Search

Found 13,922 results in 1558ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2024-57996 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: don't allow 1 packet limit The current implementation does not work correctly with a limit of 1. iproute2 act…
CVE-2024-57977 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: memcg: fix soft lockup in the OOM process A soft lockup issue was found in the product with about 56,000 tasks were in the OOM cg…
CVE-2022-49183 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: fix ref leak when switching zones When switching zones or network namespaces without doing a ct clear in betwe…
CVE-2022-49135 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix memory leak [why] Resource release is needed on the error handling path to prevent memory leak. [how] Fix t…
CVE-2025-27221 medium 5.5 FIX rhel rocky sles 1y ago RHSA-2025:4063: ruby:3.1 security update (Moderate)
CVE-2025-27220 medium 5.5 FIX rhel rocky sles 1y ago RHSA-2025:4063: ruby:3.1 security update (Moderate)
CVE-2025-27219 medium 5.5 FIX rhel rocky sles 1y ago RHSA-2025:4063: ruby:3.1 security update (Moderate)
CVE-2025-21490 medium 5.5 FIX rocky rhel sles 1y ago Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vul…
CVE-2023-52490 medium 5.5 FIX rhel slesdebian debian 1y ago Moderate: kernel security update
CVE-2024-57256 medium 6.8 6.8 FIX slesdebian debian denx 1y ago An integer overflow in ext4fs_read_symlink in Das U-Boot before 2025.01-rc1 occurs for zalloc (adding one to an le32 variable) via a crafted ext4 filesystem with an inode size of 0xffffffff, resultin…
CVE-2025-1376 low 2.5 2.5 debian debian sles elfutils_project 1y ago A vulnerability classified as problematic was found in GNU elfutils 0.192. This vulnerability affects the function elf_strptr in the library /libelf/elf_strptr.c of the component eu-strip. The manipu…
CVE-2025-1352 medium 5.0 5.0 debian debian sles elfutils_project 1y ago A vulnerability has been found in GNU elfutils 0.192 and classified as critical. This vulnerability affects the function __libdw_thread_tail in the library libdw_alloc.c of the component eu-readelf. …
CVE-2025-21701 medium 4.7 4.7 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: net: avoid race between device unregistration and ethnl ops The following trace can be seen if a device is being unregistered whi…
CVE-2025-25184 medium 5.5 FIX rhel slesdebian debian 1y ago Rack provides an interface for developing web applications in Ruby. Prior to versions 2.2.11, 3.0.12, and 3.1.10, Rack::CommonLogger can be exploited by crafting input that includes newline character…
CVE-2022-49043 medium 5.5 FIX rhel rocky sles 1y ago xmlXIncludeAddNode in xinclude.c in libxml2 before 2.11.0 has a use-after-free.
CVE-2025-25186 medium 5.5 FIX rhel rocky sles 1y ago RHSA-2025:10217: ruby:3.3 security update (Moderate)
CVE-2024-52533 medium 5.5 FIX rhel rockydebian debian 1y ago RHSA-2025:11327: glib2 security update (Moderate)
CVE-2024-41184 medium 5.5 FIX rhel rocky sles 1y ago RHSA-2025:0743: keepalived security update (Moderate)
CVE-2024-21096 medium 5.5 FIX rhel rocky sles 1y ago Vulnerability in the MySQL Server product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnera…
CVE-2019-12900 medium 5.5 FIX rheldebian debian rocky 1y ago RHSA-2025:0733: bzip2 security and bug fix update (Moderate)
CVE-2025-24898 medium 5.5 FIX rhel rockydebian debian 1y ago rust-openssl is a set of OpenSSL bindings for the Rust programming language. In affected versions `ssl::select_next_proto` can return a slice pointing into the `server` argument's buffer but with a l…
CVE-2025-21683 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: bpf: Fix bpf_sk_select_reuseport() memory leak As pointed out in the original comment, lookup in sockmap can return a TCP ESTABLI…
CVE-2025-21678 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: gtp: Destroy device along with udp socket's netns dismantle. gtp_newlink() links the device to a list in dev_net(dev) instead of …
CVE-2024-57948 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: mac802154: check local interfaces before deleting sdata list syzkaller reported a corrupted list in ieee802154_if_remove. [1] Re…
CVE-2025-21502 medium 5.5 FIX rhel rocky sles 1y ago RHSA-2025:2615: java-1.8.0-ibm security update (Moderate)
CVE-2024-57947 medium 5.5 FIX rhel slesdebian debian 1y ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_set_pipapo: fix initial map fill The initial buffer has to be inited to all-ones, but it must restrict it to the si…
CVE-2024-53088 medium 5.5 FIX rhel rocky sles 1y ago Moderate: kernel security update
