|
210721
|
7.8 |
HIGH
Local
|
dpdk opensuse canonical
|
data_plane_development_kit leap ubuntu_linux
|
A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5. A lack of bounds checking when copying iv_data from the VM guest memory into host memory can lead to a large buffer overflow. …
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-14376
|
2024-11-21 14:03 |
2020-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210722
|
7.8 |
HIGH
Local
|
dpdk opensuse canonical
|
data_plane_development_kit leap ubuntu_linux
|
A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5. Virtio ring descriptors, and the data they describe are in a region of memory accessible by from both the virtual machine and …
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2020-14375
|
2024-11-21 14:03 |
2020-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210723
|
5.3 |
MEDIUM
Network
|
podman_project redhat fedoraproject
|
podman enterprise_linux openshift_container_platform fedora
|
An information disclosure vulnerability was found in containers/podman in versions before 2.0.5. When using the deprecated Varlink API or the Docker-compatible REST API, if multiple containers are cr…
|
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer
|
CVE-2020-14370
|
2024-11-21 14:03 |
2020-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210724
|
7.1 |
HIGH
Local
|
redhat debian
|
ansible_tower ansible_engine ceph_storage openstack_platform debian_linux
|
A flaw was found in the Ansible Engine, in ansible-engine 2.8.x before 2.8.15 and ansible-engine 2.9.x before 2.9.13, when installing packages using the dnf module. GPG signatures are ignored during …
|
-
|
CVE-2020-14365
|
2024-11-21 14:03 |
2020-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210725
|
3.5 |
LOW
Adjacent
|
philips
|
clinical_collaboration_platform
|
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output used as a webpage…
|
NVD-CWE-Other
|
CVE-2020-14525
|
2024-11-21 14:03 |
2020-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210726
|
4.3 |
MEDIUM
Network
|
philips
|
clinical_collaboration_platform
|
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product receives input or data, but it does not validate or incorrectly validates that the input has the properties required to…
|
-
|
CVE-2020-14506
|
2024-11-21 14:03 |
2020-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210727
|
5.6 |
MEDIUM
Local
|
linux debian
|
linux_kernel debian_linux
|
A flaw was found in the Linux kernel in versions before 5.9-rc6. When changing screen size, an out-of-bounds memory write can occur leading to memory corruption or a denial of service. Due to the nat…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-14390
|
2024-11-21 14:03 |
2020-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210728
|
5.3 |
MEDIUM
Network
|
redhat
|
xerces
|
A flaw was found in Wildfly's implementation of Xerces, specifically in the way the XMLSchemaValidator class in the JAXP component of Wildfly enforced the "use-grammar-pool-only" feature. This flaw a…
|
CWE-20
Improper Input Validation
|
CVE-2020-14338
|
2024-11-21 14:03 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210729
|
7.5 |
HIGH
Network
|
wibu
|
codemeter
|
This vulnerability allows an attacker to use the internal WebSockets API for CodeMeter (All versions prior to 7.00 are affected, including Version 7.0 or newer with the affected WebSockets API still …
|
-
|
CVE-2020-14519
|
2024-11-21 14:03 |
2020-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210730
|
9.8 |
CRITICAL
Network
|
wibu
|
codemeter
|
Protocol encryption can be easily broken for CodeMeter (All versions prior to 6.90 are affected, including Version 6.90 or newer only if CodeMeter Runtime is running as server) and the server accepts…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2020-14517
|
2024-11-21 14:03 |
2020-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|