Search

Found 5,165 results in 804ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2022-23943 medium 5.5 FIX debian debian rhel sles 4y ago Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. This issue affects Apache HTTP Server 2.4 version …
CVE-2022-23825 medium 5.5 FIX rhelalmalinux almalinux sles 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-23816 medium 5.5 FIX rhelalmalinux almalinux sles 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-2320 medium 5.5 FIX rhelarch arch sles 4y ago A flaw was found in the Xorg-x11-server. The specific flaw exists within the handling of ProcXkbSetDeviceInfo requests. The issue results from the lack of proper validation of user-supplied data, whi…
CVE-2022-2319 medium 5.5 FIX rhelarch arch sles 4y ago A flaw was found in the Xorg-x11-server. An out-of-bounds access issue can occur in the ProcXkbSetGeometry function due to improper validation of the request length.
CVE-2022-2309 medium 5.5 FIX rhel slesdebian debian 4y ago NULL Pointer Dereference allows attackers to cause a denial of service (or application crash). This only applies when lxml is used together with libxml2 2.9.10 through 2.9.14. libxml2 2.9.9 and earli…
CVE-2022-22844 medium 5.5 FIX rhelarch arch rocky 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-22721 medium 5.5 FIX debian debian rhel rocky 4y ago If LimitXMLRequestBody is set to allow request bodies larger than 350MB (defaults to 1M) on 32 bit systems an integer overflow happens which later causes out of bounds writes. This issue affects Apac…
CVE-2022-22719 medium 5.5 FIX debian debian rhel sles 4y ago A carefully crafted request body can cause a read to a random memory area which could cause the process to crash. This issue affects Apache HTTP Server 2.4.52 and earlier.
CVE-2022-22662 medium 5.5 FIX arch arch rhel rocky 4y ago A cookie management issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 Catalina, macOS Big Sur 11.6.5. Processing maliciously crafted web content may …
CVE-2022-22629 medium 5.5 FIX rhel rocky sles 4y ago A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iTunes 12.12.3 for Windows, iOS 15.4 and iPadOS 15.4, tvOS 1…
CVE-2022-22628 medium 5.5 FIX rhel rocky sles 4y ago A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4, tvOS 15.4. Processing maliciously…
CVE-2022-22624 medium 5.5 FIX rhel rocky sles 4y ago A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, iOS 15.4 and iPadOS 15.4, tvOS 15.4, Safari 15.4. Processing maliciously crafted web …
CVE-2022-21713 medium 5.5 rhel sles rocky 4y ago RHSA-2022:7519: grafana security, bug fix, and enhancement update (Moderate)
CVE-2022-21703 medium 5.5 rhel sles rocky 4y ago RHSA-2022:7519: grafana security, bug fix, and enhancement update (Moderate)
CVE-2022-21702 medium 5.5 rhel sles rocky 4y ago RHSA-2022:7519: grafana security, bug fix, and enhancement update (Moderate)
CVE-2022-21698 medium 5.5 FIX rhel sles rocky 4y ago RHSA-2022:7529: container-tools:3.0 security update (Moderate)
CVE-2022-21673 medium 5.5 rhel sles rocky 4y ago RHSA-2022:7519: grafana security, bug fix, and enhancement update (Moderate)
CVE-2022-2153 medium 5.5 FIX arch arch rhel sles 4y ago A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/STIMER MSRs, causing a NULL pointer dereference. Th…
CVE-2022-21499 medium 5.5 FIX arch archalmalinux almalinux rhel 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-21166 medium 5.5 FIX rhelalmalinux almalinux sles 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-21125 medium 5.5 FIX almalinux almalinux rhel sles 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-21123 medium 5.5 FIX almalinux almalinux rhel sles 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-20572 medium 5.5 FIX rhel slesdebian debian 4y ago In verity_target of dm-verity-target.c, there is a possible way to modify read-only files due to a missing permission check. This could lead to local escalation of privilege with System execution pri…
CVE-2022-20368 medium 5.5 FIX almalinux almalinux rhel rocky 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-1998 medium 5.5 FIX rhelalmalinux almalinux sles 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-1852 medium 5.5 FIX almalinux almalinux rhel rocky 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-1706 medium 5.5 FIX rhel slesdebian debian 4y ago Moderate: ignition security, bug fix, and enhancement update
CVE-2022-1679 medium 5.5 FIX rhelalmalinux almalinux sles 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-1355 medium 5.5 FIX arch arch rhel rocky 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-1354 medium 5.5 FIX arch arch rheldebian debian 4y ago Moderate: libtiff security update
CVE-2022-1353 medium 5.5 FIX arch archalmalinux almalinux rhel 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-1348 medium 5.5 FIX rhel sles rocky 4y ago Moderate: logrotate security update
