|
221941
|
5.5 |
MEDIUM
Local
|
saltosystem
|
proaccess_space
|
An issue was discovered in SALTO ProAccess SPACE 5.4.3.0. The product's webserver runs as a Windows service with local SYSTEM permissions by default. This is against the principle of least privilege.…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-19460
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221942
|
4.2 |
MEDIUM
Physics
|
linux
|
linux_kernel
|
In the Linux kernel before 5.2.10, there is a race condition bug that can be caused by a malicious USB device in the USB character device driver layer, aka CID-303911cfc5b9. This affects drivers/usb/…
|
CWE-362
Race Condition
|
CVE-2019-19537
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221943
|
4.6 |
MEDIUM
Physics
|
linux debian opensuse
|
linux_kernel debian_linux leap
|
In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_pro.c driver, aka CID-ead16e53c2f0.
|
CWE-909
Missing Initialization of Resource
|
CVE-2019-19536
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221944
|
4.6 |
MEDIUM
Physics
|
linux debian opensuse oracle
|
linux_kernel debian_linux leap sd-wan_edge
|
In the Linux kernel before 5.2.9, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_fd.c driver, aka CID-30a8beeb3042.
|
CWE-908 CWE-909
Use of Uninitialized Resource Missing Initialization of Resource
|
CVE-2019-19535
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221945
|
2.4 |
LOW
Physics
|
linux debian canonical
|
linux_kernel debian_linux ubuntu_linux
|
In the Linux kernel before 5.3.11, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_core.c driver, aka CID-f7a1337f0d29.
|
CWE-909
Missing Initialization of Resource
|
CVE-2019-19534
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221946
|
2.4 |
LOW
Physics
|
linux
|
linux_kernel
|
In the Linux kernel before 5.3.4, there is an info-leak bug that can be caused by a malicious USB device in the drivers/media/usb/ttusb-dec/ttusb_dec.c driver, aka CID-a10feaf8c464.
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2019-19533
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221947
|
6.8 |
MEDIUM
Physics
|
linux debian opensuse
|
linux_kernel debian_linux leap
|
In the Linux kernel before 5.2.9, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/misc/yurex.c driver, aka CID-fc05481b2fca.
|
CWE-416
Use After Free
|
CVE-2019-19531
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221948
|
4.6 |
MEDIUM
Physics
|
linux debian opensuse
|
linux_kernel debian_linux leap
|
In the Linux kernel before 5.2.10, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/usb/class/cdc-acm.c driver, aka CID-c52873e5a1ef.
|
CWE-416
Use After Free
|
CVE-2019-19530
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221949
|
6.8 |
MEDIUM
Physics
|
linux
|
linux_kernel
|
In the Linux kernel before 5.3.9, there are multiple out-of-bounds write bugs that can be caused by a malicious USB device in the Linux kernel HID drivers, aka CID-d9d4b1e46d95. This affects drivers/…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-19532
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221950
|
6.3 |
MEDIUM
Physics
|
linux canonical
|
linux_kernel ubuntu_linux
|
In the Linux kernel before 5.3.11, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/net/can/usb/mcba_usb.c driver, aka CID-4d6636498c41.
|
CWE-416
Use After Free
|
CVE-2019-19529
|
2024-11-21 13:34 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|