Show filters
1,184 Total Results
Displaying 341-350 of 1,184
Sort by:
Attacker Value
Unknown

CVE-2021-41817

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.
Attacker Value
Unknown

CVE-2021-45930

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
Qt SVG in Qt 5.0.0 through 5.15.2 and 6.0.0 through 6.2.1 has an out-of-bounds write in QtPrivate::QCommonArrayOps<QPainterPath::Element>::growAppend (called from QPainterPath::addPath and QPathClipper::intersect).
Attacker Value
Unknown

CVE-2021-45931

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
HarfBuzz 2.9.0 has an out-of-bounds write in hb_bit_set_invertible_t::set (called from hb_sparseset_t<hb_bit_set_invertible_t>::set and hb_set_copy).
Attacker Value
Unknown

CVE-2021-45942

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
OpenEXR 3.1.x before 3.1.4 has a heap-based buffer overflow in Imf_3_1::LineCompositeTask::execute (called from IlmThread_3_1::NullThreadPoolProvider::addTask and IlmThread_3_1::ThreadPool::addGlobalTask). NOTE: db217f2 may be inapplicable.
Attacker Value
Unknown

CVE-2021-45943

Disclosure Date: January 01, 2022 (last updated February 23, 2025)
GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFromFile and PCIDSK::CPCIDSKBinarySegment::CPCIDSKBinarySegment).
Attacker Value
Unknown

CVE-2021-4193

Disclosure Date: December 31, 2021 (last updated February 23, 2025)
vim is vulnerable to Out-of-bounds Read
Attacker Value
Unknown

CVE-2021-4192

Disclosure Date: December 31, 2021 (last updated February 23, 2025)
vim is vulnerable to Use After Free
Attacker Value
Unknown

CVE-2021-4186

Disclosure Date: December 30, 2021 (last updated February 23, 2025)
Crash in the Gryphon dissector in Wireshark 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
Attacker Value
Unknown

CVE-2021-4182

Disclosure Date: December 30, 2021 (last updated February 23, 2025)
Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
Attacker Value
Unknown

CVE-2021-4185

Disclosure Date: December 30, 2021 (last updated February 23, 2025)
Infinite loop in the RTMPT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file