|
197631
|
8.8 |
HIGH
Network
|
htslib
|
htslib
|
HTSlib through 1.10.2 allows out-of-bounds write access in vcf_parse_format (called from vcf_parse and vcf_read).
|
CWE-787
Out-of-bounds Write
|
CVE-2020-36403
|
2024-11-21 14:29 |
2021-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197632
|
7.8 |
HIGH
Local
|
soliditylang
|
solidity
|
Solidity 0.7.5 has a stack-use-after-return issue in smtutil::CHCSmtLib2Interface::querySolver. NOTE: c39a5e2b7a3fabbf687f53a2823fc087be6c1a7e is cited in the OSV "fixed" field but does not have a co…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-36402
|
2024-11-21 14:29 |
2021-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197633
|
7.8 |
HIGH
Local
|
mruby
|
mruby
|
mruby 2.1.2 has a double free in mrb_default_allocf (called from mrb_free and obj_free).
|
CWE-415
Double Free
|
CVE-2020-36401
|
2024-11-21 14:29 |
2021-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197634
|
9.8 |
CRITICAL
Network
|
zeromq
|
libzmq
|
ZeroMQ libzmq 4.3.3 has a heap-based buffer overflow in zmq::tcp_read, a different vulnerability than CVE-2021-20235.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-36400
|
2024-11-21 14:29 |
2021-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197635
|
7.0 |
HIGH
Local
|
pam_setquota_project
|
pam_setquota
|
pam_setquota.c in the pam_setquota module before 2020-05-29 for Linux-PAM allows local attackers to set their quota on an arbitrary filesystem, in certain situations where the attacker's home directo…
|
NVD-CWE-noinfo
|
CVE-2020-36394
|
2024-11-21 14:29 |
2021-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197636
|
4.3 |
MEDIUM
Network
|
civicrm
|
civicrm
|
In CiviCRM before 5.28.1 and CiviCRM ESR before 5.27.5 ESR, the CKEditor configuration form allows CSRF.
|
CWE-352
Origin Validation Error
|
CVE-2020-36389
|
2024-11-21 14:29 |
2021-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197637
|
8.8 |
HIGH
Network
|
civicrm
|
civicrm
|
In CiviCRM before 5.21.3 and 5.22.x through 5.24.x before 5.24.3, users may be able to upload and execute a crafted PHAR archive.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-36388
|
2024-11-21 14:29 |
2021-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197638
|
7.8 |
HIGH
Local
|
linux netapp
|
linux_kernel h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware h410c_firmware
|
An issue was discovered in the Linux kernel before 5.8.2. fs/io_uring.c has a use-after-free related to io_async_task_func and ctx reference holding, aka CID-6d816e088c35.
|
CWE-416
Use After Free
|
CVE-2020-36387
|
2024-11-21 14:29 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197639
|
7.1 |
HIGH
Local
|
linux
|
linux_kernel
|
An issue was discovered in the Linux kernel before 5.8.1. net/bluetooth/hci_event.c has a slab out-of-bounds read in hci_extended_inquiry_result_evt, aka CID-51c19bf3d5cf.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36386
|
2024-11-21 14:29 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197640
|
7.8 |
HIGH
Local
|
linux netapp starwindsoftware
|
linux_kernel h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware h410c_firmware starwind_san_\&_nas starwind_vir…
|
An issue was discovered in the Linux kernel before 5.10. drivers/infiniband/core/ucma.c has a use-after-free because the ctx is reached via the ctx_list in some ucma_migrate_id situations where ucma_…
|
CWE-416
Use After Free
|
CVE-2020-36385
|
2024-11-21 14:29 |
2021-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|