Vulnerabilities > 7PK - Errors

DATE CVE VULNERABILITY TITLE RISK
2019-07-25 CVE-2019-2240 7PK - Errors vulnerability in Qualcomm products
While sending the rendered surface content to the screen, Error handling is not properly checked results in an unpredictable behaviour in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ8064, IPQ8074, MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9531, QCA9880, QCA9886, QCA9980, QCN5502, QCS404, QCS605, SD 210/SD 212/SD 205, SD 425, SD 600, SD 625, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM630, SDM660, SDX20, SDX24, SXR1130
local
low complexity
qualcomm CWE-388
2.1
2019-07-25 CVE-2019-2237 7PK - Errors vulnerability in Qualcomm products
Failure in taking appropriate action to handle the error case If keypad gpio deactivation fails leads to silent failure scenario and subsequent logic gets executed everytime in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9206, MDM9607, MDM9650, MDM9655, QCS605, SD 210/SD 212/SD 205, SD 410/12, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 8CX, SXR1130
local
low complexity
qualcomm CWE-388
2.1
2019-07-18 CVE-2019-7846 7PK - Errors vulnerability in Adobe Campaign 18.10.5.8984
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Improper error handling vulnerability.
network
low complexity
adobe CWE-388
5.0
2019-06-29 CVE-2019-13046 7PK - Errors vulnerability in Toaruos Project Toaruos
linker/linker.c in ToaruOS through 1.10.9 has insecure LD_LIBRARY_PATH handling in setuid applications.
local
low complexity
toaruos-project CWE-388
7.8
2019-05-28 CVE-2019-12380 7PK - Errors vulnerability in Linux Kernel
**DISPUTED** An issue was discovered in the efi subsystem in the Linux kernel through 5.1.5.
local
low complexity
linux CWE-388
5.5
2019-03-28 CVE-2019-1750 7PK - Errors vulnerability in Cisco IOS XE
A vulnerability in the Easy Virtual Switching System (VSS) of Cisco IOS XE Software on Catalyst 4500 Series Switches could allow an unauthenticated, adjacent attacker to cause the switches to reload.
low complexity
cisco CWE-388
6.1
2019-01-16 CVE-2016-9778 7PK - Errors vulnerability in multiple products
An error in handling certain queries can cause an assertion failure when a server is using the nxdomain-redirect feature to cover a zone for which it is also providing authoritative service.
network
isc netapp CWE-388
4.3
2018-12-31 CVE-2018-6346 7PK - Errors vulnerability in Proxygen Project Proxygen
A potential denial-of-service issue in the Proxygen handling of invalid HTTP2 priority settings (specifically a circular dependency).
network
low complexity
proxygen-project CWE-388
5.0
2018-12-05 CVE-2018-1002105 7PK - Errors vulnerability in multiple products
In all Kubernetes versions prior to v1.10.11, v1.11.5, and v1.12.3, incorrect handling of error responses to proxied upgrade requests in the kube-apiserver allowed specially crafted requests to establish a connection through the Kubernetes API server to backend servers, then send arbitrary requests over the same connection directly to the backend, authenticated with the Kubernetes API server's TLS credentials used to establish the backend connection.
network
low complexity
kubernetes redhat netapp CWE-388
critical
9.8
2018-08-15 CVE-2018-0415 7PK - Errors vulnerability in Cisco products
A vulnerability in the implementation of Extensible Authentication Protocol over LAN (EAPOL) functionality in Cisco Small Business 100 Series Wireless Access Points and Cisco Small Business 300 Series Wireless Access Points could allow an authenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.
low complexity
cisco CWE-388
5.5