CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2021-43980 The simplified implementation of blocking reads and writes introduced in Tomcat 10 and back-ported to Tomcat 9.0.47 onwards exp... Low tomcat 完成修复 2022-09-28 2026-03-30
CVE-2016-2338 An exploitable heap overflow vulnerability exists in the Psych::Emitter start_document function of Ruby. In Psych::Emitter star... Moderate ruby 完成修复 2022-09-28 2026-03-30
CVE-2015-1931 IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR1 FP10, 7 R1 before SR3 FP10, 7 before SR9 FP10, 6 ... Moderate java-11-openjdk 完成修复 2022-09-28 2025-12-05
CVE-2014-0148 Qemu before 2.0 block driver for Hyper-V VHDX Images is vulnerable to infinite loops and other potential issues when calculatin... Moderate qemu 完成修复 2022-09-28 2025-12-18
CVE-2022-3324 Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0598. Important vim 完成修复 2022-09-27 2026-01-05
CVE-2021-27862 Layer 2 network filtering capabilities such as IPv6 RA guard can be bypassed using LLC/SNAP headers with invalid length and Eth... Moderate kernel 完成修复 2022-09-27 2025-12-23
CVE-2021-27861 Layer 2 network filtering capabilities such as IPv6 RA guard can be bypassed using LLC/SNAP headers with invalid length (and op... Moderate kernel 完成修复 2022-09-27 2025-12-23
CVE-2021-27854 Layer 2 network filtering capabilities such as IPv6 RA guard can be bypassed using combinations of VLAN 0 headers, LLC/SNAP hea... Moderate kernel 完成修复 2022-09-27 2025-12-23
CVE-2021-27853 Layer 2 network filtering capabilities such as IPv6 RA guard or ARP inspection can be bypassed using combinations of VLAN 0 hea... Moderate kernel 完成修复 2022-09-27 2025-12-23
CVE-2022-3103 off-by-one in io_uring module. Important kernel:5.10, kernel:4.19, kernel 完成修复 2022-09-26 2025-12-08
CVE-2022-22058 Memory corruption due to use after free issue in kernel while processing ION handles in Snapdragon Auto, Snapdragon Compute, Sn... Important kernel 完成修复 2022-09-26 2025-12-08
CVE-2022-3297 Use After Free in GitHub repository vim/vim prior to 9.0.0579. Important vim 完成修复 2022-09-25 2026-01-05
CVE-2022-3296 Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0577. Important vim 完成修复 2022-09-25 2026-01-05
CVE-2022-40748 IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrar... Moderate kernel 完成修复 2022-09-23 2025-12-23
CVE-2022-36944 Scala 2.13.x before 2.13.9 has a Java deserialization chain in its JAR file. On its own, it cannot be exploited. There is only ... Important scala 完成修复 2022-09-23 2026-01-04
CVE-2022-35951 Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Ove... Important redis 完成修复 2022-09-23 2026-01-04
CVE-2022-35721 IBM Jazz for Service Management 1.1.3 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed ar... Moderate kernel 完成修复 2022-09-23 2025-12-23
CVE-2022-35252 When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later ar... Low curl 完成修复 2022-09-23 2026-03-30
CVE-2022-32816 The issue was addressed with improved UI handling. This issue is fixed in watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6, mac... Moderate webkit2gtk3 完成修复 2022-09-23 2026-07-13
CVE-2022-32792 An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, wat... Moderate webkit2gtk3 完成修复 2022-09-23 2026-07-12
CVE-2022-3278 NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0552. Moderate vim 完成修复 2022-09-23 2026-03-30
