CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2022-34303 A flaw was found in Eurosoft bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure... Moderate fwupd 完成修复 2022-08-26 2026-03-30
CVE-2022-34302 A flaw was found in New Horizon Datasys bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper ... Moderate fwupd 完成修复 2022-08-26 2026-03-30
CVE-2022-34301 A flaw was found in CryptoPro Secure Disk bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tampe... Moderate fwupd 完成修复 2022-08-26 2026-03-30
CVE-2022-32742 A flaw was found in Samba. Some SMB1 write requests were not correctly range-checked to ensure the client had sent enough data ... Moderate samba 完成修复 2022-08-26 2026-03-27
CVE-2022-32208 When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it pos... Moderate curl 完成修复 2022-08-26 2026-03-30
CVE-2022-32206 curl < 7.84.0 supports "chained" HTTP compression algorithms, meaning that a serverresponse can be compressed multiple times an... Moderate curl 完成修复 2022-08-26 2026-03-30
CVE-2022-29154 An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the director... Important rsync 完成修复 2022-08-26 2026-01-04
CVE-2021-32570 In Ericsson Network Manager (ENM) releases before 21.2, users belonging to the same AMOS authorization group can retrieve the d... Moderate NetworkManager 完成修复 2022-08-26 2026-03-30
CVE-2022-38533 在2.40之前的GNUBinutils中,当通过精心设计的文件从strip-new中的strip_main函数调用时,错误函数bfd_ge... Moderate binutils 完成修复 2022-08-25 2025-12-11
CVE-2022-32746 A flaw was found in the Samba AD LDAP server. The AD DC database audit logging module can access LDAP message values freed by a... Moderate libldb, samba 完成修复 2022-08-25 2026-03-30
CVE-2022-32745 A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify the requ... Important samba 完成修复 2022-08-25 2026-01-09
CVE-2022-32744 A flaw was found in Samba. The KDC accepts kpasswd requests encrypted with any key known to it. By encrypting forged kpasswd re... Important samba 完成修复 2022-08-25 2026-01-09
CVE-2022-2982 Use After Free in GitHub repository vim/vim prior to 9.0.0260. Important vim 完成修复 2022-08-25 2026-01-05
CVE-2022-2980 NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0259. Moderate vim 完成修复 2022-08-25 2026-03-30
CVE-2022-2255 A vulnerability was found in mod_wsgi. The X-Client-IP header is not removed from a request from an untrusted proxy, allowing a... Important python39:3.9, mod_wsgi 完成修复 2022-08-25 2026-01-09
CVE-2022-21151 处理器优化删除或修改某些英特尔(R)处理器的安全关键代码可能会允许经过身份验证的用户通过�... Moderate microcode_ctl 完成修复 2022-08-25 2026-03-30
CVE-2022-2031 A flaw was found in Samba. The security vulnerability occurs when KDC and the kpasswd service share a single account and set of... Important samba 完成修复 2022-08-25 2026-01-09
CVE-2021-43767 Odyssey passes to client unencrypted bytes from man-in-the-middle When Odyssey storage is configured to use the PostgreSQL serv... Moderate postgresql 完成修复 2022-08-25 2026-03-30
CVE-2021-42523 There are two Information Disclosure vulnerabilities in colord, and they lie in colord/src/cd-device-db.c and colord/src/cd-pro... Important colord-gtk, colord 完成修复 2022-08-25 2026-01-04
CVE-2021-35939 发现对CVE-2017-7500和CVE-2017-7501的修复不完整:仅针对要创建的文件的父目录实现了检查。拥有另�... Moderate rpm 完成修复 2022-08-25 2026-03-30
CVE-2021-35938 在rpm中发现符号链接问题。当rpm在安装文件后设置所需的权限和凭据时,会发生这种情况。本地�... Moderate rpm 完成修复 2022-08-25 2026-07-10
CVE-2021-35937 A race condition vulnerability was found in rpm. A local unprivileged user could use this flaw to bypass the checks that were i... Moderate rpm 完成修复 2022-08-25 2026-07-09
CVE-2022-32793 Multiple out-of-bounds write issues were addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.5, w... Important webkit2gtk3 完成修复 2022-08-24 2025-12-29
CVE-2021-4217 A flaw was found in unzip. The vulnerability occurs due to improper handling of Unicode strings, which can lead to a null point... Low unzip 完成修复 2022-08-24 2026-03-30
CVE-2021-4209 A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing zero-l... Moderate gnutls 完成修复 2022-08-24 2026-03-30
CVE-2021-4178 A arbitrary code execution flaw was found in the Fabric 8 Kubernetes client affecting versions 5.0.0-beta-1 and above. Due to a... Moderate fuse 完成修复 2022-08-24 2026-03-30
