Show filters
4,245 Total Results
Displaying 311-320 of 4,245
Sort by:
Attacker Value
Unknown
CVE-2020-16298
Disclosure Date: August 13, 2020 (last updated February 21, 2025)
A buffer overflow vulnerability in mj_color_correct() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
0
Attacker Value
Unknown
CVE-2020-12674
Disclosure Date: August 12, 2020 (last updated February 21, 2025)
In Dovecot before 2.3.11.3, sending a specially formatted RPA request will crash the auth service because a length of zero is mishandled.
0
Attacker Value
Unknown
CVE-2020-12673
Disclosure Date: August 12, 2020 (last updated February 21, 2025)
In Dovecot before 2.3.11.3, sending a specially formatted NTLM request will crash the auth service because of an out-of-bounds read.
0
Attacker Value
Unknown
CVE-2020-12100
Disclosure Date: August 12, 2020 (last updated February 21, 2025)
In Dovecot before 2.3.11.3, uncontrolled recursion in submission, lmtp, and lda allows remote attackers to cause a denial of service (resource consumption) via a crafted e-mail message with deeply nested MIME parts.
0
Attacker Value
Unknown
CVE-2020-17489
Disclosure Date: August 11, 2020 (last updated February 21, 2025)
An issue was discovered in certain configurations of GNOME gnome-shell through 3.36.4. When logging out of an account, the password box from the login dialog reappears with the password still visible. If the user had decided to have the password shown in cleartext at login time, it is then visible for a brief moment upon a logout. (If the password were never shown in cleartext, only the password length is revealed.)
0
Attacker Value
Unknown
CVE-2020-16092
Disclosure Date: August 11, 2020 (last updated February 21, 2025)
In QEMU through 5.0.0, an assertion failure can occur in the network packet processing. This issue affects the e1000e and vmxnet3 network devices. A malicious guest user/process could use this flaw to abort the QEMU process on the host, resulting in a denial of service condition in net_tx_pkt_add_raw_fragment in hw/net/net_tx_pkt.c.
0
Attacker Value
Unknown
CVE-2020-15658
Disclosure Date: August 10, 2020 (last updated February 21, 2025)
The code for downloading files did not properly take care of special characters, which led to an attacker being able to cut off the file ending at an earlier position, leading to a different file type being downloaded than shown in the dialog. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
0
Attacker Value
Unknown
CVE-2020-15656
Disclosure Date: August 10, 2020 (last updated February 21, 2025)
JIT optimizations involving the Javascript arguments object could confuse later optimizations. This risk was already mitigated by various precautions in the code, resulting in this bug rated at only moderate severity. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
0
Attacker Value
Unknown
CVE-2020-15654
Disclosure Date: August 10, 2020 (last updated February 21, 2025)
When in an endless loop, a website specifying a custom cursor using CSS could make it look like the user is interacting with the user interface, when they are not. This could lead to a perceived broken state, especially when interactions with existing browser dialogs and warnings do not work. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
0
Attacker Value
Unknown
CVE-2020-15653
Disclosure Date: August 10, 2020 (last updated February 21, 2025)
An iframe sandbox element with the allow-popups flag could be bypassed when using noopener links. This could have led to security issues for websites relying on sandbox configurations that allowed popups and hosted arbitrary content. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
0