Search

Found 5,520 results in 856ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2023-5215 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: libnbd security update
CVE-2023-51714 medium 5.5 FIX rhel slesdebian debian 2y ago An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2. network/access/http2/hpacktable.cpp has an incor…
CVE-2023-5088 medium 5.5 FIX rhel rocky sles 2y ago A bug in QEMU could cause a guest I/O operation otherwise addressed to an arbitrary disk offset to be targeted to offset 0 instead (potentially overwriting the VM's boot code). This could be used, fo…
CVE-2023-50186 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: gstreamer1-plugins-bad-free security update
CVE-2023-49083 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2025:14553: python-cryptography security update (Moderate)
CVE-2023-4875 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3058: mutt security update (Moderate)
CVE-2023-4874 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3058: mutt security update (Moderate)
CVE-2023-4806 medium 5.9 5.9 FIX rhel rocky sles gnuredhat 2y ago RHSA-2023:5455: glibc security update (Important)
CVE-2023-47038 medium 5.5 FIX rhel sles rocky 2y ago A vulnerability was found in perl 5.30.0 through 5.38.0. This issue occurs when a crafted regular expression is compiled by perl, which can allow an attacker controlled byte buffer overflow in a heap…
CVE-2023-4693 medium 5.5 FIX rhel rocky sles 2y ago Moderate: grub2 security update
CVE-2023-4692 medium 5.5 FIX rhel rocky sles 2y ago Moderate: grub2 security update
CVE-2023-46753 medium 5.5 FIX rhel rockydebian debian 2y ago An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur for a crafted BGP UPDATE message without mandatory attributes, e.g., one with only an unknown transit attribute.
CVE-2023-46752 medium 5.5 FIX rhel rockydebian debian 2y ago An issue was discovered in FRRouting FRR through 9.0.1. It mishandles malformed MP_REACH_NLRI data, leading to a crash.
CVE-2023-46316 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3211: traceroute security update (Moderate)
CVE-2023-45897 medium 5.5 FIX rheldebian debian sles 2y ago exfatprogs before 1.2.2 allows out-of-bounds memory access, such as in read_file_dentry_set.
CVE-2023-45802 medium 5.5 FIX debian debian rhel rocky 2y ago When a HTTP/2 stream was reset (RST frame) by a client, there was a time window were the request's memory resources were not reclaimed immediately. Instead, de-allocation was deferred to connection c…
CVE-2023-45287 medium 5.5 FIX rheldebian debianalmalinux almalinux 2y ago Moderate: container-tools:rhel8 security update
CVE-2023-43789 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3022: motif security update (Moderate)
CVE-2023-43788 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3022: motif security update (Moderate)
CVE-2023-43787 medium 5.5 FIX rhel rocky sles 2y ago Moderate: libX11 security update
CVE-2023-43786 medium 5.5 FIX rhel rocky sles 2y ago Moderate: libX11 security update
CVE-2023-43785 medium 5.5 FIX rhel rocky sles 2y ago Moderate: libX11 security update
CVE-2023-43622 medium 5.5 FIX debian debian rhel sles 2y ago An attacker, opening a HTTP/2 connection with an initial window size of 0, was able to block handling of that connection indefinitely in Apache HTTP Server. This could be used to exhaust worker resou…
CVE-2023-42467 medium 5.5 FIX rhel sles rocky 2y ago QEMU through 8.0.0 could trigger a division by zero in scsi_disk_reset in hw/scsi/scsi-disk.c because scsi_disk_emulate_mode_select does not prevent s->qdev.blocksize from being 256. This stops QEMU …
CVE-2023-41909 medium 5.5 FIX rhel rockydebian debian 2y ago An issue was discovered in FRRouting FRR through 9.0. bgp_nlri_parse_flowspec in bgpd/bgp_flowspec.c processes malformed requests with no attributes, leading to a NULL pointer dereference.
CVE-2023-41360 medium 5.5 FIX rheldebian debian sles 2y ago An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation.
CVE-2023-41359 medium 5.5 FIX rheldebian debian sles 2y ago An issue was discovered in FRRouting FRR through 9.0. There is an out-of-bounds read in bgp_attr_aigp_valid in bgpd/bgp_attr.c because there is no check for the availability of two bytes during AIGP …
CVE-2023-41358 medium 5.5 FIX rhel rockydebian debian 2y ago An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c processes NLRIs if the attribute length is zero.