CVE-2022-38663 Jenkins Git Plugin 4.11.4 and earlier does not properly mask (i.e., replace with asterisks) credentials in the build log provid... Moderate git-lfs, git 完成修复 2022-08-23 2026-07-11
CVE-2022-2946 Use After Free in GitHub repository vim/vim prior to 9.0.0246. Important vim 完成修复 2022-08-23 2026-01-05
CVE-2021-3917 A flaw was found in the coreos-installer, where it writes the Ignition config to the target system with world-readable access p... Moderate coreos-installer 完成修复 2022-08-23 2026-07-10
CVE-2021-3839 A flaw was found in the vhost library in DPDK. Function vhost_user_set_inflight_fd() does not validate `msg->payload.inflight.n... Moderate dpdk 完成修复 2022-08-23 2026-07-13
CVE-2021-3798 A flaw was found in openCryptoki. The openCryptoki Soft token does not check if an EC key is valid when an EC key is created vi... Moderate opencryptoki 完成修复 2022-08-23 2026-07-10
CVE-2021-3690 A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw all... Important fuse 完成修复 2022-08-23 2026-01-04
CVE-2021-20304 A flaw was found in OpenEXR's hufDecode functionality. This flaw allows an attacker who can pass a crafted file to be processed... Important OpenEXR 完成修复 2022-08-23 2026-01-05
CVE-2021-20298 A flaw was found in OpenEXR's B44Compressor. This flaw allows an attacker who can submit a crafted file to be processed by Open... Important OpenEXR 完成修复 2022-08-23 2026-01-05
CVE-2022-38171 Xpdf prior to version 4.04 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIG2Stream.c... Important xpdf, poppler 完成修复 2022-08-22 2026-01-04
CVE-2022-2923 NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240. Moderate vim 完成修复 2022-08-22 2026-03-30
CVE-2021-3481 A flaw was found in Qt. An out-of-bounds read vulnerability was found in QRadialFetchSimd in qt/qtbase/src/gui/painting/qdrawhe... Moderate qt5-qtserialbus 完成修复 2022-08-22 2026-03-30
CVE-2022-2320 A flaw was found in the Xorg-x11-server. The specific flaw exists within the handling of ProcXkbSetDeviceInfo requests. The iss... Important xorg-x11-server, xorg-x11-server-Xwayland 完成修复 2022-08-20 2026-01-04
CVE-2022-2319 A flaw was found in the Xorg-x11-server. An out-of-bounds access issue can occur in the ProcXkbSetGeometry function due to impr... Important xorg-x11-server 完成修复 2022-08-20 2026-01-04
CVE-2022-2889 Use After Free in GitHub repository vim/vim prior to 9.0.0225. Important vim 完成修复 2022-08-19 2026-01-05
CVE-2022-23460 Jsonxx or Json++ is a JSON parser, writer and reader written in C++. In affected versions of jsonxx json parsing may lead to st... Important lua-json 完成修复 2022-08-19 2026-01-04
CVE-2022-23459 Jsonxx or Json++ is a JSON parser, writer and reader written in C++. In affected versions of jsonxx use of the Value class may ... Critical lua-json 完成修复 2022-08-19 2025-12-08
CVE-2022-22489 IBM MQ 8.0, (9.0, 9.1, 9.2 LTS), and (9.1 and 9.2 CD) are vulnerable to an XML External Entity Injection (XXE) attack when proc... Critical kernel 完成修复 2022-08-19 2025-12-08
CVE-2020-27792 A heap-based buffer overwrite vulnerability was found in GhostScript's lp8000_print_page() function in the gdevlp8k.c file. Thi... Moderate ghostscript 完成修复 2022-08-19 2026-03-30
CVE-2022-37769 libjpeg commit 281daa9 was discovered to contain a segmentation fault via HuffmanDecoder::Get at huffmandecoder.hpp. This vulne... Moderate libjpeg 完成修复 2022-08-18 2026-03-30
CVE-2022-37768 libjpeg commit 281daa9 was discovered to contain an infinite loop via the component Frame::ParseTrailer. Important libjpeg 完成修复 2022-08-18 2026-01-04
CVE-2022-35166 libjpeg commit 842c7ba was discovered to contain an infinite loop via the component JPEG::ReadInternal. Moderate libjpeg 完成修复 2022-08-18 2026-03-30
CVE-2022-2874 NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0224. Moderate vim 完成修复 2022-08-18 2026-03-30
CVE-2022-26373 在某些英特尔(R)处理器中,上下文之间返回预测器目标的非透明共享可能允许授权用户通过本地�... Moderate kernel 完成修复 2022-08-18 2025-12-23
CVE-2022-21229 Improper buffer restrictions for some Intel(R) NUC 9 Extreme Laptop Kit drivers before version 2.2.0.22 may allow an authentica... Important control-center 完成修复 2022-08-18 2026-01-07
