2019 CVE Vulnerabilities
17,620 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-5650 | — | — | — | Feb 7, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2019-18988 | HIGH | 7 | 4.7% | Feb 7, 2020 | TeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the same key is used for dif... |
| CVE-2019-16155 | HIGH | 7.1 | 0.4% | Feb 7, 2020 | A privilege escalation vulnerability in FortiClient for Linux 6.2.1 and below may allow a user with low privilege to ove... |
| CVE-2019-15606 | CRITICAL | 9.8 | 20.0% | Feb 7, 2020 | Including trailing white space in HTTP header values in Nodejs 10, 12, and 13 causes bypass of authorization based on he... |
| CVE-2019-15605 | CRITICAL | 9.8 | 57.1% | Feb 7, 2020 | HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payload delivery when transfer-encoding is malformed |
| CVE-2019-15604 | HIGH | 7.5 | 20.5% | Feb 7, 2020 | Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certi... |
| CVE-2019-17268 | CRITICAL | 9.8 | 2.4% | Feb 7, 2020 | The omniauth-weibo-oauth2 gem 0.4.6 for Ruby, as distributed on RubyGems.org, included a code-execution backdoor inserte... |
| CVE-2019-14088 | HIGH | 7.8 | 0.3% | Feb 7, 2020 | Possible use after free issue while CRM is accessing the link pointer from device private data due to lack of resource p... |
| CVE-2019-14063 | CRITICAL | 9.1 | 0.9% | Feb 7, 2020 | Out of bound access due to Invalid inputs to dapm mux settings which results into kernel failure in Snapdragon Auto, Sna... |
| CVE-2019-14060 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Uninitialized stack data gets used If memory is not allocated for blob or if the allocated blob is less than the struct ... |
| CVE-2019-14057 | CRITICAL | 9.1 | 0.9% | Feb 7, 2020 | Buffer Over read of codec private data while parsing an mkv file due to lack of check of buffer size before read in Snap... |
| CVE-2019-14055 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Possibility of use-after-free and double free because of not marking buffer as NULL after freeing can lead to dangling p... |
| CVE-2019-14051 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Subsequent additions performed during Module loading while allocating the memory would lead to integer overflow and then... |
| CVE-2019-14049 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Stage-2 fault will occur while writing to an ION system allocation which has been assigned to non-HLOS memory which is n... |
| CVE-2019-14046 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Out of bound access while allocating memory for an array in camera due to improper validation of elements parameters in ... |
| CVE-2019-14044 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | Out of bound access due to access of uninitialized memory segment in an array of pointers while normal camera open close... |
| CVE-2019-14041 | HIGH | 7.8 | 0.4% | Feb 7, 2020 | During listener modified response processing, a buffer overrun occurs due to lack of buffer size verification when updat... |
| CVE-2019-14040 | HIGH | 7.8 | 0.5% | Feb 7, 2020 | Using memory after being freed in qsee due to wrong implementation can lead to unexpected behavior such as execution of ... |
| CVE-2019-14002 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | APKs without proper permission may bind to CallEnhancementService and can lead to unauthorized access to call status in ... |
| CVE-2019-10590 | CRITICAL | 9.8 | 0.9% | Feb 7, 2020 | Out of bound access while parsing dts atom, which is non-standard as it does not have valid number of tracks in Snapdrag... |
| CVE-2019-10567 | HIGH | 7.8 | 0.2% | Feb 7, 2020 | There is a way to deceive the GPU kernel driver into thinking there is room in the GPU ringbuffer and overwriting existi... |
| CVE-2019-6479 | — | — | — | Feb 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
| CVE-2019-6478 | — | — | — | Feb 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
| CVE-2019-17589 | — | — | — | Feb 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
| CVE-2019-17588 | — | — | — | Feb 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now