CVE-2022-2785 There exists an arbitrary memory read within the Linux Kernel BPF - Constants provided to fill pointers in structs passed in to... Moderate kernel 完成修复 2022-09-23 2025-12-23
CVE-2022-26700 A memory corruption issue was addressed with improved state management. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5... Moderate webkitgtk4, webkitgtk3, webkit2gtk3 完成修复 2022-09-23 2026-07-11
CVE-2022-22629 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.3, Safari 15.4, w... Moderate webkitgtk4, webkitgtk3, webkit2gtk3 完成修复 2022-09-23 2026-07-11
CVE-2022-22628 A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, ... Moderate webkitgtk4, webkitgtk3, webkit2gtk3 完成修复 2022-09-23 2026-07-11
CVE-2022-22624 A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, iOS 15.4 and ... Moderate webkitgtk4, webkitgtk3, webkit2gtk3 完成修复 2022-09-23 2026-07-11
CVE-2022-22610 A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4... Important webkit2gtk3 完成修复 2022-09-23 2025-12-29
CVE-2022-22423 IBM Common Cryptographic Architecture (CCA 5.x MTM for 4767 and CCA 7.x MTM for 4769) could allow a local user to cause a denia... Moderate kernel 完成修复 2022-09-23 2025-12-23
CVE-2022-40146 Server-Side Request Forgery (SSRF) vulnerability in Batik of Apache XML Graphics allows an attacker to access files using a Jar... Moderate batik 完成修复 2022-09-22 2026-07-11
CVE-2022-39227 python-jwt is a module for generating and verifying JSON Web Tokens. Versions prior to 3.3.4 are subject to Authentication Bypa... Important python-jwt 完成修复 2022-09-22 2025-12-29
CVE-2022-36062 Grafana is an open-source platform for monitoring and observability. In versions prior to 8.5.13, 9.0.9, and 9.1.6, Grafana is ... Moderate grafana 完成修复 2022-09-22 2026-03-27
CVE-2022-3256 Use After Free in GitHub repository vim/vim prior to 9.0.0530. Important vim 完成修复 2022-09-22 2026-01-05
CVE-2022-1941 A parsing vulnerability for the MessageSet type in the ProtocolBuffers versions prior to and including 3.16.1, 3.17.3, 3.18.2, ... Important golang-googlecode-goprotobuf, protobuf-c, protobuf 完成修复 2022-09-22 2025-12-10
CVE-2022-32212 A OS Command Injection vulnerability exists in Node.js versions <14.20.0, <16.16.0, <18.5.0 due to an insufficient IsAllowedHos... Important nodejs:14, nodejs:16, nodejs 完成修复 2022-09-21 2026-01-06
CVE-2022-2906 An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. ... Important bind-dyndb-ldap, dhcp, bind 完成修复 2022-09-21 2026-01-07
CVE-2022-2881 The underlying bug might cause read past end of the buffer and either read memory it should not read, or crash the process. Important bind-dyndb-ldap, bind 完成修复 2022-09-21 2026-01-06
CVE-2022-2795 By flooding the target resolver with queries exploiting this flaw an attacker can significantly impair the resolver's performan... Moderate sssd, bind, bind9.16 完成修复 2022-09-21 2026-03-30
CVE-2022-0391 A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL)... Moderate python, python38:3.8, python36:3.6, python3, python27:2.7, python39:3.9 完成修复 2022-09-21 2026-03-30
CVE-2019-9636 Python 2.7.x through 2.7.16 and 3.x through 3.7.2 is affected by: Improper Handling of Unicode Encoding (with an incorrect netl... Important python27:2.7, python, python36:3.6, python3 完成修复 2022-09-21 2026-01-09
CVE-2022-41222 5.13.3之前的Linux内核中的mm/mremap.c通过陈旧的TLB进行释放后使用,因为在PUD移动期间不会持有rmap�... Important kernel 完成修复 2022-09-20 2025-12-08
