CVE-2020-0512
published 2020-08-13CVE-2020-0512: Uncaught exception in the system driver for some Intel(R) Graphics Drivers before version 15.33.50.5129 may allow an authenticated user to potentially enable…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.30%
22.4th percentile
Uncaught exception in the system driver for some Intel(R) Graphics Drivers before version 15.33.50.5129 may allow an authenticated user to potentially enable denial of service via local access.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| intel | graphics_drivers | < 15.33.50.5129 | 15.33.50.5129 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-6798 Mozilla: Incorrect parsing of template tag could result in JavaScript injection
bugzilla·2020-02-11·CVSS 6.1
CVE-2020-6798 [MEDIUM] CVE-2020-6798 Mozilla: Incorrect parsing of template tag could result in JavaScript injection
CVE-2020-6798 Mozilla: Incorrect parsing of template tag could result in JavaScript injection
If a `` tag was used in a `` tag, the parser could be confused and allow JavaScript parsing and execution when it should not be allowed. A site that relied on the browser behaving correctly could suffer a cross-site scripting vulnerability as a result.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2020-06/#CVE-2020-6798
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: terjanq
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2020:0512 https://access.redhat.com/errata/RHSA-2020:0512
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8.0 Update Services for SAP
Bugzilla
CVE-2020-6800 Mozilla: Memory safety bugs fixed in Firefox 73 and Firefox ESR 68.5
bugzilla·2020-02-11·CVSS 8.8
CVE-2020-6800 [HIGH] CVE-2020-6800 Mozilla: Memory safety bugs fixed in Firefox 73 and Firefox ESR 68.5
CVE-2020-6800 Mozilla: Memory safety bugs fixed in Firefox 73 and Firefox ESR 68.5
Mozilla developers and community members reported memory safety bugs present in Firefox 72 and Firefox ESR 68.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2020-06/#CVE-2020-6800
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Raul Gurzau, Tyson Smith, Bob Clary, Liz Henry, Christian Holler
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2020:0512 https://access.redhat.com/errata/RHSA-2020:0512
---
This issue has been addressed in the following
Bugzilla
CVE-2020-6796 Mozilla: Missing bounds check on shared memory read in the parent process
bugzilla·2020-02-11·CVSS 8.8
CVE-2020-6796 [HIGH] CVE-2020-6796 Mozilla: Missing bounds check on shared memory read in the parent process
CVE-2020-6796 Mozilla: Missing bounds check on shared memory read in the parent process
A content process could have modified shared memory relating to crash reporting information, crash itself, and cause an out-of-bound write. This could have caused memory corruption and a potentially exploitable crash.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2020-06/#CVE-2020-6796
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Thomas Imbert
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2020:0512 https://access.redhat.com/errata/RHSA-2020:0512
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions
Via RHSA-2020:0519 https
2020-08-13
Published