Vulnerabilities > Canonical > Ubuntu Linux > 19.10
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-01-15 | CVE-2020-2574 | Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). | 5.9 |
2020-01-15 | CVE-2020-2573 | Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). | 5.9 |
2020-01-15 | CVE-2020-2572 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Audit Plugin). | 2.7 |
2020-01-15 | CVE-2020-2570 | Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). | 5.9 |
2020-01-13 | CVE-2020-5390 | Improper Verification of Cryptographic Signature vulnerability in multiple products PySAML2 before 5.0.0 does not check that the signature in a SAML document is enveloped and thus signature wrapping is effective, i.e., it is affected by XML Signature Wrapping (XSW). | 7.5 |
2020-01-08 | CVE-2019-17025 | Out-of-bounds Write vulnerability in multiple products Mozilla developers reported memory safety bugs present in Firefox 71. | 8.8 |
2020-01-08 | CVE-2019-17024 | Out-of-bounds Write vulnerability in multiple products Mozilla developers reported memory safety bugs present in Firefox 71 and Firefox ESR 68.3. | 8.8 |
2020-01-08 | CVE-2019-17023 | Improper Authentication vulnerability in multiple products After a HelloRetryRequest has been sent, the client may negotiate a lower protocol that TLS 1.3, resulting in an invalid state transition in the TLS State Machine. | 6.5 |
2020-01-08 | CVE-2019-17022 | Cross-site Scripting vulnerability in multiple products When pasting a <style> tag from the clipboard into a rich text editor, the CSS sanitizer does not escape < and > characters. | 6.1 |
2020-01-08 | CVE-2019-17020 | XXE vulnerability in multiple products If an XML file is served with a Content Security Policy and the XML file includes an XSL stylesheet, the Content Security Policy will not be applied to the contents of the XSL stylesheet. | 6.5 |