|
209091
|
7.8 |
HIGH
Local
|
upx_project
|
upx
|
A heap-based buffer over-read was discovered in the get_le64 function in bele.h in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27801
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209092
|
7.8 |
HIGH
Local
|
upx_project
|
upx
|
A heap-based buffer over-read was discovered in the get_le32 function in bele.h in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27800
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209093
|
7.8 |
HIGH
Local
|
upx_project
|
upx
|
A heap-based buffer over-read was discovered in the acc_ua_get_be32 function in miniacc.h in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27799
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209094
|
5.5 |
MEDIUM
Local
|
upx_project
|
upx
|
An invalid memory address reference was discovered in the adjABS function in p_lx_elf.cpp in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2020-27798
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209095
|
5.5 |
MEDIUM
Local
|
upx_project
|
upx
|
An invalid memory address reference was discovered in the elf_lookup function in p_lx_elf.cpp in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2020-27797
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209096
|
7.8 |
HIGH
Local
|
upx_project
|
upx
|
A heap-based buffer over-read was discovered in the invert_pt_dynamic function in p_lx_elf.cpp in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27796
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209097
|
9.8 |
CRITICAL
Network
|
redhat
|
openshift_container_platform
|
A flaw was found in cluster-ingress-operator. A change to how the router-default service allows only certain IP source ranges could allow an attacker to access resources that would otherwise be restr…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-27836
|
2024-11-21 14:21 |
2022-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209098
|
7.5 |
HIGH
Network
|
radare
|
radare2
|
A segmentation fault was discovered in radare2 with adf command. In libr/core/cmd_anal.c, when command "adf" has no or wrong argument, anal_fcn_data (core, input + 1) --> RAnalFunction *fcn = r_anal_…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-27795
|
2024-11-21 14:21 |
2022-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209099
|
9.1 |
CRITICAL
Network
|
radare
|
radare2
|
A double free issue was discovered in radare2 in cmd_info.c:cmd_info(). Successful exploitation could lead to modification of unexpected memory locations and potentially causing a crash.
|
CWE-415
Double Free
|
CVE-2020-27794
|
2024-11-21 14:21 |
2022-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209100
|
7.5 |
HIGH
Network
|
radare
|
radare2
|
An off-by-one overflow flaw was found in radare2 due to mismatched array length in core_java.c. This could allow an attacker to cause a crash, and perform a denail of service attack.
|
CWE-193
Off-by-one Error
|
CVE-2020-27793
|
2024-11-21 14:21 |
2022-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|