| CVE-2020-11100 |
In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write ar... |
Important |
haproxy |
否 |
完成修复 |
2020-04-02 |
2026-01-05 |
| CVE-2020-1927 |
In Apache HTTP Server 2.4.0 to 2.4.41, redirects configured with mod_rewrite that were intended to be self-referential might be... |
Moderate |
httpd:2.4, mod_md |
是 |
完成修复 |
2020-03-31 |
2026-07-10 |
| CVE-2020-11044 |
In FreeRDP greater than 1.2 and before 2.0.0, a double free in update_read_cache_bitmap_v3_order crashes the client application... |
Low |
vinagre |
是 |
完成修复 |
2020-03-30 |
2026-07-09 |
| CVE-2020-11042 |
|
Moderate |
vinagre |
是 |
完成修复 |
2020-03-30 |
2026-03-30 |
| CVE-2020-11046 |
In FreeRDP after 1.0 and before 2.0.0, there is a stream out-of-bounds seek in update_read_synchronize that could lead to a lat... |
Low |
vinagre |
是 |
完成修复 |
2020-03-29 |
2026-07-09 |
| CVE-2020-11045 |
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bound read in in update_read_bitmap_data that allows client memory to... |
Low |
vinagre |
是 |
完成修复 |
2020-03-29 |
2026-07-09 |
| CVE-2020-10663 |
The JSON gem through 2.2.0 for Ruby, as used in Ruby 2.4 through 2.4.9, 2.5 through 2.5.7, and 2.6 through 2.6.5, has an Unsafe... |
Important |
rubygem-json |
否 |
完成修复 |
2020-03-19 |
2026-01-04 |
| CVE-2020-0556 |
|
Moderate |
bluez |
是 |
完成修复 |
2020-03-09 |
2026-03-30 |
| CVE-2020-1747 |
A vulnerability was discovered in the PyYAML library in versions before 5.3.1, where it is susceptible to arbitrary code execut... |
Moderate |
python27:2.7, PyYAML, python38:3.8 |
是 |
完成修复 |
2020-03-02 |
2026-03-23 |
| CVE-2020-10018 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-03-01 |
2026-03-23 |
| CVE-2020-9327 |
|
Moderate |
sqlite |
是 |
完成修复 |
2020-02-20 |
2026-03-30 |
| CVE-2020-12767 |
|
Low |
libexif |
是 |
完成修复 |
2020-02-16 |
2026-03-27 |
| CVE-2020-3868 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-02-13 |
2026-03-23 |
| CVE-2020-3867 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-02-13 |
2026-03-23 |
| CVE-2020-3865 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-02-13 |
2026-03-23 |
| CVE-2020-3864 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-02-13 |
2026-03-23 |
| CVE-2020-3862 |
|
Low |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-02-13 |
2026-03-23 |
| CVE-2020-10029 |
|
Moderate |
glibc |
否 |
完成修复 |
2020-02-11 |
2025-12-11 |
| CVE-2020-0570 |
|
Moderate |
qt5-qtwebsockets, qt5-qtbase |
是 |
完成修复 |
2020-02-06 |
2026-03-30 |
| CVE-2020-0569 |
|
Moderate |
qt5-qtwebsockets, qt5-qtbase |
是 |
完成修复 |
2020-02-06 |
2026-03-30 |
| CVE-2020-8632 |
|
Moderate |
cloud-init |
是 |
完成修复 |
2020-02-04 |
2026-03-30 |
| CVE-2020-8631 |
|
Moderate |
cloud-init |
是 |
完成修复 |
2020-02-04 |
2026-03-30 |
| CVE-2020-7221 |
mysql_install_db in MariaDB 10.4.7 through 10.4.11 allows privilege escalation from the mysql user account to root because chow... |
Moderate |
mariadb:10.5, mariadb |
是 |
完成修复 |
2020-02-04 |
2026-03-27 |
| CVE-2020-11653 |
An issue was discovered in Varnish Cache before 6.0.6 LTS, 6.1.x and 6.2.x before 6.2.3, and 6.3.x before 6.3.2. It occurs when... |
