Show filters
1,191 Total Results
Displaying 191-200 of 1,191
Sort by:
Attacker Value
Unknown
CVE-2021-43413
Disclosure Date: November 07, 2021 (last updated November 08, 2023)
An issue was discovered in GNU Hurd before 0.9 20210404-9. A single pager port is shared among everyone who mmaps a file, allowing anyone to modify any files that they can read. This can be trivially exploited to get full root access.
0
Attacker Value
Unknown
CVE-2021-43411
Disclosure Date: November 07, 2021 (last updated February 23, 2025)
An issue was discovered in GNU Hurd before 0.9 20210404-9. When trying to exec a setuid executable, there's a window of time when the process already has the new privileges, but still refers to the old task and is accessible through the old process port. This can be exploited to get full root access.
0
Attacker Value
Unknown
CVE-2021-43396
Disclosure Date: November 04, 2021 (last updated November 08, 2023)
In iconvdata/iso-2022-jp-3.c in the GNU C Library (aka glibc) 2.34, remote attackers can force iconv() to emit a spurious '\0' character via crafted ISO-2022-JP-3 data that is accompanied by an internal state reset. This may affect data integrity in certain iconv() use cases. NOTE: the vendor states "the bug cannot be invoked through user input and requires iconv to be invoked with a NULL inbuf, which ought to require a separate application bug to do so unintentionally. Hence there's no security impact to the bug.
0
Attacker Value
Unknown
CVE-2021-42096
Disclosure Date: October 21, 2021 (last updated February 23, 2025)
GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is derived from the admin password, and may be useful in conducting a brute-force attack against that password.
0
Attacker Value
Unknown
CVE-2021-42097
Disclosure Date: October 21, 2021 (last updated February 23, 2025)
GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A csrf_token value is not specific to a single user account. An attacker can obtain a value within the context of an unprivileged user account, and then use that value in a CSRF attack against an admin (e.g., for account takeover).
0
Attacker Value
Unknown
CVE-2021-39521
Disclosure Date: September 20, 2021 (last updated February 23, 2025)
An issue was discovered in libredwg through v0.10.1.3751. A NULL pointer dereference exists in the function bit_read_BB() located in bits.c. It allows an attacker to cause Denial of Service.
0
Attacker Value
Unknown
CVE-2021-39528
Disclosure Date: September 20, 2021 (last updated February 23, 2025)
An issue was discovered in libredwg through v0.10.1.3751. dwg_free_MATERIAL_private() in dwg.spec has a double free.
0
Attacker Value
Unknown
CVE-2021-39525
Disclosure Date: September 20, 2021 (last updated February 23, 2025)
An issue was discovered in libredwg through v0.10.1.3751. bit_read_fixed() in bits.c has a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2021-39527
Disclosure Date: September 20, 2021 (last updated February 23, 2025)
An issue was discovered in libredwg through v0.10.1.3751. appinfo_private() in decode.c has a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2021-39522
Disclosure Date: September 20, 2021 (last updated February 23, 2025)
An issue was discovered in libredwg through v0.10.1.3751. bit_wcs2len() in bits.c has a heap-based buffer overflow.
0