CVE-2020-10908 – Foxit PhantomPDF Export Type Confusion Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-10908
The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. ... El problema es debido a una falta de comprobación apropiada de los datos suministrados por el usuario, lo que resulta en una condición de confusión de tipos. ... The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. • https://www.foxitsoftware.com/support/security-bulletins.php https://www.zerodayinitiative.com/advisories/ZDI-20-515 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2020-10909 – Foxit PhantomPDF AddWatermark Type Confusion Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-10909
The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. ... El problema es debido a una falta de comprobación apropiada de los datos suministrados por el usuario, lo que resulta en una condición de confusión de tipos. ... The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. • https://www.foxitsoftware.com/support/security-bulletins.php https://www.zerodayinitiative.com/advisories/ZDI-20-516 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2020-10611 – Triangle MicroWorks SCADA Data Gateway DNP3 Type Confusion Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-10611
Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type confusion condition. ... Triangle MicroWorks SCADA Data Gateway versiones 3.02.0697 hasta 4.0.122, versiones 2.41.0213 hasta 4.0.122, permite a atacantes remotos ejecutar código arbitrario debido a la falta de comprobación apropiada de los datos suministrados por el usuario, lo que puede causar una condición de confusión de tipos. ... The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. • https://www.us-cert.gov/ics/advisories/icsa-20-105-03 https://www.zerodayinitiative.com/advisories/ZDI-20-549 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2020-2907 – Oracle VirtualBox VBoxSVGA Type Confusion Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2020-2907
The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. • http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00001.html https://security.gentoo.org/glsa/202101-09 https://www.oracle.com/security-alerts/cpuapr2020.html https://www.zerodayinitiative.com/advisories/ZDI-20-509 https://www.zerodayinitiative.com/advisories/ZDI-20-510 • CWE-20: Improper Input Validation CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2020-6430 – chromium-browser: Type Confusion in V8
https://notcve.org/view.php?id=CVE-2020-6430
Type Confusion in V8 in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Una Confusión de Tipos en V8 en Google Chrome versiones anteriores a 81.0.4044.92, permitió a un atacante remoto explotar potencialmente una corrupción de la pila (heap) por medio de una página HTML diseñada. • http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00024.html http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00031.html https://chromereleases.googleblog.com/2020/04/stable-channel-update-for-desktop_7.html https://crbug.com/1031479 https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6XWIVVYIQU67QR2LHNGGZBS4FZOW2RQO https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HFVP775RPRDVY5FUCN7ABH5AE74TQFDD https://lists.fedor • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •