CVE-2020-15100

CVSS v3 Score
3.3
Low
CVSS v2 Score
2.1
Low

Vulnerability Description

In freewvs before 0.1.1, a user could create a large file that freewvs will try to read, which will terminate a scan process. This has been patched in 0.1.1.

CVSS:3.3(Low)

nghttp2 before 1.7.1 allows remote attackers to cause a denial of service (memory exhaustion).

CVSS:3.3(Low)

Info-ZIP UnZip 6.0 mishandles the overlapping of files inside a ZIP container, leading to denial of service (resource consumption), aka a "better zip bomb" issue.

CVSS:3.3(Low)

In freewvs before 0.1.1, a directory structure of more than 1000 nested directories can interrupt a freewvs scan due to Python's recursion limit and os.walk(). This can be problematic in a case where ...

CVSS:3.3(Low)

A malicious container image can consume an unbounded amount of memory when being pulled to a container runtime host, such as Red Hat Enterprise Linux using podman, or OpenShift Container Platform. An ...

CVSS:3.3(Low)

There is a resource management errors vulnerability in Huawei P30. Local attackers construct broadcast message for some application, causing this application to send this broadcast message and impact ...

CVSS:3.3(Low)

Trend Micro Antivirus for Mac 2021 (Consumer) is vulnerable to a memory exhaustion vulnerability that could lead to disabling all the scanning functionality within the application. Please note: an att...