|
196271
|
5.5 |
MEDIUM
Local
|
openexr debian
|
openexr debian_linux
|
A flaw was found in OpenEXR's TiledInputFile functionality. This flaw allows an attacker who can submit a crafted single-part non-image to be processed by OpenEXR, to trigger a floating-point excepti…
|
NVD-CWE-noinfo
|
CVE-2021-20302
|
2024-11-21 14:46 |
2022-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196272
|
5.5 |
MEDIUM
Local
|
openexr debian
|
openexr debian_linux
|
A flaw was found in OpenEXR's hufUncompress functionality in OpenEXR/IlmImf/ImfHuf.cpp. This flaw allows an attacker who can submit a crafted file that is processed by OpenEXR, to trigger an integer …
|
-
|
CVE-2021-20300
|
2024-11-21 14:46 |
2022-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196273
|
4.7 |
MEDIUM
Local
|
linux redhat debian
|
linux_kernel enterprise_linux debian_linux
|
A race condition accessing file object in the Linux kernel OverlayFS subsystem was found in the way users do rename in specific way with OverlayFS. A local user could use this flaw to crash the syste…
|
CWE-362
Race Condition
|
CVE-2021-20321
|
2024-11-21 14:46 |
2022-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196274
|
5.5 |
MEDIUM
Local
|
linux fedoraproject redhat
|
linux_kernel fedora enterprise_linux
|
A flaw was found in s390 eBPF JIT in bpf_jit_insn in arch/s390/net/bpf_jit_comp.c in the Linux kernel. In this flaw, a local attacker with special user privilege can circumvent the verifier and may l…
|
NVD-CWE-Other
|
CVE-2021-20320
|
2024-11-21 14:46 |
2022-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196275
|
6.1 |
MEDIUM
Physics
|
gnome centos
|
gnome-shell stream
|
A locking protection bypass flaw was found in some versions of gnome-shell as shipped within CentOS Stream 8, when the "Application menu" or "Window list" GNOME extensions are enabled. This flaw allo…
|
CWE-667
Improper Locking
|
CVE-2021-20315
|
2024-11-21 14:46 |
2022-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196276
|
9.8 |
CRITICAL
Network
|
redhat
|
enterprise_linux
|
Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red Hat Enterprise Linux 8.5.0, causes a security regression compared to the versions shipped in Red Hat En…
|
CWE-787 CWE-918
Out-of-bounds Write Server-Side Request Forgery (SSRF)
|
CVE-2021-20325
|
2024-11-21 14:46 |
2022-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196277
|
7.4 |
HIGH
Network
|
linux fedoraproject debian netapp oracle
|
linux_kernel fedora debian_linux solidfire_\&_hci_management_node active_iq_unified_manager e-series_santricity_os_controller solidfire\ _enterprise_sds_\&_hci_storage_no…
|
A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP redirect) in the Linux kernel functionality was found to allow the ability to quickly scan open UDP ports. This flaw al…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2021-20322
|
2024-11-21 14:46 |
2022-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196278
|
7.5 |
HIGH
Network
|
mitsubishielectric
|
fx3u-enet_firmware fx3u-enet-l_firmware fx3u-enet-p502_firmware
|
Improper initialization vulnerability in MELSEC-F series FX3U-ENET Firmware version 1.16 and prior, FX3U-ENET-L Firmware version 1.16 and prior and FX3U-ENET-P502 Firmware version 1.16 and prior allo…
|
CWE-665
Improper Initialization
|
CVE-2021-20613
|
2024-11-21 14:46 |
2022-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196279
|
7.5 |
HIGH
Network
|
mitsubishielectric
|
fx3u-enet_firmware fx3u-enet-l_firmware fx3u-enet-p502_firmware
|
Lack of administrator control over security vulnerability in MELSEC-F series FX3U-ENET Firmware version 1.14 and prior, FX3U-ENET-L Firmware version 1.14 and prior and FX3U-ENET-P502 Firmware version…
|
NVD-CWE-Other
|
CVE-2021-20612
|
2024-11-21 14:46 |
2022-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196280
|
4.3 |
MEDIUM
Network
|
zohocorp
|
manageengine_adselfservice_plus
|
ManageEngine ADSelfService Plus below build 6116 stores the password policy file for each domain under the html/ web root with a predictable filename based on the domain name. When ADSSP is configure…
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2021-20148
|
2024-11-21 14:46 |
2022-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|