CVE-2023-41175 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: libtiff security update
CVE-2023-41081 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: mod_jk and mod_proxy_cluster security update
CVE-2023-40745 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: libtiff security update
CVE-2023-40589 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-40569 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-40567 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-40476 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3060: gstreamer1-plugins-bad-free security update (Moderate)
CVE-2023-40475 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3060: gstreamer1-plugins-bad-free security update (Moderate)
CVE-2023-40474 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3060: gstreamer1-plugins-bad-free security update (Moderate)
CVE-2023-40188 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-40186 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-40181 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-39356 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-39354 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-39353 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-39352 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-39351 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-39350 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: freerdp security update
CVE-2023-38473 medium 5.5 FIX debian debian rhel rocky 2y ago RHSA-2023:7836: avahi security update (Moderate)
CVE-2023-38472 medium 5.5 FIX debian debian rhel rocky 2y ago RHSA-2023:7836: avahi security update (Moderate)
CVE-2023-38471 medium 5.5 FIX debian debian rhel rocky 2y ago RHSA-2023:7836: avahi security update (Moderate)
CVE-2023-38470 medium 5.5 FIX debian debian rhel rocky 2y ago RHSA-2023:7836: avahi security update (Moderate)
CVE-2023-38469 medium 5.5 FIX debian debian rhel rocky 2y ago RHSA-2023:7836: avahi security update (Moderate)
CVE-2023-3817 low 2.5 FIX rocky rhel sles 2y ago RHSA-2023:7877: openssl security update (Low)
CVE-2023-3758 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:3270: sssd security update (Moderate)
CVE-2023-37328 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: gstreamer1-plugins-base security update
CVE-2023-37327 medium 5.5 FIX rhel slesdebian debian 2y ago GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interact…
CVE-2023-3618 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: libtiff security update
CVE-2023-3446 low 2.5 FIX rocky rhel sles 2y ago RHSA-2024:0888: edk2 security update (Low)
CVE-2023-32636 low 2.5 FIX rhel slesdebian debian 2y ago Low: mingw-glib2 security update
CVE-2023-3255 medium 5.5 FIX rhel rocky sles 2y ago A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. A wrong exit condition may lead to an infinite loop when inflating an attacker controlled zlib buffer in the …
CVE-2023-31490 medium 5.5 FIX rhel rockydebian debian 2y ago An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function.
CVE-2023-31489 medium 5.5 FIX rheldebian debian sles 2y ago An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_llgr() function.
CVE-2023-31122 medium 5.5 FIX debian debian rhel rocky 2y ago Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue affects Apache HTTP Server: through 2.4.57.
CVE-2023-3019 medium 6.5 6.5 FIX rhel rocky sles qemu 2y ago A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resu…
CVE-2023-2975 low 2.5 FIX rhel slesdebian debian 2y ago Low: openssl and openssl-fips-provider security update
CVE-2023-29406 medium 5.5 FIX rocky rhel sles 2y ago RHSA-2023:7202: container-tools:4.0 security and bug fix update (Moderate)
CVE-2023-1729 low 2.5 FIX rhel slesdebian debian 2y ago Low: LibRaw security update
CVE-2023-1579 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: mingw components security update
CVE-2022-50782 medium 5.5 FIX rhel slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ext4: fix bug_on in __es_tree_search caused by bad quota inode We got a issue as fllows: ========================================…
CVE-2022-50673 medium 5.5 FIX rocky rhel sles 2y ago In the Linux kernel, the following vulnerability has been resolved: ext4: fix use-after-free in ext4_orphan_cleanup I caught a issue as follows: ====================================================…
CVE-2022-50638 medium 5.5 FIX rhel slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ext4: fix bug_on in __es_tree_search caused by bad boot loader inode We got a issue as fllows: ==================================…
CVE-2022-50485 medium 5.5 FIX rhel slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ext4: add EXT4_IGET_BAD flag to prevent unexpected bad inode There are many places that will get unhappy (and crash) when ext4_ig…
CVE-2022-50286 medium 5.5 FIX rhel slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ext4: fix delayed allocation bug in ext4_clu_mapped for bigalloc + inline When converting files with inline data to extents, dela…
CVE-2022-50116 medium 5.5 5.5 FIX rhel slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: tty: n_gsm: fix deadlock and link starvation in outgoing data path The current implementation queues up new control and user pack…
CVE-2022-49977 medium 5.5 FIX rhel rocky sles 2y ago In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix NULL pointer dereference in is_ftrace_trampoline when ftrace is dead ftrace_startup does not remove ops from ftrace_o…
CVE-2022-49940 medium 5.5 FIX rhel slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: tty: n_gsm: add sanity check for gsm->receive in gsm_receive_buf() A null pointer dereference can happen when attempting to acces…
CVE-2022-48947 medium 5.5 FIX rhel slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix u8 overflow By keep sending L2CAP_CONF_REQ packets, chan->num_conf_rsp increases multiple times and eventua…
CVE-2022-48554 low 2.5 FIX rheldebian debian rocky 2y ago File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.
