2019 CVE Vulnerabilities

17,621 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-19049HIGH7.5A memory leak in the unittest_data_add() function in drivers/of/unittest.c in the Linux kernel before 5.3.10 allows atta...
CVE-2019-19048HIGH7.5A memory leak in the crypto_reportstat() function in drivers/virt/vboxguest/vboxguest_utils.c in the Linux kernel before...
CVE-2019-19047MEDIUM5.5A memory leak in the mlx5_fw_fatal_reporter_dump() function in drivers/net/ethernet/mellanox/mlx5/core/health.c in the L...
CVE-2019-19046MEDIUM6.5A memory leak in the __ipmi_bmc_register() function in drivers/char/ipmi/ipmi_msghandler.c in the Linux kernel through 5...
CVE-2019-19045MEDIUM4.4A memory leak in the mlx5_fpga_conn_create_cq() function in drivers/net/ethernet/mellanox/mlx5/core/fpga/conn.c in the L...
CVE-2019-19044HIGH7.5Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.1...
CVE-2019-19043MEDIUM5.5A memory leak in the i40e_setup_macvlans() function in drivers/net/ethernet/intel/i40e/i40e_main.c in the Linux kernel t...
CVE-2019-19041HIGH7.2An issue was discovered in Xorux Lpar2RRD 6.11 and Stor2RRD 2.61, as distributed in Xorux 2.41. They do not correctly ve...
CVE-2019-19040MEDIUM6.1KairosDB through 1.2.2 has XSS in view.html because of showErrorMessage in js/graph.js, as demonstrated by view.html?q= ...
CVE-2019-19035MEDIUM5.5jhead 3.03 is affected by: heap-based buffer over-read. The impact is: Denial of service. The component is: ReadJpegSect...
CVE-2019-19022HIGH7.5iTerm2 through 3.3.6 has potentially insufficient documentation about the presence of search history in com.googlecode.i...
CVE-2019-19012CRITICAL9.8An integer overflow in the search_in_range function in regexec.c in Oniguruma 6.x before 6.9.4_rc2 leads to an out-of-bo...
CVE-2019-19011HIGH7.5MiniUPnP ngiflib 0.4 has a NULL pointer dereference in GifIndexToTrueColor in ngiflib.c via a file that lacks a palette.
CVE-2019-19010CRITICAL9.8Eval injection in the Math plugin of Limnoria (before 2019.11.09) and Supybot (through 2018-05-09) allows remote unprivi...
CVE-2019-16762MEDIUM6.1A specially crafted Bitcoin script can cause a discrepancy between the specified SLP consensus rules and the validation ...
CVE-2019-16761MEDIUM6.1A specially crafted Bitcoin script can cause a discrepancy between the specified SLP consensus rules and the validation ...
CVE-2019-6664HIGH7.5On BIG-IP 15.0.0 and 14.1.0-14.1.0.6, under certain conditions, network protections on the management port do not follow...
CVE-2019-6663MEDIUM5.5The BIG-IP 15.0.0-15.0.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.1-11.6.5.1, BIG-IQ 7.0.0, 6.0.0-6.1....
CVE-2019-6662MEDIUM6.5On BIG-IP 13.1.0-13.1.1.4, sensitive information is logged into the local log files and/or remote logging targets when r...
CVE-2019-6661HIGH7.5When the BIG-IP APM 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.4.1, or 11.5.1-11.6.5 system processes ce...
CVE-2019-6660HIGH7.5On BIG-IP 14.1.0-14.1.2, 14.0.0-14.0.1, and 13.1.0-13.1.1, undisclosed HTTP requests may consume excessive amounts of sy...
CVE-2019-6659HIGH7.5On version 14.0.0-14.1.0.1, BIG-IP virtual servers with TLSv1.3 enabled may experience a denial of service due to undisc...
CVE-2019-13582CRITICAL9.8An issue was discovered in Marvell 88W8688 Wi-Fi firmware before version p52, as used on Tesla Model S/X vehicles manufa...
CVE-2019-13581CRITICAL9.8An issue was discovered in Marvell 88W8688 Wi-Fi firmware before version p52, as used on Tesla Model S/X vehicles manufa...
CVE-2019-18372HIGH7.8Symantec Endpoint Protection, prior to 14.2 RU2, may be susceptible to a privilege escalation vulnerability, which is a ...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now