CVE-2024-50275 medium 5.5 FIX rhel rocky sles 1y ago Moderate: kernel security update
CVE-2024-50154 medium 5.5 FIX rhel rocky sles 1y ago Moderate: kernel security update
CVE-2025-21664 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: dm thin: make get_first_thin use rcu-safe list first function The documentation in rculist.h explains the absence of list_empty_r…
CVE-2024-57924 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: fs: relax assertions on failure to encode file handles Encoding file handles is usually performed by a filesystem >encode_fh() me…
CVE-2024-57913 medium 4.7 4.7 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Remove WARN_ON in functionfs_bind This commit addresses an issue related to below kernel panic where panic_on_…
CVE-2025-21653 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: net_sched: cls_flow: validate TCA_FLOW_RSHIFT attribute syzbot found that TCA_FLOW_RSHIFT attribute was not validated. Right shit…
CVE-2025-21640 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: sctp: sysctl: cookie_hmac_alg: avoid using current->nsproxy As mentioned in a previous commit of this series, using the 'net' str…
CVE-2025-21639 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: sctp: sysctl: rto_min/max: avoid using current->nsproxy As mentioned in a previous commit of this series, using the 'net' structu…
CVE-2025-21638 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: sctp: sysctl: auth_enable: avoid using current->nsproxy As mentioned in a previous commit of this series, using the 'net' structu…
CVE-2024-57902 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: af_packet: fix vlan_get_tci() vs MSG_PEEK Blamed commit forgot MSG_PEEK case, allowing a crash [1] as found by syzbot. Rework vl…
CVE-2024-57901 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: af_packet: fix vlan_get_protocol_dgram() vs MSG_PEEK Blamed commit forgot MSG_PEEK case, allowing a crash [1] as found by syzbot.…
CVE-2024-11029 medium 5.5 FIX rheldebian debianalmalinux almalinux 1y ago Moderate: ipa security update
CVE-2024-11831 medium 5.4 5.4 FIX rhel slesdebian debian 1y ago A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object type…
CVE-2024-47809 medium 5.5 5.5 FIX slesdebian debian linux-kernel 1y ago In the Linux kernel, the following vulnerability has been resolved: dlm: fix possible lkb_resource null dereference This patch fixes a possible null pointer dereference when this function is called…
CVE-2024-56727 medium 5.5 5.5 FIX slesdebian debian linux-kernel 2y ago In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in otx2_flows.c Adding error pointer check after calling otx2_mbox_get_rsp().
CVE-2024-56719 medium 5.5 5.5 FIX slesdebian debian linux-kernel 2y ago In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix TSO DMA API usage causing oops Commit 66600fac7a98 ("net: stmmac: TSO: Fix unbalanced DMA map/unmap for non-page…
CVE-2024-56657 medium 5.5 5.5 FIX slesdebian debian linux-kernel 2y ago In the Linux kernel, the following vulnerability has been resolved: ALSA: control: Avoid WARN() for symlink errors Using WARN() for showing the error of symlink creations don't give more informatio…
CVE-2024-53221 medium 5.5 5.5 FIX slesdebian debian linux-kernel 2y ago In the Linux kernel, the following vulnerability has been resolved: f2fs: fix null-ptr-deref in f2fs_submit_page_bio() There's issue as follows when concurrently installing the f2fs.ko module and m…
CVE-2024-50255 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-50223 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-50192 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-50148 medium 5.5 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-50142 medium 5.5 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-50125 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-50124 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-50115 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-50110 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-50099 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-49888 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-47675 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-46697 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-45020 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-38564 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-27399 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-54677 low 2.5 FIX slesdebian debian 2y ago Uncontrolled Resource Consumption vulnerability in the examples web application provided with Apache Tomcat leads to denial of service. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.…