CVE-2022-35957 Grafana is an open-source platform for monitoring and observability. Versions prior to 9.1.6 and 8.5.13 are vulnerable to an es... Moderate grafana 完成修复 2022-09-20 2026-03-27
CVE-2022-28321 The Linux-PAM package before 1.5.2-6.1 for openSUSE Tumbleweed allows authentication bypass for SSH logins. The pam_access.so m... Important pam 完成修复 2022-09-20 2026-01-09
CVE-2022-3424 A use-after-free flaw was found in the Linux kernel?s SGI GRU driver in the way the first gru_file_unlocked_ioctl function is c... Moderate kernel 完成修复 2022-09-19 2025-12-23
CVE-2022-3235 Use After Free in GitHub repository vim/vim prior to 9.0.0490. Important vim 完成修复 2022-09-18 2026-01-05
CVE-2022-3234 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0483. Important vim 完成修复 2022-09-17 2026-01-05
CVE-2022-40755 JasPer 3.0.6 allows denial of service via a reachable assertion in the function inttobits in libjasper/base/jas_image.c. Moderate jasper 完成修复 2022-09-16 2026-03-27
CVE-2022-30674 Adobe InDesign versions 16.4.2 (and earlier) and 17.3 (and earlier) are affected by an out-of-bounds read vulnerability that co... Moderate mingw-expat, expat 完成修复 2022-09-16 2026-07-10
CVE-2022-40476 A null pointer dereference issue was discovered in fs/io_uring.c in the Linux kernel before 5.15.62. A local user could use thi... Moderate kernel 5.10, kernel 4.19 完成修复 2022-09-14 2025-12-23
CVE-2022-36114 Cargo is a package manager for the rust programming language. It was discovered that Cargo did not limit the amount of data ext... Moderate rust 完成修复 2022-09-14 2025-12-16
CVE-2022-36113 Cargo is a package manager for the rust programming language. After a package is downloaded, Cargo extracts its source code in ... Important rust 完成修复 2022-09-14 2025-12-16
CVE-2022-32190 JoinPath and URL.JoinPath do not remove ../ path elements appended to a relative path. For example, JoinPath("https://go.dev", ... Important golang, golang-dbus, go-toolset:an8 完成修复 2022-09-13 2025-12-10
CVE-2022-3190 Infinite loop in the F5 Ethernet Trailer protocol dissector in Wireshark 3.6.0 to 3.6.7 and 3.4.0 to 3.4.15 allows denial of se... Moderate wireshark 完成修复 2022-09-13 2026-01-25
CVE-2022-3170 An out-of-bounds access issue was found in the Linux kernel sound subsystem. It could occur when the 'id->name' provided by the... Moderate kernel 完成修复 2022-09-13 2025-12-23
CVE-2022-20385 a function called 'nla_parse', do not check the len of para, it will check nla_type (which can be controlled by userspace) with... Critical libnl3 完成修复 2022-09-13 2026-01-10
CVE-2022-38266 An issue in the Leptonica linked library (v1.79.0) allows attackers to cause an arithmetic exception leading to a Denial of Ser... Moderate leptonica 完成修复 2022-09-09 2026-03-30
CVE-2022-38096 A NULL pointer dereference vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in GPU component of ... Moderate kernel 完成修复 2022-09-09 2025-12-23
CVE-2022-36280 An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_kms.c in GPU componen... Moderate kernel 完成修复 2022-09-09 2025-12-23
CVE-2022-3077 A buffer overflow vulnerability was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way it handled... Moderate kernel 5.10, kernel 4.19 完成修复 2022-09-09 2025-12-23
CVE-2021-30560 Use after free in Blink XSLT in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corr... Important libxslt 完成修复 2022-09-09 2026-01-05
CVE-2022-3153 NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0404. Moderate vim 完成修复 2022-09-08 2026-03-30