CVE-2022-2868 libtiff's tiffcrop utility has a improper input validation flaw that can lead to out of bounds read and ultimately cause a cras... Low libtiff 完成修复 2022-08-17 2026-03-30
CVE-2022-2867 libtiff's tiffcrop utility has a uint32_t underflow that can lead to out of bounds read and write. An attacker who supplies a c... Moderate libtiff 完成修复 2022-08-17 2026-03-30
CVE-2022-2862 Use After Free in GitHub repository vim/vim prior to 9.0.0221. Important vim 完成修复 2022-08-17 2026-01-05
CVE-2022-2849 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0220. Important vim 完成修复 2022-08-17 2026-01-05
CVE-2022-2845 Improper Validation of Specified Quantity in Input in GitHub repository vim/vim prior to 9.0.0218. Important vim 完成修复 2022-08-17 2026-01-05
CVE-2020-14394 An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request... Low qemu-kvm 完成修复 2022-08-17 2025-12-18
CVE-2022-2838 In Eclipse Sphinx™ before version 0.13.1, Apache Xerces XML Parser was used without disabling processing of referenced extern... Moderate python-sphinx 完成修复 2022-08-16 2026-03-30
CVE-2022-38221 A buffer overflow in the FTcpListener thread in The Isle Evrima (the dedicated server on Windows and Linux) 0.9.88.07 before 20... Critical kernel 完成修复 2022-08-15 2025-12-08
CVE-2022-2819 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0211. Important vim 完成修复 2022-08-15 2026-01-05
CVE-2022-2818 Improper Removal of Sensitive Information Before Storage or Transfer in GitHub repository cockpit-hq/cockpit prior to 2.2.2. Important cockpit 完成修复 2022-08-15 2026-01-08
CVE-2022-2817 Use After Free in GitHub repository vim/vim prior to 9.0.0213. Important vim 完成修复 2022-08-15 2026-01-05
CVE-2022-2816 Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.0212. Important vim 完成修复 2022-08-15 2026-01-05
CVE-2022-38150 In Varnish Cache 7.0.0, 7.0.1, 7.0.2, and 7.1.0, it is possible to cause the Varnish Server to assert and automatically restart... Moderate varnish 完成修复 2022-08-11 2026-06-26
CVE-2022-32189 A too-short encoded message can cause a panic in Float.GobDecode and Rat GobDecode in math/big in Go before 1.17.13 and 1.18.5,... Low golang, git-lfs, golang-dbus, go-toolset:an8 完成修复 2022-08-11 2025-12-10
CVE-2022-20382 In (TBD) of (TBD), there is a possible out of bounds write due to kernel stack overflow. This could lead to local escalation of... Moderate kernel 完成修复 2022-08-11 2025-12-23
CVE-2022-20371 In dm_bow_dtr and related functions of dm-bow.c, there is a possible use after free due to a race condition. This could lead to... Moderate kernel 完成修复 2022-08-11 2025-12-23
CVE-2022-20158 In bdi_put and bdi_unregister of backing-dev.c, there is a possible memory corruption due to a use after free. This could lead ... Moderate kernel 5.10, kernel 4.19 完成修复 2022-08-11 2025-12-23
CVE-2022-1927 Buffer Over-read in GitHub repository vim/vim prior to 8.2. Important vim 完成修复 2022-08-11 2026-01-05
CVE-2022-1897 Out-of-bounds Write in GitHub repository vim/vim prior to 8.2. Important vim 完成修复 2022-08-11 2026-01-05
CVE-2022-1785 Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.4977. Important vim 完成修复 2022-08-11 2026-01-05
CVE-2022-35715 IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical ... Moderate kernel 完成修复 2022-08-10 2025-12-23
CVE-2022-31623 MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs (i.e.,... Moderate mariadb, mariadb:10.3, mariadb:10.5 完成修复 2022-08-10 2026-06-24
CVE-2022-31622 MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs (pthre... Moderate mariadb, mariadb:10.3, mariadb:10.5 完成修复 2022-08-10 2026-06-24
CVE-2022-30629 Non-random values for ticket_age_add in session tickets in crypto/tls before Go 1.17.11 and Go 1.18.3 allow an attacker that ca... Low golang, udica, go-toolset:an8 完成修复 2022-08-10 2025-12-11
CVE-2022-30580 Code injection in Cmd.Start in os/exec before Go 1.17.11 and Go 1.18.3 allows execution of any binaries in the working director... Moderate golang 完成修复 2022-08-10 2025-12-10
