CVE-2019-2019
published 2019-06-19CVE-2019-2019: In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no…
PriorityP430medium6.5CVSS 3.0
AVNACLPRNUIRSUCHINAN
EPSS
0.88%
55.6th percentile
In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-115635871
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| github.com | rancher_rancher | >= 2.0.0 < 2.1.6 | 2.1.6 |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| parse | parse-server | >= 0 < 3.4.1 | 3.4.1 |
| php5 | php5 | >= 0 < 5.5.9+dfsg-1ubuntu4.29+esm2 | 5.5.9+dfsg-1ubuntu4.29+esm2 |
| pivotal_software | rabbitmq | >= 0 < 1.16.7 | 1.16.7 |
| pivotal_software | rabbitmq | >= 1.17.0 < 1.17.4 | 1.17.4 |
| pivotal_software | rabbitmq | >= 3.7.0 < 3.7.21 | 3.7.21 |
| pivotal_software | rabbitmq | >= 3.8.0 < 3.8.1 | 3.8.1 |
| yarnpkg | yarn | >= 0 < 1.19.0 | 1.19.0 |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
nvdv2.07.1HIGHAV:N/AC:M/Au:N/C:C/I:N/A:N
osv7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2019-2019: Android Security Bulletin 2019-03-01
CVE: CVE-2019-2019
Severity: HIGH
Type: ID
Affected AOSP versions: 7
vendor_android·2019-03-01·CVSS 6.5
CVE-2019-2019 [MEDIUM] CVE-2019-2019: Android Security Bulletin 2019-03-01
CVE: CVE-2019-2019
Severity: HIGH
Type: ID
Affected AOSP versions: 7
Android Security Bulletin 2019-03-01
CVE: CVE-2019-2019
Severity: HIGH
Type: ID
Affected AOSP versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1, 9
References: A-115635871
GHSA
GHSA-vjhj-8gp9-2269: In ce_t4t_data_cback of ce_t4t
ghsa_unreviewed·2022-05-24
CVE-2019-2019 [HIGH] CWE-125 GHSA-vjhj-8gp9-2269: In ce_t4t_data_cback of ce_t4t
In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-115635871
GHSA
Pivotal RabbitMQ is vulnerable to a denial of service attack
ghsa·2022-05-24
CVE-2019-11287 [HIGH] CWE-134 Pivotal RabbitMQ is vulnerable to a denial of service attack
Pivotal RabbitMQ is vulnerable to a denial of service attack
Pivotal RabbitMQ, versions 3.7.x prior to 3.7.21 and 3.8.x prior to 3.8.1, and RabbitMQ for Pivotal Platform, 1.16.x versions prior to 1.16.7 and 1.17.x versions prior to 1.17.4, contain a web management plugin that is vulnerable to a denial of service attack. The "X-Reason" HTTP Header can be leveraged to insert a malicious Erlang format string that will expand and consume the heap, resulting in the server crashing.
GHSA
Rancher Project Members Have Continued Access to Namespaces After Being Removed From Them
ghsa·2022-05-13
CVE-2019-6287 [HIGH] CWE-269 Rancher Project Members Have Continued Access to Namespaces After Being Removed From Them
Rancher Project Members Have Continued Access to Namespaces After Being Removed From Them
In Rancher 2.0.0 through 2.1.5, project members have continued access to create, update, read, and delete namespaces in a project after they have been removed from it.
GHSA
TOCTOU Race Condition in Yarn
ghsa·2022-02-09
CVE-2019-15608 [MEDIUM] CWE-367 TOCTOU Race Condition in Yarn
TOCTOU Race Condition in Yarn
The package integrity validation in yarn < 1.19.0 contains a TOCTOU vulnerability where the hash is computed before writing a package to cache. It's not computed again when reading from the cache. This may lead to a cache pollution attack. This issue is fixed in 1.19.0.
