|
196421
|
5.9 |
MEDIUM
Network
|
gnome fedoraproject
|
glib fedora
|
GSocketClient in GNOME GLib through 2.62.4 may occasionally connect directly to a target address instead of connecting via a proxy server when configured to do so, because the proxy_addr field is mis…
|
NVD-CWE-noinfo
|
CVE-2020-6750
|
2024-11-21 14:36 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196422
|
6.1 |
MEDIUM
Network
|
prestashop
|
prestashop
|
In PrestaShop 1.7.6.2, XSS can occur during addition or removal of a QuickAccess link. This is related to AdminQuickAccessesController.php, themes/default/template/header.tpl, and themes/new-theme/js…
|
CWE-79
Cross-site Scripting
|
CVE-2020-6632
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196423
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in GPAC version 0.8.0. There is a NULL pointer dereference in the function gf_m2ts_stream_process_pmt() in media_tools/m2ts_mux.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-6631
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196424
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in GPAC version 0.8.0. There is a NULL pointer dereference in the function gf_isom_get_media_data_size() in isomedia/isom_read.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-6630
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196425
|
6.5 |
MEDIUM
Network
|
libming
|
libming
|
Ming (aka libming) 0.4.8 has z NULL pointer dereference in the function decompileGETURL2() in decompile.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-6629
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196426
|
8.8 |
HIGH
Network
|
libming
|
libming
|
Ming (aka libming) 0.4.8 has a heap-based buffer over-read in the function decompile_SWITCH() in decompile.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-6628
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196427
|
7.1 |
HIGH
Local
|
jhead_project
|
jhead
|
jhead through 3.04 has a heap-based buffer over-read in Get32s when called from ProcessGpsInfo in gpsinfo.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-6625
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196428
|
7.1 |
HIGH
Local
|
jhead_project
|
jhead
|
jhead through 3.04 has a heap-based buffer over-read in process_DQT in jpgqguess.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-6624
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196429
|
8.8 |
HIGH
Network
|
nothings
|
stb_truetype.h
|
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_get_index.
|
CWE-617
Reachable Assertion
|
CVE-2020-6623
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196430
|
8.8 |
HIGH
Network
|
nothings
|
stb_truetype.h
|
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_peek8.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-6622
|
2024-11-21 14:36 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|