CVE-2024-50612 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:11192: libsndfile security update (Moderate)
CVE-2024-38796 medium 5.5 FIX rhel rockydebian debian 2y ago RHSA-2024:11185: edk2:20220126gitbb1bba3d77 security update (Moderate)
CVE-2024-10573 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:11193: mpg123 security update (Moderate)
CVE-2024-7592 low 2.5 FIX rhel sles rocky 2y ago There is a LOW severity vulnerability affecting CPython, specifically the 'http.cookies' standard library module. When parsing cookies that contained backslashes for quoted characters in the cookie…
CVE-2024-0397 medium 5.5 FIX rhel slesdebian debian 2y ago A defect was discovered in the Python “ssl” module where there is a memory race condition with the ssl.SSLContext methods “cert_store_stats()” and “get_ca_certs()”. The race condition can be triggere…
CVE-2024-9026 medium 5.5 FIX rhelalmalinux almalinux rocky 2y ago RHSA-2024:10952: php:7.4 security update (Moderate)
CVE-2024-8927 medium 5.5 FIX almalinux almalinux rhel rocky 2y ago RHSA-2024:10952: php:7.4 security update (Moderate)
CVE-2024-8925 medium 5.5 FIX rhelalmalinux almalinux rocky 2y ago RHSA-2024:10952: php:7.4 security update (Moderate)
CVE-2024-5458 medium 5.5 FIX rhelalmalinux almalinux rocky 2y ago RHSA-2024:10952: php:7.4 security update (Moderate)
CVE-2024-50251 medium 6.2 6.2 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-49949 medium 5.5 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-46695 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-45018 medium 5.5 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-44994 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-43854 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-3096 medium 5.5 FIX rhelalmalinux almalinux rocky 2y ago RHSA-2024:10952: php:7.4 security update (Moderate)
CVE-2024-2756 medium 5.5 FIX rhelalmalinux almalinux rocky 2y ago RHSA-2024:10952: php:7.4 security update (Moderate)
CVE-2024-26615 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-31227 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: redis:7 security update
CVE-2023-41053 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: redis:7 security update
CVE-2024-52337 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:11161: tuned security update (Moderate)
CVE-2024-50226 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-46679 medium 4.7 4.7 FIX rhel slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: ethtool: check device is present when getting link settings A sysfs reader can race with a device reset or removal, attempting to…
CVE-2024-42244 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-41009 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-27043 low 2.5 FIX rocky slesdebian debian 2y ago In the Linux kernel, the following vulnerability has been resolved: media: edia: dvbdev: fix a use-after-free In dvb_register_device, *pdvbdev is set equal to dvbdev, which is freed in several erro…
CVE-2024-53101 medium 5.5 5.5 FIX slesdebian debian linux-kernel 2y ago In the Linux kernel, the following vulnerability has been resolved: fs: Fix uninitialized value issue in from_kuid and from_kgid ocfs2_setattr() uses attr->ia_mode, attr->ia_uid and attr->ia_gid in…
CVE-2024-45321 medium 5.5 rhel rockydebian debian 2y ago RHSA-2024:10219: perl-App-cpanminus:1.7044 security update (Moderate)
CVE-2024-5197 medium 5.5 FIX rhel rocky sles 2y ago RHSA-2024:5941: libvpx security update (Moderate)
CVE-2024-3447 medium 6.0 6.0 FIX slesdebian debian qemu 2y ago A heap-based buffer overflow was found in the SDHCI device emulation of QEMU. The bug is triggered when both `s->data_count` and the size of `s->fifo_buffer` are set to 0x200, leading to an out-of-b…
CVE-2024-46858 medium 5.5 FIX rhel rocky sles 2y ago Moderate: kernel security update
CVE-2024-46824 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2024-42283 medium 5.5 5.5 FIX rhel slesdebian debian 2y ago Moderate: kernel security update
CVE-2018-12699 low 2.5 FIX debian debian sles rocky 2y ago RHSA-2024:9689: binutils security update (Low)
CVE-2024-50602 medium 5.5 FIX rhel rockydebian debian 2y ago RHSA-2024:9502: expat security update (Moderate)
CVE-2024-8235 medium 5.5 FIX rhel slesdebian debian 2y ago Moderate: libvirt security update
CVE-2024-7409 medium 5.5 FIX rhel rocky sles 2y ago A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchronization during socket closure when a client keeps a socket open as the server …
CVE-2024-6655 medium 5.5 FIX rhel rockydebian debian 2y ago RHSA-2024:6963: gtk3 security update (Moderate)