CVE-2022-29804 Incorrect conversion of certain invalid paths to valid, absolute paths in Clean in path/filepath before Go 1.17.11 and Go 1.18.... Important golang 完成修复 2022-08-10 2025-12-10
CVE-2022-27456 MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component VDec::VDec at /sql/sql_type.cc. Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27452 MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_cmpfunc.cc. Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27449 MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_func.cc:148. Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27448 There is an Assertion failure in MariaDB Server v10.9 and below via 'node->pcur->rel_pos == BTR_PCUR_ON' at /row/row0mysql.cc. Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27447 MariaDB Server v10.9 and below was discovered to contain a use-after-free via the component Binary_string::free_buffer() at /sq... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27445 MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/sql_window.cc. Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27387 MariaDB Server v10.7 and below was discovered to contain a global buffer overflow in the component decimal_bin_size, which is e... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27386 MariaDB Server v10.7 and below was discovered to contain a segmentation fault via the component sql/sql_class.cc. Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27384 An issue in the component Item_subselect::init_expr_cache_tracker of MariaDB Server v10.6 and below was discovered to allow att... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27383 MariaDB Server v10.6 and below was discovered to contain an use-after-free in the component my_strcasecmp_8bit, which is exploi... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27381 An issue in the component Field::set_default of MariaDB Server v10.6 and below was discovered to allow attackers to cause a Den... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27380 An issue in the component my_decimal::operator= of MariaDB Server v10.6.3 and below was discovered to allow attackers to cause ... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27379 An issue in the component Arg_comparator::compare_real_fixed of MariaDB Server v10.6.2 and below was discovered to allow attack... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27378 An issue in the component Create_tmp_table::finalize of MariaDB Server v10.7 and below was discovered to allow attackers to cau... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-27376 MariaDB Server v10.6.5 and below was discovered to contain an use-after-free in the component Item_args::walk_arg, which is exp... Important mariadb 完成修复 2022-08-10 2026-01-04
CVE-2022-26354 A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue be... Low qemu, virt:an 完成修复 2022-08-10 2025-12-18
CVE-2022-26353 A flaw was found in the virtio-net device of QEMU. This flaw was inadvertently introduced with the fix for CVE-2021-3748, which... Important qemu, virt:an, qemu-kvm 完成修复 2022-08-10 2025-12-09
CVE-2022-21233 某些英特尔(R)处理器中共享资源的不正确隔离可能会允许特权用户通过本地访问潜在地实现信息�... Moderate microcode_ctl 完成修复 2022-08-10 2026-03-27
CVE-2022-1586 An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pc... Important pcre2 完成修复 2022-08-10 2026-01-09
CVE-2022-2713 Insufficient Session Expiration in GitHub repository cockpit-hq/cockpit prior to 2.2.0. Important cockpit 完成修复 2022-08-08 2026-01-08
CVE-2022-37434 zlib到1.2.12通过一个大的gzip标头额外字段,在inflate.c的inflate中存在基于堆的缓冲区过度读取或缓�... Moderate rsync, zlib 完成修复 2022-08-05 2026-03-27
CVE-2022-36884 JenkinsGitPlugin4.11.3及更早版本中的Webhook端点向未经身份验证的攻击者提供有关配置为使用攻击者�... Moderate git 完成修复 2022-08-03 2026-07-11
CVE-2022-36883 JenkinsGitPlugin4.11.3及更早版本中缺少权限检查,允许未经身份验证的攻击者触发配置为使用攻击者... Moderate git-lfs, git 完成修复 2022-08-03 2026-07-11
CVE-2022-36882 JenkinsGitPlugin4.11.3及更早版本中的跨站点请求伪造(CSRF)漏洞允许攻击者触发配置为使用攻击者指定... Important git-lfs, git 完成修复 2022-08-03 2026-01-05

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:31

results matching ""

    No results matching ""

    results matching ""

      No results matching ""