mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
- Synchronized data.
This commit is contained in:
parent
f8e1110670
commit
f693b751c0
72
2019/6xxx/CVE-2019-6442.json
Normal file
72
2019/6xxx/CVE-2019-6442.json
Normal file
@ -0,0 +1,72 @@
|
||||
{
|
||||
"CVE_data_meta" : {
|
||||
"ASSIGNER" : "cve@mitre.org",
|
||||
"ID" : "CVE-2019-6442",
|
||||
"STATE" : "PUBLIC"
|
||||
},
|
||||
"affects" : {
|
||||
"vendor" : {
|
||||
"vendor_data" : [
|
||||
{
|
||||
"product" : {
|
||||
"product_data" : [
|
||||
{
|
||||
"product_name" : "n/a",
|
||||
"version" : {
|
||||
"version_data" : [
|
||||
{
|
||||
"version_value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
||||
]
|
||||
},
|
||||
"vendor_name" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
},
|
||||
"data_format" : "MITRE",
|
||||
"data_type" : "CVE",
|
||||
"data_version" : "4.0",
|
||||
"description" : {
|
||||
"description_data" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "An issue was discovered in NTPsec before 1.1.3. An authenticated attacker can write one byte out of bounds in ntpd via a malformed config request, related to config_remotely in ntp_config.c, yyparse in ntp_parser.tab.c, and yyerror in ntp_parser.y."
|
||||
}
|
||||
]
|
||||
},
|
||||
"problemtype" : {
|
||||
"problemtype_data" : [
|
||||
{
|
||||
"description" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
},
|
||||
"references" : {
|
||||
"reference_data" : [
|
||||
{
|
||||
"name" : "https://dumpco.re/blog/ntpsec-bugs",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://dumpco.re/blog/ntpsec-bugs"
|
||||
},
|
||||
{
|
||||
"name" : "https://dumpco.re/bugs/ntpsec-authed-oobwrite",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://dumpco.re/bugs/ntpsec-authed-oobwrite"
|
||||
},
|
||||
{
|
||||
"name" : "https://github.com/ntpsec/ntpsec/blob/NTPsec_1_1_3/NEWS",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://github.com/ntpsec/ntpsec/blob/NTPsec_1_1_3/NEWS"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
72
2019/6xxx/CVE-2019-6443.json
Normal file
72
2019/6xxx/CVE-2019-6443.json
Normal file
@ -0,0 +1,72 @@
|
||||
{
|
||||
"CVE_data_meta" : {
|
||||
"ASSIGNER" : "cve@mitre.org",
|
||||
"ID" : "CVE-2019-6443",
|
||||
"STATE" : "PUBLIC"
|
||||
},
|
||||
"affects" : {
|
||||
"vendor" : {
|
||||
"vendor_data" : [
|
||||
{
|
||||
"product" : {
|
||||
"product_data" : [
|
||||
{
|
||||
"product_name" : "n/a",
|
||||
"version" : {
|
||||
"version_data" : [
|
||||
{
|
||||
"version_value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
||||
]
|
||||
},
|
||||
"vendor_name" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
},
|
||||
"data_format" : "MITRE",
|
||||
"data_type" : "CVE",
|
||||
"data_version" : "4.0",
|
||||
"description" : {
|
||||
"description_data" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "An issue was discovered in NTPsec before 1.1.3. Because of a bug in ctl_getitem, there is a stack-based buffer over-read in read_sysvars in ntp_control.c in ntpd."
|
||||
}
|
||||
]
|
||||
},
|
||||
"problemtype" : {
|
||||
"problemtype_data" : [
|
||||
{
|
||||
"description" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
},
|
||||
"references" : {
|
||||
"reference_data" : [
|
||||
{
|
||||
"name" : "https://dumpco.re/blog/ntpsec-bugs",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://dumpco.re/blog/ntpsec-bugs"
|
||||
},
|
||||
{
|
||||
"name" : "https://dumpco.re/bugs/ntpsec-oobread1",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://dumpco.re/bugs/ntpsec-oobread1"
|
||||
},
|
||||
{
|
||||
"name" : "https://github.com/ntpsec/ntpsec/blob/NTPsec_1_1_3/NEWS",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://github.com/ntpsec/ntpsec/blob/NTPsec_1_1_3/NEWS"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
72
2019/6xxx/CVE-2019-6444.json
Normal file
72
2019/6xxx/CVE-2019-6444.json
Normal file
@ -0,0 +1,72 @@
|
||||
{
|
||||
"CVE_data_meta" : {
|
||||
"ASSIGNER" : "cve@mitre.org",
|
||||
"ID" : "CVE-2019-6444",
|
||||
"STATE" : "PUBLIC"
|
||||
},
|
||||
"affects" : {
|
||||
"vendor" : {
|
||||
"vendor_data" : [
|
||||
{
|
||||
"product" : {
|
||||
"product_data" : [
|
||||
{
|
||||
"product_name" : "n/a",
|
||||
"version" : {
|
||||
"version_data" : [
|
||||
{
|
||||
"version_value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
||||
]
|
||||
},
|
||||
"vendor_name" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
},
|
||||
"data_format" : "MITRE",
|
||||
"data_type" : "CVE",
|
||||
"data_version" : "4.0",
|
||||
"description" : {
|
||||
"description_data" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "An issue was discovered in NTPsec before 1.1.3. process_control() in ntp_control.c has a stack-based buffer over-read because attacker-controlled data is dereferenced by ntohl() in ntpd."
