|
195711
|
3.3 |
LOW
Local
|
linux redhat fedoraproject
|
linux_kernel enterprise_linux fedora
|
A flaw was found in the Linux kernel in versions before 5.4.92 in the BPF protocol. This flaw allows an attacker with a local account to leak information about kernel internal addresses. The highest …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2021-20239
|
2024-11-21 14:46 |
2021-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195712
|
7.5 |
HIGH
Network
|
zeromq
|
libzmq
|
An uncontrolled resource consumption (memory leak) flaw was found in ZeroMQ's src/xpub.cpp in versions before 4.3.3. This flaw allows a remote unauthenticated attacker to send crafted PUB messages th…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2021-20237
|
2024-11-21 14:46 |
2021-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195713
|
9.8 |
CRITICAL
Network
|
zeromq redhat fedoraproject
|
zeromq enterprise_linux ceph_storage fedora
|
A flaw was found in the ZeroMQ server in versions before 4.3.3. This flaw allows a malicious client to cause a stack buffer overflow on the server by sending crafted topic subscription requests and t…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-20236
|
2024-11-21 14:46 |
2021-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195714
|
5.3 |
MEDIUM
Network
|
spice_project redhat
|
spice enterprise_linux
|
A flaw was found in spice in versions before 0.14.92. A DoS tool might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a si…
|
NVD-CWE-Other
|
CVE-2021-20201
|
2024-11-21 14:46 |
2021-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195715
|
9.6 |
CRITICAL
Network
|
redhat
|
keycloak
|
A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to user-supplied data fields not being properly encod…
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2021-20195
|
2024-11-21 14:46 |
2021-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195716
|
6.5 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
A NULL pointer dereference flaw was found in the floppy disk emulator of QEMU. This issue occurs while processing read/write ioport commands if the selected floppy drive is not initialized with a blo…
|
-
|
CVE-2021-20196
|
2024-11-21 14:46 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195717
|
5.5 |
MEDIUM
Local
|
gnome redhat fedoraproject
|
networkmanager enterprise_linux openshift_container_platform fedora
|
A flaw was found in NetworkManager in versions before 1.30.0. Setting match.path and activating a profile crashes NetworkManager. The highest threat from this vulnerability is to system availability.
|
CWE-20
Improper Input Validation
|
CVE-2021-20297
|
2024-11-21 14:46 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195718
|
5.5 |
MEDIUM
Local
|
oracle redhat
|
virtualization ansible_tower google_cloud_platform_ansible_collection cisco_nx-os_collection ansible community_general_collection community_network_collection docker_community_co…
|
A flaw was found in ansible. Credentials, such as secrets, are being disclosed in console log by default and not protected by no_log feature when using those modules. An attacker can take advantage o…
|
-
|
CVE-2021-20191
|
2024-11-21 14:46 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195719
|
4.4 |
MEDIUM
Local
|
linux
|
linux_kernel
|
A flaw was found in the Linux kernel's implementation of string matching within a packet. A privileged user (with root or CAP_NET_ADMIN) when inserting iptables rules could insert a rule which can pa…
|
-
|
CVE-2021-20177
|
2024-11-21 14:46 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195720
|
8.2 |
HIGH
Network
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server 8.0, 8.5, 9.0, and Liberty Java Batch is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vu…
|
CWE-611
XXE
|
CVE-2021-20492
|
2024-11-21 14:46 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|