Vulnerabilities > Fedoraproject > Fedora
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-02-10 | CVE-2020-13577 | NULL Pointer Dereference vulnerability in multiple products A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. | 7.5 |
2021-02-10 | CVE-2020-13576 | Integer Overflow or Wraparound vulnerability in multiple products A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. | 9.8 |
2021-02-10 | CVE-2020-13574 | NULL Pointer Dereference vulnerability in multiple products A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. | 7.5 |
2021-02-10 | CVE-2021-0326 | Out-of-bounds Write vulnerability in multiple products In p2p_copy_client_info of p2p.c, there is a possible out of bounds write due to a missing bounds check. | 7.5 |
2021-02-10 | CVE-2021-27135 | xterm before Patch #366 allows remote attackers to execute arbitrary code or cause a denial of service (segmentation fault) via a crafted UTF-8 combining character sequence. | 9.8 |
2021-02-09 | CVE-2021-26937 | Argument Injection or Modification vulnerability in multiple products encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence. | 9.8 |
2021-02-09 | CVE-2021-21148 | Out-of-bounds Write vulnerability in multiple products Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.150 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | 8.8 |
2021-02-09 | CVE-2021-21147 | Inappropriate implementation in Skia in Google Chrome prior to 88.0.4324.146 allowed a local attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. | 4.3 |
2021-02-09 | CVE-2021-21146 | Use After Free vulnerability in multiple products Use after free in Navigation in Google Chrome prior to 88.0.4324.146 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. | 9.6 |
2021-02-09 | CVE-2021-21145 | Use After Free vulnerability in multiple products Use after free in Fonts in Google Chrome prior to 88.0.4324.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | 8.8 |