|
621
|
7.8
4.6
|
HIGH
Local
|
A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly esca…
|
-
|
CVE-2020-14351
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:03
2020-12-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
622
|
8.8
7.2
|
HIGH
Local
|
A flaw was found in libvirt, where it leaked a file descriptor for `/dev/mapper/control` into the QEMU process. This file descriptor allows for privileged operations to happen against the device-mapp…
|
-
|
CVE-2020-14339
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 14:03
2020-12-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
623
|
4.3
4.0
|
MEDIUM
Network
|
A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and directory information which otherwise would be u…
|
-
|
CVE-2020-14318
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:02
2020-12-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
624
|
4.1
1.9
|
MEDIUM
Local
|
A flaw was found in the Linux kernel. A use-after-free was found in the way the console subsystem was using ioctls KDGKBSENT and KDSKBSENT. A local user could use this flaw to get read memory access …
|
-
|
CVE-2020-25656
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:18
2020-12-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
625
|
6.5
4.0
|
MEDIUM
Network
|
A flaw was found in samba's DNS server. An authenticated user could use this flaw to the RPC server to crash. This RPC server, which also serves protocols other than dnsserver, will be restarted afte…
|
NVD-CWE-Other
|
CVE-2020-14383
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 14:03
2020-12-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
626
|
7.5
5.0
|
HIGH
Network
|
A divide by zero issue was found to occur in libvncserver-0.9.12. A malicious client could use this flaw to send a specially crafted message that, when processed by the VNC server, would lead to a fl…
|
CWE-369
Divide By Zero
|
CVE-2020-25708
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 14:18
2020-11-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
627
|
5.5
2.1
|
MEDIUM
Local
|
An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive …
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2020-10763
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 13:56
2020-11-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
628
|
7.4
5.8
|
HIGH
Network
|
A flaw in ICMP packets in the Linux kernel may allow an attacker to quickly scan open UDP ports. This flaw allows an off-path remote attacker to effectively bypass source port UDP randomization. Soft…
|
-
|
CVE-2020-25705
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 14:18
2020-11-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
629
|
6.5
3.3
|
MEDIUM
Adjacent
|
A Red Hat only CVE-2020-12352 regression issue was found in the way the Linux kernel's Bluetooth stack implementation handled the initialization of stack memory when handling certain AMP packets. Thi…
|
-
|
CVE-2020-25662
|
cpe:2.3:o:redhat:enterprise_linux:8.3:*
|
|
|
|
|
2024-11-21 14:18
2020-11-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
630
|
8.8
8.3
|
HIGH
Adjacent
|
A Red Hat only CVE-2020-12351 regression issue was found in the way the Linux kernel's Bluetooth implementation handled L2CAP packets with A2MP CID. This flaw allows a remote attacker in an adjacent …
|
-
|
CVE-2020-25661
|
cpe:2.3:o:redhat:enterprise_linux:8.3:*
|
|
|
|
|
2024-11-21 14:18
2020-11-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|