Moderate |
varnish:6, varnish-modules |
是 |
完成修复 |
2020-02-03 |
2026-06-26 |
| CVE-2020-1721 |
A flaw was found in the Key Recovery Authority (KRA) Agent Service in pki-core 10.10.5 where it did not properly sanitize the r... |
Low |
tomcatjss, pki-deps:10.6 |
是 |
完成修复 |
2020-02-02 |
2026-07-09 |
| CVE-2019-10221 |
A Reflected Cross Site Scripting vulnerability was found in all pki-core 10.x.x versions, where the pki-ca module from the pki-... |
Low |
tomcatjss, pki-deps:10.6 |
是 |
完成修复 |
2020-02-02 |
2026-07-09 |
| CVE-2019-10179 |
A vulnerability was found in all pki-core 10.x.x versions, where the Key Recovery Authority (KRA) Agent Service did not properl... |
Low |
tomcatjss, pki-deps:10.6 |
是 |
完成修复 |
2020-02-02 |
2026-07-09 |
| CVE-2019-10146 |
A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA A... |
Low |
tomcatjss, pki-deps:10.6 |
是 |
完成修复 |
2020-02-02 |
2026-07-09 |
| CVE-2019-20446 |
|
Moderate |
librsvg2 |
是 |
完成修复 |
2020-02-01 |
2026-03-30 |
| CVE-2020-1711 |
An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU handled a response coming from an ... |
Important |
virt:an, libvirt |
否 |
完成修复 |
2020-01-22 |
2025-12-09 |
| CVE-2019-8846 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-01-22 |
2026-03-30 |
| CVE-2019-8844 |
|
Moderate |
webkitgtk3, gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-01-22 |
2026-03-30 |
| CVE-2019-8835 |
|
Moderate |
webkitgtk3, gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2020-01-22 |
2026-03-30 |
| CVE-2019-20386 |
|
Low |
systemd |
否 |
完成修复 |
2020-01-21 |
2026-01-25 |
| CVE-2020-25690 |
|
Moderate |
fontforge |
否 |
完成修复 |
2020-01-20 |
2026-01-25 |
| CVE-2020-1751 |
|
Moderate |
glibc |
否 |
完成修复 |
2020-01-19 |
2025-12-11 |
| CVE-2020-1702 |
|
Low |
container-tools:an8, udica |
是 |
完成修复 |
2020-01-19 |
2026-07-09 |
| CVE-2020-1752 |
|
Moderate |
glibc |
否 |
完成修复 |
2020-01-16 |
2025-12-11 |
| CVE-2020-6405 |
|
Moderate |
sqlite |
是 |
完成修复 |
2020-01-15 |
2026-03-30 |
| CVE-2020-10703 |
在上游版本3.10.0中引入的libvirt API中找到了NULL指针取消引用,并在libvirt 6.0.0中进行了修复,以根... |
Moderate |
libvirt |
否 |
完成修复 |
2020-01-13 |
2025-12-18 |
| CVE-2019-19956 |
|
Moderate |
libxml2 |
否 |
完成修复 |
2020-01-07 |
2026-01-25 |
| CVE-2020-7039 |
libslirp 4.1.0版本的tcp_subr.c文件的‘tcp_emu’函数存在安全漏洞,该漏洞源于程序没有正确管理内存... |
Important |
libslirp |
否 |
完成修复 |
2020-01-06 |
2026-01-04 |
| CVE-2020-5312 |
libImaging/PcxDecode.c in Pillow before 6.2.2 has a PCX P mode buffer overflow. \nA flaw was discovered in python-pillow does w... |
Important |
python-pillow |
否 |
完成修复 |
2020-01-03 |
2026-01-04 |
| CVE-2020-5311 |
libImaging/SgiRleDecode.c in Pillow before 6.2.2 has an SGI buffer overflow. \nAn out-of-bounds write flaw was discovered in py... |
Important |
python-pillow |
否 |
完成修复 |
2020-01-03 |
2026-01-04 |
| CVE-2020-5395 |
|
Moderate |
fontforge |
是 |
完成修复 |
2020-01-02 |
2026-03-30 |
| CVE-2019-20218 |
|
Moderate |
sqlite |
是 |
完成修复 |
2020-01-01 |
2026-03-30 |
| CVE-2019-15692 |