CVE-2022-1328 medium 5.5 FIX rhel sles rocky 4y ago RHSA-2022:7640: mutt security update (Moderate)
CVE-2022-1304 medium 5.5 FIX rheldebian debian rocky 4y ago RHSA-2022:7720: e2fsprogs security and bug fix update (Moderate)
CVE-2022-1280 medium 5.5 FIX rhelalmalinux almalinux sles 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-1263 medium 5.5 FIX rhel slesdebian debian 4y ago A NULL pointer dereference issue was found in KVM when releasing a vCPU with dirty ring support enabled. This flaw allows an unprivileged local attacker on the host to issue specific ioctl calls, cau…
CVE-2022-1184 medium 5.5 FIX almalinux almalinux rhel rocky 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-1158 medium 5.5 FIX rhelarch arch sles 4y ago A flaw was found in KVM. When updating a guest's page table entry, vm_pgoff was improperly used as the offset to get the page's pfn. As vaddr and vm_pgoff are controllable by user-mode processes, thi…
CVE-2022-1049 medium 5.5 FIX rhel rockydebian debian 4y ago RHSA-2022:7447: pcs security, bug fix, and enhancement update (Moderate)
CVE-2022-1048 medium 5.5 FIX almalinux almalinux rhelarch arch 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-1016 medium 5.5 FIX arch archalmalinux almalinux rhel 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-0996 medium 5.5 FIX debian debian rhel sles 4y ago RHSA-2022:5823: 389-ds:1.4 security update (Moderate)
CVE-2022-0934 medium 5.5 FIX rhelarch archdebian debian 4y ago RHSA-2022:7633: dnsmasq security and bug fix update (Moderate)
CVE-2022-0924 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0918 medium 5.5 FIX debian debian rhel sles 4y ago RHSA-2022:5823: 389-ds:1.4 security update (Moderate)
CVE-2022-0909 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0908 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0891 medium 5.5 FIX rhelarch arch rocky 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0865 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0854 medium 5.5 FIX rhelalmalinux almalinux rocky 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-0617 medium 5.5 FIX almalinux almalinux rhel rocky 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2022-0562 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0561 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:7585: libtiff security update (Moderate)
CVE-2022-0168 medium 5.5 FIX almalinux almalinux rhelarch arch 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2021-47657 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: drm/virtio: Ensure that objs is not NULL in virtio_gpu_array_put_free() If virtio_gpu_object_shmem_init() fails (e.g. due to faul…
CVE-2021-47649 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: udmabuf: validate ubuf->pagecount Syzbot has reported GPF in sg_alloc_append_table_from_pages(). The problem was in ubuf->pages =…
CVE-2021-47646 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: Revert "Revert "block, bfq: honor already-setup queue merges"" A crash [1] happened to be triggered in conjunction with commit 2d…
CVE-2021-47639 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Zap _all_ roots when unmapping gfn range in TDP MMU Zap both valid and invalid roots when zapping/unmapping a gfn r…
CVE-2021-47580 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: scsi: scsi_debug: Fix type in min_t to avoid stack OOB Change min_t() to use type "u32" instead of type "int" to avoid stack out …
CVE-2021-47572 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: net: nexthop: fix null pointer dereference when IPv6 is not enabled When we try to add an IPv6 nexthop and IPv6 is not enabled (!…
CVE-2021-47378 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: nvme-rdma: destroy cm id before destroy qp to avoid use after free We should always destroy cm_id before destroy qp to avoid to g…
CVE-2021-47103 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: inet: fully convert sk->sk_rx_dst to RCU rules syzbot reported various issues around early demux, one being included in this chan…
CVE-2021-47099 medium 5.5 FIX rhel slesdebian debian 4y ago In the Linux kernel, the following vulnerability has been resolved: veth: ensure skb entering GRO are not cloned. After commit d3256efd8e8b ("veth: allow enabling NAPI even without XDP"), if GRO is…
CVE-2021-46828 medium 5.5 FIX rhel sles rocky 4y ago Moderate: libtirpc security update
CVE-2021-4158 medium 5.5 FIX rhel rockydebian debian 4y ago A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the QEMU process on the host, resulting in a denial of …
CVE-2021-4024 medium 5.5 FIX rhelalmalinux almalinuxarch arch 4y ago RHSA-2024:10289: container-tools:rhel8 security update (Moderate)