GHSA
Parse Server before v3.4.1 vulnerable to Denial of Service
ghsa·2019-06-13
CVE-2019-1020012 [HIGH] CWE-444 Parse Server before v3.4.1 vulnerable to Denial of Service
Parse Server before v3.4.1 vulnerable to Denial of Service
### Impact
If a POST request is made to /parse/classes/_Audience (or other volatile class), any subsuquent POST requests result in an internal server error (500).
### Patches
Afflicted installations will also have to remove the offending collection from their database.
Yes, patched in 3.4.1
### Workarounds
Yes, user can apply: https://github.com/parse-community/parse-server/commit/8709daf698ea69b59268cb66f0f7cee75b52daa5
### References
Nothing other than this advisory at this time
### For more information
If you have any questions or comments about this advisory:
* Open an issue in [parse-server](https://github.com/parse-community/parse-server)
* Email us at [[email protected]](mailto:[email protected])
OSV
php5 vulnerabilities
osv·2019-05-22·CVSS 7.5
CVE-2018-20783 php5 vulnerabilities
php5 vulnerabilities
USN-3566-1 fixed several vulnerabilities in PHP. This update provides
the corresponding update for Ubuntu 12.04 ESM and Ubuntu 14.04 ESM.
It was discovered that PHP incorrectly handled certain files. An attacker
could possibly use this issue to access sensitive information.
(CVE-2018-20783)
It was discovered that PHP incorrectly handled certain files. An attacker
could possibly use this issue to access sensitive information or possibly
cause a crash, resulting in a denial of service. (CVE-2019-11036)
Original advisory details:
It was discovered that PHP incorrectly handled memory when unserializing
certain data. A remote attacker could use this issue to cause PHP to crash,
resulting in a denial of service, or possibly execute arbitrary code. This
issue only affect
Suricata
ET EXPLOIT Dell KACE Attempted Remote Command Injection Inbound
suricata·2019-06-11·CVSS 9.8
CVE-2018-11138 [CRITICAL] ET EXPLOIT Dell KACE Attempted Remote Command Injection Inbound
ET EXPLOIT Dell KACE Attempted Remote Command Injection Inbound
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET EXPLOIT Dell KACE Attempted Remote Command Injection Inbound"; flow:established,to_server; http.method; content:"POST"; http.uri; content:"/krashrpt.php"; fast_pattern; endswith; http.request_body; content:"kuid=|60|"; startswith; reference:url,unit42.paloaltonetworks.com/new-mirai-variant-adds-8-new-exploits-targets-additional-iot-devices/; reference:cve,CVE-2018-11138; classtype:attempted-admin; sid:2027457; rev:5; metadata:attack_target IoT, created_at 2019_06_11, deployment Perimeter, performance_impact Low, signature_severity Major, tag CISA_KEV, updated_at 2024_04_13, mitre_tactic_id TA0008, mitre_tactic_name Lateral_Movement, mitre_technique_id T1210, mit
Bugzilla
CVE-2019-20096 kernel: memory leak in __feat_register_sp() in net/dccp/feat.c [fedora-all]
bugzilla·2020-01-16·CVSS 5.5
CVE-2019-20096 [MEDIUM] CVE-2019-20096 kernel: memory leak in __feat_register_sp() in net/dccp/feat.c [fedora-all]
CVE-2019-20096 kernel: memory leak in __feat_register_sp() in net/dccp/feat.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple suppo
Crowdstrike
What is Cloud Native, Anyway?
blogs_crowdstrike·CVSS 7.5
CVE-2026-20929 [HIGH] What is Cloud Native, Anyway?
How CrowdStrike is Accelerating Exposure Evaluation as Adversaries Gain Speed Apr 06, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How CrowdStrike is Accelerating Exposure Evaluation as Adversaries Gain Speed Apr 06, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
Video Highlights the 4 Key Steps to Successful Incident Response Dec 02, 2019
Helping Non-Security Stakeholders Understand AT
2019-06-19
Published