|
921
|
6.5
4.3
|
MEDIUM
Network
|
Lack of correct bounds checking in Skia in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-5798
|
cpe:2.3:o:redhat:enterprise_linux:8.0:* cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 13:45
2019-05-24
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
922
|
7.8
6.8
|
HIGH
Local
|
It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript file could use this flaw in order to, fo…
|
NVD-CWE-noinfo
|
CVE-2019-3839
|
cpe:2.3:o:redhat:enterprise_linux:6.0:* cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2024-11-21 13:42
2019-05-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
923
|
7.5
5.0
|
HIGH
Network
|
A denial of service vulnerability exists when .NET Framework and .NET Core improperly process RegEx strings, aka '.NET Framework and .NET Core Denial of Service Vulnerability'. This CVE ID is unique …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2019-0820
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 13:17
2019-05-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
924
|
5.5
2.1
|
MEDIUM
Local
|
fs/ext4/extents.c in the Linux kernel through 5.1.2 does not zero out the unused memory region in the extent tree block, which might allow local users to obtain sensitive information by reading unini…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2019-11833
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 13:21
2019-05-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
925
|
3.3
2.1
|
LOW
Local
|
The do_hidp_sock_ioctl function in net/bluetooth/hidp/sock.c in the Linux kernel before 5.0.15 allows a local user to obtain potentially sensitive information from kernel stack memory via a HIDPCONNA…
|
NVD-CWE-noinfo
|
CVE-2019-11884
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 13:21
2019-05-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
926
|
7.0
6.9
|
HIGH
Local
|
An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read access to /proc/ioports after the ipmi_si module is removed, related to drivers/char/ipmi/ipmi_…
|
CWE-416
Use After Free
|
CVE-2019-11811
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 13:21
2019-05-7
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
927
|
7.1
3.6
|
HIGH
Local
|
An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c. A local attacker may use this flaw to read beyond the end…
|
CWE-193
Off-by-one Error
|
CVE-2019-10131
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 13:18
2019-05-1
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
928
|
8.8
6.8
|
HIGH
Network
|
Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. This vulnerability affects Firefox < 66.0.1, Firefox ESR…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-9810
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 13:52
2019-04-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
929
|
9.8
7.5
|
CRITICAL
Network
|
The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value can then be used by JavaScript to achieve memory c…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-9792
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 13:52
2019-04-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
930
|
9.8
7.5
|
CRITICAL
Network
|
The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just-in-time (JIT) compiler and when the con…
|
CWE-843
Type Confusion
|
CVE-2019-9791
|
cpe:2.3:o:redhat:enterprise_linux:8.0:*
|
|
|
|
|
2024-11-21 13:52
2019-04-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|