Show filters
176 Total Results
Displaying 101-110 of 176
Sort by:
Attacker Value
Unknown
CVE-2021-31418
Disclosure Date: April 29, 2021 (last updated February 22, 2025)
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.4-47270. An attacker must first obtain the ability to execute low-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the Toolgate component. The issue results from the lack of proper initialization of memory prior to accessing it. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. Was ZDI-CAN-12221.
0
Attacker Value
Unknown
CVE-2021-31417
Disclosure Date: April 29, 2021 (last updated February 22, 2025)
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.4-47270. An attacker must first obtain the ability to execute low-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the Toolgate component. The issue results from the lack of proper initialization of memory prior to accessing it. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. Was ZDI-CAN-12131.
0
Attacker Value
Unknown
CVE-2021-31423
Disclosure Date: April 29, 2021 (last updated February 22, 2025)
This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 15.1.5-47309. An attacker must first obtain the ability to execute high-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the Toolgate component. The issue results from the lack of proper initialization of memory prior to accessing it. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. Was ZDI-CAN-12528.
0
Attacker Value
Unknown
CVE-2021-30027
Disclosure Date: April 29, 2021 (last updated February 22, 2025)
md_analyze_line in md4c.c in md4c 0.4.7 allows attackers to trigger use of uninitialized memory, and cause a denial of service via a malformed Markdown document.
0
Attacker Value
Unknown
CVE-2021-21218
Disclosure Date: April 26, 2021 (last updated February 22, 2025)
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
0
Attacker Value
Unknown
CVE-2021-29936
Disclosure Date: April 01, 2021 (last updated February 22, 2025)
An issue was discovered in the adtensor crate through 2021-01-11 for Rust. There is a drop of uninitialized memory via the FromIterator implementation for Vector and Matrix.
0
Attacker Value
Unknown
CVE-2021-29937
Disclosure Date: April 01, 2021 (last updated February 22, 2025)
An issue was discovered in the telemetry crate through 2021-02-17 for Rust. There is a drop of uninitialized memory if a value.clone() call panics within misc::vec_with_size().
0
Attacker Value
Unknown
CVE-2021-29934
Disclosure Date: April 01, 2021 (last updated February 22, 2025)
An issue was discovered in PartialReader in the uu_od crate before 0.0.4 for Rust. Attackers can read the contents of uninitialized memory locations via a user-provided Read operation.
0
Attacker Value
Unknown
CVE-2021-0463
Disclosure Date: March 10, 2021 (last updated February 22, 2025)
In convertToHidl of convert.cpp, there is a possible out of bounds read due to uninitialized data from ReturnFrameworkMessage. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-154867068
0
Attacker Value
Unknown
CVE-2021-21190
Disclosure Date: March 09, 2021 (last updated February 22, 2025)
Uninitialized data in PDFium in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
0