Latest CVE Feed
-
7.8
HIGHCVE-2021-36089
Grok 7.6.6 through 9.2.0 has a heap-based buffer overflow in grk::FileFormatDecompress::apply_palette_clr (called from grk::FileFormatDecompress::applyColour).... Read more
- EPSS Score: %0.41
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-36088
Fluent Bit (aka fluent-bit) 1.7.0 through 1.7.4 has a double free in flb_free (called from flb_parser_json_do and flb_parser_do).... Read more
Affected Products : fluent_bit- EPSS Score: %0.51
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
3.3
LOWCVE-2021-36087
The CIL compiler in SELinux 3.2 has a heap-based buffer over-read in ebitmap_match_any (called indirectly from cil_check_neverallow). This occurs because there is sometimes a lack of checks for invalid statements in an optional block.... Read more
- EPSS Score: %0.02
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
3.3
LOWCVE-2021-36086
The CIL compiler in SELinux 3.2 has a use-after-free in cil_reset_classpermission (called from cil_reset_classperms_set and cil_reset_classperms_list).... Read more
- EPSS Score: %0.02
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
3.3
LOWCVE-2021-36085
The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __verify_map_perm_classperms and hashtab_map).... Read more
- EPSS Score: %0.02
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
3.3
LOWCVE-2021-36084
The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __cil_verify_classpermission and __cil_pre_verify_helper).... Read more
- EPSS Score: %0.02
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-36083
KDE KImageFormats 5.70.0 through 5.81.0 has a stack-based buffer overflow in XCFImageFormat::loadTileRLE.... Read more
Affected Products : kimageformats- EPSS Score: %0.23
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-36082
ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello.... Read more
Affected Products : ndpi- EPSS Score: %0.50
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-36081
Tesseract OCR 5.0.0-alpha-20201231 has a one_ell_conflict use-after-free during a strpbrk call.... Read more
- EPSS Score: %0.24
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-36080
GNU LibreDWG 0.12.3.4163 through 0.12.3.4191 has a double-free in bit_chain_free (called from dwg_encode_MTEXT and dwg_encode_add_object).... Read more
Affected Products : libredwg- EPSS Score: %0.44
- Published: Jul. 01, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36079
Adobe Bridge version 11.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .SGI file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execu... Read more
- EPSS Score: %0.97
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36078
Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is require... Read more
- EPSS Score: %0.86
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-36077
Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious SVG file, potentially resulting in local application denial of service in the context of the current user. User interaction is... Read more
- EPSS Score: %0.61
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36076
Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is require... Read more
- EPSS Score: %1.58
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36075
Adobe Bridge version 11.1 (and earlier) is affected by a Buffer Overflow vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required ... Read more
- EPSS Score: %1.96
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2021-36074
Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of arbitrary memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue re... Read more
- EPSS Score: %1.43
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36073
Adobe Bridge version 11.1 (and earlier) is affected by a heap-based buffer overflow vulnerability when parsing a crafted .SGI file. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issu... Read more
- EPSS Score: %3.22
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36072
Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open... Read more
- EPSS Score: %0.88
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2021-36071
Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of arbitrary memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue re... Read more
- EPSS Score: %2.29
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36070
Adobe Media Encoder version 15.1 (and earlier) is affected by an improper memory access vulnerability when parsing a crafted .SVG file. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this ... Read more
- EPSS Score: %0.80
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024