Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2020-03-05 CVE-2019-20382 Memory Leak vulnerability in multiple products
QEMU 4.1.0 has a memory leak in zrle_compress_data in ui/vnc-enc-zrle.c during a VNC disconnect operation because libz is misused, resulting in a situation where memory allocated in deflateInit2 is not freed in deflateEnd.
3.5
2020-03-03 CVE-2020-4197 Insecure Storage of Sensitive Information vulnerability in IBM Tivoli Netcool/Omnibus 8.1.0
IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 allows web pages to be stored locally which can be read by another user on the system.
low complexity
ibm CWE-922
2.4
2020-03-02 CVE-2020-8013 A UNIX Symbolic Link (Symlink) Following vulnerability in chkstat of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15, SUSE Linux Enterprise Server 11 set permissions intended for specific binaries on other binaries because it erroneously followed symlinks.
local
high complexity
suse opensuse
2.5
2020-02-27 CVE-2020-3873 Unspecified vulnerability in Apple Iphone OS
This issue was addressed with improved setting propagation.
local
low complexity
apple
3.3
2020-02-27 CVE-2020-3859 Unspecified vulnerability in Apple Iphone OS
An inconsistent user interface issue was addressed with improved state management.
low complexity
apple
2.4
2020-02-27 CVE-2020-3844 Unspecified vulnerability in Apple Iphone OS
This issue was addressed with improved checks.
local
low complexity
apple
3.3
2020-02-27 CVE-2020-3830 Link Following vulnerability in Apple mac OS X
A validation issue existed in the handling of symlinks.
local
low complexity
apple CWE-59
3.3
2020-02-27 CVE-2020-3828 Unspecified vulnerability in Apple Iphone OS
A lock screen issue allowed access to contacts on a locked device.
low complexity
apple
2.4
2020-02-19 CVE-2015-9543 Information Exposure vulnerability in Openstack Nova
An issue was discovered in OpenStack Nova before 18.2.4, 19.x before 19.1.0, and 20.x before 20.1.0.
local
low complexity
openstack CWE-200
3.3
2020-02-18 CVE-2019-15875 Improper Initialization vulnerability in Freebsd 11.3/12.0/12.1
In FreeBSD 12.1-STABLE before r354734, 12.1-RELEASE before 12.1-RELEASE-p2, 12.0-RELEASE before 12.0-RELEASE-p13, 11.3-STABLE before r354735, and 11.3-RELEASE before 11.3-RELEASE-p6, due to incorrect initialization of a stack data structure, core dump files may contain up to 20 bytes of kernel data previously stored on the stack.
local
low complexity
freebsd CWE-665
3.3