2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-8503 | HIGH | 8.8 | 1.8% | Dec 18, 2019 | A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12... |
| CVE-2019-7287 | HIGH | 7.8 | 4.6% | Dec 18, 2019 | A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.1.4. An applicatio... |
| CVE-2019-7286 | HIGH | 7.8 | 15.7% | Dec 18, 2019 | A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.1.4, macOS Mojave ... |
| CVE-2019-7285 | HIGH | 8.8 | 2.0% | Dec 18, 2019 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.2, tvOS 12.2, Safari... |
| CVE-2019-6239 | HIGH | 7.8 | 0.3% | Dec 18, 2019 | This issue was addressed with improved handling of file metadata. This issue is fixed in macOS Mojave 10.14.4. A malicio... |
| CVE-2019-6237 | HIGH | 8.8 | 1.8% | Dec 18, 2019 | Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS M... |
| CVE-2019-6236 | HIGH | 7.5 | 1.2% | Dec 18, 2019 | A race condition existed during the installation of iCloud for Windows. This was addressed with improved state handling.... |
| CVE-2019-6232 | HIGH | 7.5 | 1.2% | Dec 18, 2019 | A race condition existed during the installation of iTunes for Windows. This was addressed with improved state handling.... |
| CVE-2019-6201 | HIGH | 8.8 | 2.0% | Dec 18, 2019 | Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12... |
| CVE-2019-19832 | HIGH | 8.8 | 0.7% | Dec 18, 2019 | Xerox AltaLink C8035 printers allow CSRF. A request to add users is made in the Device User Database form field to the x... |
| CVE-2019-4609 | HIGH | 7.5 | 0.8% | Dec 18, 2019 | IBM API Connect 2018.4.1.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt hi... |
| CVE-2019-19882 | HIGH | 7.8 | 0.5% | Dec 18, 2019 | shadow 4.8, in certain circumstances affecting at least Gentoo, Arch Linux, and Void Linux, allows local users to obtain... |
| CVE-2019-5152 | HIGH | 7.4 | 1.4% | Dec 18, 2019 | An exploitable information disclosure vulnerability exists in the network packet handling functionality of Shadowsocks-l... |
| CVE-2019-19235 | HIGH | 7 | 0.4% | Dec 18, 2019 | AsLdrSrv.exe in ASUS ATK Package before V1.0.0061 (for Windows 10 notebook PCs) could lead to unsigned code execution wi... |
| CVE-2019-2304 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Integer overflow to buffer overflow due to lack of validation of event arguments received from firmware. in Snapdragon A... |
| CVE-2019-2274 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Improper Access Control for RPU write access from secure processor in Snapdragon Auto, Snapdragon Compute, Snapdragon Co... |
| CVE-2019-19880 | HIGH | 7.5 | 6.9% | Dec 18, 2019 | exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because const... |
| CVE-2019-10607 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Out of bounds memcpy can occur by providing the embedded NULL character string and length greater than the actual string... |
| CVE-2019-10605 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Buffer overwrite can occur in IEEE80211 header filling function due to lack of range check of array index received from ... |
| CVE-2019-10601 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Out of bound access can occur while processing firmware event due to lack of validation of WMI message received from fir... |
| CVE-2019-10600 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Use of local variable as argument to netlink CB callback goes out of it scope when callback triggered lead to invalid st... |
| CVE-2019-10598 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Out of bound access can occur while processing peer info in IBSS connection mode due to lack of upper bounds check to en... |
| CVE-2019-10595 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Possible buffer overwrite in message handler due to lack of validation of tid value calculated from packets received fro... |
| CVE-2019-10584 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Possibility of out of bound access in debug queue, if packet size field is corrupted in Snapdragon Auto, Snapdragon Comp... |
| CVE-2019-10564 | HIGH | 7.8 | 0.2% | Dec 18, 2019 | Possible OOB issue in EEPROM due to lack of check while accessing memory map array at the time of reading operation in S... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now