CVE-2022-36083 JOSE is "JSON Web Almost Everything" - JWA, JWS, JWE, JWT, JWK, JWKS with no dependencies using runtime's native crypto in Node... Moderate jose 完成修复 2022-09-07 2026-01-25
CVE-2022-27664 In net/http in Go before 1.18.6 and 1.19.x before 1.19.1, attackers can cause a denial of service because an HTTP/2 connection ... Moderate grafana, cockpit-composer, osbuild, osbuild-composer, git-lfs, golang, grafana-pcp 完成修复 2022-09-07 2025-12-10
CVE-2022-3134 Use After Free in GitHub repository vim/vim prior to 9.0.0389. Important vim 完成修复 2022-09-06 2026-01-05
CVE-2022-25310 A segmentation fault (SEGV) flaw was found in the Fribidi package and affects the fribidi_remove_bidi_marks() function of the l... Low fribidi 完成修复 2022-09-06 2026-03-30
CVE-2022-25309 A heap-based buffer overflow flaw was found in the Fribidi package and affects the fribidi_cap_rtl_to_unicode() function of the... Moderate fribidi 完成修复 2022-09-06 2026-03-30
CVE-2022-25308 A stack-based buffer overflow flaw was found in the Fribidi package. This flaw allows an attacker to pass a specially crafted f... Moderate fribidi 完成修复 2022-09-06 2026-03-30
CVE-2022-34883 OS Command Injection vulnerability in Hitachi RAID Manager Storage Replication Adapter allows remote authenticated users to exe... Important docker 完成修复 2022-09-05 2026-01-08
CVE-2022-34882 Information Exposure Through an Error Message vulnerability in Hitachi RAID Manager Storage Replication Adapter allows remote a... Moderate docker 完成修复 2022-09-05 2026-03-30
CVE-2022-3099 Use After Free in GitHub repository vim/vim prior to 9.0.0360. Important vim 完成修复 2022-09-03 2026-01-05
CVE-2020-35527 In SQLite 3.31.1, there is an out of bounds access problem through ALTER TABLE for views that have a nested FROM clause. Moderate sqlite 完成修复 2022-09-02 2026-03-30
CVE-2020-35525 In SQlite 3.31.1, a potential null pointer derreference was found in the INTERSEC query processing. Low sqlite 完成修复 2022-09-02 2026-03-27
CVE-2020-29260 libvncclient v0.9.13 was discovered to contain a memory leak via the function rfbClientCleanup(). Important libvncserver 完成修复 2022-09-02 2026-01-05
CVE-2022-39188 在5.19之前的Linux内核的include/asm-generic/tlb.h中发现了一个问题。由于竞争条件(unmap_mapping_range与mu... Moderate kernel 完成修复 2022-09-01 2025-12-23
CVE-2022-39170 libdwarf 0.4.1 has a double free in _dwarf_exec_frame_instr in dwarf_frame.c. Important libdwarf 完成修复 2022-09-01 2026-01-06
CVE-2022-32743 Samba does not validate the Validated-DNS-Host-Name right for the dNSHostName attribute which could permit unprivileged users t... Important samba 完成修复 2022-09-01 2026-01-09
CVE-2022-3078 An issue was discovered in the Linux kernel through 5.16-rc6. There is a lack of check after calling vzalloc() and lack of free... Moderate kernel 5.10, kernel 4.19 完成修复 2022-09-01 2025-12-23
CVE-2022-28199 NVIDIA’s distribution of the Data Plane Development Kit (MLNX_DPDK) contains a vulnerability in the network stack, where... Moderate dpdk 完成修复 2022-09-01 2026-07-13
CVE-2022-2663 Linux内核中的nf_conntrack_irc中发现了一个问题,其中消息处理可能会混淆并且错误地匹配消息。当�... Moderate kernel:4.19, kernel, kernel:5.10 完成修复 2022-09-01 2025-12-23
CVE-2022-2308 A flaw was found in vDPA with VDUSE backend. There are currently no checks in VDUSE kernel driver to ensure the size of the dev... Moderate kernel 完成修复 2022-09-01 2025-12-23