CVE-2021-3750 medium 5.5 FIX rocky rhel sles 4y ago A DMA reentrancy issue was found in the USB EHCI controller emulation of QEMU. EHCI does not verify if the Buffer Pointer overlaps with its MMIO region when it transfers the USB packets. Crafted cont…
CVE-2021-3640 medium 5.5 FIX rhelalmalinux almalinuxarch arch 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2021-3611 medium 5.5 FIX rhel sles rocky 4y ago A stack overflow vulnerability was found in the Intel HD Audio device (intel-hda) of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of servic…
CVE-2021-34558 medium 5.5 FIX rhelalmalinux almalinuxarch arch 4y ago Moderate: container-tools:rhel8 security update
CVE-2021-33198 medium 5.5 FIX rhelarch arch rocky 4y ago Moderate: container-tools:rhel8 security update
CVE-2021-33197 medium 5.5 FIX rhelalmalinux almalinuxarch arch 4y ago RHSA-2021:4226: grafana security, bug fix, and enhancement update (Moderate)
CVE-2021-33195 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2021:4226: grafana security, bug fix, and enhancement update (Moderate)
CVE-2021-28861 medium 5.5 FIX rocky rhel sles 4y ago Python 3.x through 3.10 has an open redirection vulnerability in lib/http/server.py due to no protection against multiple (/) at the beginning of URI path which may leads to information disclosure. N…
CVE-2021-28153 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2021:4385: glib2 security and bug fix update (Moderate)
CVE-2021-25220 medium 5.5 FIX rheldebian debianarch arch 4y ago Moderate: dhcp security and enhancement update
CVE-2021-23648 medium 5.5 FIX rhel rockydebian debian 4y ago RHSA-2022:7519: grafana security, bug fix, and enhancement update (Moderate)
CVE-2021-21708 medium 5.5 FIX arch arch rhel sles 4y ago RHSA-2022:7628: php:7.4 security, bug fix, and enhancement update (Moderate)
CVE-2021-20291 medium 5.5 FIX rhelalmalinux almalinux sles 4y ago RHSA-2021:4154: container-tools:rhel8 security, bug fix, and enhancement update (Moderate)
CVE-2021-20199 medium 5.5 FIX rhelalmalinux almalinuxarch arch 4y ago RHSA-2021:1796: container-tools:rhel8 security, bug fix, and enhancement update (Moderate)
CVE-2021-0561 medium 5.5 FIX rhelarch arch sles 4y ago Moderate: flac security update
CVE-2020-36516 medium 5.5 FIX rhel sles rocky 4y ago Moderate: kernel security, bug fix, and enhancement update
CVE-2020-28852 medium 5.5 FIX rhel sles rocky 4y ago RHSA-2022:7129: git-lfs security and bug fix update (Moderate)
CVE-2020-28851 medium 5.5 FIX rhel sles rocky 4y ago RHSA-2022:7129: git-lfs security and bug fix update (Moderate)
CVE-2015-20107 medium 5.5 FIX sles rhel rocky 4y ago In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into app…
CVE-2013-0340 medium 6.8 FIX rheldebian debianmacos macos libexpat_projectpython 4y ago RHSA-2025:21776: expat security update (Important)
CVE-2022-49674 medium 5.5 FIX slesdebian debian rhel 4y ago In the Linux kernel, the following vulnerability has been resolved: dm raid: fix accesses beyond end of raid member array On dm-raid table load (using raid_ctr), dm-raid allocates an array rs->devs…
CVE-2022-49616 medium 5.5 FIX slesdebian debian rhel 4y ago In the Linux kernel, the following vulnerability has been resolved: ASoC: rt7*-sdw: harden jack_detect_handler Realtek headset codec drivers typically check if the card is instantiated before proce…
CVE-2022-2938 medium 5.5 FIX rocky slesdebian debian 4y ago A flaw was found in the Linux kernel's implementation of Pressure Stall Information. While the feature is disabled by default, it could allow an attacker to crash the system or have other memory-corr…
CVE-2022-27950 medium 5.5 FIX rocky slesdebian debian 4y ago In drivers/hid/hid-elo.c in the Linux kernel before 5.16.11, a memory leak exists for a certain hid_parse error condition.
CVE-2022-23960 medium 5.5 FIX rocky slesdebian debian 4y ago Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buf…
CVE-2022-21824 medium 5.5 FIX rocky slesdebian debian 4y ago RHSA-2022:9073: nodejs:16 security, bug fix, and enhancement update (Moderate)
CVE-2022-21682 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:7458: flatpak-builder security and bug fix update (Moderate)
CVE-2021-47213 medium 5.5 rhel 4y ago RHSA-2022:7683: kernel security, bug fix, and enhancement update (Moderate)
CVE-2021-44533 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:9073: nodejs:16 security, bug fix, and enhancement update (Moderate)
CVE-2021-44532 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:9073: nodejs:16 security, bug fix, and enhancement update (Moderate)
CVE-2021-44531 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:9073: nodejs:16 security, bug fix, and enhancement update (Moderate)
CVE-2021-4048 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:7639: openblas security update (Moderate)
CVE-2021-3497 medium 5.5 FIX slesdebian debian rocky 4y ago GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files.