|
591
|
6.7
7.2
|
MEDIUM
Local
|
A flaw was found in grub2 in versions prior to 2.06. The option parser allows an attacker to write past the end of a heap-allocated buffer by calling certain commands with a large number of specific …
|
CWE-787
Out-of-bounds Write
|
CVE-2021-20225
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:46
2021-03-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
592
|
7.5
6.9
|
HIGH
Local
|
A flaw was found in grub2 in versions prior to 2.06. The cutmem command does not honor secure boot locking allowing an privileged attacker to remove address ranges from memory creating an opportunity…
|
NVD-CWE-Other
|
CVE-2020-27779
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:21
2021-03-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
593
|
6.7
7.2
|
MEDIUM
Local
|
A flaw was found in grub2 in versions prior to 2.06. Variable names present are expanded in the supplied command line into their corresponding variable contents, using a 1kB stack buffer for temporar…
|
-
|
CVE-2020-27749
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:21
2021-03-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
594
|
7.6
7.2
|
HIGH
Physics
|
A flaw was found in grub2 in versions prior to 2.06. During USB device initialization, descriptors are read with very little bounds checking and assumes the USB device is providing sane values. If pr…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-25647
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:18
2021-03-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
595
|
8.2
7.2
|
HIGH
Local
|
A flaw was found in grub2 in versions prior to 2.06. The rmmod implementation allows the unloading of a module used as a dependency without checking if any other dependent module is still loaded lead…
|
CWE-416
Use After Free
|
CVE-2020-25632
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:18
2021-03-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
596
|
7.5
6.2
|
HIGH
Local
|
A flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI command when Secure Boot is enabled. This flaw allows an attacker with privileged access to cra…
|
-
|
CVE-2020-14372
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:03
2021-03-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
597
|
7.8
4.6
|
HIGH
Local
|
There is a vulnerability in the linux kernel versions higher than 5.2 (if kernel compiled with config params CONFIG_BPF_SYSCALL=y , CONFIG_BPF=y , CONFIG_CGROUPS=y , CONFIG_CGROUP_BPF=y , CONFIG_HARD…
|
-
|
CVE-2021-20194
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 14:46
2021-02-24
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
598
|
4.3
4.0
|
MEDIUM
Network
|
A flaw was found in PostgreSQL in versions before 13.2. This flaw allows a user with SELECT privilege on one column to craft a special query that returns all columns of the table. The highest threat …
|
-
|
CVE-2021-20229
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:46
2021-02-24
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
599
|
7.0
6.9
|
HIGH
Local
|
A flaw was found in podman before 1.7.0. File permissions for non-root users running in a privileged container are not correctly checked. This flaw can be abused by a low-privileged user inside the c…
|
-
|
CVE-2021-20188
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:46
2021-02-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
600
|
4.9
4.0
|
MEDIUM
Network
|
A flaw incorrect umask during file or directory modification in the Linux kernel NFS (network file system) functionality was found in the way user create and delete object using NFSv4.2 or newer if b…
|
-
|
CVE-2020-35513
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:27
2021-01-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|