17,305 vulnerabilities published in 2019
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.
Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside o
The Trend Micro Security 2020 consumer family of products contains a vulnerability that could allow a local attacker to
Waitress through version 1.3.1 implemented a "MAY" part of the RFC7230 which states: "Although the line terminator for t
Waitress through version 1.3.1 would parse the Transfer-Encoding header and only look for a single string value, if that
An out-of-bounds read in the vrend_blit_need_swizzle function in vrend_renderer.c in virglrenderer through 0.8.0 allows
In Waitress through version 1.4.0, if a proxy server is used in front of waitress, an invalid request may be sent by an
Inappropriate symlink handling and a race condition in the stateful recovery feature implementation could lead to a pers
A flaw was found in the Linux kernel's handle_rx() function in the [vhost_net] driver. A malicious virtual guest, under
Debian tmpreaper version 1.6.13+nmu1 has a race condition when doing a (bind) mount via rename() which could result in l
In run of InstallPackageTask.java in Android-7.0, Android-7.1.1, Android-7.1.2, Android-8.0, Android-8.1 and Android-9,
The LHA.sys driver before 1.1.1811.2101 in LG Device Manager exposes functionality that allows low-privileged users to r
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '
An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations, aka 'Windows
A buffer overflow in the kernel driver CybKernelTracker.sys in CyberArk Endpoint Privilege Manager versions prior to 10.
An issue was discovered in CapMon Access Manager 5.4.1.1005. CALRunElevated.exe attempts to enforce access control by ad
An issue was discovered in SecurEnvoy SecurAccess 9.3.502. When put in Debug mode and used for RDP connections, the appl
An exploitable vulnerability exists in the verified boot protection of the Das U-Boot from version 2013.07-rc1 to 2014.0
An incorrect permission check in the admin backend in gvfs before version 1.39.4 was found that allows reading and modif
NVIDIA GeForce Experience before 3.18 contains a vulnerability when ShadowPlay or GameStream is enabled. When an attacke
A race condition was addressed with additional validation. This issue affected versions prior to iOS 11.2, macOS High Si
In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using t
LXD before version 0.19-0ubuntu5 doUidshiftIntoContainer() has an unsafe Chmod() call that races against the stat in the
The Siemens R3964 line discipline driver in drivers/tty/n_r3964.c in the Linux kernel before 5.0.8 has multiple race con
A local attacker can create a hard-link between a file to which the Check Point Endpoint Security client for Windows bef
The coredump implementation in the Linux kernel before 5.0.10 does not use locking or other mechanisms to prevent vma la
Zoho ManageEngine ADManager Plus 6.6 Build 6657 allows local users to gain privileges (after a reboot) by placing a Troj
The groonga-httpd package 6.1.5-1 for Debian sets the /var/log/groonga ownership to the groonga account, which might let
An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read access to /proc/
A Local Disclosure of Sensitive Information vulnerability was identified in HPE NonStop Safeguard earlier than version S
An elevation of privilege vulnerability exists in the Network Driver Interface Specification (NDIS) when ndis.sys fails
An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations, aka 'Windows
It was discovered freeradius up to and including version 3.0.19 does not correctly configure logrotate, allowing a local
An integer underflow issue exists in ntfs-3g 2017.3.23. A local attacker could potentially exploit this by running /bin/
A remote buffer overflow vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen
There is a race condition vulnerability on Huawei Honor V10 smartphones versions earlier than Berkeley-AL20 9.0.0.156(C0
In callGenIDChangeListeners and related functions of SkPixelRef.cpp, there is a possible use after free due to a race co
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory. An attacker who succes
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An at
Metadata verification and partial hash system calls by bootloader may corrupt parallel hashing state in progress resulti
A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set
A double-free can happen in idr_remove_all() in lib/idr.c in the Linux kernel 2.6 branch. An unprivileged local attacker
arch/powerpc/mm/mmu_context_book3s64.c in the Linux kernel before 5.1.15 for powerpc has a bug where unrelated processes
deepin-clone before 1.1.3 uses a predictable path /tmp/.deepin-clone/mount/<block-dev-basename> in the Helper::temporary
In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for access to an LDT entry becau
Scan for 2019 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started