Search

Found 5,162 results in 608ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2022-22826 medium 5.5 FIX rheldebian debian rocky 4y ago RHSA-2022:7692: xmlrpc-c security update (Moderate)
CVE-2022-22825 medium 5.5 FIX rheldebian debian rocky 4y ago RHSA-2022:7692: xmlrpc-c security update (Moderate)
CVE-2022-22824 medium 5.5 FIX rheldebian debian rocky 4y ago RHSA-2022:7692: xmlrpc-c security update (Moderate)
CVE-2022-22823 medium 5.5 FIX rheldebian debian sles 4y ago RHSA-2022:7692: xmlrpc-c security update (Moderate)
CVE-2022-22822 medium 5.5 FIX rheldebian debian rocky 4y ago RHSA-2022:7692: xmlrpc-c security update (Moderate)
CVE-2022-21496 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:5837: java-1.8.0-ibm security update (Moderate)
CVE-2022-21443 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:5837: java-1.8.0-ibm security update (Moderate)
CVE-2022-21434 medium 5.5 FIX rhelarch arch sles 4y ago RHSA-2022:5837: java-1.8.0-ibm security update (Moderate)
CVE-2022-0413 medium 5.5 FIX rhel sles rocky 4y ago RHSA-2022:0894: vim security update (Moderate)
CVE-2021-46143 medium 5.5 FIX rheldebian debian sles 4y ago RHSA-2022:7692: xmlrpc-c security update (Moderate)
CVE-2022-25762 medium 5.5 FIX sles rockydebian debian 4y ago If a web application sends a WebSocket message concurrently with the WebSocket connection closing when running on Apache Tomcat 8.5.0 to 8.5.75 or Apache Tomcat 9.0.0.M1 to 9.0.20, it is possible tha…
CVE-2019-11236 medium 5.5 FIX rockydebian debian rhel 4y ago RHSA-2020:1916: python-pip security update (Moderate)
CVE-2018-14040 medium 5.5 FIX rockydebian debianalmalinux almalinux 4y ago RHSA-2020:4847: pki-core:10.6 and pki-deps:10.6 security, bug fix, and enhancement update (Moderate)
CVE-2021-3672 medium 5.5 FIX debian debianarch arch sles 4y ago RHSA-2022:2043: c-ares security update (Moderate)
CVE-2021-4189 medium 5.5 FIX sles rockydebian debian 4y ago A flaw was found in Python, specifically in the FTP (File Transfer Protocol) client library in PASV (passive) mode. The issue is how the FTP client trusts the host from the PASV response by default. …
CVE-2021-3737 medium 5.5 FIX sles rockydebian debian 4y ago A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to make the client script enter an infinit…
CVE-2020-35492 medium 5.5 FIX debian debianarch arch sles 4y ago RHSA-2022:1961: cairo and pixman security and bug fix update (Moderate)
CVE-2021-33515 medium 5.5 FIX arch archdebian debian sles 4y ago The submission service in Dovecot before 2.3.15 allows STARTTLS command injection in lib-smtp. Sensitive information can be redirected to an attacker-controlled address.
CVE-2021-44224 medium 5.5 FIX debian debian sles rocky 4y ago A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL pointer dereference) or, for configurations mixing forward and reverse proxy declarations, can all…
CVE-2021-36160 medium 5.5 FIX debian debianarch arch sles 4y ago A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the allocated memory and crash (DoS). This issue affects Apache HTTP Server versions 2.4.30 to 2.4.48 (inclusive).
