Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux MEDIUM 5.5
CVE-2020-16300

A buffer overflow vulnerability in tiff12_print_page() in devices/gdevtfnx.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause …

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16301

A buffer overflow vulnerability in okiibm_print_page1() in devices/gdevokii.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16302

A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attacker to esca…

No fix yet
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16287

A buffer overflow vulnerability in lprn_is_black() in contrib/lips4/gdevlprn.c of Artifex Software GhostScript v9.50 allows a remote attacker to caus…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16288

A buffer overflow vulnerability in pj_common_print_page() in devices/gdevpjet.c of Artifex Software GhostScript v9.50 allows a remote attacker to cau…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16289

A buffer overflow vulnerability in cif_print_page() in devices/gdevcif.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a de…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16290

A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attacker to caus…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16291

A buffer overflow vulnerability in contrib/gdevdj9.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to cause a denial of ser…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.3
CVE-2020-17507

An issue was discovered in Qt through 5.12.9, and 5.13.x through 5.15.x before 5.15.1. read_xbm_body in gui/image/qxbmhandler.cpp has a buffer over-r…

Fix: 5.15.1+
Fix from $1,600 2020-08-12
Debian Linux CRITICAL 9.8
CVE-2020-17446

asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server r…

Fix: 0.21.0+
Fix from $2,300 2020-08-12
Debian Linux HIGH 7.5
CVE-2020-12100EPSS 5%

In Dovecot before 2.3.11.3, uncontrolled recursion in submission, lmtp, and lda allows remote attackers to cause a denial of service (resource consum…

Fix: 2.3.11.3+
Fix from $1,950 2020-08-12
Debian Linux HIGH 7.5
CVE-2020-12673EPSS 6%

In Dovecot before 2.3.11.3, sending a specially formatted NTLM request will crash the auth service because of an out-of-bounds read.

Fix: 2.3.11.3+
Fix from $1,950 2020-08-12
Debian Linux HIGH 7.5
CVE-2020-12674EPSS 6%

In Dovecot before 2.3.11.3, sending a specially formatted RPA request will crash the auth service because a length of zero is mishandled.

Fix: 2.3.11.3+
Fix from $1,950 2020-08-12
Debian Linux MEDIUM 6.8
CVE-2020-0256

In LoadPartitionTable of gpt.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privil…

Mitigation only
Fix from $1,600 2020-08-11
Debian Linux CRITICAL 9.8
CVE-2020-17368

Firejail through 0.9.62 mishandles shell metacharacters during use of the --output or --output-stderr option, which may lead to command injection.

Fix: after 0.9.62
Fix from $2,300 2020-08-11
Debian Linux HIGH 7.8
CVE-2020-17367

Firejail through 0.9.62 does not honor the -- end-of-options indicator after the --output option, which may lead to command injection.

Fix: after 0.9.62
Fix from $1,950 2020-08-11
Debian Linux MEDIUM 5.5
CVE-2020-14347

A flaw was found in the way xserver memory was not properly initialized. This could leak parts of server memory to the X client. In cases where Xorg …

Fix: 1.20.9+
Fix from $1,600 2020-08-05
Debian Linux HIGH 8.2
CVE-2020-10713

A flaw was found in grub2, prior to version 2.06. An attacker may use the GRUB 2 flaw to hijack and tamper the GRUB verification process. This flaw a…

Fix: 2.0 / 2.06+
Fix from $1,950 2020-07-30
Debian Linux MEDIUM 5.9
CVE-2020-16135

libssh 0.9.4 has a NULL pointer dereference in tftpserver.c if ssh_buffer_new returns NULL.

Patch available
Fix from $1,600 2020-07-29
Debian Linux MEDIUM 5.9
CVE-2020-16117

In GNOME evolution-data-server before 3.35.91, a malicious server can crash the mail client with a NULL pointer dereference by sending an invalid (e.…

Fix: 3.35.91+
Fix from $1,600 2020-07-29
Debian Linux MEDIUM 5.3
CVE-2020-15863

hw/net/xgmac.c in the XGMAC Ethernet controller in QEMU before 07-20-2020 has a buffer overflow. This occurs during packet transmission and affects t…

Fix: after 5.0.0
Fix from $1,600 2020-07-28
Debian Linux MEDIUM 6.5
CVE-2020-15954

KDE KMail 19.12.3 (aka 5.13.3) engages in unencrypted POP3 communication during times when the UI indicates that encryption is in use.

Mitigation only
Fix from $1,600 2020-07-27
Debian Linux HIGH 7.5
CVE-2020-15890

LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled.

Fix: after 2.0.5
Fix from $1,950 2020-07-21
Debian Linux CRITICAL 9.8
CVE-2020-15866

mruby through 2.1.2-rc has a heap-based buffer overflow in the mrb_yield_with_class function in vm.c because of incorrect VM stack handling. It can b…

Fix: after 2.1.1
Fix from $2,300 2020-07-21
Debian Linux MEDIUM 5.9
CVE-2020-14928

evolution-data-server (eds) through 3.36.3 has a STARTTLS buffering issue that affects SMTP and POP3. When a server sends a "begin TLS" response, eds…

Fix: after 3.36.3
Fix from $1,600 2020-07-17
Debian Linux HIGH 7.1
CVE-2019-17637

In all versions of Eclipse Web Tools Platform through release 3.18 (2020-06), XML and DTD files referring to external entities could be exploited to …

Fix: after 3.18
Fix from $1,950 2020-07-15
Debian Linux HIGH 7.4
CVE-2020-11061

In Bareos Director less than or equal to 16.2.10, 17.2.9, 18.2.8, and 19.2.7, a heap overflow allows a malicious client to corrupt the director's mem…

Fix: after 19.2.7
Fix from $1,950 2020-07-10
Debian Linux HIGH 8.8
CVE-2020-15565

An issue was discovered in Xen through 4.13.x, allowing x86 Intel HVM guest OS users to cause a host OS denial of service or possibly gain privileges…

Fix: after 4.13.1
Fix from $1,950 2020-07-07
Debian Linux HIGH 7.8
CVE-2020-15567

An issue was discovered in Xen through 4.13.x, allowing Intel guest OS users to gain privileges or cause a denial of service because of non-atomic mo…

Fix: after 4.13.1
Fix from $1,950 2020-07-07
Debian Linux MEDIUM 6.5
CVE-2020-15564

An issue was discovered in Xen through 4.13.x, allowing Arm guest OS users to cause a hypervisor crash because of a missing alignment check in VCPUOP…

Fix: after 4.13.1
Fix from $1,600 2020-07-07