|
210821
|
5.5 |
MEDIUM
Local
|
xen fedoraproject
|
xen fedora
|
An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of bad continuation handling in GNTTABOP_copy. Grant table operations are expected to retur…
|
NVD-CWE-Other
|
CVE-2020-11742
|
2024-11-21 13:58 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210822
|
8.8 |
HIGH
Local
|
xen fedoraproject debian opensuse
|
xen fedora debian_linux leap
|
An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (with active profiling) to obtain sensitive information about other guests, cause a denial of service, or possibly g…
|
CWE-909
Missing Initialization of Resource
|
CVE-2020-11741
|
2024-11-21 13:58 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210823
|
7.8 |
HIGH
Local
|
xen fedoraproject debian opensuse
|
xen fedora debian_linux leap
|
An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service or possibly gain privileges because of missing memory barriers in read-write unlock paths. The read…
|
CWE-362
Race Condition
|
CVE-2020-11739
|
2024-11-21 13:58 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210824
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
snd_ctl_elem_add in sound/core/control.c in the Linux kernel through 5.6.3 has a count=info->owner line, which later affects a private_size*count multiplication for unspecified "interesting side effe…
|
NVD-CWE-noinfo
|
CVE-2020-11725
|
2024-11-21 13:58 |
2020-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210825
|
9.8 |
CRITICAL
Network
|
konghq
|
docker-kong
|
An issue was discovered in docker-kong (for Kong) through 2.0.3. The admin API port may be accessible on interfaces other than 127.0.0.1. NOTE: The vendor argue that this CVE is not a vulnerability b…
|
NVD-CWE-Other
|
CVE-2020-11710
|
2024-11-21 13:58 |
2020-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210826
|
5.3 |
MEDIUM
Network
|
argoproj
|
argo_cd
|
Fixed in v1.5.1, Argo version v1.5.0 was vulnerable to a user-enumeration vulnerability which allowed attackers to determine the usernames of valid (non-SSO) accounts because /api/v1/session returned…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2020-11576
|
2024-11-21 13:58 |
2020-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210827
|
9.8 |
CRITICAL
Network
|
sqlite netapp oracle siemens tenable
|
sqlite ontap_select_deploy_administration_utility outside_in_technology hyperion_infrastructure_technology enterprise_manager_ops_center mysql communications_network_charging_and_co…
|
In SQLite through 3.31.1, the ALTER TABLE implementation has a use-after-free, as demonstrated by an ORDER BY clause that belongs to a compound SELECT statement.
|
CWE-416
Use After Free
|
CVE-2020-11656
|
2024-11-21 13:58 |
2020-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210828
|
7.5 |
HIGH
Network
|
sqlite netapp debian canonical oracle siemens tenable
|
sqlite ontap_select_deploy_administration_utility debian_linux ubuntu_linux outside_in_technology instantis_enterprisetrack hyperion_infrastructure_technology enterprise_manager_…
|
SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.
|
CWE-665
Improper Initialization
|
CVE-2020-11655
|
2024-11-21 13:58 |
2020-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210829
|
5.3 |
MEDIUM
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Notification exposure occurs in Lockdown mode because of the Edge Lighting application. The Samsung ID is SVE-2020-…
|
NVD-CWE-noinfo
|
CVE-2020-11607
|
2024-11-21 13:58 |
2020-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210830
|
2.4 |
LOW
Physics
|
google
|
android
|
An issue was discovered on Samsung mobile devices with Q(10.0) software. Information about application preview (in the Secure Folder) leaks on a locked device. The Samsung ID is SVE-2019-16463 (April…
|
NVD-CWE-noinfo
|
CVE-2020-11606
|
2024-11-21 13:58 |
2020-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|