CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2022-32074 A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS befor... Moderate containernetworking-plugins 完成修复 2022-07-13 2026-03-26
CVE-2022-20227 In USB driver, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information discl... Moderate kernel 完成修复 2022-07-13 2025-12-23
CVE-2022-29526 Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment. When called with a non-zero flags parameter, the... Moderate golang-dbus 完成修复 2022-07-12 2025-12-11
CVE-2022-29187 Git is a distributed revision control system. Git prior to versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and... Moderate git 完成修复 2022-07-12 2026-01-25
CVE-2022-28327 The generic P-256 feature in crypto/elliptic in Go before 1.17.9 and 1.18.x before 1.18.1 allows a panic via long scalar input. Moderate golang, go-toolset:an8 完成修复 2022-07-12 2025-12-17
CVE-2022-24675 encoding/pem in Go before 1.17.9 and 1.18.x before 1.18.1 has a Decode stack overflow via a large amount of PEM data. Moderate golang, go-toolset:an8 完成修复 2022-07-12 2025-12-17
CVE-2022-2211 A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching keys in t... Low sgabios 完成修复 2022-07-12 2026-07-10
CVE-2022-1215 A format string vulnerability was found in libinput Important libinput 完成修复 2022-07-12 2026-01-06
CVE-2011-4916 Linux kernel through 3.1 allows local users to obtain sensitive keystroke information via access to /dev/pts/ and /dev/tty*. Moderate kernel 完成修复 2022-07-12 2025-12-23
CVE-2022-22682 Improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability in Event Management in Synol... Moderate ocaml-calendar 完成修复 2022-07-11 2026-03-26
CVE-2020-35169 Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an... Critical httpd 完成修复 2022-07-11 2026-01-10
CVE-2022-29824 In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf) and tree.c (xmlBuffer) don't check for integer ... Important libxml2, libxslt 完成修复 2022-07-08 2026-01-09
CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have proh... Moderate curl 完成修复 2022-07-08 2026-03-26
CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on... Moderate curl 完成修复 2022-07-08 2026-03-26
CVE-2022-27774 An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could all... Moderate curl 完成修复 2022-07-08 2026-03-26
CVE-2022-25314 In Expat (aka libexpat) before 2.4.5, there is an integer overflow in copyString. Important expat, mingw-expat 完成修复 2022-07-08 2026-01-09
CVE-2022-25313 In Expat (aka libexpat) before 2.4.5, an attacker can trigger stack exhaustion in build_model via a large nesting depth in the ... Moderate firefox, expat, cmake, mingw-expat 完成修复 2022-07-08 2026-07-11
CVE-2022-2343 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0044. Important vim 完成修复 2022-07-08 2026-01-05
CVE-2022-22576 An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authentic... Moderate curl 完成修复 2022-07-08 2026-03-26
CVE-2022-1629 Buffer Over-read in function find_next_quote in GitHub repository vim/vim prior to 8.2.4925. This vulnerabilities are capable o... Moderate vim 完成修复 2022-07-08 2026-03-26
CVE-2022-1621 Heap buffer overflow in vim_strncpy find_word in GitHub repository vim/vim prior to 8.2.4919. This vulnerability is capable of ... Important vim 完成修复 2022-07-08 2026-01-05
CVE-2022-2191 In Eclipse Jetty versions 10.0.0 thru 10.0.9, and 11.0.0 thru 11.0.9 versions, SslConnection does not release ByteBuffers from ... Important jetty, eclipse:an8 完成修复 2022-07-07 2026-01-06
CVE-2022-2048 In Eclipse Jetty HTTP/2 server implementation, when encountering an invalid HTTP/2 request, the error handling has a bug that c... Moderate jetty 完成修复 2022-07-07 2026-07-09
CVE-2022-2047 In Eclipse Jetty versions 9.4.0 thru 9.4.46, and 10.0.0 thru 10.0.9, and 11.0.0 thru 11.0.9 versions, the parsing of the author... Low jetty, eclipse:an8 完成修复 2022-07-07 2026-07-09
CVE-2015-5236 It was discovered that the IcedTea-Web used codebase attribute of the tag on the HTML page that hosts Java applet in t... Important icedtea-web 完成修复 2022-07-07 2026-01-05
CVE-2022-2344 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0045. Important vim 完成修复 2022-07-06 2026-01-05
CVE-2014-8164 A insecure configuration for certificate verification (http.verify_mode = OpenSSL::SSL::VERIFY_NONE) may lead to verification b... Critical cfme 完成修复 2022-07-06 2026-01-10
