Show filters
3,272 Total Results
Displaying 301-310 of 3,272
Sort by:
Attacker Value
Unknown

CVE-2020-15103

Disclosure Date: July 27, 2020 (last updated February 21, 2025)
In FreeRDP less than or equal to 2.1.2, an integer overflow exists due to missing input sanitation in rdpegfx channel. All FreeRDP clients are affected. The input rectangles from the server are not checked against local surface coordinates and blindly accepted. A malicious server can send data that will crash the client later on (invalid length arguments to a `memcpy`) This has been fixed in 2.2.0. As a workaround, stop using command line arguments /gfx, /gfx-h264 and /network:auto
Attacker Value
Unknown

CVE-2020-15917

Disclosure Date: July 23, 2020 (last updated November 08, 2023)
common/session.c in Claws Mail before 3.17.6 has a protocol violation because suffix data after STARTTLS is mishandled.
Attacker Value
Unknown

CVE-2020-6521

Disclosure Date: July 22, 2020 (last updated November 08, 2023)
Side-channel information leakage in autofill in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6517

Disclosure Date: July 22, 2020 (last updated February 21, 2025)
Heap buffer overflow in history in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6535

Disclosure Date: July 22, 2020 (last updated February 21, 2025)
Insufficient data validation in WebUI in Google Chrome prior to 84.0.4147.89 allowed a remote attacker who had compromised the renderer process to inject scripts or HTML into a privileged page via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6525

Disclosure Date: July 22, 2020 (last updated February 21, 2025)
Heap buffer overflow in Skia in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6510

Disclosure Date: July 22, 2020 (last updated February 21, 2025)
Heap buffer overflow in background fetch in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6515

Disclosure Date: July 22, 2020 (last updated February 21, 2025)
Use after free in tab strip in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6534

Disclosure Date: July 22, 2020 (last updated February 21, 2025)
Heap buffer overflow in WebRTC in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6522

Disclosure Date: July 22, 2020 (last updated November 08, 2023)
Inappropriate implementation in external protocol handlers in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.