|
210291
|
6.5 |
MEDIUM
Network
|
redhat netapp
|
undertow oncommand_insight single_sign-on jboss_enterprise_application_platform openshift_application_runtimes fuse oncommand_workflow_automation active_iq_unified_manager
|
A flaw was found in Undertow in versions before 2.1.1.Final, regarding the processing of invalid HTTP requests with large chunk sizes. This flaw allows an attacker to take advantage of HTTP request s…
|
CWE-444
HTTP Request Smuggling
|
CVE-2020-10719
|
2024-11-21 13:55 |
2020-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210292
|
6.1 |
MEDIUM
Local
|
kernel redhat
|
selinux enterprise_linux_server
|
A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would only contain a single netlink message. The hook would incorrec…
|
-
|
CVE-2020-10751
|
2024-11-21 13:55 |
2020-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210293
|
5.9 |
MEDIUM
Network
|
linux redhat debian opensuse canonical
|
linux_kernel enterprise_linux virtualization_host enterprise_linux_server_tus enterprise_linux_aus messaging_realtime_grid 3scale openstack debian_linux leap ubuntu_linux
|
A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's categor…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-10711
|
2024-11-21 13:55 |
2020-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210294
|
8.8 |
HIGH
Network
|
moodle
|
moodle
|
A flaw was found in Moodle versions 3.8 before 3.8.3, 3.7 before 3.7.6, 3.6 before 3.6.10, 3.5 before 3.5.12 and earlier unsupported versions. It was possible to create a SCORM package in such a way …
|
CWE-20
Improper Input Validation
|
CVE-2020-10738
|
2024-11-21 13:55 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210295
|
4.4 |
MEDIUM
Local
|
dpdk fedoraproject opensuse oracle
|
data_plane_development_kit fedora leap enterprise_communications_broker
|
A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a resou…
|
-
|
CVE-2020-10726
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210296
|
7.7 |
HIGH
Network
|
dpdk fedoraproject opensuse oracle
|
data_plane_development_kit fedora leap enterprise_communications_broker
|
A flaw was found in DPDK version 19.11 and above that allows a malicious guest to cause a segmentation fault of the vhost-user backend application running on the host, which could result in a loss of…
|
-
|
CVE-2020-10725
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210297
|
4.4 |
MEDIUM
Local
|
dpdk canonical fedoraproject
|
data_plane_development_kit ubuntu_linux fedora
|
A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-b…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-10724
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210298
|
6.7 |
MEDIUM
Local
|
dpdk canonical fedoraproject opensuse oracle
|
data_plane_development_kit ubuntu_linux fedora leap enterprise_communications_broker communications_session_border_controller
|
A memory corruption issue was found in DPDK versions 17.05 and above. This flaw is caused by an integer truncation on the index of a payload. Under certain circumstances, the index (a UInt) is copied…
|
-
|
CVE-2020-10723
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210299
|
6.7 |
MEDIUM
Local
|
dpdk canonical fedoraproject opensuse oracle
|
data_plane_development_kit ubuntu_linux fedora leap enterprise_communications_broker communications_session_border_controller
|
A vulnerability was found in DPDK versions 18.05 and above. A missing check for an integer overflow in vhost_user_set_log_base() could result in a smaller memory map than requested, possibly allowing…
|
-
|
CVE-2020-10722
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210300
|
5.0 |
MEDIUM
Local
|
redhat
|
ansible_tower ansible
|
An incomplete fix was found for the fix of the flaw CVE-2020-1733 ansible: insecure temporary directory when running become_user from become directive. The provided fix is insufficient to prevent the…
|
CWE-362
Race Condition
|
CVE-2020-10744
|
2024-11-21 13:55 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|