TigerVNC version prior to 1.10.1 is vulnerable to heap buffer overflow. Vulnerability could be triggered from CopyRectDecoder d... |
Important |
tigervnc |
否 |
完成修复 |
2019-12-26 |
2026-01-04 |
| CVE-2019-15691 |
TigerVNC version prior to 1.10.1 is vulnerable to stack use-after-return, which occurs due to incorrect usage of stack memory i... |
Important |
tigervnc |
否 |
完成修复 |
2019-12-26 |
2026-01-04 |
| CVE-2019-19921 |
runc through 1.0.0-rc9 has Incorrect Access Control leading to Escalation of Privileges, related to libcontainer/rootfs_linux.g... |
Important |
docker, container-tools:2.0, container-tools:an8, container-tools:3.0, container-tools:4.0, container-tools:1.0, runc |
否 |
完成修复 |
2019-12-21 |
2026-01-08 |
| CVE-2018-14553 |
|
Low |
gd |
是 |
完成修复 |
2019-12-19 |
2026-03-30 |
| CVE-2019-19783 |
|
Moderate |
cyrus-imapd |
是 |
完成修复 |
2019-12-18 |
2026-03-30 |
| CVE-2018-11805 |
|
Moderate |
spamassassin |
是 |
完成修复 |
2019-12-11 |
2026-03-30 |
| CVE-2017-18640 |
|
Moderate |
prometheus-jmx-exporter |
是 |
完成修复 |
2019-12-11 |
2026-03-30 |
| CVE-2019-20907 |
In Lib/tarfile.py in Python through 3.8.3, an attacker is able to craft a TAR archive leading to an infinite loop when opened b... |
Important |
python36:3.6, python-Bottleneck, python38:3.8 |
否 |
完成修复 |
2019-12-10 |
2026-01-10 |
| CVE-2019-13751 |
|
Moderate |
sqlite |
是 |
完成修复 |
2019-12-09 |
2026-03-30 |
| CVE-2019-13750 |
|
Moderate |
sqlite |
是 |
完成修复 |
2019-12-09 |
2026-03-30 |
| CVE-2019-19603 |
|
Moderate |
sqlite |
是 |
完成修复 |
2019-12-08 |
2026-03-30 |
| CVE-2019-20485 |
在6.0.0之前,libvirt中的qemu/qemu_driver.c错误地将查询期间的监控作业分配给客户代理,从而允许攻�... |
Moderate |
perl-Sys-Virt, virt:an |
否 |
完成修复 |
2019-12-04 |
2025-12-18 |
| CVE-2019-14889 |
|
Low |
libssh |
否 |
完成修复 |
2019-12-04 |
2026-01-25 |
| CVE-2019-9278 |
|
Moderate |
libexif |
是 |
完成修复 |
2019-11-30 |
2026-03-30 |
| CVE-2019-18609 |
|
Moderate |
librabbitmq |
是 |
完成修复 |
2019-11-30 |
2026-03-30 |
| CVE-2019-19330 |
The HTTP/2 implementation in HAProxy before 2.0.10 mishandles headers, as demonstrated by carriage return (CR, ASCII 0xd), line... |
Moderate |
haproxy |
否 |
完成修复 |
2019-11-25 |
2026-01-25 |
| CVE-2019-18934 |
Unbound 1.6.4 through 1.9.4 contain a vulnerability in the ipsec module that can cause shell code execution after receiving a s... |
Moderate |
unbound |
是 |
完成修复 |
2019-11-19 |
2026-03-30 |
| CVE-2019-18928 |
|
Moderate |
cyrus-imapd |
是 |
完成修复 |
2019-11-13 |
2026-03-30 |
| CVE-2018-12207 |
Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an ... |
Important |
kpatch-patch, kernel |
是 |
完成修复 |
2019-11-11 |
2025-12-04 |
| CVE-2019-19012 |
An integer overflow in the search_in_range function in regexec.c in Oniguruma 6.x before 6.9.4_rc2 leads to an out-of-bounds re... |
Important |
oniguruma, ruby:2.5, php:7.2, php:7.3 |
否 |
完成修复 |
2019-11-08 |
2026-01-05 |