CVE-2022-2132 A permissive list of allowed inputs flaw was found in DPDK. This issue allows a remote attacker to cause a denial of service tr... Important dpdk 完成修复 2022-09-01 2026-01-08
CVE-2022-1508 No description is available for this CVE. Moderate kernel 完成修复 2022-09-01 2025-12-23
CVE-2022-1263 The broken commit is fb04a1eddb1a ("KVM: X86: Implement ring-based dirty memory tracking"), which is not exists in ANCK 4.19&5.... Moderate kernel 完成修复 2022-09-01 2025-12-18
CVE-2021-3826 Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially cause a den... Low gdb, binutils 完成修复 2022-09-01 2025-12-11
CVE-2020-27784 A vulnerability was found in the Linux kernel, where accessing a deallocated instance in printer_ioctl() printer_ioctl() tries ... Moderate kernel 完成修复 2022-09-01 2025-12-23
CVE-2022-3028 当同时发生对xfrm_probe_algs的多个调用时,在用于转换数据包的Linux内核IP框架(XFRM子系统)中发�... Moderate kernel 完成修复 2022-08-31 2025-12-23
CVE-2022-2521 It was found in libtiff 4.4.0rc1 that there is an invalid pointer free operation in TIFFClose() at tif_close.c:131 called by ti... Low libtiff 完成修复 2022-08-31 2026-03-30
CVE-2022-2520 A flaw was found in libtiff 4.4.0rc1. There is a sysmalloc assertion fail in rotateImage() at tiffcrop.c:8621 that can cause pr... Low libtiff 完成修复 2022-08-31 2026-03-30
CVE-2022-2519 There is a double free or corruption in rotateImage() at tiffcrop.c:8839 found in libtiff 4.4.0rc1 Moderate libtiff 完成修复 2022-08-31 2026-03-30
CVE-2022-39046 GNUC库(glibc)2.36中发现了一个问题。当syslog函数传递一个大于1024字节的精心设计的输入字符串时,... Moderate glibc 完成修复 2022-08-30 2025-12-11
CVE-2022-31625 In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplyin... Important php 完成修复 2022-08-30 2026-01-04
CVE-2022-3037 Use After Free in GitHub repository vim/vim prior to 9.0.0322. Important vim 完成修复 2022-08-30 2026-01-05
CVE-2022-39028 telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference via 0xff... Moderate telnet 完成修复 2022-08-29 2026-03-30
CVE-2022-2953 LibTIFF 4.4.0 has an out-of-bounds read in extractImageSection in tools/tiffcrop.c:6905, allowing attackers to cause a denial-o... Moderate libtiff 完成修复 2022-08-29 2026-03-30
CVE-2022-24107 Xpdf prior to 4.04 lacked an integer overflow check in JPXStream.cc. Important xpdf 完成修复 2022-08-29 2026-01-04
CVE-2022-21385 A flaw in net_rds_alloc_sgs() in Oracle Linux kernels allows unprivileged local users to crash the machine. CVSS 3.1 Base Score... Moderate kernel 完成修复 2022-08-29 2025-12-08
CVE-2022-0934 A single-byte, non-arbitrary write/use-after-free flaw was found in dnsmasq. This flaw allows an attacker who sends a crafted p... Moderate dnsmasq 完成修复 2022-08-29 2026-07-13
CVE-2022-0669 A flaw was found in dpdk. This flaw allows a malicious vhost-user master to attach an unexpected number of fds as ancillary dat... Moderate dpdk 完成修复 2022-08-29 2026-07-13
CVE-2022-3016 Use After Free in GitHub repository vim/vim prior to 9.0.0286. Important vim 完成修复 2022-08-28 2026-01-05
CVE-2022-38791 In MariaDB before 10.9.2, compress_write in extra/mariabackup/ds_compress.cc does not release data_mutex upon a stream write fa... Moderate mariadb:10.5, mariadb, mariadb:10.3 完成修复 2022-08-27 2026-06-24
CVE-2019-15167 The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vul... Low tcpdump 完成修复 2022-08-27 2026-01-25

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:31

results matching ""

    No results matching ""

    results matching ""

      No results matching ""