|
220061
|
7.8 |
HIGH
Local
|
huawei
|
mate_20_pro_firmware
|
Mate 20 Pro smartphones with versions earlier than 9.1.0.135(C00E133R3P1) have an improper authorization vulnerability. The software does not properly restrict certain operation of certain privilege,…
|
CWE-269
Improper Privilege Management
|
CVE-2019-5250
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220062
|
7.4 |
HIGH
Adjacent
|
huawei
|
cloudengine_12800_firmware
|
CloudEngine 12800 has a DoS vulnerability. An attacker of a neighboring device sends a large number of specific packets. As a result, a memory leak occurs after the device uses the specific packet. A…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-5248
|
2024-11-21 13:44 |
2019-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220063
|
8.8 |
HIGH
Network
|
kakadusoftware
|
kakadu_software
|
An exploitable heap underflow vulnerability exists in the derive_taps_and_gains function in kdu_v7ar.dll of Kakadu Software SDK 7.10.2. A specially crafted jp2 file can cause a heap overflow, which c…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5144
|
2024-11-21 13:44 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220064
|
6.5 |
MEDIUM
Adjacent
|
w1.fi
|
hostapd
|
An exploitable denial-of-service vulnerability exists in the 802.11w security state handling for hostapd 2.6 connected clients with valid 802.11w sessions. By simulating an incomplete new association…
|
CWE-346
Origin Validation Error
|
CVE-2019-5062
|
2024-11-21 13:44 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220065
|
6.5 |
MEDIUM
Adjacent
|
w1.fi
|
hostapd
|
An exploitable denial-of-service vulnerability exists in the hostapd 2.6, where an attacker could trigger AP to send IAPP location updates for stations, before the required authentication process has…
|
CWE-287
Improper Authentication
|
CVE-2019-5061
|
2024-11-21 13:44 |
2019-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220066
|
8.8 |
HIGH
Network
|
leadtools
|
leadtools
|
An exploitable heap overflow vulnerability exists in the JPEG2000 parsing functionality of LEADTOOLS 20.0.2019.3.15. A specially crafted J2K image file can cause an out of bounds write of a null byte…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5154
|
2024-11-21 13:44 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220067
|
9.8 |
CRITICAL
Network
|
leadtools
|
leadtools
|
An exploitable code execution vulnerability exists in the DICOM network response functionality of LEADTOOLS libltdic.so version 20.0.2019.3.15. A specially crafted packet can cause an integer overflo…
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-5093
|
2024-11-21 13:44 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220068
|
8.8 |
HIGH
Network
|
leadtools
|
leadtools
|
An exploitable heap out of bounds write vulnerability exists in the UI tag parsing functionality of the DICOM image format of LEADTOOLS 20.0.2019.3.15. A specially crafted DICOM image can cause an of…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-5092
|
2024-11-21 13:44 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220069
|
7.5 |
HIGH
Network
|
leadtools
|
leadtools
|
An exploitable denial-of-service vulnerability exists in the Dicom-packet parsing functionality of LEADTOOLS libltdic.so version 20.0.2019.3.15. A specially crafted packet can cause an infinite loop,…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2019-5091
|
2024-11-21 13:44 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220070
|
7.5 |
HIGH
Network
|
leadtools
|
leadtools
|
An exploitable information disclosure vulnerability exists in the DICOM packet-parsing functionality of LEADTOOLS libltdic.so, version 20.0.2019.3.15. A specially crafted packet can cause an out-of-b…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-5090
|
2024-11-21 13:44 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|