Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.8
CVE-2019-9850
LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained …
Ubuntu Linux
6.2.6+
CRITICAL 9.8
CVE-2019-9851EPSS 78%
LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained …
Ubuntu Linux
6.2.6+
HIGH 7.8
CVE-2019-9852
LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events such as mouse-over, document…
Ubuntu Linux
6.2.6+
HIGH 8.1
CVE-2019-9506
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker fr…
Ubuntu Linux
Mitigation only
MEDIUM 6.5
CVE-2019-14433
An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request from an authenticated user en…
Ubuntu Linux
17.0.12 / 18.2.2+
HIGH 7.8
CVE-2019-14496
LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-based buffer overflow.
Ubuntu Linux
No fix yet
HIGH 7.8
CVE-2019-14497
ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02.00 has a heap-based buffer overflow.
Ubuntu Linux
No fix yet
HIGH 7.5
CVE-2019-14494
An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tilingPatternFill at SplashOutput…
Ubuntu Linux
after 0.78.0
MEDIUM 5.5
CVE-2019-14464
XMFile::read in XMFile.cpp in milkyplay in MilkyTracker 1.02.00 has a heap-based buffer overflow.
Ubuntu Linux
No fix yet
HIGH 7.5
CVE-2019-14452
Sigil before 0.9.16 is vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in a ZIP archive en…
Ubuntu Linux
0.9.16+
MEDIUM 5.5
CVE-2019-14444
apply_relocations in readelf.c in GNU Binutils 2.32 contains an integer overflow that allows attackers to trigger a write access violation (in byte_p…
Ubuntu Linux
Patch available
HIGH 7.5
CVE-2019-13565EPSS 5%
An issue was discovered in OpenLDAP 2.x before 2.4.48. When using SASL authentication and session encryption, and relying on the SASL security layers…
Ubuntu Linux
10.13.6 / 10.14.6+
MEDIUM 5.5
CVE-2019-14250
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_match in simple-object-elf.c does not check for a ze…
Ubuntu Linux
No fix yet
MEDIUM 5.3
CVE-2019-2762
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Utilities). Supported versions that are affected are Java S…
Ubuntu Linux
Patch available
CRITICAL 9.8
CVE-2019-9848EPSS 31%
LibreOffice has a feature where documents can specify that pre-installed scripts can be executed on various document events such as mouse-over, etc. …
Ubuntu Linux
6.2.5+
HIGH 7.8
CVE-2019-1010006
Evince 3.26.0 is affected by buffer overflow. The impact is: DOS / Possible code execution. The component is: backend/tiff/tiff-document.c. The attac…
Ubuntu Linux
No fix yet
HIGH 8.8
CVE-2019-13308
ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow in MagickCore/fourier.c in ComplexImage.
Ubuntu Linux
Patch available
MEDIUM 6.5
CVE-2019-13310
ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c.
Ubuntu Linux
Patch available
MEDIUM 6.5
CVE-2019-13311
ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of a wand/mogrify.c error.
Ubuntu Linux
Patch available
HIGH 7.8
CVE-2019-13241
FlightCrew v0.9.2 and older are vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in a ZIP a…
Ubuntu Linux
after 0.9.2
MEDIUM 5.5
CVE-2019-12972
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer o…
Ubuntu Linux
Patch available
HIGH 7.0
CVE-2019-12817
arch/powerpc/mm/mmu_context_book3s64.c in the Linux kernel before 5.1.15 for powerpc has a bug where unrelated processes may be able to read/write to…
Ubuntu Linux
5.1.15+
HIGH 7.5
CVE-2018-20843EPSS 7%
In libexpat in Expat before 2.2.7, XML input including XML names that contain a large number of colons could make the XML parser consume a high amoun…
Ubuntu Linux
2.2.7+
MEDIUM 6.5
CVE-2019-12436
Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to an AD DC LDAP server Denial of Service. This is related to an attacker using th…
Ubuntu Linux
4.10.5+
HIGH 7.1
CVE-2019-12749
dbus before 1.10.28, 1.12.x before 1.12.16, and 1.13.x before 1.13.12, as used in DBusServer in Canonical Upstart in Ubuntu 14.04 (and in some, less …
Ubuntu Linux
1.10.28 / 1.12.16+
CRITICAL 9.8
CVE-2019-10149 KEVEPSS 100%
A flaw was found in Exim versions 4.87 to 4.91 (inclusive). Improper validation of recipient address in deliver_message() function in /src/deliver.c …
Ubuntu Linux
after 4.91
HIGH 7.3
CVE-2019-12447
An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles file ownership because setfsuid is not used.
Ubuntu Linux
after 1.41.2
MEDIUM 5.7
CVE-2019-12449
An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles a file's user and group ownership during move (and …
Ubuntu Linux
after 1.41.2
HIGH 7.5
CVE-2019-12211
When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destinat…
Ubuntu Linux
No fix yet
MEDIUM 6.5
CVE-2019-12213
When FreeImage 3.18.0 reads a special TIFF file, the TIFFReadDirectory function in PluginTIFF.cpp always returns 1, leading to stack exhaustion.
Ubuntu Linux
No fix yet