CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

opensuse

backports

97 known vulnerabilities · sorted by CVSS score

CVE-2019-19951
CRITICAL9.8

In GraphicsMagick 1.4 snapshot-20190423 Q8, there is a heap-based buffer overflow in the function ImportRLEPixels of coders/miff.c.

graphicsmagick / graphicsmagick+5
Network
Published Dec 24, 2019
Page 1 of 5
CVE-2018-20177
CRITICAL9.8

rdesktop versions up to and including v1.8.3 contain an Integer Overflow that leads to a Heap-Based Buffer Overflow in the function rdp_in_unistr() and results in memory corruption and possibly even a remote code execution.

rdesktop / rdesktop+4
Network
Published Mar 15, 2019
CVE-2020-10938
CRITICAL9.8

GraphicsMagick before 1.3.35 has an integer overflow and resultant heap-based buffer overflow in HuffmanDecodeImage in magick/compress.c.

graphicsmagick / graphicsmagick+5
Network
Published Mar 24, 2020
CVE-2019-19950
CRITICAL9.8

In GraphicsMagick 1.4 snapshot-20190403 Q8, there is a use-after-free in ThrowException and ThrowLoggedException of magick/error.c.

graphicsmagick / graphicsmagick+5
Network
Published Dec 24, 2019
CVE-2018-19873
CRITICAL9.8

An issue was discovered in Qt before 5.11.3. QBmpHandler has a buffer overflow via BMP data.

qt / qt+12
Network
Published Dec 26, 2018
CVE-2020-14983
CRITICAL9.8

The server in Chocolate Doom 3.0.0 and Crispy Doom 5.8.0 doesn't validate the user-controlled num_players value, leading to a buffer overflow. A malicious user can overwrite the server's stack.

chocolate-doom / chocolate_doom+4
Network
Published Jun 22, 2020
CVE-2020-6493
CRITICAL9.6

Use after free in WebAuthentication in Google Chrome prior to 83.0.4103.97 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

google / chrome+4
Network
Published Jun 3, 2020
CVE-2019-19953
CRITICAL9.1

In GraphicsMagick 1.4 snapshot-20191208 Q8, there is a heap-based buffer over-read in the function EncodeImage of coders/pict.c.

graphicsmagick / graphicsmagick+5
Network
Published Dec 24, 2019
CVE-2019-5790
HIGH8.8

An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

google / chrome+4
Network
Published May 23, 2019
CVE-2019-5788
HIGH8.8

An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.

google / chrome+4
Network
Published May 23, 2019
CVE-2019-5813
HIGH8.8

Use after free in V8 in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

google / chrome+7
Network
Published Jun 27, 2019
CVE-2019-13730
HIGH8.8

Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

google / chrome+10
Network
Published Dec 10, 2019
CVE-2019-5824
HIGH8.8

Parameter passing error in media in Google Chrome prior to 74.0.3729.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

google / chrome+7
Network
Published Jun 27, 2019
CVE-2019-5821
HIGH8.8

Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.

google / chrome+7
Network
Published Jun 27, 2019
CVE-2019-5828
HIGH8.8

Object lifecycle issue in ServiceWorker in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.

google / chrome+7
Network
Published Jun 27, 2019
CVE-2019-5831
HIGH8.8

Object lifecycle issue in V8 in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

google / chrome+7
Network
Published Jun 27, 2019
CVE-2019-5816
HIGH8.8

Process lifetime issue in Chrome in Google Chrome on Android prior to 74.0.3729.108 allowed a remote attacker to potentially persist an exploited process via a crafted HTML page.

google / chrome+5
Network
Published Jun 27, 2019
CVE-2020-6439
HIGH8.8

Insufficient policy enforcement in navigations in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to bypass security UI via a crafted HTML page.

google / chrome+7
Network
Published Apr 13, 2020
CVE-2020-6455
HIGH8.8

Out of bounds read in WebSQL in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

google / chrome+7
Network
Published Apr 13, 2020
CVE-2019-5822
HIGH8.8

Inappropriate implementation in Blink in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to bypass same origin policy via a crafted HTML page.

google / chrome+7
Network
Published Jun 27, 2019