ZeroHour

Vulnerabilities

5 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2021-26957
+3 in the same advisory: …26956 …26955 …26958
An issue was discovered in the xcb crate through 2021-02-04 for Rust.

An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because there is an out-of-bounds read in xcb::xproto::change_property(), as demonstrated by a format=32 T=u8 situation where out-of-bounds bytes are sent to an X server.

NVD description · AI analysis pending
9.8
group max
2% PoC
  • xcb project xcb
CVE-2020-36205
An issue was discovered in the xcb crate through 2020-12-10 for Rust.

An issue was discovered in the xcb crate through 2020-12-10 for Rust. base::Error does not have soundness. Because of the public ptr field, a use-after-free or double-free can occur.

NVD description · AI analysis pending
5.5<1% PoC
  • xcb project xcb