| CVE-2019-8823 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8820 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8819 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8816 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8815 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8814 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8813 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8812 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8811 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8808 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8783 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8782 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8766 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8764 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8743 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-30 |
| CVE-2019-8710 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-11-07 |
2026-03-26 |
| CVE-2019-18874 |
psutil (aka python-psutil) through 5.6.5 can have a double free. This occurs because of refcount mishandling within a while or ... |
Important |
python38:3.8, python-psutil |
否 |
完成修复 |
2019-11-07 |
2026-01-09 |
| CVE-2019-19204 |
An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function fetch_interval_quantifier (formerly known as fetch_r... |
Important |
oniguruma, php:7.3 |
否 |
完成修复 |
2019-11-06 |
2026-01-05 |
| CVE-2019-19203 |
An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function gb18030_mbc_enc_len in file gb18030.c, a UChar point... |
Important |
oniguruma, php:7.3 |
否 |
完成修复 |
2019-11-06 |
2026-01-05 |
| CVE-2019-8771 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-10-28 |
2026-03-30 |
| CVE-2019-8769 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-10-28 |
2026-03-30 |
| CVE-2019-8625 |
|
Moderate |
gnome-settings-daemon, webkit2gtk3 |
是 |
完成修复 |
2019-10-28 |
2026-03-30 |
| CVE-2019-9433 |
|
Moderate |
libvpx |
是 |
完成修复 |
2019-10-25 |
2026-03-30 |
| CVE-2019-9371 |
|
Moderate |
libvpx |
是 |
完成修复 |
2019-10-25 |
2026-03-30 |
| CVE-2019-9232 |
|
Moderate |
libvpx |
是 |
完成修复 |
2019-10-25 |
2026-03-30 |
| CVE-2019-2126 |
|
Moderate |
libvpx |
是 |
完成修复 |
2019-10-25 |
2026-03-30 |
| CVE-2019-18218 |
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-b... |
Important |
file |
否 |
完成修复 |
2019-10-21 |
2026-01-09 |
| CVE-2019-20637 |
An issue was discovered in Varnish Cache before 6.0.5 LTS, 6.1.x and 6.2.x before 6.2.2, and 6.3.x before 6.3.1. It does not cl... |
Low |
varnish-modules, varnish:6 |
是 |
完成修复 |
2019-10-20 |
2026-07-09 |
| CVE-2019-18197 |
|
Moderate |
libxslt |
是 |
完成修复 |
2019-10-17 |
2026-03-30 |
| CVE-2019-17596 |
Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to process network traffic containing an invalid DSA public... |
Important |
golang, go-toolset:an8 |
是 |
完成修复 |
2019-10-17 |
2025-12-10 |
| CVE-2019-17626 |
ReportLab through 3.5.26 allows remote code execution because of toColor(eval(arg)) in colors.py, as demonstrated by a crafted ... |
Important |
dkms, python-reportlab |
否 |
完成修复 |
2019-10-16 |
2026-01-08 |
| CVE-2019-17595 |
|
Moderate |
ncurses |
否 |
完成修复 |
2019-10-10 |
2026-01-25 |
| CVE-2019-17594 |
|
Moderate |
ncurses |
否 |
完成修复 |
2019-10-10 |
2026-01-25 |
| CVE-2019-17450 |
|
Low |
binutils |
否 |
完成修复 |
2019-10-07 |
2025-12-11 |