Show filters
4,245 Total Results
Displaying 431-440 of 4,245
Sort by:
Attacker Value
Unknown
CVE-2020-4031
Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is a use-after-free in gdi_SelectObject. All FreeRDP clients using compatibility mode with /relax-order-checks are affected. This is fixed in version 2.1.2.
0
Attacker Value
Unknown
CVE-2020-11096
Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is a global OOB read in update_read_cache_bitmap_v3_order. As a workaround, one can disable bitmap cache with -bitmap-cache (default). This is fixed in version 2.1.2.
0
Attacker Value
Unknown
CVE-2020-4032
Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is an integer casting vulnerability in update_recv_secondary_order. All clients with +glyph-cache /relax-order-checks are affected. This is fixed in version 2.1.2.
0
Attacker Value
Unknown
CVE-2020-11097
Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, an out of bounds read occurs resulting in accessing a memory location that is outside of the boundaries of the static array PRIMARY_DRAWING_ORDER_FIELD_BYTES. This is fixed in version 2.1.2.
0
Attacker Value
Unknown
CVE-2020-11095
Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, an out of bound reads occurs resulting in accessing a memory location that is outside of the boundaries of the static array PRIMARY_DRAWING_ORDER_FIELD_BYTES. This is fixed in version 2.1.2.
0
Attacker Value
Unknown
CVE-2020-4030
Disclosure Date: June 22, 2020 (last updated February 21, 2025)
In FreeRDP before version 2.1.2, there is an out of bounds read in TrioParse. Logging might bypass string length checks due to an integer overflow. This is fixed in version 2.1.2.
0
Attacker Value
Unknown
CVE-2020-14954
Disclosure Date: June 21, 2020 (last updated February 21, 2025)
Mutt before 1.14.4 and NeoMutt before 2020-06-19 have a STARTTLS buffering issue that affects IMAP, SMTP, and POP3. When a server sends a "begin TLS" response, the client reads additional data (e.g., from a man-in-the-middle attacker) and evaluates it in a TLS context, aka "response injection."
0
Attacker Value
Unknown
CVE-2020-8184
Disclosure Date: June 19, 2020 (last updated February 21, 2025)
A reliance on cookies without validation/integrity check security vulnerability exists in rack < 2.2.3, rack < 2.1.4 that makes it is possible for an attacker to forge a secure or host-only cookie prefix.
0
Attacker Value
Unknown
CVE-2019-20839
Disclosure Date: June 17, 2020 (last updated February 21, 2025)
libvncclient/sockets.c in LibVNCServer before 0.9.13 has a buffer overflow via a long socket filename.
0
Attacker Value
Unknown
CVE-2020-14397
Disclosure Date: June 17, 2020 (last updated February 21, 2025)
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rfbregion.c has a NULL pointer dereference.
0