Vulnerabilities > GNU > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-05-17 CVE-2020-21835 NULL Pointer Dereference vulnerability in GNU Libredwg 0.10
A null pointer deference issue exists in GNU LibreDWG 0.10 via read_2004_compressed_section ../../src/decode.c:2337.
network
low complexity
gnu CWE-476
6.5
2021-05-17 CVE-2020-21839 Memory Leak vulnerability in GNU Libredwg 0.10
An issue was discovered in GNU LibreDWG 0.10.
network
low complexity
gnu CWE-401
6.5
2021-05-17 CVE-2020-21815 NULL Pointer Dereference vulnerability in GNU Libredwg 0.10.2641
A null pointer deference issue exists in GNU LibreDWG 0.10.2641 via output_TEXT ../../programs/dwg2SVG.c:114, which causes a denial of service (application crash).
network
low complexity
gnu CWE-476
6.5
2021-05-17 CVE-2020-21817 NULL Pointer Dereference vulnerability in GNU Libredwg 0.10.2641
A null pointer dereference issue exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:29.
network
low complexity
gnu CWE-476
6.5
2021-04-29 CVE-2021-31879 Open Redirect vulnerability in multiple products
GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to CVE-2018-1000007.
network
low complexity
gnu broadcom netapp CWE-601
6.1
2021-04-26 CVE-2021-27851 Link Following vulnerability in GNU Guix
A security vulnerability that can lead to local privilege escalation has been found in ’guix-daemon’.
local
low complexity
gnu CWE-59
5.5
2021-03-26 CVE-2021-20284 A flaw was found in GNU Binutils 2.35.1, where there is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c due to the number of symbols not calculated correctly.
local
low complexity
gnu netapp
5.5
2021-03-26 CVE-2021-20197 There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar, objcopy, strip, ranlib.
local
high complexity
gnu redhat netapp broadcom
6.3
2021-03-22 CVE-2021-28968 Cross-site Scripting vulnerability in GNU Punbb
An issue was discovered in PunBB before 1.4.6.
network
low complexity
gnu CWE-79
5.4
2021-03-15 CVE-2021-3418 Unspecified vulnerability in GNU Grub2
If certificates that signed grub are installed into db, grub can be booted directly.
local
high complexity
gnu
6.4