CVE-2022-2345 Use After Free in GitHub repository vim/vim prior to 9.0.0046. Important vim 完成修复 2022-07-05 2026-01-05
CVE-2022-2097 AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the d... Low openssl 完成修复 2022-07-05 2026-03-27
CVE-2022-34265 An issue was discovered in Django 3.2 before 3.2.14 and 4.0 before 4.0.6. The Trunc() and Extract() database functions are subj... Important python-django 完成修复 2022-07-04 2025-12-29
CVE-2022-31626 In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when pdo_mysql extension with mysqlnd driver, if... Important php:7.4, php:8.0, php 完成修复 2022-07-04 2026-01-04
CVE-2022-2289 Use After Free in GitHub repository vim/vim prior to 9.0. Moderate vim 完成修复 2022-07-03 2026-03-26
CVE-2022-2288 Out-of-bounds Write in GitHub repository vim/vim prior to 9.0. Moderate vim 完成修复 2022-07-03 2026-03-26
CVE-2022-2287 Out-of-bounds Read in GitHub repository vim/vim prior to 9.0. Low vim 完成修复 2022-07-03 2026-03-26
CVE-2022-2286 Out-of-bounds Read in GitHub repository vim/vim prior to 9.0. Moderate vim 完成修复 2022-07-02 2026-03-26
CVE-2022-2285 Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0. Moderate vim 完成修复 2022-07-02 2026-03-26
CVE-2022-2284 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0. Low vim 完成修复 2022-07-02 2026-03-26
CVE-2022-32081 MariaDB v10.4 to v10.7 was discovered to contain an use-after-poison in prepare_inplace_add_virtual at /storage/innobase/handle... Moderate mariadb:10.5, mariadb 完成修复 2022-07-01 2026-06-24
CVE-2022-25758 All versions of package scss-tokenizer are vulnerable to Regular Expression Denial of Service (ReDoS) via the loadAnnotation() ... Moderate grafana 完成修复 2022-07-01 2026-07-10
CVE-2022-24810 A flaw was found in net-snmp. A malformed OID in a SET to the nsVacmAccessTable can cause a NULL pointer dereference issue. Moderate net-snmp 完成修复 2022-07-01 2026-01-25
CVE-2022-24809 A flaw was found in net-snmp. A malformed OID in a GET-NEXT to the nsVacmAccessTable can cause a NULL pointer dereference issue... Moderate net-snmp 完成修复 2022-07-01 2026-01-25
CVE-2022-24808 A flaw was found in net-snmp. A malformed OID in a SET request to NET-SNMP-AGENT-MIB::nsLogTable can cause a NULL pointer deref... Moderate net-snmp 完成修复 2022-07-01 2026-01-25
CVE-2022-24807 A flaw was found in net-snmp. A malformed OID in a SET request to the SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable can cause an out... Moderate net-snmp 完成修复 2022-07-01 2026-01-25
CVE-2022-24806 A flaw was found in net-snmp. This issue occurs due to improper input validation when simultaneously setting malformed OIDs in ... Moderate net-snmp 完成修复 2022-07-01 2026-01-25
CVE-2022-24805 A flaw was found in net-snmp. A buffer overflow in the handling of the INDEX of NET-SNMP-VACM-MIB can cause an out-of-bounds me... Moderate net-snmp 完成修复 2022-07-01 2026-01-25
CVE-2022-34835 In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" comman... Important uboot-tools 完成修复 2022-06-30 2025-12-30
CVE-2022-2257 Out-of-bounds Read in GitHub repository vim/vim prior to 9.0. Important vim 完成修复 2022-06-30 2026-01-05
CVE-2022-2058 Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For us... Moderate libtiff 完成修复 2022-06-30 2026-03-26
CVE-2022-2057 Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For us... Moderate libtiff 完成修复 2022-06-30 2026-03-26
CVE-2022-2056 Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For us... Moderate libtiff 完成修复 2022-06-30 2026-03-26
CVE-2017-20112 A vulnerability has been found in IVPN Client 2.6.6120.33863 and classified as critical. Affected by this vulnerability is an u... Important google-api-python-client 完成修复 2022-06-29 2026-01-05
CVE-2022-33108 XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files. Important xpdf 完成修复 2022-06-28 2026-01-04
CVE-2022-2231 NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2. Low vim 完成修复 2022-06-28 2026-03-26
CVE-2022-31082 GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and softw... Critical perl-HTTP-Daemon 完成修复 2022-06-27 2026-01-09
CVE-2022-2210 Out-of-bounds Write in GitHub repository vim/vim prior to 8.2. Moderate vim 完成修复 2022-06-27 2026-03-26
CVE-2022-2208 NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.5163. Low vim 完成修复 2022-06-27 2026-03-26
CVE-2022-2207 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. Moderate vim 完成修复 2022-06-27 2026-03-26
