Show filters
376 Total Results
Displaying 271-280 of 376
Sort by:
Attacker Value
Unknown

CVE-2020-11996

Disclosure Date: June 26, 2020 (last updated November 08, 2023)
A specially crafted sequence of HTTP/2 requests sent to Apache Tomcat 10.0.0-M1 to 10.0.0-M5, 9.0.0.M1 to 9.0.35 and 8.5.0 to 8.5.55 could trigger high CPU usage for several seconds. If a sufficient number of such requests were made on concurrent HTTP/2 connections, the server could become unresponsive.
Attacker Value
Unknown

CVE-2020-15305

Disclosure Date: June 26, 2020 (last updated February 21, 2025)
An issue was discovered in OpenEXR before 2.5.2. Invalid input could cause a use-after-free in DeepScanLineInputFile::DeepScanLineInputFile() in IlmImf/ImfDeepScanLineInputFile.cpp.
Attacker Value
Unknown

CVE-2020-15306

Disclosure Date: June 26, 2020 (last updated February 21, 2025)
An issue was discovered in OpenEXR before v2.5.2. Invalid chunkCount attributes could cause a heap buffer overflow in getChunkOffsetTableSize() in IlmImf/ImfMisc.cpp.
Attacker Value
Unknown

CVE-2020-15304

Disclosure Date: June 26, 2020 (last updated February 21, 2025)
An issue was discovered in OpenEXR before 2.5.2. An invalid tiled input file could cause invalid memory access in TiledInputFile::TiledInputFile() in IlmImf/ImfTiledInputFile.cpp, as demonstrated by a NULL pointer dereference.
Attacker Value
Unknown

CVE-2020-15025

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
ntpd in ntp 4.2.8 before 4.2.8p15 and 4.3.x before 4.3.101 allows remote attackers to cause a denial of service (memory consumption) by sending packets, because memory is not freed in situations where a CMAC key is used and associated with a CMAC algorithm in the ntp.keys file.
Attacker Value
Unknown

CVE-2020-12865

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
A heap buffer overflow in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to execute arbitrary code, aka GHSL-2020-084.
Attacker Value
Unknown

CVE-2020-12866

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
A NULL pointer dereference in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, GHSL-2020-079.
Attacker Value
Unknown

CVE-2020-12861

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
A heap buffer overflow in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to execute arbitrary code, aka GHSL-2020-080.
Attacker Value
Unknown

CVE-2020-12863

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-083.
Attacker Value
Unknown

CVE-2020-12862

Disclosure Date: June 24, 2020 (last updated February 21, 2025)
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-082.