Vulnerability index

Browse CVEs

188 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2020-6615 GNU LibreDWG 0.9.3.2564 has an invalid pointer dereference in dwg_dynapi_entity_value in dynapi.c (dynapi.c is generated by gen-dynapi.pl). Libredwg No fix yet Fix from $1,6002020-01-08 HIGH 8.8 CVE-2019-20010 An issue was discovered in GNU LibreDWG 0.92. There is a use-after-free in resolve_objectref_vector in decode.c. Libredwg No fix yet Fix from $1,9502019-12-27 HIGH 8.8 CVE-2019-20011 An issue was discovered in GNU LibreDWG 0.92. There is a heap-based buffer over-read in decode_R13_R2000 in decode.c. Libredwg No fix yet Fix from $1,9502019-12-27 MEDIUM 6.5 CVE-2019-20012 An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_HATCH_private in dwg.… Libredwg No fix yet Fix from $1,6002019-12-27 MEDIUM 6.5 CVE-2019-20015 An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_LWPOLYLINE_private in… Libredwg No fix yet Fix from $1,6002019-12-27 MEDIUM 5.9 CVE-2019-14865 A flaw was found in the grub2-set-bootflag utility of grub2. A local attacker could run this utility under resource pressure (for example by setting … Grub2 Mitigation only Fix from $1,6002019-11-29 HIGH 7.8 CVE-2019-15767 In GNU Chess 6.2.5, there is a stack-based buffer overflow in the cmd_load function in frontend/cmd.cc via a crafted chess position in an EPD file. Chess No fix yet Fix from $1,9502019-08-29 CRITICAL 9.8 CVE-2019-1010022 GNU Libc current is affected by: Mitigation bypass. The impact is: Attacker may bypass stack guard protection. The component is: nptl. The attack vec… Glibc No fix yet Fix from $2,3002019-07-15 MEDIUM 5.4 CVE-2019-1010023 GNU Libc current is affected by: Re-mapping current loaded library with malicious ELF file. The impact is: In worst case attacker may evaluate privil… Glibc No fix yet Fix from $1,6002019-07-15 MEDIUM 5.3 CVE-2019-1010024 GNU Libc current is affected by: Mitigation bypass. The impact is: Attacker may bypass ASLR using cache of thread stack and heap. The component is: g… Glibc No fix yet Fix from $1,6002019-07-15 MEDIUM 5.3 CVE-2019-1010025 GNU Libc current is affected by: Mitigation bypass. The impact is: Attacker may guess the heap addresses of pthread_created thread. The component is:… Glibc No fix yet Fix from $1,6002019-07-15 HIGH 8.8 CVE-2019-11639 An issue was discovered in GNU recutils 1.8. There is a stack-based buffer overflow in the function rec_type_check_enum at rec-types.c in librec.a. Recutils No fix yet Fix from $1,9502019-05-01 HIGH 8.8 CVE-2019-11640 An issue was discovered in GNU recutils 1.8. There is a heap-based buffer overflow in the function rec_fex_parse_str_simple at rec-fex.c in librec.a. Recutils No fix yet Fix from $1,9502019-05-01 MEDIUM 6.5 CVE-2019-11637 An issue was discovered in GNU recutils 1.8. There is a NULL pointer dereference in the function rec_rset_get_props at rec-rset.c in librec.a, leadin… Recutils No fix yet Fix from $1,6002019-05-01 MEDIUM 6.5 CVE-2019-11638 An issue was discovered in GNU recutils 1.8. There is a NULL pointer dereference in the function rec_field_name_equal_p at rec-field-name.c in librec… Recutils No fix yet Fix from $1,6002019-05-01 HIGH 7.5 CVE-2019-9777 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a heap-based buffer over-read in the function dxf_header_write at header_variables… Libredwg No fix yet Fix from $1,9502019-03-14 HIGH 7.5 CVE-2019-9778 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a heap-based buffer over-read in the function dwg_dxf_LTYPE at dwg.spec. Libredwg No fix yet Fix from $1,9502019-03-14 HIGH 7.5 CVE-2019-9779 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function dwg_dxf_LTYPE at dwg.spec (earlier than… Libredwg No fix yet Fix from $1,9502019-03-14 CRITICAL 9.1 CVE-2019-9774 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is an out-of-bounds read in the function bit_read_B at bits.c. Libredwg No fix yet Fix from $2,3002019-03-14 CRITICAL 9.1 CVE-2019-9775 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is an out-of-bounds read in the function dwg_dxf_BLOCK_CONTROL at dwg.spec. Libredwg No fix yet Fix from $2,3002019-03-14 HIGH 7.5 CVE-2019-9770 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a heap-based buffer overflow in the function dwg_decode_eed_data at decode.c for t… Libredwg No fix yet Fix from $1,9502019-03-14 HIGH 7.5 CVE-2019-9771 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function bit_convert_TU at bits.c. Libredwg No fix yet Fix from $1,9502019-03-14 HIGH 7.5 CVE-2019-9772 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function dwg_dxf_LEADER at dwg.spec. Libredwg No fix yet Fix from $1,9502019-03-14 HIGH 7.5 CVE-2019-9773 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a heap-based buffer overflow in the function dwg_decode_eed_data at decode.c for t… Libredwg No fix yet Fix from $1,9502019-03-14 HIGH 7.5 CVE-2019-9776 An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function dwg_dxf_LTYPE at dwg.spec (later than C… Libredwg No fix yet Fix from $1,9502019-03-14 MEDIUM 6.5 CVE-2019-6455 An issue was discovered in GNU Recutils 1.8. There is a double-free problem in the function rec_mset_elem_destroy() in the file rec-mset.c. Recutils No fix yet Fix from $1,6002019-01-16 MEDIUM 6.5 CVE-2019-6456 An issue was discovered in GNU Recutils 1.8. There is a NULL pointer dereference in the function rec_fex_size() in the file rec-fex.c of librec.a. Recutils No fix yet Fix from $1,6002019-01-16 MEDIUM 6.5 CVE-2019-6457 An issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_aggregate_reg_new in rec-aggregate.c in librec.a. Recutils No fix yet Fix from $1,6002019-01-16 MEDIUM 6.5 CVE-2019-6458 An issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_buf_new in rec-buf.c when called from rec_parse_rset in rec-parser.c in li… Recutils No fix yet Fix from $1,6002019-01-16 MEDIUM 6.5 CVE-2019-6459 An issue was discovered in GNU Recutils 1.8. There is a memory leak in rec_extract_type in rec-utils.c in librec.a. Recutils No fix yet Fix from $1,6002019-01-16