|
219331
|
7.5 |
HIGH
Network
|
foxitsoftware
|
reader phantompdf
|
An issue was discovered in Foxit Reader and PhantomPDF before 9.7. It allows memory consumption because data is created for each page of an application level.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-20818
|
2024-11-21 13:39 |
2020-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219332
|
7.5 |
HIGH
Network
|
foxitsoftware
|
reader phantompdf
|
An issue was discovered in Foxit Reader and PhantomPDF before 9.7. It has a NULL pointer dereference.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-20817
|
2024-11-21 13:39 |
2020-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219333
|
7.5 |
HIGH
Network
|
foxitsoftware
|
phantompdf
|
An issue was discovered in Foxit PhantomPDF before 8.3.12. It has a NULL pointer dereference during the parsing of file data.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-20816
|
2024-11-21 13:39 |
2020-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219334
|
7.5 |
HIGH
Network
|
foxitsoftware
|
phantompdf
|
An issue was discovered in Foxit PhantomPDF before 8.3.12. It allows stack consumption via nested function calls for XML parsing.
|
CWE-674
Uncontrolled Recursion
|
CVE-2019-20815
|
2024-11-21 13:39 |
2020-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219335
|
7.5 |
HIGH
Network
|
foxitsoftware
|
phantompdf
|
An issue was discovered in Foxit PhantomPDF before 8.3.12. It allows memory consumption because data is created for each page of an application level.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-20814
|
2024-11-21 13:39 |
2020-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219336
|
7.5 |
HIGH
Network
|
foxitsoftware
|
phantompdf
|
An issue was discovered in Foxit PhantomPDF before 8.3.12. It has a NULL pointer dereference.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-20813
|
2024-11-21 13:39 |
2020-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219337
|
7.5 |
HIGH
Network
|
compound
|
price_oracle
|
The price oracle in PriceOracle.sol in Compound Finance Compound Price Oracle 1.0 through 2.0 allows a price poster to set an invalid asset price via the setPrice function, and consequently violate t…
|
NVD-CWE-noinfo
|
CVE-2019-20809
|
2024-11-21 13:39 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219338
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
An issue was discovered in the Linux kernel before 5.4.7. The prb_calc_retire_blk_tmo() function in net/packet/af_packet.c can result in a denial of service (CPU consumption and soft lockup) in a cer…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2019-20812
|
2024-11-21 13:39 |
2020-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219339
|
5.5 |
MEDIUM
Local
|
linux debian canonical
|
linux_kernel debian_linux ubuntu_linux
|
An issue was discovered in the Linux kernel before 5.0.6. In rx_queue_add_kobject() and netdev_queue_add_kobject() in net/core/net-sysfs.c, a reference count is mishandled, aka CID-a3e23f719f5c.
|
NVD-CWE-Other
|
CVE-2019-20811
|
2024-11-21 13:39 |
2020-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219340
|
5.5 |
MEDIUM
Local
|
linux opensuse canonical
|
linux_kernel leap ubuntu_linux
|
go7007_snd_init in drivers/media/usb/go7007/snd-go7007.c in the Linux kernel before 5.6 does not call snd_card_free for a failure path, which causes a memory leak, aka CID-9453264ef586.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-20810
|
2024-11-21 13:39 |
2020-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|