CVE-2017-20107 A vulnerability, which was classified as problematic, was found in ShadeYouVPN.com Client 2.0.1.11. Affected is an unknown func... Important google-api-python-client 完成修复 2022-06-27 2026-01-05
CVE-2022-2206 Out-of-bounds Read in GitHub repository vim/vim prior to 8.2. Important vim 完成修复 2022-06-26 2026-01-05
CVE-2022-32990 An issue in gimp_layer_invalidate_boundary of GNOME GIMP 2.10.30 allows attackers to trigger an unhandled exception via a craft... Moderate gimp 完成修复 2022-06-24 2026-07-11
CVE-2022-29581 Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege escalati... Important kernel:6.6, kernel:5.10, kernel:4.19, kernel(ANCK)5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-05
CVE-2022-22389 IBM Db2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a denial of service as the server may term... Moderate kernel 完成修复 2022-06-24 2025-12-23
CVE-2022-1419 The root cause of this vulnerability is that the ioctl$DRM_IOCTL_MODE_DESTROY_DUMB can decrease refcount of *drm_vgem_gem_objec... Important kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-05
CVE-2022-1011 A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a ... Important kernel, kernel:4.18, kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2022-06-24 2025-12-05
CVE-2021-45485 In the IPv6 implementation in the Linux kernel before 5.13.3, net/ipv6/output_core.c has an information leak because of certain... Important kernel:4.18, kernel(RHCK)4.18, kernel:6.6, kernel:4.19, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-05
CVE-2021-4202 A use-after-free flaw was found in nci_request in net/nfc/nci/core.c in NFC Controller Interface (NCI) in the Linux kernel. Thi... Important kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-05
CVE-2021-40490 A race condition was discovered in ext4_write_inline_data_end in fs/ext4/inline.c in the ext4 subsystem in the Linux kernel thr... Important kernel, kernel:6.6, kernel:4.19, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-05
CVE-2021-38199 fs/nfs/nfs4client.c in the Linux kernel before 5.13.4 has incorrect connection-setup ordering, which allows operators of remote... Moderate kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-23
CVE-2021-38198 arch/x86/kvm/mmu/paging_tmpl.h in the Linux kernel before 5.12.11 incorrectly computes the access permissions of a shadow page,... Moderate kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-18
CVE-2021-3600 A flaw was found in the Linux kernel’s eBPF verification code, where the eBPF 32-bit div/mod source register truncation could... Important kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-05
CVE-2021-35039 kernel/module.c in the Linux kernel before 5.12.14 mishandles Signature Verification, aka CID-0c18f29aae7c. Without CONFIG_MODU... Important kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-05
CVE-2021-3444 The bpf verifier in the Linux kernel did not properly handle mod32 destination register truncation when the source register was... Important kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2021-3348 nbd_add_socket in drivers/block/nbd.c in the Linux kernel through 5.10.12 has an ndb_queue_rq use-after-free that could be trig... Important kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2021-31916 An out-of-bounds (OOB) memory write flaw was found in list_devices in drivers/md/dm-ioctl.c in the Multi-device driver module i... Moderate kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-23
CVE-2021-29154 BPF JIT compilers in the Linux kernel through 5.11.12 have incorrect computation of branch displacements, allowing them to exec... Important kernel:4.18, kernel(RHCK)4.18, kernel:6.6, kernel:4.19, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2020-8648 There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/t... Important kernel:4.19, kernel:6.6, kernel(ANCK)4.19, kernel:5.10 完成修复 2022-06-24 2025-12-08
CVE-2020-25705 A flaw in ICMP packets in the Linux kernel may allow an attacker to quickly scan open UDP ports. This flaw allows an off-path r... Important kernel, kernel:6.6, kernel:4.19, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2020-25645 A flaw was found in the Linux kernel in versions before 5.9-rc7. Traffic between two Geneve endpoints may be unencrypted when I... Important kernel:4.19, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2020-25212 A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or... Important kernel, kernel:6.6, kernel:4.19, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2020-1749 A flaw was found in the Linux kernel's implementation of some networking protocols in IPsec, such as VXLAN and GENEVE tunnels o... Important kernel:4.19, kernel, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2020-14386 A flaw was found in the Linux kernel before 5.9-rc4. Memory corruption can be exploited to gain root privileges from unprivileg... Important kernel(ANCK)4.19, kernel, kpatch-patch 完成修复 2022-06-24 2025-12-08
