Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In January 2021
A flaw was discovered in OpenLDAP before 2.4.57 leading to an infinite loop in slapd with the cancel_extop Cancel operation, resulting in denial of service.
CVSS Score
7.5
EPSS Score
0.603
Published
2021-01-26
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Certificate List Exact Assertion processing, resulting in denial of service.
CVSS Score
7.5
EPSS Score
0.662
Published
2021-01-26
A flaw was discovered in ldap_X509dn2bv in OpenLDAP before 2.4.57 leading to a slapd crash in the X.509 DN parsing in ad_keystring, resulting in denial of service.
CVSS Score
7.5
EPSS Score
0.02
Published
2021-01-26
A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service.
CVSS Score
7.5
EPSS Score
0.008
Published
2021-01-26
An issue was discovered in the autorand crate before 0.2.3 for Rust. Because of impl Random on arrays, uninitialized memory can be dropped when a panic occurs, leading to memory corruption.
CVSS Score
7.8
EPSS Score
0.001
Published
2021-01-26
An issue was discovered in the gfwx crate before 0.3.0 for Rust. Because ImageChunkMut does not have bounds on its Send trait or Sync trait, a data race and memory corruption can occur.
CVSS Score
7.0
EPSS Score
0.001
Published
2021-01-26
An issue was discovered in the abi_stable crate before 0.9.1 for Rust. DrainFilter lacks soundness because of a double drop.
CVSS Score
7.5
EPSS Score
0.004
Published
2021-01-26
An issue was discovered in the abi_stable crate before 0.9.1 for Rust. A retain call can create an invalid UTF-8 string, violating soundness.
CVSS Score
7.5
EPSS Score
0.004
Published
2021-01-26
An issue was discovered in the multiqueue2 crate before 0.1.7 for Rust. Because a non-Send type can be sent to a different thread, a data race can occur.
CVSS Score
5.9
EPSS Score
0.004
Published
2021-01-26
An issue was discovered in the hashconsing crate before 1.1.0 for Rust. Because HConsed does not have bounds on its Send trait or Sync trait, memory corruption can occur.
CVSS Score
7.5
EPSS Score
0.004
Published
2021-01-26


Contact Us

Shodan ® - All rights reserved