|
||||
}
|
||||
]
|
||||
},
|
||||
"problemtype" : {
|
||||
"problemtype_data" : [
|
||||
{
|
||||
"description" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
},
|
||||
"references" : {
|
||||
"reference_data" : [
|
||||
{
|
||||
"name" : "https://dumpco.re/blog/ntpsec-bugs",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://dumpco.re/blog/ntpsec-bugs"
|
||||
},
|
||||
{
|
||||
"name" : "https://dumpco.re/bugs/ntpsec-oobread2",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://dumpco.re/bugs/ntpsec-oobread2"
|
||||
},
|
||||
{
|
||||
"name" : "https://github.com/ntpsec/ntpsec/blob/NTPsec_1_1_3/NEWS",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://github.com/ntpsec/ntpsec/blob/NTPsec_1_1_3/NEWS"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
72
2019/6xxx/CVE-2019-6445.json
Normal file
72
2019/6xxx/CVE-2019-6445.json
Normal file
@ -0,0 +1,72 @@
|
||||
{
|
||||
"CVE_data_meta" : {
|
||||
"ASSIGNER" : "cve@mitre.org",
|
||||
"ID" : "CVE-2019-6445",
|
||||
"STATE" : "PUBLIC"
|
||||
},
|
||||
"affects" : {
|
||||
"vendor" : {
|
||||
"vendor_data" : [
|
||||
{
|
||||
"product" : {
|
||||
"product_data" : [
|
||||
{
|
||||
"product_name" : "n/a",
|
||||
"version" : {
|
||||
"version_data" : [
|
||||
{
|
||||
"version_value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
||||
]
|
||||
},
|
||||
"vendor_name" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
},
|
||||
"data_format" : "MITRE",
|
||||
"data_type" : "CVE",
|
||||
"data_version" : "4.0",
|
||||
"description" : {
|
||||
"description_data" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "An issue was discovered in NTPsec before 1.1.3. An authenticated attacker can cause a NULL pointer dereference and ntpd crash in ntp_control.c, related to ctl_getitem."
|
||||
}
|
||||
]
|
||||
},
|
||||
"problemtype" : {
|
||||
"problemtype_data" : [
|
||||
{
|
||||
"description" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
},
|
||||
"references" : {
|
||||
"reference_data" : [
|
||||
{
|
||||
"name" : "https://dumpco.re/blog/ntpsec-bugs",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://dumpco.re/blog/ntpsec-bugs"
|
||||
},
|
||||
{
|
||||
"name" : "https://dumpco.re/bugs/ntpsec-authed-npe",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://dumpco.re/bugs/ntpsec-authed-npe"
|
||||
},
|
||||
{
|
||||
"name" : "https://github.com/ntpsec/ntpsec/blob/NTPsec_1_1_3/NEWS",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://github.com/ntpsec/ntpsec/blob/NTPsec_1_1_3/NEWS"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
62
2019/6xxx/CVE-2019-6446.json
Normal file
62
2019/6xxx/CVE-2019-6446.json
Normal file
@ -0,0 +1,62 @@
|
||||
{
|
||||
"CVE_data_meta" : {
|
||||
"ASSIGNER" : "cve@mitre.org",
|
||||
"ID" : "CVE-2019-6446",
|
||||
"STATE" : "PUBLIC"
|
||||
},
|
||||
"affects" : {
|
||||
"vendor" : {
|
||||
"vendor_data" : [
|
||||
{
|
||||
"product" : {
|
||||
"product_data" : [
|
||||
{
|
||||
"product_name" : "n/a",
|
||||
"version" : {
|
||||
"version_data" : [
|
||||
{
|
||||
"version_value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
||||
]
|
||||
},
|
||||
"vendor_name" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
},
|
||||
"data_format" : "MITRE",
|
||||
"data_type" : "CVE",
|
||||
"data_version" : "4.0",
|
||||
"description" : {
|
||||
"description_data" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "An issue was discovered in NumPy 1.16.0 and earlier. It uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object, as demonstrated by a numpy.load call."
|
||||
}
|
||||
]
|
||||
},
|
||||
"problemtype" : {
|
||||
"problemtype_data" : [
|
||||
{
|
||||
"description" : [
|
||||
{
|
||||
"lang" : "eng",
|
||||
"value" : "n/a"
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
},
|
||||
"references" : {
|
||||
"reference_data" : [
|
||||
{
|
||||
"name" : "https://github.com/numpy/numpy/issues/12759",
|
||||
"refsource" : "MISC",
|
||||
"url" : "https://github.com/numpy/numpy/issues/12759"
|
||||
}
|
||||
]
|
||||
}
|
||||
}
|
Loading…
x
Reference in New Issue
Block a user