|
199441
|
3.3 |
LOW
Local
|
linux
|
linux_kernel
|
An issue was discovered in romfs_dev_read in fs/romfs/storage.c in the Linux kernel before 5.8.4. Uninitialized memory leaks to userspace, aka CID-bcf85fcedfdd.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-29371
|
2024-11-21 14:23 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199442
|
7.0 |
HIGH
Local
|
linux netapp
|
linux_kernel cloud_backup solidfire_\&_hci_management_node solidfire\ _enterprise_sds_\&_hci_storage_node hci_compute_node_firmware h410c_firmware solidfire_baseboard_man…
|
An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the required TID increment, aka CID-fd4d9c7d0c71.
|
CWE-362
Race Condition
|
CVE-2020-29370
|
2024-11-21 14:23 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199443
|
7.0 |
HIGH
Local
|
linux netapp
|
linux_kernel solidfire hci_management_node hci_storage_node hci_compute_node
|
An issue was discovered in mm/mmap.c in the Linux kernel before 5.7.11. There is a race condition between certain expand functions (expand_downwards and expand_upwards) and page-table free operations…
|
CWE-362
Race Condition
|
CVE-2020-29369
|
2024-11-21 14:23 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199444
|
7.0 |
HIGH
Local
|
linux netapp
|
linux_kernel cloud_backup element_software solidfire hci_management_node hci_bootstrap_os h410c_firmware
|
An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintended write access because of a race condition in a T…
|
CWE-362
Race Condition
|
CVE-2020-29368
|
2024-11-21 14:23 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199445
|
7.8 |
HIGH
Local
|
c-blosc2_project
|
c-blosc2
|
blosc2.c in Blosc C-Blosc2 through 2.0.0.beta.5 has a heap-based buffer overflow when there is a lack of space to write compressed data.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-29367
|
2024-11-21 14:23 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199446
|
8.8 |
HIGH
Local
|
pcanalyser
|
pc_analyser
|
An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL functionality that allows low-privilege users to read and write arbitrary physical…
|
NVD-CWE-noinfo
|
CVE-2020-28922
|
2024-11-21 14:23 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199447
|
8.8 |
HIGH
Local
|
pcanalyser
|
pc_analyser
|
An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL functionality that allows low-privilege users to read and write to arbitrary Model…
|
NVD-CWE-noinfo
|
CVE-2020-28921
|
2024-11-21 14:23 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199448
|
5.3 |
MEDIUM
Network
|
sagemcom
|
f\@st_3486_router_firmware
|
Incorrect Access Control in the configuration backup path in SAGEMCOM F@ST3486 NET DOCSIS 3.0, software NET_4.109.0, allows remote unauthenticated users to download the router configuration file via …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-29138
|
2024-11-21 14:23 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199449
|
5.4 |
MEDIUM
Network
|
ericsson
|
bscs_ix_r18_billing_\&_rating_mx bscs_ix_r18_billing_\&_rating_admx
|
In Ericsson BSCS iX R18 Billing & Rating iX R18, MX is a web base module in BSCS iX that is vulnerable to stored XSS via an Alert Dashboard comment. In most test cases, session hijacking was also pos…
|
CWE-79
Cross-site Scripting
|
CVE-2020-29144
|
2024-11-21 14:23 |
2020-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199450
|
6.1 |
MEDIUM
Network
|
cpanel
|
cpanel
|
cPanel before 90.0.17 allows self-XSS via the WHM Transfer Tool interface (SEC-577).
|
CWE-79
Cross-site Scripting
|
CVE-2020-29137
|
2024-11-21 14:23 |
2020-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|