Search Results (360230 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-32280 2 Debian, Xfig Project 2 Debian Linux, Fig2dev 2024-11-21 5.5 Medium
An issue was discovered in fig2dev before 3.2.8.. A NULL pointer dereference exists in the function compute_closed_spline() located in trans_spline.c. It allows an attacker to cause Denial of Service. The fixed version of fig2dev is 3.2.8.
CVE-2021-32278 2 Debian, Faad2 Project 2 Debian Linux, Faad2 2024-11-21 7.8 High
An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function lt_prediction located in lt_predict.c. It allows an attacker to cause code Execution.
CVE-2021-32277 2 Debian, Faad2 Project 2 Debian Linux, Faad2 2024-11-21 7.8 High
An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_analysis_32 located in sbr_qmf.c. It allows an attacker to cause code Execution.
CVE-2021-32276 2 Debian, Faad2 Project 2 Debian Linux, Faad2 2024-11-21 5.5 Medium
An issue was discovered in faad2 through 2.10.0. A NULL pointer dereference exists in the function get_sample() located in output.c. It allows an attacker to cause Denial of Service.
CVE-2021-32275 1 Grame 1 Faust 2024-11-21 5.5 Medium
An issue was discovered in faust through v2.30.5. A NULL pointer dereference exists in the function CosPrim::computeSigOutput() located in cosprim.hh. It allows an attacker to cause Denial of Service.
CVE-2021-32274 2 Debian, Faad2 Project 2 Debian Linux, Faad2 2024-11-21 7.8 High
An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_synthesis_64 located in sbr_qmf.c. It allows an attacker to cause code Execution.
CVE-2021-32273 2 Debian, Faad2 Project 2 Debian Linux, Faad2 2024-11-21 7.8 High
An issue was discovered in faad2 through 2.10.0. A stack-buffer-overflow exists in the function ftypin located in mp4read.c. It allows an attacker to cause Code Execution.
CVE-2021-32272 2 Debian, Faad2 Project 2 Debian Linux, Faad2 2024-11-21 7.8 High
An issue was discovered in faad2 before 2.10.0. A heap-buffer-overflow exists in the function stszin located in mp4read.c. It allows an attacker to cause Code Execution.
CVE-2021-32271 1 Gpac 1 Gpac 2024-11-21 7.8 High
An issue was discovered in gpac through 20200801. A stack-buffer-overflow exists in the function DumpRawUIConfig located in odf_dump.c. It allows an attacker to cause code Execution.
CVE-2021-32270 1 Gpac 1 Gpac 2024-11-21 5.5 Medium
An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function vwid_box_del located in box_code_base.c. It allows an attacker to cause Denial of Service.
CVE-2021-32269 1 Gpac 1 Gpac 2024-11-21 5.5 Medium
An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function ilst_item_box_dump located in box_dump.c. It allows an attacker to cause Denial of Service.
CVE-2021-32268 1 Gpac 1 Gpac 2024-11-21 7.8 High
Buffer overflow vulnerability in function gf_fprintf in os_file.c in gpac before 1.0.1 allows attackers to execute arbitrary code. The fixed version is 1.0.1.
CVE-2021-32265 1 Axiosys 1 Bento4 2024-11-21 8.8 High
An issue was discovered in Bento4 through v1.6.0-637. A global-buffer-overflow exists in the function AP4_MemoryByteStream::WritePartial() located in Ap4ByteStream.cpp. It allows an attacker to cause code execution or information disclosure.
CVE-2021-32263 1 Ok-file-formats Project 1 Ok-file-formats 2024-11-21 7.8 High
ok-file-formats through 2021-04-29 has a heap-based buffer overflow in the ok_csv_circular_buffer_read function in ok_csv.c.
CVE-2021-32256 1 Gnu 1 Binutils 2024-11-21 6.5 Medium
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.36. It is a stack-overflow issue in demangle_type in rust-demangle.c.
CVE-2021-32245 1 Pagekit 1 Pagekit 2024-11-21 5.4 Medium
In PageKit v1.0.18, a user can upload SVG files in the file upload portion of the CMS. These SVG files can contain malicious scripts. This file will be uploaded to the system and it will not be stripped or filtered. The user can create a link on the website pointing to "/storage/exp.svg" that will point to http://localhost/pagekit/storage/exp.svg. When a user comes along to click that link, it will trigger a XSS attack.
CVE-2021-32244 1 Moodle 1 Moodle 2024-11-21 5.4 Medium
Cross Site Scripting (XSS) in Moodle 3.10.3 allows remote attackers to execute arbitrary web script or HTML via the "Description" field.
CVE-2021-32243 1 Fogproject 1 Fogproject 2024-11-21 8.8 High
FOGProject v1.5.9 is affected by a File Upload RCE (Authenticated).
CVE-2021-32238 1 Psyonix 1 Rocket League 2024-11-21 7.8 High
Epic Games / Psyonix Rocket League <=1.95 is affected by Buffer Overflow. Stack-based buffer overflow occurs when Rocket League handles UPK object files that can result in code execution and denial of service scenario.
CVE-2021-32234 1 Smartertools 1 Smartermail 2024-11-21 9.8 Critical
SmarterTools SmarterMail 16.x through 100.x before 100.0.7803 allows remote code execution.