Skip to main content

Vendor archive

facebook CVEs

Beta · best-effort

126 CVEs tagged to vendor facebook57 Critical, 50 High, 19 Medium, 0 Low, 0 Unrated.

CVE-2020-1917

Published Mar 10, 2021

xbuf_format_converter, used as part of exif_read_data, was appending a terminating null character to the generated string, but was not using its standard append char function. As…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-1916

Published Mar 10, 2021

An incorrect size calculation in ldap_escape may lead to an integer overflow when overly long input is passed in, resulting in an out-of-bounds write. This issue affects HHVM prio…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-24033

Published Mar 9, 2021

react-dev-utils prior to v11.0.4 exposes a function, getProcessForPort, where an input argument is concatenated into a command string to be executed. This function is typically us…

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-24032

Published Mar 4, 2021

Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restrict…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-24031

Published Mar 4, 2021

In the Zstandard command-line utility prior to v1.4.1, output files were created with default permissions. Correct file permissions (matching the input) would only be set at compl…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-1896

Published Feb 2, 2021

A stack overflow vulnerability in Facebook Hermes 'builtin apply' prior to commit 86543ac47e59c522976b5632b8bf9a2a4583c7d2 (https://github.com/facebook/hermes/commit/86543ac47e59c…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-1915

Published Oct 26, 2020

An out-of-bounds read in the JavaScript Interpreter in Facebook Hermes prior to commit 8cb935cd3b2321c46aa6b7ed8454d95c75a7fca0 allows attackers to cause a denial of service attac…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1914

Published Oct 8, 2020

A logic vulnerability when handling the SaveGeneratorLong instruction in Facebook Hermes prior to commit b2021df620824627f5a8c96615edbd1eb7fdddfc allows attackers to potentially r…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-1913

Published Sep 9, 2020

An Integer signedness error in the JavaScript Interpreter in Facebook Hermes prior to commit 2c7af7ec481ceffd0d14ce2d7c045e475fd71dc6 allows attackers to cause a denial of service…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1912

Published Sep 9, 2020

An out-of-bounds read/write vulnerability when executing lazily compiled inner generator functions in Facebook Hermes prior to commit 091835377369c8fd5917d9b87acffa721ad2a168 allo…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1911

Published Sep 4, 2020

A type confusion vulnerability when resolving properties of JavaScript objects with specially-crafted prototype chains in Facebook Hermes prior to commit fe52854cdf6725c2eaa9e1259…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-1897

Published May 18, 2020

A use-after-free is possible due to an error in lifetime management in the request adaptor when a malicious client invokes request error handling in a specific sequence. This issu…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-1895

Published Apr 9, 2020

A large heap overflow could occur in Instagram for Android when attempting to upload an image with specially crafted dimensions. This affects versions prior to 128.0.0.26.128.

CVSS 7.8 · High
evidence mentions
4
Buzz score
27.6
Vendor/product tagsBeta · best-effort

CVE-2019-11939

Published Mar 18, 2020

Golang Facebook Thrift servers would not error upon receiving messages declaring containers of sizes larger than the payload. As a result, malicious clients could send short messa…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3553

Published Mar 10, 2020

C++ Facebook Thrift servers would not error upon receiving messages declaring containers of sizes larger than the payload. As a result, malicious clients could send short messages…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-11938

Published Mar 10, 2020

Java Facebook Thrift servers would not error upon receiving messages declaring containers of sizes larger than the payload. As a result, malicious clients could send short message…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1893

Published Mar 3, 2020

Insufficient boundary checks when decoding JSON in TryParse reads out of bounds memory, potentially leading to DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1892

Published Mar 3, 2020

Insufficient boundary checks when decoding JSON in JSON_parser allows read access to out of bounds memory, potentially leading to information leak and DOS. This issue affects HHVM…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1888

Published Mar 3, 2020

Insufficient boundary checks when decoding JSON in handleBackslash reads out of bounds memory, potentially leading to DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-1000109

Published Feb 19, 2020

HHVM does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect CGI applications from the presence of untrusted client data in the HTTP…

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-1000005

Published Feb 19, 2020

mcrypt_get_block_size did not enforce that the provided "module" parameter was a string, leading to type confusion if other types of data were passed in. This issue affects HHVM v…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-1000004

Published Feb 19, 2020

Insufficient type checks were employed prior to casting input data in SimpleXMLElement_exportNode and simplexml_import_dom. This issue affects HHVM versions prior to 3.9.5, all ve…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-11940

Published Dec 4, 2019

In the course of decompressing HPACK inside the HTTP2 protocol, an unexpected sequence of header table resize operations can place the header table into a corrupted state, leading…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-11936

Published Dec 4, 2019

Various APC functions accept keys containing null bytes as input, leading to premature truncation of input. This issue affects HHVM versions prior to 3.30.12, all versions between…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-11935

Published Dec 4, 2019

Insufficient boundary checks when processing a string in mb_ereg_replace allows access to out-of-bounds memory. This issue affects HHVM versions prior to 3.30.12, all versions bet…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 51-75 of 126 CVEsPage 3 of 6