|
222841
|
5.5 |
MEDIUM
Local
|
telegram
|
telegram
|
The "delete for" feature in Telegram before 5.11 on Android does not delete shared media files from the Telegram Images directory. In other words, there is a potentially misleading UI indication that…
|
NVD-CWE-noinfo
|
CVE-2019-16248
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222842
|
7.8 |
HIGH
Local
|
deltaww
|
dcisoft
|
Delta DCISoft 1.21 has a User Mode Write AV starting at CommLib!CCommLib::SetSerializeData+0x000000000000001b.
|
NVD-CWE-noinfo
|
CVE-2019-16247
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222843
|
7.5 |
HIGH
Network
|
dino canonical fedoraproject debian
|
dino ubuntu_linux fedora debian_linux
|
Dino before 2019-09-10 does not properly check the source of an MAM message in module/xep/0313_message_archive_management.vala.
|
CWE-346
Origin Validation Error
|
CVE-2019-16237
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222844
|
7.5 |
HIGH
Network
|
dino canonical fedoraproject debian
|
dino ubuntu_linux fedora debian_linux
|
Dino before 2019-09-10 does not check roster push authorization in module/roster/module.vala.
|
CWE-862
Missing Authorization
|
CVE-2019-16236
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222845
|
7.5 |
HIGH
Network
|
dino canonical fedoraproject debian
|
dino ubuntu_linux fedora debian_linux
|
Dino before 2019-09-10 does not properly check the source of a carbons message in module/xep/0280_message_carbons.vala.
|
CWE-346
Origin Validation Error
|
CVE-2019-16235
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222846
|
7.8 |
HIGH
Local
|
msi
|
afterburner
|
The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to arbitrary memory, I/O ports, and MSRs. This can be exploite…
|
CWE-125 CWE-787
Out-of-bounds Read Out-of-bounds Write
|
CVE-2019-16098
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222847
|
4.7 |
MEDIUM
Local
|
linux canonical opensuse
|
linux_kernel ubuntu_linux leap
|
drivers/net/wireless/intel/iwlwifi/pcie/trans.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-16234
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222848
|
4.1 |
MEDIUM
Local
|
linux redhat canonical opensuse
|
linux_kernel enterprise_linux ubuntu_linux leap
|
drivers/scsi/qla2xxx/qla_os.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-16233
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222849
|
4.1 |
MEDIUM
Local
|
linux canonical opensuse fedoraproject
|
linux_kernel ubuntu_linux leap fedora
|
drivers/net/wireless/marvell/libertas/if_sdio.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-16232
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222850
|
4.1 |
MEDIUM
Local
|
linux redhat canonical opensuse
|
linux_kernel enterprise_linux ubuntu_linux leap
|
drivers/net/fjes/fjes_main.c in the Linux kernel 5.2.14 does not check the alloc_workqueue return value, leading to a NULL pointer dereference.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-16231
|
2024-11-21 13:30 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|