Vulnerabilities > Opensuse > Leap

DATE CVE VULNERABILITY TITLE RISK
2020-09-18 CVE-2020-8201 HTTP Request Smuggling vulnerability in multiple products
Node.js < 12.18.4 and < 14.11 can be exploited to perform HTTP desync attacks and deliver malicious payloads to unsuspecting users.
network
high complexity
nodejs opensuse fedoraproject CWE-444
7.4
2020-09-17 CVE-2020-0432 Integer Overflow or Wraparound vulnerability in multiple products
In skb_to_mamac of networking.c, there is a possible out of bounds write due to an integer overflow.
local
low complexity
google opensuse CWE-190
7.8
2020-09-17 CVE-2020-0431 Out-of-bounds Write vulnerability in multiple products
In kbd_keycode of keyboard.c, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google opensuse CWE-787
6.7
2020-09-17 CVE-2020-0427 Use After Free vulnerability in multiple products
In create_pinctrl of core.c, there is a possible out of bounds read due to a use after free.
5.5
2020-09-17 CVE-2019-20919 NULL Pointer Dereference vulnerability in multiple products
An issue was discovered in the DBI module before 1.643 for Perl.
4.7
2020-09-16 CVE-2020-25040 Exposure of Resource to Wrong Sphere vulnerability in multiple products
Sylabs Singularity through 3.6.2 has Insecure Permissions on temporary directories used in explicit and implicit container build operations, a different vulnerability than CVE-2020-25039.
network
low complexity
sylabs opensuse CWE-668
8.8
2020-09-16 CVE-2020-25039 Exposure of Resource to Wrong Sphere vulnerability in multiple products
Sylabs Singularity 3.2.0 through 3.6.2 has Insecure Permissions on temporary directories used in fakeroot or user namespace container execution.
network
low complexity
sylabs opensuse CWE-668
8.1
2020-09-16 CVE-2020-14393 Out-of-bounds Write vulnerability in multiple products
A buffer overflow was found in perl-DBI < 1.643 in DBI.xs.
local
low complexity
perl opensuse debian fedoraproject CWE-787
7.1
2020-09-16 CVE-2020-14392 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
An untrusted pointer dereference flaw was found in Perl-DBI < 1.643.
5.5
2020-09-16 CVE-2020-14386 Out-of-bounds Write vulnerability in multiple products
A flaw was found in the Linux kernel before 5.9-rc4.
local
low complexity
linux debian fedoraproject opensuse CWE-787
7.8