Show filters
561 Total Results
Displaying 231-240 of 561
Sort by:
Attacker Value
Unknown
CVE-2020-35494
Disclosure Date: January 04, 2021 (last updated February 22, 2025)
There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input file to be processed by binutils could cause usage of uninitialized memory. The highest threat is to application availability with a lower threat to data confidentiality. This flaw affects binutils versions prior to 2.34.
0
Attacker Value
Unknown
CVE-2020-35496
Disclosure Date: January 04, 2021 (last updated February 22, 2025)
There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutils which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The greatest threat of this flaw is to application availability. This flaw affects binutils versions prior to 2.34.
0
Attacker Value
Unknown
CVE-2020-35495
Disclosure Date: January 04, 2021 (last updated February 22, 2025)
There's a flaw in binutils /bfd/pef.c. An attacker who is able to submit a crafted input file to be processed by the objdump program could cause a null pointer dereference. The greatest threat from this flaw is to application availability. This flaw affects binutils versions prior to 2.34.
0
Attacker Value
Unknown
CVE-2020-15376
Disclosure Date: December 11, 2020 (last updated November 28, 2024)
Brocade Fabric OS versions before v9.0.0 and after version v8.1.0, configured in Virtual Fabric mode contain a weakness in the ldap implementation that could allow a remote ldap user to login in the Brocade Fibre Channel SAN switch with "user" privileges if it is not associated with any groups.
0
Attacker Value
Unknown
CVE-2020-15375
Disclosure Date: December 11, 2020 (last updated February 22, 2025)
Brocade Fabric OS versions before v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, v7.4.2g contain an improper input validation weakness in the command line interface when secccrypptocfg is invoked. The vulnerability could allow a local authenticated user to run arbitrary commands and perform escalation of privileges.
0
Attacker Value
Unknown
CVE-2020-12594
Disclosure Date: December 10, 2020 (last updated November 28, 2024)
A privilege escalation flaw allows a malicious, authenticated, privileged CLI user to escalate their privileges on the system and gain full control over the SMG appliance. This affects SMG prior to 10.7.4.
0
Attacker Value
Unknown
CVE-2020-12595
Disclosure Date: December 10, 2020 (last updated November 28, 2024)
An information disclosure flaw allows a malicious, authenticated, privileged web UI user to obtain a password for a remote SCP backup server that they might not otherwise be authorized to access. This affects SMG prior to 10.7.4.
0
Attacker Value
Unknown
CVE-2020-29660
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A locking inconsistency issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_io.c and drivers/tty/tty_jobctrl.c may allow a read-after-free attack against TIOCGSID, aka CID-c8bcd9c5be24.
0
Attacker Value
Unknown
CVE-2020-29661
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.
0
Attacker Value
Unknown
CVE-2020-15436
Disclosure Date: November 23, 2020 (last updated February 22, 2025)
Use-after-free vulnerability in fs/block_dev.c in the Linux kernel before 5.8 allows local users to gain privileges or cause a denial of service by leveraging improper access to a certain error field.
0