CVE-2020-14351 A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker wi... Important kernel:4.19, kernel, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2020-13974 An issue was discovered in the Linux kernel 4.4 through 5.7.1. drivers/tty/vt/keyboard.c has an integer overflow if k_ascii is ... Important kernel:4.19, kernel(RHCK)4.18, kernel:4.18, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-08
CVE-2020-12769 An issue was discovered in the Linux kernel before 5.4.17. drivers/spi/spi-dw.c allows attackers to cause a panic via concurren... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2020-12655 An issue was discovered in xfs_agf_verify in fs/xfs/libxfs/xfs_alloc.c in the Linux kernel through 5.6.10. Attackers may trigge... Moderate kernel:4.19, kernel, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-23
CVE-2020-11668 In the Linux kernel before 5.6.1, drivers/media/usb/gspca/xirlink_cit.c (aka the Xirlink camera USB driver) mishandles invalid ... Important kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-08
CVE-2020-11609 An issue was discovered in the stv06xx subsystem in the Linux kernel before 5.6.1. drivers/media/usb/gspca/stv06xx/stv06xx.c an... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2020-11608 An issue was discovered in the Linux kernel before 5.6.1. drivers/media/usb/gspca/ov519.c allows NULL pointer dereferences in o... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2020-10942 In the Linux kernel before 5.5.8, get_raw_socket in drivers/vhost/net.c lacks validation of an sk_family field, which might all... Moderate kernel:4.19, kernel, kernel:6.6, kernel:5.10, kernel(ANCK)4.19 完成修复 2022-06-24 2025-12-23
CVE-2020-10781 A flaw was found in the Linux Kernel before 5.8-rc6 in the ZRAM kernel module, where a user with a local account and the abilit... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2019-20096 In the Linux kernel before 5.1, there is a memory leak in __feat_register_sp() in net/dccp/feat.c, which may cause denial of se... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2019-19965 In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of mishand... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2019-19462 relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as relay b... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2019-19074 A memory leak in the ath9k_wmi_cmd() function in drivers/net/wireless/ath/ath9k/wmi.c in the Linux kernel through 5.3.11 allows... Important kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-05
CVE-2019-19073 Memory leaks in drivers/net/wireless/ath/ath9k/htc_hst.c in the Linux kernel through 5.3.11 allow attackers to cause a denial o... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2019-19067 DISPUTED Four memory leaks in the acp_hw_init() function in drivers/gpu/drm/amd/amdgpu/amdgpu_acp.c in the Linux kernel b... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2019-19057 Two memory leaks in the mwifiex_pcie_init_evt_ring() function in drivers/net/wireless/marvell/mwifiex/pcie.c in the Linux kerne... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2019-12380 DISPUTED An issue was discovered in the efi subsystem in the Linux kernel through 5.1.5. phys_efi_set_virtual_address_map i... Moderate kernel:5.10, kernel:4.19, kernel(ANCK)4.19, kernel:6.6 完成修复 2022-06-24 2025-12-23
CVE-2022-34305 In Apache Tomcat 10.1.0-M1 to 10.1.0-M16, 10.0.0-M1 to 10.0.22, 9.0.30 to 9.0.64 and 8.5.50 to 8.5.81 the Form authentication e... Moderate tomcat 完成修复 2022-06-23 2026-06-26
CVE-2022-34299 There is a heap-based buffer over-read in libdwarf 0.4.0. This issue is related to dwarf_global_formref_b. Important libdwarf 完成修复 2022-06-23 2026-01-06

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:31

results matching ""

    No results matching ""

    results matching ""

      No results matching ""