Search

Found 158 results in 1125ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-46300 high 7.8 8.8 EXPFIX rhel slesdebian debian aws 15d ago In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() can attach paged frags from @from to @to. If @from…
CVE-2026-43284 high 8.8 9.8 EXPFIX rhel slesdebian debian awsgoogle 23d ago In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly to an skb. TCP marks…
CVE-2026-31431 high 7.8 10.0 KEVEXPFIX rhelarch arch sles redhatsusearista 1mo ago Linux Kernel contains an incorrect resource transfer between spheres vulnerability that could allow for privilege escalation.
CVE-2026-4631 critical 10.0 EXPFIX rheldebian debian sles 2mo ago Cockpit's remote login feature passes user-supplied hostnames and usernames from the web interface to the SSH client without validation or sanitization. An attacker with network access to the Cockpit…
CVE-2026-23231 high 7.8 8.8 EXPFIX rhel slesdebian debian 2mo ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix use-after-free in nf_tables_addchain() nf_tables_addchain() publishes the chain to table->chains via li…
CVE-2025-40271 medium 6.5 EXPFIX rocky rhel sles 4mo ago In the Linux kernel, the following vulnerability has been resolved: fs/proc: fix uaf in proc_readdir_de() Pde is erased from subdir rbtree through rb_erase(), but not set the node to EMPTY, which m…
CVE-2025-12744 high 9.0 EXP rhel 6mo ago RHSA-2025:22760: abrt security update (Important)
CVE-2025-55315 high 9.0 EXPFIX rhelalmalinux almalinux rocky 7mo ago RHSA-2025:18150: .NET 9.0 security update (Important)
CVE-2021-22555 high 10.0 KEVEXPFIX arch arch sles rocky 8mo ago Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space.
CVE-2025-6965 high 9.0 EXPFIX rhel rocky sles 10mo ago RHSA-2025:14101: mingw-sqlite security update (Important)
CVE-2025-32023 high 9.0 EXPFIX rhel rocky sles 11mo ago RHSA-2025:12006: redis:6 security update (Important)
CVE-2025-31650 high 9.0 EXPFIX arch arch rhel rocky 11mo ago Improper Input Validation vulnerability in Apache Tomcat. Incorrect error handling for some invalid HTTP priority headers resulted in incomplete clean-up of the failed request which created a memory …
CVE-2025-32462 high 9.0 EXPFIX rhel rocky sles 11mo ago Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on unintended machines.
CVE-2025-4123 medium 6.1 7.1 EXPFIX rhel rocky sles grafana 1y ago RHSA-2025:7894: grafana security update (Important)
CVE-2025-24813 medium 8.0 KEVEXPFIX rhel rocky sles 1y ago Apache Tomcat contains a path equivalence vulnerability that allows a remote attacker to execute code, disclose information, or inject malicious content via a partial PUT request.
CVE-2025-1094 high 9.0 EXPFIX rhel rocky sles 1y ago RHSA-2025:3082: postgresql:12 security update (Important)
CVE-2024-47176 high 9.0 EXPFIX rhel rockydebian debian 2y ago RHSA-2024:7463: cups-filters security update (Important)
CVE-2024-47076 high 9.0 EXPFIX rhel rockydebian debian 2y ago RHSA-2024:7463: cups-filters security update (Important)
CVE-2024-29510 medium 6.5 EXPFIX rheldebian debian sles 2y ago Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format string injection with a uniprint device.
CVE-2024-6387 high 8.1 9.1 EXPFIX rhelarch arch sles openbsdredhatnetapp 2y ago A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote a…
CVE-2024-2961 high 7.3 8.3 EXPFIX rhel rockydebian debian gnunetapp 2y ago RHSA-2024:3269: glibc security update (Important)
CVE-2024-4367 high 8.8 9.8 EXPFIX rhel rockydebian debian mozillaopen-xchange 2y ago A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thu…
CVE-2023-6710 medium 6.5 EXP rhel 2y ago Moderate: mod_jk and mod_proxy_cluster security update
CVE-2024-21626 high 9.0 EXPFIX rhel rocky sles 2y ago Important: container-tools:4.0 security update
CVE-2023-44487 high 7.5 10.0 KEVEXPFIX rocky rheldebian debian siemensietfnghttp2 3y ago The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
CVE-2017-17095 high 8.8 9.8 EXPFIX rhel rocky sles libtiff 3y ago RHSA-2025:4658: libtiff security update (Moderate)
CVE-2023-4911 high 7.8 10.0 KEVEXPFIX rhel rocky sles gnuredhatnetapp 3y ago GNU C Library's dynamic loader ld.so contains a buffer overflow vulnerability when processing the GLIBC_TUNABLES environment variable, allowing a local attacker to execute code with elevated privileg…
CVE-2023-1998 high 9.0 EXPFIX rhel sles rocky 3y ago The Linux kernel allows userspace processes to enable mitigations by calling prctl with PR_SET_SPECULATION_CTRL which disables the speculation feature as well as by using seccomp. We had noticed that…
CVE-2021-3560 high 10.0 KEVEXPFIX arch arch sles rocky 3y ago Red Hat Polkit contains an incorrect authorization vulnerability through the bypassing of credential checks for D-Bus requests, allowing for privilege escalation.
