|
210131
|
6.5 |
MEDIUM
Network
|
redhat
|
libvirt
|
A NULL pointer dereference was found in the libvirt API responsible introduced in upstream version 3.10.0, and fixed in libvirt 6.0.0, for fetching a storage pool based on its target path. In more de…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-10703
|
2024-11-21 13:55 |
2020-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210132
|
6.3 |
MEDIUM
Local
|
redhat
|
oddjob
|
A race condition was found in the mkhomedir tool shipped with the oddjob package in versions before 0.34.5 and 0.34.6 wherein, during the home creation, mkhomedir copies the /etc/skel directory into …
|
CWE-362
Race Condition
|
CVE-2020-10737
|
2024-11-21 13:55 |
2020-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210133
|
6.5 |
MEDIUM
Network
|
redhat netapp
|
undertow oncommand_insight single_sign-on jboss_enterprise_application_platform openshift_application_runtimes fuse oncommand_workflow_automation active_iq_unified_manager
|
A flaw was found in Undertow in versions before 2.1.1.Final, regarding the processing of invalid HTTP requests with large chunk sizes. This flaw allows an attacker to take advantage of HTTP request s…
|
CWE-444
HTTP Request Smuggling
|
CVE-2020-10719
|
2024-11-21 13:55 |
2020-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210134
|
6.1 |
MEDIUM
Local
|
kernel redhat
|
selinux enterprise_linux_server
|
A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would only contain a single netlink message. The hook would incorrec…
|
-
|
CVE-2020-10751
|
2024-11-21 13:55 |
2020-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210135
|
5.9 |
MEDIUM
Network
|
linux redhat debian opensuse canonical
|
linux_kernel enterprise_linux virtualization_host enterprise_linux_server_tus enterprise_linux_aus messaging_realtime_grid 3scale openstack debian_linux leap ubuntu_linux
|
A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's categor…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-10711
|
2024-11-21 13:55 |
2020-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210136
|
8.8 |
HIGH
Network
|
moodle
|
moodle
|
A flaw was found in Moodle versions 3.8 before 3.8.3, 3.7 before 3.7.6, 3.6 before 3.6.10, 3.5 before 3.5.12 and earlier unsupported versions. It was possible to create a SCORM package in such a way …
|
CWE-20
Improper Input Validation
|
CVE-2020-10738
|
2024-11-21 13:55 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210137
|
4.4 |
MEDIUM
Local
|
dpdk fedoraproject opensuse oracle
|
data_plane_development_kit fedora leap enterprise_communications_broker
|
A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a resou…
|
-
|
CVE-2020-10726
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210138
|
7.7 |
HIGH
Network
|
dpdk fedoraproject opensuse oracle
|
data_plane_development_kit fedora leap enterprise_communications_broker
|
A flaw was found in DPDK version 19.11 and above that allows a malicious guest to cause a segmentation fault of the vhost-user backend application running on the host, which could result in a loss of…
|
-
|
CVE-2020-10725
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210139
|
4.4 |
MEDIUM
Local
|
dpdk canonical fedoraproject
|
data_plane_development_kit ubuntu_linux fedora
|
A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-b…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-10724
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210140
|
6.7 |
MEDIUM
Local
|
dpdk canonical fedoraproject opensuse oracle
|
data_plane_development_kit ubuntu_linux fedora leap enterprise_communications_broker communications_session_border_controller
|
A memory corruption issue was found in DPDK versions 17.05 and above. This flaw is caused by an integer truncation on the index of a payload. Under certain circumstances, the index (a UInt) is copied…
|
-
|
CVE-2020-10723
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|