|
212001
|
6.1 |
MEDIUM
Local
|
kernel redhat
|
selinux enterprise_linux_server
|
A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would only contain a single netlink message. The hook would incorrec…
|
-
|
CVE-2020-10751
|
2024-11-21 13:55 |
2020-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212002
|
5.9 |
MEDIUM
Network
|
linux redhat debian opensuse canonical
|
linux_kernel enterprise_linux virtualization_host enterprise_linux_server_tus enterprise_linux_aus messaging_realtime_grid 3scale openstack debian_linux leap ubuntu_linux
|
A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's categor…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-10711
|
2024-11-21 13:55 |
2020-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212003
|
8.8 |
HIGH
Network
|
moodle
|
moodle
|
A flaw was found in Moodle versions 3.8 before 3.8.3, 3.7 before 3.7.6, 3.6 before 3.6.10, 3.5 before 3.5.12 and earlier unsupported versions. It was possible to create a SCORM package in such a way …
|
CWE-20
Improper Input Validation
|
CVE-2020-10738
|
2024-11-21 13:55 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212004
|
4.4 |
MEDIUM
Local
|
dpdk fedoraproject opensuse oracle
|
data_plane_development_kit fedora leap enterprise_communications_broker
|
A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a resou…
|
-
|
CVE-2020-10726
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212005
|
7.7 |
HIGH
Network
|
dpdk fedoraproject opensuse oracle
|
data_plane_development_kit fedora leap enterprise_communications_broker
|
A flaw was found in DPDK version 19.11 and above that allows a malicious guest to cause a segmentation fault of the vhost-user backend application running on the host, which could result in a loss of…
|
-
|
CVE-2020-10725
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212006
|
4.4 |
MEDIUM
Local
|
dpdk canonical fedoraproject
|
data_plane_development_kit ubuntu_linux fedora
|
A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-b…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-10724
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212007
|
6.7 |
MEDIUM
Local
|
dpdk canonical fedoraproject opensuse oracle
|
data_plane_development_kit ubuntu_linux fedora leap enterprise_communications_broker communications_session_border_controller
|
A memory corruption issue was found in DPDK versions 17.05 and above. This flaw is caused by an integer truncation on the index of a payload. Under certain circumstances, the index (a UInt) is copied…
|
-
|
CVE-2020-10723
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212008
|
6.7 |
MEDIUM
Local
|
dpdk canonical fedoraproject opensuse oracle
|
data_plane_development_kit ubuntu_linux fedora leap enterprise_communications_broker communications_session_border_controller
|
A vulnerability was found in DPDK versions 18.05 and above. A missing check for an integer overflow in vhost_user_set_log_base() could result in a smaller memory map than requested, possibly allowing…
|
-
|
CVE-2020-10722
|
2024-11-21 13:55 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212009
|
5.0 |
MEDIUM
Local
|
redhat
|
ansible_tower ansible
|
An incomplete fix was found for the fix of the flaw CVE-2020-1733 ansible: insecure temporary directory when running become_user from become directive. The provided fix is insufficient to prevent the…
|
CWE-362
Race Condition
|
CVE-2020-10744
|
2024-11-21 13:55 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212010
|
9.8 |
CRITICAL
Network
|
opto22
|
softpac_project
|
Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC communication does not include any credentials. This allows an attacker with network access to directly communicate with SoftPAC, including, for…
|
CWE-862
Missing Authorization
|
CVE-2020-10620
|
2024-11-21 13:55 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|