Open-Source Security Intelligence

Know every vulnerability
before it knows you.

DevGuard continuously monitors your dependencies and alerts you when CVEs like this one affect your stack — with real-time threat intelligence built for developers.

Search

RHSA-2020:4451

CriticalCVSS 9.8 / 10
Published Sep 16, 2024·Last modified Jan 14, 2026
Affected Components(0)

No affected components available

Description

Red Hat Security Advisory: GNOME security, bug fix, and enhancement update

Risk Scores
Base Score
9.8

The vulnerability can be exploited over the network without needing physical access. It is easy for an attacker to exploit this vulnerability. An attacker does not need any special privileges or access rights. No user interaction is needed for the attacker to exploit this vulnerability. The impact is confined to the system where the vulnerability exists. There is a high impact on the confidentiality of the information. There is a high impact on the integrity of the data. There is a high impact on the availability of the system.

Threat Intelligence
9.0

Active exploitation in the wild has been confirmed. Immediate patching or mitigation is required.

EPSS
3.67%

The exploit probability is very low. The vulnerability is unlikely to be exploited in the next 30 days.

Exploit
Not available

We did not find any exploit available. Neither in GitHub repositories nor in the Exploit-Database.

Related Vulnerabilities
  • CVE-2019-8625
    Upstream
  • CVE-2019-8710
    Upstream
  • CVE-2019-8720
    Upstream
  • CVE-2019-8743
    Upstream
  • CVE-2019-8764
    Upstream
  • CVE-2019-8766
    Upstream
  • CVE-2019-8769
    Upstream
  • CVE-2019-8771
    Upstream
  • CVE-2019-8782
    Upstream
  • CVE-2019-8783
    Upstream
  • CVE-2019-8808
    Upstream
  • CVE-2019-8811
    Upstream
  • CVE-2019-8812
    Upstream
  • CVE-2019-8813
    Upstream
  • CVE-2019-8814
    Upstream
  • CVE-2019-8815
    Upstream
  • CVE-2019-8816
    Upstream
  • CVE-2019-8819
    Upstream
  • CVE-2019-8820
    Upstream
  • CVE-2019-8823
    Upstream
  • CVE-2019-8835
    Upstream
  • CVE-2019-8844
    Upstream
  • CVE-2019-8846
    Upstream
  • CVE-2020-10018
    Upstream
  • CVE-2020-11793
    Upstream
  • CVE-2020-14391
    Upstream
  • CVE-2020-15503

    LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_utils.cpp. For example, malloc(sizeof(libraw_processed_image_t)+T.tlength) occurs without validating T.tlength.

    UpstreamEPSS 3.7%
  • CVE-2020-3862
    Upstream
  • CVE-2020-3864
    Upstream
  • CVE-2020-3865
    Upstream
  • CVE-2020-3867
    Upstream
  • CVE-2020-3868
    Upstream
  • CVE-2020-3885
    Upstream
  • CVE-2020-3894
    Upstream
  • CVE-2020-3895
    Upstream
  • CVE-2020-3897
    Upstream
  • CVE-2020-3899
    Upstream
  • CVE-2020-3900
    Upstream
  • CVE-2020-3901
    Upstream
  • CVE-2020-3902
    Upstream
  • CVE-2020-9802
    Upstream
  • CVE-2020-9803
    Upstream
  • CVE-2020-9805
    Upstream
  • CVE-2020-9806
    Upstream
  • CVE-2020-9807
    Upstream
  • CVE-2020-9843
    Upstream
  • CVE-2020-9850
    Upstream
  • CVE-2020-9862
    Upstream
  • CVE-2020-9893
    Upstream
  • CVE-2020-9894
    Upstream
  • CVE-2020-9895
    Upstream
  • CVE-2020-9915
    Upstream
  • CVE-2020-9925
    Upstream
  • CVE-2020-9952
    Upstream
  • CVE-2021-30666
    Upstream
  • CVE-2021-30761
    Upstream
  • CVE-2021-30762
    Upstream
  • EUVD-2019-18015
    Upstream
  • EUVD-2019-18100
    Upstream
  • EUVD-2019-18110
    Upstream
  • EUVD-2019-18133
    Upstream
  • EUVD-2019-18154
    Upstream
  • EUVD-2019-18156
    Upstream
  • EUVD-2019-18159
    Upstream
  • EUVD-2019-18161
    Upstream
  • EUVD-2019-18172
    Upstream
  • EUVD-2019-18173
    Upstream
  • EUVD-2019-18198
    Upstream
  • EUVD-2019-18201
    Upstream
  • EUVD-2019-18202
    Upstream
  • EUVD-2019-18203
    Upstream
  • EUVD-2019-18204
    Upstream
  • EUVD-2019-18205
    Upstream
  • EUVD-2019-18206
    Upstream
  • EUVD-2019-18209
    Upstream
  • EUVD-2019-18210
    Upstream
  • EUVD-2019-18213
    Upstream
  • EUVD-2019-18225
    Upstream
  • EUVD-2019-18234
    Upstream
  • EUVD-2019-18236
    Upstream
  • EUVD-2020-2483
    Upstream
  • EUVD-2020-25127
    Upstream
  • EUVD-2020-25129
    Upstream
  • EUVD-2020-25130
    Upstream
  • EUVD-2020-25132
    Upstream
  • EUVD-2020-25133
    Upstream
  • EUVD-2020-25150
    Upstream
  • EUVD-2020-25159
    Upstream
  • EUVD-2020-25160
    Upstream
  • EUVD-2020-25162
    Upstream
  • EUVD-2020-25164
    Upstream
  • EUVD-2020-25165
    Upstream
  • EUVD-2020-25166
    Upstream
  • EUVD-2020-25167
    Upstream
  • EUVD-2020-30581
    Upstream
  • EUVD-2020-30582
    Upstream
  • EUVD-2020-30584
    Upstream
  • EUVD-2020-30585
    Upstream
  • EUVD-2020-30586
    Upstream
  • EUVD-2020-30622
    Upstream
  • EUVD-2020-30629
    Upstream
  • EUVD-2020-30641
    Upstream
  • EUVD-2020-30672
    Upstream
  • EUVD-2020-30673
    Upstream
  • EUVD-2020-30674
    Upstream
  • EUVD-2020-30694
    Upstream
  • EUVD-2020-30704
    Upstream
  • EUVD-2020-30731
    Upstream
  • EUVD-2020-4135
    Upstream
  • EUVD-2020-6530
    Upstream
  • EUVD-2020-7495
    Upstream
  • EUVD-2021-17583
    Upstream
  • EUVD-2021-17678
    Upstream
  • EUVD-2021-17679
    Upstream
Scan your project

Continuously monitor your dependencies and get alerted when vulnerabilities like this one affect your stack.

Checkout DevGuard