Latest CVE Feed
-
5.5
MEDIUMCVE-2023-29942
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::Type::isa<mlir::LLVM::LLVMVoidType.... Read more
Affected Products : llvm- EPSS Score: %0.03
- Published: May. 05, 2023
- Modified: Jan. 29, 2025
-
5.5
MEDIUMCVE-2023-29932
llvm-project commit fdbc55a5 was discovered to contain a segmentation fault via the component mlir::IROperand<mlir::OpOperand.... Read more
Affected Products : llvm- EPSS Score: %0.03
- Published: May. 05, 2023
- Modified: Jan. 29, 2025
-
5.5
MEDIUMCVE-2023-29761
An issue found in Sleep v.20230303 for Android allows unauthorized apps to cause a persistent denial of service by manipulating the SharedPreference files.... Read more
Affected Products : sleep- EPSS Score: %0.04
- Published: Jun. 09, 2023
- Modified: Jan. 06, 2025
-
5.5
MEDIUMCVE-2023-29819
An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to bypass protections via a crafted payload.... Read more
Affected Products : secureanywhere- EPSS Score: %0.01
- Published: May. 12, 2023
- Modified: Jan. 24, 2025
-
5.5
MEDIUMCVE-2020-8003
A double-free vulnerability in vrend_renderer.c in virglrenderer through 0.8.1 allows attackers to cause a denial of service by triggering texture allocation failure, because vrend_renderer_resource_allocated_texture is not an appropriate place for a free... Read more
- EPSS Score: %0.04
- Published: Jan. 27, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-29581
yasm 1.3.0.55.g101bc has a segmentation violation in the function delete_Token at modules/preprocs/nasm/nasm-pp.c. NOTE: although a libyasm application could become unavailable if this were exploited, the vendor's position is that there is no security rel... Read more
Affected Products : yasm- EPSS Score: %0.02
- Published: Apr. 12, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-7455
In FreeBSD 12.1-STABLE before r360973, 12.1-RELEASE before p5, 11.4-STABLE before r360973, 11.4-BETA1 before p1 and 11.3-RELEASE before p9, the FTP packet handler in libalias incorrectly calculates some packet length allowing disclosure of small amounts o... Read more
Affected Products : freebsd- EPSS Score: %0.10
- Published: May. 13, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-29582
yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr1 at /nasm/nasm-parse.c. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not des... Read more
Affected Products : yasm- EPSS Score: %0.03
- Published: Apr. 24, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-29579
yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the component yasm/yasm+0x43b466 in vsprintf. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not desig... Read more
Affected Products : yasm- EPSS Score: %0.03
- Published: Apr. 24, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-29570
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via mjs_ffi_cb_free at src/mjs_ffi.c. This vulnerability can lead to a Denial of Service (DoS).... Read more
Affected Products : mjs- EPSS Score: %0.02
- Published: Apr. 24, 2023
- Modified: Feb. 04, 2025
-
5.5
MEDIUMCVE-2023-29576
Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_TrunAtom::SetDataOffset(int) function in Ap4TrunAtom.h.... Read more
Affected Products : bento4- EPSS Score: %0.05
- Published: Apr. 11, 2023
- Modified: Feb. 10, 2025
-
5.5
MEDIUMCVE-2018-3031
Vulnerability in the Oracle FLEXCUBE Investor Servicing component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported versions that are affected are 12.0.4, 12.1.0, 12.3.0 and 12.4.0. Easily exploitable vulnerability allows... Read more
Affected Products : flexcube_investor_servicing- EPSS Score: %0.49
- Published: Jul. 18, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-6104
An exploitable information disclosure vulnerability exists in the get_dnode_of_data functionality of F2fs-Tools F2fs.Fsck 1.13. A specially crafted f2fs filesystem can cause information disclosure resulting in a information disclosure. An attacker can pro... Read more
Affected Products : f2fs-tools- EPSS Score: %0.26
- Published: Oct. 15, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-5890
On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, and 12.1.0-12.1.5.1 and BIG-IQ 5.2.0-7.1.0, when creating a QKView, credentials for binding to LDAP servers used for remote authentication of the BIG-IP administrative interface will not fully obf... Read more
Affected Products : big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system big-ip_fraud_protection_service big-ip_global_traffic_manager big-ip_link_controller big-ip_local_traffic_manager +2 more products- EPSS Score: %0.13
- Published: Apr. 30, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-5826
Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 MP1 and prior to 14.2.5569.2100 respectively, may be susceptible to an out of bounds vulnerability, which is a type of issue that resul... Read more
- EPSS Score: %0.06
- Published: Feb. 11, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2018-3024
Vulnerability in the Oracle Banking Payments component of Oracle Financial Services Applications (subcomponent: Payments Core). Supported versions that are affected are 12.2.0, 12.3.0, 12.4.0, 12.5.0 and 14.1.0. Easily exploitable vulnerability allows low... Read more
Affected Products : banking_payments- EPSS Score: %0.20
- Published: Jul. 18, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-5225
Log injection in SimpleSAMLphp before version 1.18.4. The www/erroreport.php script, which receives error reports and sends them via email to the system administrator, did not properly sanitize the report identifier obtained from the request. This allows ... Read more
Affected Products : simplesamlphp- EPSS Score: %0.32
- Published: Jan. 24, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-5202
apt-cacher-ng through 3.3 allows local users to obtain sensitive information by hijacking the hardcoded TCP port. The /usr/lib/apt-cacher-ng/acngtool program attempts to connect to apt-cacher-ng via TCP on localhost port 3142, even if the explicit SocketP... Read more
- EPSS Score: %0.07
- Published: Jan. 21, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2018-3016
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Integration Broker). Supported versions that are affected are 8.55 and 8.56. Easily exploitable vulnerability allows low privileged attacker with... Read more
Affected Products : peoplesoft_enterprise_peopletools- EPSS Score: %0.20
- Published: Jul. 18, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-29465
SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).... Read more
Affected Products : flintqs- EPSS Score: %0.02
- Published: Apr. 06, 2023
- Modified: Feb. 12, 2025