CVE-2022-40090 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: libtiff security update
CVE-2022-38096 medium 5.5 5.5 FIX rhel rocky sles 2y ago Important: kernel security, bug fix, and enhancement update
CVE-2022-33065 medium 5.5 FIX rhel rocky sles 2y ago Moderate: libsndfile security update
CVE-2021-41072 medium 5.5 FIX rhelarch arch sles 2y ago Moderate: squashfs-tools security update
CVE-2021-41043 medium 5.5 FIX rhel rockydebian debian 2y ago RHSA-2024:0769: tcpdump security update (Moderate)
CVE-2021-40153 medium 5.5 FIX rhelarch arch sles 2y ago Moderate: squashfs-tools security update
CVE-2021-29390 medium 5.5 FIX rheldebian debian rocky 2y ago Moderate: libjpeg-turbo security update
CVE-2020-18770 medium 5.5 FIX rhel rocky sles 2y ago Moderate: zziplib security update
CVE-2020-14370 medium 5.5 FIX arch arch sles rocky 2y ago RHSA-2021:0531: container-tools:rhel8 security, bug fix, and enhancement update (Moderate)
CVE-2024-2357 medium 5.5 FIX rhel rockydebian debian 2y ago RHSA-2024:1998: libreswan security update (Moderate)
CVE-2024-21012 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:1828: java-21-openjdk security update (Moderate)
CVE-2024-3864 low 2.5 FIX rhel rockydebian debian 2y ago Memory safety bug present in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9. This bug showed evidence of memory corruption and we presume that with enough effort this could have been exploited…
CVE-2024-3861 low 2.5 FIX rhel rockydebian debian 2y ago If an AlignedBuffer were assigned to itself, the subsequent self-move could result in an incorrect reference count and later use-after-free. This vulnerability affects Firefox < 125, Firefox ESR < 11…
CVE-2024-3859 low 2.5 FIX rhel rockydebian debian 2y ago On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulnerability affects Firefox < 125, Firefox E…
CVE-2024-3857 low 2.5 FIX rhel rockydebian debian 2y ago The JIT created incorrect code for arguments in certain cases. This led to potential use-after-free crashes during garbage collection. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, …
CVE-2024-3854 low 2.5 FIX rhel rockydebian debian 2y ago In some code patterns the JIT incorrectly optimized switch statements and generated code with out-of-bounds-reads. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 11…
CVE-2024-3852 low 2.5 FIX rhel rockydebian debian 2y ago GetBoundName could return the wrong version of an object when JIT optimizations were applied. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
CVE-2024-3302 low 2.5 FIX rhel rockydebian debian 2y ago There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the browser. This vulnerability affects Firef…
CVE-2024-28835 medium 5.5 FIX rheldebian debian sles 2y ago Moderate: gnutls security update
CVE-2024-28834 medium 5.5 FIX rhel rockydebian debian 2y ago RHSA-2024:1784: gnutls security update (Moderate)
CVE-2024-2609 low 2.5 FIX rhel rockydebian debian 2y ago The permission prompt input delay could expire while the window is not in focus. This makes it vulnerable to clickjacking by malicious websites. This vulnerability affects Firefox < 124, Firefox ESR …
CVE-2024-21085 medium 5.5 FIX rhel rocky sles 2y ago Moderate: java-1.8.0-openjdk security update
CVE-2024-21068 medium 5.5 FIX rhel rocky sles 2y ago Moderate: java-1.8.0-openjdk security update