CVE-2023-0386 high 10.0 KEVEXPFIX rhel rocky sles 3y ago Linux Kernel contains an improper ownership management vulnerability, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsyst…
CVE-2023-22809 high 9.0 EXPFIX rhel rocky sles 3y ago In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environment variables (SUDO_EDITOR, VISUAL, and EDITOR), allowing a local attacker to app…
CVE-2022-1471 high 9.0 EXP rocky slesdebian debian 4y ago RHSA-2022:9058: prometheus-jmx-exporter security update (Important)
CVE-2022-34918 high 9.0 EXPFIX rhel slesdebian debian 4y ago An issue was discovered in the Linux kernel through 5.18.9. A type confusion bug in nft_set_elem_init (leading to a buffer overflow) could be used by a local attacker to escalate privileges, a differ…
CVE-2021-4034 high 10.0 KEVEXPFIX arch arch sles rocky 4y ago The Red Hat polkit pkexec utility contains an out-of-bounds read and write vulnerability that allows for privilege escalation with administrative rights.
CVE-2020-1147 critical 10.0 KEVEXP rhel 4y ago Microsoft .NET Framework, Microsoft SharePoint, and Visual Studio contain a remote code execution vulnerability when the software fails to check the source markup of XML file input. Successful exploi…
CVE-2019-11708 high 10.0 KEVEXPFIX arch archdebian debian rhel 4y ago Mozilla Firefox and Thunderbird contain a sandbox escape vulnerability that could result in remote code execution.
CVE-2019-11707 critical 10.0 KEVEXPFIX arch arch slesdebian debian 4y ago Mozilla Firefox and Thunderbird contain a type confusion vulnerability that can occur when manipulating JavaScript objects due to issues in Array.pop, allowing for an exploitable crash.
CVE-2017-5715 high 9.0 EXPFIX debian debianarch arch sles 4y ago Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel a…
CVE-2022-0847 high 10.0 KEVEXPFIX arch arch sles rocky 4y ago Linux kernel contains an improper initialization vulnerability where an unprivileged local user could escalate their privileges on the system. This vulnerability has the moniker of "Dirty Pipe."
CVE-2021-3156 high 10.0 KEVEXPFIX arch arch slesdebian debian 4y ago Sudo contains an off-by-one error that can result in a heap-based buffer overflow, which allows for privilege escalation.
CVE-2019-11043 critical 10.0 KEVEXPFIX arch arch sles rocky 4y ago In some versions of PHP in certain configurations of FPM setup, it is possible to cause FPM module to write past allocated buffers allowing the possibility of remote code execution.
CVE-2018-13405 high 9.0 EXPFIX sles rockydebian debian 4y ago The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certai…
CVE-2022-22942 high 9.0 EXPFIX sles rockydebian debian 4y ago The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.
CVE-2022-0492 high 7.8 10.0 KEVEXPFIX sles rockydebian debian redhatnetapp 4y ago Linux Kernel contains an improper authentication vulnerability which could allow for privilege escalation via the cgroups v1 release_agent feature.
CVE-2020-13379 high 9.0 EXP sles rhel 4y ago RHSA-2020:2641: grafana security update (Important)
CVE-2021-44790 high 9.0 EXPFIX debian debian sles rocky 4y ago A carefully crafted request body can cause a buffer overflow in the mod_lua multipart parser (r:parsebody() called from Lua scripts). The Apache httpd team is not aware of an exploit for the vulnerab…
CVE-2019-13272 high 10.0 KEVEXPFIX slesdebian debian rhel 5y ago Kernel/ptrace.c in Linux kernel mishandles contains an improper privilege management vulnerability that allows local users to obtain root access.
CVE-2021-31807 medium 6.5 EXPFIX arch arch sles rocky 5y ago RHSA-2021:4292: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2021-31806 medium 6.5 EXPFIX arch arch sles rocky 5y ago RHSA-2021:4292: squid:4 security, bug fix, and enhancement update (Moderate)
CVE-2019-15794 medium 6.5 EXPFIX debian debian rhel 5y ago Overlayfs in the Linux kernel and shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 kernel series, both replace vma->vm_file in their mmap handlers. On error the or…
CVE-2020-1472 medium 8.0 KEVEXPFIX arch arch sles rocky 5y ago Microsoft's Netlogon Remote Protocol (MS-NRPC) contains a privilege escalation vulnerability when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller. An at…
CVE-2019-17026 critical 10.0 KEVEXPFIX arch archdebian debian rhel 5y ago Mozilla Firefox and Thunderbird contain a type confusion vulnerability due to incorrect alias information in the IonMonkey JIT compiler when setting array elements.
