Show filters
433 Total Results
Displaying 261-270 of 433
Sort by:
Attacker Value
Unknown

CVE-2020-12866

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
A NULL pointer dereference in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, GHSL-2020-079.
Attacker Value
Unknown

CVE-2020-12861

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
A heap buffer overflow in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to execute arbitrary code, aka GHSL-2020-080.
Attacker Value
Unknown

CVE-2020-12863

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-083.
Attacker Value
Unknown

CVE-2020-12862

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-082.
Attacker Value
Unknown

CVE-2020-12864

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-081.
Attacker Value
Unknown

CVE-2020-11099

Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is an out of bounds read in license_read_new_or_upgrade_license_packet. A manipulated license packet can lead to out of bound reads to an internal buffer. This is fixed in version 2.1.2.
Attacker Value
Unknown

CVE-2020-4033

Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is an out of bounds read in RLEDECOMPRESS. All FreeRDP based clients with sessions with color depth < 32 are affected. This is fixed in version 2.1.2.
Attacker Value
Unknown

CVE-2020-11098

Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is an out-of-bound read in glyph_cache_put. This affects all FreeRDP clients with `+glyph-cache` option enabled This is fixed in version 2.1.2.
Attacker Value
Unknown

CVE-2020-4031

Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is a use-after-free in gdi_SelectObject. All FreeRDP clients using compatibility mode with /relax-order-checks are affected. This is fixed in version 2.1.2.
Attacker Value
Unknown

CVE-2020-11096

Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is a global OOB read in update_read_cache_bitmap_v3_order. As a workaround, one can disable bitmap cache with -bitmap-cache (default). This is fixed in version 2.1.2.