CVE-2021-33193 medium 5.5 FIX debian debianarch arch sles 4y ago A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. This issue affects Apache HTTP Server 2.4.17 to 2.4.…
CVE-2020-35452 medium 5.5 FIX debian debianarch arch sles 4y ago Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP …
CVE-2022-21658 medium 5.5 FIX sles rockydebian debian 4y ago Rust is a multi-paradigm, general-purpose programming language designed for performance and safety, especially safe concurrency. The Rust Security Response WG was notified that the `std::fs::remove_d…
CVE-2021-4213 medium 5.5 FIX rockydebian debian rhel 4y ago RHSA-2022:1851: pki-core:10.6 security and bug fix update (Moderate)
CVE-2020-19131 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:1810: libtiff security update (Moderate)
CVE-2019-25051 medium 5.5 FIX debian debianarch arch sles 4y ago RHSA-2022:1808: aspell security update (Moderate)
CVE-2021-38593 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1796: qt5-qtbase security update (Moderate)
CVE-2022-27650 medium 5.5 FIX debian debian sles rocky 4y ago A flaw was found in crun where containers were incorrectly started with non-empty default permissions. A vulnerability was found in Moby (Docker Engine) where containers were started incorrectly with…
CVE-2021-43860 medium 5.5 FIX slesdebian debian rocky 4y ago RHSA-2022:1792: flatpak security and bug fix update (Moderate)
CVE-2021-25635 medium 5.5 FIX rockydebian debian rhel 4y ago An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to self sign an ODF document, with a signature untrusted by the target, then modify it to change the signature al…
CVE-2021-25634 medium 5.5 FIX rockydebian debian rhel 4y ago LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature …
CVE-2021-25633 medium 5.5 FIX sles rockydebian debian 4y ago LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature …
CVE-2022-0485 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-4145 medium 5.5 FIX sles rockydebian debian 4y ago A NULL pointer dereference issue was found in the block mirror layer of QEMU in versions prior to 6.2.0. The `self` pointer is dereferenced in mirror_wait_on_conflicts() without ensuring that it's no…
CVE-2021-3975 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39263 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39262 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39261 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39260 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39259 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39258 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39257 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39256 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39255 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39254 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39253 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39252 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-39251 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-3748 medium 5.5 FIX sles rockydebian debian 4y ago A use-after-free vulnerability was found in the virtio-net device of QEMU. It could occur when the descriptor's address belongs to the non direct access region, due to num_buffers being set after the…
CVE-2021-3716 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-3622 medium 5.5 FIX arch arch sles rocky 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-35269 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-35268 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-35267 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-35266 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-33289 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-33287 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-33286 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-33285 medium 5.5 FIX arch arch rockydebian debian 4y ago RHSA-2022:1759: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update (Moderate)
CVE-2021-20196 medium 5.5 FIX sles rockydebian debian 4y ago A NULL pointer dereference flaw was found in the floppy disk emulator of QEMU. This issue occurs while processing read/write ioport commands if the selected floppy drive is not initialized with a blo…
CVE-2021-38165 medium 5.5 FIX arch archdebian debian rhel 4y ago Lynx through 2.8.9 mishandles the userinfo subcomponent of a URI, which allows remote attackers to discover cleartext credentials because they may appear in SNI data.
CVE-2021-45444 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:2120: zsh security update (Moderate)
CVE-2021-25219 medium 5.5 FIX debian debianarch arch sles 4y ago RHSA-2022:2092: bind security, bug fix, and enhancement update (Moderate)
CVE-2021-3698 medium 5.5 FIX arch archdebian debian sles 4y ago A flaw was found in Cockpit in versions prior to 260 in the way it handles the certificate verification performed by the System Security Services Daemon (SSSD). This flaw allows client certificates t…
CVE-2021-3660 medium 5.5 FIX arch archdebian debian sles 4y ago Cockpit (and its plugins) do not seem to protect itself against clickjacking. It is possible to render a page from a cockpit server via another website, inside an <iFrame> HTML entry. This may be use…
CVE-2021-38185 medium 5.5 FIX arch archdebian debian sles 4y ago RHSA-2022:1991: cpio security update (Moderate)
CVE-2021-39272 medium 5.5 FIX arch arch slesdebian debian 4y ago RHSA-2022:1964: fetchmail security update (Moderate)
CVE-2021-36386 medium 5.5 FIX arch arch slesdebian debian 4y ago RHSA-2022:1964: fetchmail security update (Moderate)
CVE-2021-44225 medium 5.5 FIX arch arch sles rocky 4y ago RHSA-2022:1930: keepalived security and bug fix update (Moderate)
CVE-2021-45930 medium 5.5 FIX slesdebian debian rhel 4y ago RHSA-2022:1920: qt5-qtsvg security update (Moderate)
CVE-2020-18898 medium 5.5 FIX arch arch slesdebian debian 4y ago RHSA-2022:1842: exiv2 security, bug fix, and enhancement update (Moderate)
CVE-2021-39191 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:1823: mod_auth_openidc:2.3 security update (Moderate)
CVE-2021-32792 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:1823: mod_auth_openidc:2.3 security update (Moderate)
CVE-2021-32791 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:1823: mod_auth_openidc:2.3 security update (Moderate)
CVE-2021-32786 medium 5.5 FIX sles rockydebian debian 4y ago RHSA-2022:1823: mod_auth_openidc:2.3 security update (Moderate)
CVE-2021-39358 medium 5.5 slesdebian debian rocky 4y ago RHSA-2022:1801: gfbgraph security update (Moderate)
CVE-2022-22637 medium 5.5 FIX sles rockydebian debian 4y ago A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.4 and iPadOS 15.4, tvOS 15.4. A malicious website may cause un…
CVE-2022-22594 medium 5.5 FIX sles rockydebian debian 4y ago A cross-origin issue in the IndexDB API was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. A webs…
CVE-2022-22592 medium 5.5 FIX sles rockydebian debian 4y ago A logic issue was addressed with improved state management. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing maliciously crafted w…
CVE-2022-22590 medium 5.5 FIX sles rockydebian debian 4y ago A use after free issue was addressed with improved memory management. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing maliciously…
CVE-2022-22589 medium 5.5 FIX sles rockydebian debian 4y ago A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. Processing a maliciously …
CVE-2021-45483 medium 5.5 FIX rockydebian debianalmalinux almalinux 4y ago In WebKitGTK before 2.32.4, there is a use-after-free in WebCore::Frame::page, a different vulnerability than CVE-2021-30889.
