|
223331
|
7.1 |
HIGH
Local
|
stb_vorbis_project debian
|
stb_vorbis debian_linux
|
An out-of-bounds read of a global buffer in the draw_line function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or disclose sensitive information by opening a craf…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-13222
|
2024-11-21 13:24 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223332
|
7.8 |
HIGH
Local
|
stb_vorbis_project debian
|
stb_vorbis debian_linux
|
A stack buffer overflow in the compute_codewords function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or execute arbitrary code by opening a crafted Ogg Vorbis fi…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13221
|
2024-11-21 13:24 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223333
|
7.1 |
HIGH
Local
|
stb_vorbis_project debian
|
stb_vorbis debian_linux
|
Use of uninitialized stack variables in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or disclose sensitive information by opening a craf…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2019-13220
|
2024-11-21 13:24 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223334
|
5.5 |
MEDIUM
Local
|
stb_vorbis_project debian
|
stb_vorbis debian_linux
|
A NULL pointer dereference in the get_window function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-13219
|
2024-11-21 13:24 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223335
|
5.5 |
MEDIUM
Local
|
stb_vorbis_project debian
|
stb_vorbis debian_linux
|
Division by zero in the predict_point function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
|
CWE-369
Divide By Zero
|
CVE-2019-13218
|
2024-11-21 13:24 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223336
|
7.8 |
HIGH
Local
|
stb_vorbis_project debian
|
stb_vorbis debian_linux
|
A heap buffer overflow in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or execute arbitrary code by opening a crafted Ogg Vorbis file.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-13217
|
2024-11-21 13:24 |
2019-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223337
|
8.2 |
HIGH
Network
|
mediola
|
neo_server
|
eQ-3 Homematic CCU3 AddOn 'Mediola NEO Server for Homematic CCU3' prior to 2.4.5 allows uncontrolled admin access to start or stop the Node.js process, resulting in the ability to obtain mediola conf…
|
CWE-425
Direct Request ('Forced Browsing')
|
CVE-2019-13030
|
2024-11-21 13:24 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223338
|
6.5 |
MEDIUM
Network
|
search-guard
|
search_guard
|
Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users are always authorized on the local cluster ignoring their roles on the remote cluster(s…
|
NVD-CWE-Other
|
CVE-2019-13416
|
2024-11-21 13:24 |
2019-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223339
|
6.5 |
MEDIUM
Network
|
search-guard
|
search_guard
|
Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users can gain read access to data they are not authorized to see.
|
NVD-CWE-Other
|
CVE-2019-13415
|
2024-11-21 13:24 |
2019-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223340
|
5.9 |
MEDIUM
Network
|
search-guard
|
search_guard
|
Search Guard versions before 21.0 had an timing side channel issue when using the internal user database.
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2019-13420
|
2024-11-21 13:24 |
2019-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|