|
208011
|
6.5 |
MEDIUM
Network
|
libdwarf_project
|
libdwarf
|
libdwarf before 20201017 has a one-byte out-of-bounds read because of an invalid pointer dereference via an invalid line table in a crafted object.
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2020-27545
|
2024-11-21 14:21 |
2023-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208012
|
9.8 |
CRITICAL
Network
|
bigbluebutton
|
bigbluebutton
|
BigBlueButton before 2.2.7 does not have a protection mechanism for separator injection in meetingId, userId, and authToken.
|
CWE-74
Injection
|
CVE-2020-27602
|
2024-11-21 14:21 |
2022-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208013
|
3.5 |
LOW
Network
|
bigbluebutton
|
bigbluebutton
|
In BigBlueButton before 2.2.7, lockSettingsProps.disablePrivateChat does not apply to already opened chats. This occurs in bigbluebutton-html5/imports/ui/components/chat/service.js.
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2020-27601
|
2024-11-21 14:21 |
2022-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208014
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
A vulnerability was found in the Linux kernel, where accessing a deallocated instance in printer_ioctl() printer_ioctl() tries to access of a printer_dev instance. However, use-after-free arises beca…
|
CWE-416
Use After Free
|
CVE-2020-27784
|
2024-11-21 14:21 |
2022-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208015
|
5.5 |
MEDIUM
Local
|
upx_project
|
upx
|
An floating point exception was discovered in the elf_lookup function in p_lx_elf.cpp in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-369
Divide By Zero
|
CVE-2020-27802
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208016
|
7.8 |
HIGH
Local
|
upx_project
|
upx
|
A heap-based buffer over-read was discovered in the get_le64 function in bele.h in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27801
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208017
|
7.8 |
HIGH
Local
|
upx_project
|
upx
|
A heap-based buffer over-read was discovered in the get_le32 function in bele.h in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27800
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208018
|
7.8 |
HIGH
Local
|
upx_project
|
upx
|
A heap-based buffer over-read was discovered in the acc_ua_get_be32 function in miniacc.h in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27799
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208019
|
5.5 |
MEDIUM
Local
|
upx_project
|
upx
|
An invalid memory address reference was discovered in the adjABS function in p_lx_elf.cpp in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2020-27798
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208020
|
5.5 |
MEDIUM
Local
|
upx_project
|
upx
|
An invalid memory address reference was discovered in the elf_lookup function in p_lx_elf.cpp in UPX 4.0.0 via a crafted Mach-O file.
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2020-27797
|
2024-11-21 14:21 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|