Show filters
1,411 Total Results
Displaying 31-40 of 1,411
Sort by:
Attacker Value
Unknown

CVE-2020-14154

Disclosure Date: June 15, 2020 (last updated November 28, 2024)
Mutt before 1.14.3 proceeds with a connection even if, in response to a GnuTLS certificate prompt, the user rejects an expired intermediate certificate.
Attacker Value
Unknown

CVE-2020-14093

Disclosure Date: June 15, 2020 (last updated November 28, 2024)
Mutt before 1.14.3 allows an IMAP fcc/postpone man-in-the-middle attack via a PREAUTH response.
Attacker Value
Unknown

CVE-2020-0198

Disclosure Date: June 11, 2020 (last updated November 08, 2023)
In exif_data_load_data_content of exif-data.c, there is a possible UBSAN abort due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-146428941
Attacker Value
Unknown

CVE-2020-12049

Disclosure Date: June 08, 2020 (last updated November 28, 2024)
An issue was discovered in dbus >= 1.3.0 before 1.12.18. The DBusServer in libdbus, as used in dbus-daemon, leaks file descriptors when a message exceeds the per-message file descriptor limit. A local attacker with access to the D-Bus system bus or another system service's private AF_UNIX socket could use this to make the system service reach its file descriptor limit, denying service to subsequent D-Bus clients.
Attacker Value
Unknown

CVE-2020-13113

Disclosure Date: May 21, 2020 (last updated November 27, 2024)
An issue was discovered in libexif before 0.6.22. Use of uninitialized memory in EXIF Makernote handling could lead to crashes and potential use-after-free conditions.
Attacker Value
Unknown

CVE-2020-13114

Disclosure Date: May 21, 2020 (last updated November 27, 2024)
An issue was discovered in libexif before 0.6.22. An unrestricted size in handling Canon EXIF MakerNote data could lead to consumption of large amounts of compute time for decoding EXIF data.
Attacker Value
Unknown

CVE-2020-13112

Disclosure Date: May 21, 2020 (last updated November 27, 2024)
An issue was discovered in libexif before 0.6.22. Several buffer over-reads in EXIF MakerNote handling could lead to information disclosure and crashes. This is different from CVE-2020-0093.
Attacker Value
Unknown

CVE-2020-8617

Disclosure Date: May 19, 2020 (last updated November 08, 2023)
Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the server. Since BIND, by default, configures a local session key even on servers whose configuration does not otherwise make use of it, almost all current BIND servers are vulnerable. In releases of BIND dating from March 2018 and after, an assertion check in tsig.c detects this inconsistent state and deliberately exits. Prior to the introduction of the check the server would continue operating in an inconsistent state, with potentially harmful results.
Attacker Value
Unknown

CVE-2020-0093

Disclosure Date: May 14, 2020 (last updated November 27, 2024)
In exif_data_save_data_entry of exif-data.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-148705132
Attacker Value
Unknown

CVE-2020-3810

Disclosure Date: May 14, 2020 (last updated November 08, 2023)
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.