CVE-2019-0211 high 10.0 KEVEXPFIX debian debianarch arch sles 5y ago In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scrip…
CVE-2021-23017 high 9.0 EXPFIX arch arch sles rocky 5y ago RHSA-2022:0323: nginx:1.20 security update (Important)
CVE-2019-3842 medium 6.5 EXPFIX sles rockydebian debian 5y ago RHSA-2021:1611: systemd security, bug fix, and enhancement update (Moderate)
CVE-2021-27928 high 9.0 EXPFIX sles rockydebian debian 5y ago RHSA-2021:1242: mariadb:10.3 and mariadb-devel:10.3 security update (Important)
CVE-2020-28949 medium 8.0 KEVEXPFIX rockydebian debian rhel 6y ago PEAR Archive_Tar allows an unserialization attack because phar: is blocked but PHAR: is not blocked. PEAR stands for PHP Extension and Application Repository and it is an open-source framework and di…
CVE-2020-26950 critical 10.0 EXPFIX arch arch slesdebian debian 6y ago In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. This vulnerability affects Firefox < 82.0.3, Firefox …
CVE-2019-10098 medium 6.5 EXPFIX debian debian sles rocky 6y ago In Apache HTTP server 2.4.0 to 2.4.39, Redirects configured with mod_rewrite that were intended to be self-referential might be fooled by encoded newlines and redirect instead to an unexpected URL wi…
CVE-2019-10092 medium 6.5 EXPFIX debian debian sles rocky 6y ago In Apache HTTP Server 2.4.0-2.4.39, a limited cross-site scripting issue was reported affecting the mod_proxy error page. An attacker could cause the link on the error page to be malformed and instea…
CVE-2019-6977 medium 6.5 EXPFIX arch arch slesdebian debian 6y ago RHSA-2020:4659: gd security update (Moderate)
CVE-2020-9850 medium 6.5 EXPFIX sles rockydebian debian 6y ago A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.5 and iPadOS 13.5, tvOS 13.4.5, watchOS 6.2.5, Safari 13.1.1, iTunes 12.10.7 for Windows, iCloud for Windows 11.2…
CVE-2019-8820 medium 6.5 EXPFIX sles rockydebian debian 6y ago Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, watchOS 6.1, Safari 13.0.3, iTunes for Windows 12.10.2, iCl…
CVE-2020-12352 high 9.0 EXPFIX arch arch slesdebian debian 6y ago Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.
CVE-2020-12351 high 9.0 EXPFIX arch arch slesdebian debian 6y ago Improper input validation in BlueZ may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
CVE-2020-1938 medium 8.0 KEVEXPFIX sles rockydebian debian 6y ago Apache Tomcat treats Apache JServ Protocol (AJP) connections as having higher trust than, for example, a similar HTTP connection. If such connections are available to an attacker, they can be exploit…
CVE-2020-8617 high 9.0 EXPFIX debian debianarch arch sles 6y ago RHSA-2020:2338: bind security update (Important)
CVE-2020-11023 medium 8.0 KEVEXPFIX rhel rocky sles 6y ago JQuery contains a persistent cross-site scripting (XSS) vulnerability. When passing maliciously formed, untrusted input enclosed in HTML tags, JQuery's DOM manipulators can execute untrusted code in …
CVE-2020-11022 medium 6.5 EXPFIX sles rockydebian debian 6y ago RHSA-2020:4847: pki-core:10.6 and pki-deps:10.6 security, bug fix, and enhancement update (Moderate)
CVE-2019-9851 medium 6.5 EXPFIX slesdebian debian rhel 6y ago LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. Protection …
CVE-2019-3844 medium 6.5 EXPFIX slesdebian debian rhel 6y ago RHSA-2020:1794: systemd security, bug fix, and enhancement update (Moderate)
CVE-2019-3843 medium 6.5 EXPFIX slesdebian debian rhel 6y ago RHSA-2020:1794: systemd security, bug fix, and enhancement update (Moderate)
CVE-2019-18634 high 9.0 EXPFIX arch arch slesdebian debian 6y ago In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the privileged sudo process. (pwfeedback is a default setting in Linux Mint and ele…
CVE-2019-8765 medium 6.5 EXPFIX slesdebian debian rhel 7y ago Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in watchOS 6.1. Processing maliciously crafted web content may lead to arbitrary code execution.
