
Local
|
A flaw was found in PoDoFo 0.9.7. An use-after-free in PoDoFo::PdfVecObjects::Clear() function can cause a denial of service via a crafted PDF file.
|
CWE-416
Use After Free
|
CVE-2021-30469
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 15:03
2021-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
526
|
5.5
2.1
|
MEDIUM
Local
|
A flaw was found in NetworkManager in versions before 1.30.0. Setting match.path and activating a profile crashes NetworkManager. The highest threat from this vulnerability is to system availability.
|
CWE-20
Improper Input Validation
|
CVE-2021-20297
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 14:46
2021-05-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
527
|
7.5
5.0
|
HIGH
Network
|
A flaw was found in libwebp in versions before 1.0.1. When reading a file libwebp allocates an excessive amount of memory. The highest threat from this vulnerability is to the service availability.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-36332
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 14:29
2021-05-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
528
|
9.1
6.4
|
CRITICAL
Network
|
A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ChunkAssignData. The highest threat from this vulnerability is to data confidentiality and to the ser…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36331
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 14:29
2021-05-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
529
|
9.1
6.4
|
CRITICAL
Network
|
A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ChunkVerifyAndAssign. The highest threat from this vulnerability is to data confidentiality and to th…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36330
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 14:29
2021-05-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
530
|
9.8
7.5
|
CRITICAL
Network
|
A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and inte…
|
CWE-416
Use After Free
|
CVE-2020-36329
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:29
2021-05-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|