CVE-2021-45482 medium 5.5 FIX rockydebian debianalmalinux almalinux 4y ago In WebKitGTK before 2.32.4, there is a use-after-free in WebCore::ContainerNode::firstChild, a different vulnerability than CVE-2021-30889.
CVE-2021-45481 medium 5.5 FIX rockydebian debianalmalinux almalinux 4y ago In WebKitGTK before 2.32.4, there is incorrect memory allocation in WebCore::ImageBufferCairoImageSurfaceBackend::create, leading to a segmentation violation and application crash, a different vulner…
CVE-2021-30984 medium 5.5 FIX sles rockydebian debian 4y ago A race condition was addressed with improved state handling. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously crafted …
CVE-2021-30954 medium 5.5 FIX sles rockydebian debian 4y ago A type confusion issue was addressed with improved memory handling. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously c…
CVE-2021-30953 medium 5.5 FIX sles rockydebian debian 4y ago An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously cr…
CVE-2021-30951 medium 5.5 FIX sles rockydebian debian 4y ago A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously…
CVE-2021-30936 medium 5.5 FIX sles rockydebian debian 4y ago A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously…
CVE-2021-30934 medium 5.5 FIX sles rockydebian debian 4y ago A buffer overflow issue was addressed with improved memory handling. This issue is fixed in tvOS 15.2, macOS Monterey 12.1, Safari 15.2, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Processing maliciously …
CVE-2021-30897 medium 5.5 sles rocky rhel 4y ago RHSA-2022:1777: webkit2gtk3 security, bug fix, and enhancement update (Moderate)
CVE-2021-30890 medium 5.5 FIX sles rockydebian debian 4y ago A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.0.1, iOS 15.1 and iPadOS 15.1, watchOS 8.1, tvOS 15.1. Processing maliciously crafted web content …
CVE-2021-30889 medium 5.5 FIX sles rockydebian debian 4y ago A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.0.1, iOS 15.1 and iPadOS 15.1, watchOS 8.1, tvOS 15.1. Processing maliciously crafted web…
CVE-2021-30888 medium 5.5 FIX sles rockydebian debian 4y ago An information leakage issue was addressed. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, iOS 14.8.1 and iPadOS 14.8.1, tvOS 15.1, watchOS 8.1. A malicious website using Con…
CVE-2021-30887 medium 5.5 FIX sles rockydebian debian 4y ago A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 15.1 and iPadOS 15.1, watchOS 8.1, tvOS 15.1. Processing maliciously crafted web content may …
CVE-2021-30884 medium 5.5 FIX sles rockydebian debian 4y ago The issue was resolved with additional restrictions on CSS compositing. This issue is fixed in tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Visiting a maliciously crafted website may reveal a user's bro…
CVE-2021-30851 medium 5.5 FIX arch arch sles rocky 4y ago A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 15, tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing maliciously crafted web content may lead …
CVE-2021-30849 medium 5.5 FIX arch arch sles rocky 4y ago Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, watchOS 8, Safari 15, tvOS 15, iOS 15 and iPadOS 15, iTunes 12.12 for …
CVE-2021-30848 medium 5.5 FIX arch arch sles rocky 4y ago A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, Safari 15, iOS 15 and iPadOS 15. Processing maliciously crafted web content may…
CVE-2021-30846 medium 5.5 FIX arch arch sles rocky 4y ago A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, Safari 15, tvOS 15, iOS 15 and iPadOS 15, watchOS 8. Processing maliciously cra…