CVE-2019-8649 medium 6.5 EXPFIX slesdebian debian rhel 7y ago A logic issue existed in the handling of synchronous page loads. This issue was addressed with improved state management. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1…
CVE-2019-6706 medium 6.5 EXPFIX sles rockydebian debian 7y ago RHSA-2019:3706: lua security and bug fix update (Moderate)
CVE-2019-14378 high 9.0 EXPFIX sles rockydebian debian 7y ago ip_reass in ip_input.c in libslirp 4.0.0 has a heap-based buffer overflow via a large packet because it mishandles a case involving the first fragment.
CVE-2019-6111 medium 6.5 EXPFIX arch arch slesdebian debian 7y ago An issue was discovered in OpenSSH 7.9. Due to the scp implementation being derived from 1983 rcp, the server chooses which files/directories are sent to the client. However, the scp client only perf…
CVE-2019-14287 high 9.0 EXPFIX arch arch slesdebian debian 7y ago In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a cra…
CVE-2019-11599 high 9.0 EXPFIX slesdebian debian rhel 7y ago The coredump implementation in the Linux kernel before 5.0.10 does not use locking or other mechanisms to prevent vma layout or vma flags changes while it runs, which allows local users to obtain sen…
CVE-2019-1125 high 9.0 EXPFIX slesdebian debian rhel 7y ago An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory. An attacker who successfully exploited the vulnerability could read privileged …
CVE-2019-12735 high 9.0 EXPFIX arch arch slesdebian debian 7y ago RHSA-2019:1619: vim security update (Important)
CVE-2019-11706 high 9.0 EXPFIX arch arch slesdebian debian 7y ago multiple issues in thunderbird
CVE-2019-11705 high 9.0 EXPFIX arch arch slesdebian debian 7y ago multiple issues in thunderbird
CVE-2019-11704 high 9.0 EXPFIX arch arch slesdebian debian 7y ago multiple issues in thunderbird
CVE-2019-11703 high 9.0 EXPFIX arch arch slesdebian debian 7y ago multiple issues in thunderbird
CVE-2019-9213 high 9.0 EXPFIX slesdebian debian rhel 7y ago In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SM…
CVE-2019-9816 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago A possible vulnerability exists where type confusion can occur when manipulating JavaScript objects in object groups, allowing for the bypassing of security checks within these groups. *Note: this vu…
CVE-2019-2697 critical 10.0 EXPFIX slesdebian debian rhel 7y ago RHSA-2019:1238: java-1.8.0-ibm security update (Critical)
CVE-2019-2698 critical 10.0 EXPFIX slesdebian debian rhel 7y ago RHSA-2019:1238: java-1.8.0-ibm security update (Critical)
CVE-2019-5736 high 9.0 EXPFIX arch arch sles rocky 7y ago RHSA-2019:0975: container-tools:rhel8 security and bug fix update (Important)
CVE-2019-9813 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago Incorrect handling of __proto__ mutations may lead to type confusion in IonMonkey JIT code and can be leveraged for arbitrary memory read and write. This vulnerability affects Firefox < 66.0.1, Firef…
CVE-2019-9810 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago Incorrect alias information in IonMonkey JIT compiler for Array.prototype.slice method may lead to missing bounds check and a buffer overflow. This vulnerability affects Firefox < 66.0.1, Firefox ESR…
CVE-2019-9792 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value can then be used by JavaScript to achieve memory c…
CVE-2019-9791 critical 10.0 EXPFIX arch arch slesdebian debian 7y ago The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just-in-time (JIT) compiler and when the con…
CVE-2019-6116 high 9.0 EXPFIX arch arch slesdebian debian 7y ago RHSA-2019:0971: ghostscript security update (Important)
CVE-2018-11784 high 9.0 EXPFIX sles rockydebian debian 8y ago When the default servlet in Apache Tomcat versions 9.0.0.M1 to 9.0.11, 8.5.0 to 8.5.33 and 7.0.23 to 7.0.90 returned a redirect to a directory (e.g. redirecting to '/foo/' when the user requested '/f…
CVE-2018-3639 medium 5.5 6.5 EXPFIX slesdebian debian rhel intelarmredhat 8y ago Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of i…
CVE-2017-17405 high 8.8 9.8 EXP slesdebian debian rhel ruby-lang 9y ago Ruby before 2.4.3 allows Net::FTP command injection. Net::FTP#get, getbinaryfile, gettextfile, put, putbinaryfile, and puttextfile use Kernel#open to open a local file. If the localfile argument star…
CVE-2017-11282 critical 9.8 10.0 EXP macos macos linux-kernel rhel adobe 9y ago Adobe Flash Player has an exploitable memory corruption vulnerability in the MP4 atom parser. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlier.