CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2025-48074 A memory exhaustion flaw has been discovered in OpenEXR. In affected versions, applications trust unvalidated dataWindow size v... Low OpenEXR, ilmbase 完成修复 2025-08-19 2026-03-19
CVE-2025-48073 OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion ... Low OpenEXR, ilmbase 完成修复 2025-08-19 2026-03-19
CVE-2025-48071 OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion ... Important OpenEXR, ilmbase 完成修复 2025-08-19 2026-01-05
CVE-2025-38551 No description is available for this CVE. Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-08-19 2026-02-02
CVE-2025-38549 In the Linux kernel, the following vulnerability has been resolved:\nefivarfs: Fix memory leak of efivarfs_fs_info in fs_contex... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-08-19 2026-02-02
CVE-2025-38547 In the Linux kernel, the following vulnerability has been resolved:\niio: adc: axp20x_adc: Add missing sentinel to AXP717 ADC c... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-08-19 2026-02-02
CVE-2025-38545 In the Linux kernel, the following vulnerability has been resolved: \nnet: ethernet: ti: am65-cpsw-nuss: Fix skb size by accoun... Important kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-08-19 2025-12-08
CVE-2025-38541 In the Linux kernel, the following vulnerability has been resolved:\nwifi: mt76: mt7925: Fix null-ptr-deref in mt7925_thermal_i... Moderate kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2026-02-01
CVE-2025-38536 In the Linux kernel, the following vulnerability has been resolved:\nnet: airoha: fix potential use-after-free in airoha_npu_ge... Moderate kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2026-02-01
CVE-2025-38534 In the Linux kernel, the following vulnerability has been resolved:\nnetfs: Fix copy-to-cache so that it performs collection wi... Moderate kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2026-02-01
CVE-2025-38525 In the Linux kernel, the following vulnerability has been resolved:\nrxrpc: Fix irq-disabled in local_bh_enable()\nThe rxrpc_as... Moderate kernel:6.6, kernel:4.19, kernel:5.10, kernel:4.18 完成修复 2025-08-19 2026-02-01
CVE-2025-38524 In the Linux kernel, the following vulnerability has been resolved: \nrxrpc: Fix recv-recv race of completed call \nIf a call r... Important kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2025-12-31
CVE-2025-38523 In the Linux kernel, the following vulnerability has been resolved:\ncifs: Fix the smbd_response slab to allow usercopy\nThe ha... Moderate kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2026-02-01
CVE-2025-38522 In the Linux kernel, the following vulnerability has been resolved:\nsched/ext: Prevent update_locked_rq() calls with NULL rq\n... Moderate kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2026-02-01
CVE-2025-38509 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: reject VHT opmode for unsupported channe... Moderate kernel:6.6, kernel:4.19, kernel:5.10, kernel:4.18 完成修复 2025-08-19 2026-02-01
CVE-2025-38506 In the Linux kernel, the following vulnerability has been resolved: \n \nKVM: Allow CPU to reschedule while setting per-page me... Low kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2025-12-06
CVE-2025-38504 In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix pp destruction warnings With multi... Low kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2026-01-24
CVE-2023-4515 In the Linux kernel, the following vulnerability has been resolved:\nksmbd: validate command request size\nIn commit 2b9b8f3b68... Moderate kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-19 2026-02-01
CVE-2025-55668 No description is available for this CVE. Moderate log4j, pki-core:10.6, jss, tomcat, log4j:2 完成修复 2025-08-18 2026-07-13
CVE-2025-4674 A flaw was found in cmd/go. The go command can execute arbitrary commands when processing untrusted version control system (V... Important golang, go-toolset:an8 完成修复 2025-08-18 2025-12-11
CVE-2025-8941 A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to ex... Important pam 完成修复 2025-08-15 2025-12-29
CVE-2025-8916 Allocation of Resources Without Limits or Throttling vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java b... Moderate jmc:an8, bouncycastle 完成修复 2025-08-15 2026-06-24
CVE-2025-8845 A vulnerability was identified in NASM Netwide Assember 2.17rc0. This issue affects the function assemble_file of the file nasm... Moderate nasm 完成修复 2025-08-15 2026-03-19
CVE-2025-8843 A vulnerability was found in NASM Netwide Assember 2.17rc0. This affects the function macho_no_dead_strip of the file outmacho.... Moderate nasm 完成修复 2025-08-15 2026-03-19
CVE-2025-8835 A vulnerability was found in JasPer up to 4.2.5. Affected by this vulnerability is the function jas_image_chclrspc of the file ... Low jasper 完成修复 2025-08-15 2026-06-24
CVE-2025-8715 Improper neutralization of newlines in pg_dump in PostgreSQL allows a user of the origin server to inject arbitrary code for re... Important postgresql:12, postgresql:13, postgresql:9.6, postgresql, postgresql:15 完成修复 2025-08-15 2025-12-29
CVE-2025-8714 No description is available for this CVE. Important postgresql:12, libpq, postgresql:15, PostgreSQL, postgresql:13, postgresql:9.6, postgresql, postgresql:10 完成修复 2025-08-15 2025-12-29
CVE-2025-8671 A mismatch caused by client-triggered server-sent stream resets between HTTP/2 specifications and the internal architectures of... Important eclipse:an8, varnish:6, jetty, envoy, haproxy 完成修复 2025-08-15 2026-01-08
CVE-2025-54409 AIDE is an advanced intrusion detection environment. From versions 0.13 to 0.19.1, there is a null pointer dereference vulnerab... Moderate aide 完成修复 2025-08-15 2026-07-11
CVE-2025-54389 AIDE is an advanced intrusion detection environment. Prior to version 0.19.2, there is an improper output neutralization vulner... Moderate aide 完成修复 2025-08-15 2026-07-11
CVE-2025-48989 A flaw was found in Apache Tomcat where malformed client requests can trigger server-side stream resets without triggering abus... Important tomcat 完成修复 2025-08-15 2025-12-30
CVE-2025-47907 Cancelling a query (e.g. by cancelling the context passed to one of the query methods) during a call to the Scan method of the ... Moderate golang, go-toolset:an8, container-tools:2.0 完成修复 2025-08-15 2025-12-11
CVE-2025-47807 A flaw was found in gstreamer1-plugins-base. The subparse plugin's subrip_unescape_formatting function contains a NULL pointer ... Moderate gstreamer1-plugins-base 完成修复 2025-08-15 2026-03-19
CVE-2025-47806 A flaw was found in gstreamer1-plugins-base. The subparse plugin's parse_subrip_time function contains a stack buffer overflo... Moderate gstreamer1-plugins-base 完成修复 2025-08-15 2026-03-19
CVE-2025-47219 A flaw was found in gstreamer1-plugins-good. The isomp4 plugin's qtdemux_parse_trak function incorrectly handles MP4 file parsi... Moderate gstreamer1-plugins-good 完成修复 2025-08-15 2026-07-11
CVE-2025-47183 A flaw was found in gstreamer1-plugins-good. The isomp4 plugin's qtdemux_parse_tree function incorrectly handles MP4 file parsi... Moderate gstreamer1-plugins-good 完成修复 2025-08-15 2026-07-11
CVE-2024-58238 No description is available for this CVE. Moderate kernel:4.19, kernel:6.6, kernel:5.10, kernel:4.18 完成修复 2025-08-15 2026-02-01
CVE-2024-25177 LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240314 have an unsinking of IR_FSTORE for NULL metatable, which leads to... Low luajit 完成修复 2025-08-15 2025-12-17
CVE-2022-50233 No description is available for this CVE. Moderate kernel:4.19, kernel:6.6, kernel:5.10, kernel:4.18 完成修复 2025-08-15 2026-02-01
CVE-2025-38500 No description is available for this CVE. Important kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-08-13 2025-12-31
CVE-2024-11498 There exists a stack buffer overflow in libjxl. A specifically-crafted file can cause the JPEG XL decoder to use large amounts... Important firefox 完成修复 2025-08-12 2025-12-29
CVE-2025-53367 DjVuLibre is a GPL implementation of DjVu, a web-centric format for distributing documents and images. Prior to version 3.5.29,... Moderate djvulibre 完成修复 2025-08-08 2026-07-13
CVE-2024-8244 No description is available for this CVE. Moderate grafana, weldr-client, osbuild-composer, git-lfs, grafana-pcp 完成修复 2025-08-08 2026-07-10
CVE-2019-6486 Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial ... Important golang, go-toolset:an8 完成修复 2025-08-08 2025-12-11
CVE-2025-8043 Focus incorrectly truncated URLs towards the beginning instead of around the origin. This vulnerability affects Firefox < 141 a... Moderate firefox 完成修复 2025-08-06 2026-01-19
CVE-2025-8040 Memory safety bugs present in Firefox ESR 140.0, Thunderbird ESR 140.0, Firefox 140 and Thunderbird 140. Some of these bugs sho... Important firefox 完成修复 2025-08-06 2025-12-29
CVE-2025-8038 Thunderbird ignored paths when checking the validity of navigations in a frame. This vulnerability affects Firefox < 141, Firef... Low firefox 完成修复 2025-08-06 2026-01-19
CVE-2025-6558 Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker ... Important webkitgtk, webkit2gtk3 完成修复 2025-08-06 2025-12-29
CVE-2025-6395 A NULL pointer dereference flaw was found in the GnuTLS software in _gnutls_figure_common_ciphersuite(). Moderate gnutls 完成修复 2025-08-06 2026-07-13
CVE-2025-5987 A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap ... Moderate libssh 完成修复 2025-08-06 2026-07-11
CVE-2025-54567 hw/pci/pcie_sriov.c in QEMU through 10.0.3 mishandles the VF Enable bit write mask, a related issue to CVE-2024-26327. Moderate virt:an, qemu-kvm, qemu 完成修复 2025-08-06 2025-12-18
CVE-2025-54566 hw/pci/pcie_sriov.c in QEMU through 10.0.3 has a migration state inconsistency, a related issue to CVE-2024-26327. Moderate virt:an, qemu-kvm, qemu 完成修复 2025-08-06 2025-12-18
CVE-2025-50420 An issue in the pdfseparate utility of freedesktop poppler v25.04.0 allows attackers to cause an infinite recursion via supplyi... Important poppler 完成修复 2025-08-06 2025-12-29
CVE-2025-50200 RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaint... Moderate rabbitmq-server 完成修复 2025-08-06 2026-07-10
CVE-2025-4563 A vulnerability exists in the NodeRestriction admission controller where nodes can bypass dynamic resource allocation authoriza... Low kubernetes 完成修复 2025-08-06 2026-03-19
CVE-2025-43265 An out-of-bounds read was addressed with improved input validation. This issue is fixed in Safari 18.6, watchOS 11.6, visionOS ... Moderate webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-07-11
CVE-2025-43240 A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.6, Safari 18. 6. A download's origin ... Moderate webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-07-11
CVE-2025-43228 The issue was addressed with improved UI. This issue is fixed in iOS 18.6 and iPadOS 18.6, Safari 18. 6. Visiting a malicious w... Moderate webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-07-11
CVE-2025-43227 This issue was addressed through improved state management. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS... Moderate webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-07-11
CVE-2025-43216 A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 18.6, watchOS 11.6, iOS 18.... Important webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-01-04
CVE-2025-43212 The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, macOS Sequoia 15.6, iOS 18.6 and iPa... Important webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-01-04
CVE-2025-43211 The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, macOS Sequoia 15.6, iPadOS 17.7.9, i... Moderate webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-07-11
CVE-2025-31278 The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iPadOS 17.7.9, watchOS 11.6, visionO... Important webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-01-04
CVE-2025-31273 The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, macOS Sequoia 15.6, iOS 18.6 and iPa... Important webkitgtk, webkit2gtk3 完成修复 2025-08-06 2026-01-04
CVE-2025-24294 The attack vector is a potential Denial of Service (DoS). The vulnerability is caused by an insufficient check on the length of... Moderate ruby, ruby:3.3 完成修复 2025-08-06 2026-07-09
CVE-2025-24189 The issue was addressed with improved checks. This issue is fixed in Safari 18.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS... Important webkit2gtk3 完成修复 2025-08-06 2026-01-04
CVE-2025-0620 A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired ... Moderate samba 完成修复 2025-08-06 2026-01-22
CVE-2025-54574 Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible rem... Important squid:4, squid 完成修复 2025-08-04 2026-01-04
CVE-2025-54351 In iperf before 3.19.1, net.c has a buffer overflow when --skip-rx-copy is used (for MSG_TRUNC in recv). Important iperf3 完成修复 2025-08-04 2025-12-29
CVE-2025-54350 In iperf before 3.19.1, iperf_auth.c has a Base64Decode assertion failure and application exit upon a malformed authentication ... Low iperf3 完成修复 2025-08-04 2026-01-22
CVE-2025-54349 In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer overflow. Moderate iperf3 完成修复 2025-08-04 2026-01-22
CVE-2025-45768 A flaw was found in pyjwt. The library uses weak encryption, allowing an attacker to potentially decrypt sensitive data. A netw... Moderate python-jwt, fence-agents 完成修复 2025-08-04 2026-03-19
CVE-2025-8263 A vulnerability was found in prettier up to 3.6.2. It has been declared as problematic. Affected by this vulnerability is the f... Moderate gjs, firefox, thunderbird, js-d3-flame-graph, grafana 完成修复 2025-08-01 2026-07-11
CVE-2025-8224 A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_... Low binutils 完成修复 2025-08-01 2025-12-11
CVE-2025-2574 Out-of-bounds array write in Xpdf 4.05 and earlier, due to incorrect integer overflow checking in the PostScript function inter... Low xpdf 完成修复 2025-08-01 2026-07-09
CVE-2023-3756 A vulnerability was found in Creativeitem Atlas Business Directory Listing 2.13 and classified as problematic. Affected by this... Moderate atlas 完成修复 2025-08-01 2026-03-19
CVE-2023-3755 A vulnerability has been found in Creativeitem Atlas Business Directory Listing 2.13 and classified as problematic. Affected by... Moderate atlas 完成修复 2025-08-01 2026-03-19
CVE-2022-34782 An incorrect permission check in Jenkins requests-plugin Plugin 2.2.16 and earlier allows attackers with Overall/Read permissio... Moderate python-requests-cache 完成修复 2025-08-01 2026-03-19
CVE-2022-0543 It was discovered, that redis, a persistent key-value database, due to a packaging issue, is prone to a (Debian-specific) Lua s... Critical python-redis 完成修复 2025-08-01 2026-01-10
CVE-2021-36057 XMP Toolkit SDK version 2020.1 (and earlier) is affected by a write-what-where condition vulnerability caused during the applic... Moderate exempi 完成修复 2025-08-01 2026-07-11
CVE-2021-36056 XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer overflow vulnerability potentially resulting in arbitrary ... Moderate exempi 完成修复 2025-08-01 2026-07-11
CVE-2021-29446 jose-node-cjs-runtime is an npm package which provides a number of cryptographic functions. In versions prior to 3.11.4 the AES... Moderate jose 完成修复 2025-08-01 2026-03-27
CVE-2021-29445 jose-node-esm-runtime is an npm package which provides a number of cryptographic functions. In versions prior to 3.11.4 the AES... Moderate jose 完成修复 2025-08-01 2026-03-27
CVE-2021-21676 Jenkins requests-plugin Plugin 2.2.7 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers wi... Moderate python-requests-cache 完成修复 2025-08-01 2026-03-19
CVE-2021-21675 A cross-site request forgery (CSRF) vulnerability in Jenkins requests-plugin Plugin 2.2.12 and earlier allows attackers to crea... Moderate python-requests-cache 完成修复 2025-08-01 2026-03-19
CVE-2021-21674 A missing permission check in Jenkins requests-plugin Plugin 2.2.6 and earlier allows attackers with Overall/Read permission to... Moderate python-requests-cache 完成修复 2025-08-01 2026-03-19
CVE-2020-7463 In FreeBSD 12.1-STABLE before r364644, 11.4-STABLE before r364651, 12.1-RELEASE before p9, 11.4-RELEASE before p3, and 11.3-REL... Moderate kernel 完成修复 2025-08-01 2026-01-23
CVE-2014-125098 A vulnerability was found in Dart http_server up to 0.9.5 and classified as problematic. Affected by this issue is the function... Moderate httpd 完成修复 2025-08-01 2026-07-11
CVE-2025-8197 A global buffer overflow vulnerability was found in the soup_header_name_to_string function in Libsoup. The `soup_header_name_t... Moderate libsoup 完成修复 2025-07-31 2026-07-11
CVE-2025-8177 A vulnerability was found in LibTIFF up to 4.7.0. It has been rated as critical. This issue affects the function setrow of the ... Moderate libtiff, compat-libtiff3, mingw-libtiff 完成修复 2025-07-31 2026-07-11
CVE-2025-8176 A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function get... Moderate libtiff, compat-libtiff3, mingw-libtiff 完成修复 2025-07-31 2026-07-11
CVE-2025-8114 A flaw was found in libssh, a library that implements the SSH protocol. When calculating the session ID during the key exchange... Moderate libssh 完成修复 2025-07-31 2026-07-11
CVE-2025-54090 A bug in Apache HTTP Server 2.4.64 results in all "RewriteCond expr ..." tests evaluating as "true".\nUsers are recommended to ... Moderate httpd:2.4, httpd 完成修复 2025-07-31 2026-07-10
CVE-2025-48964 ping in iputils before 20250602 allows a denial of service (application error in adaptive ping mode or incorrect data collectio... Moderate iputils 完成修复 2025-07-31 2026-06-24
CVE-2025-38492 In the Linux kernel, the following vulnerability has been resolved: netfs: Fix race between cache write completion and ALL_Q... Moderate kernel:5.10, kernel:4.18, kernel:4.19, kernel:6.6 完成修复 2025-07-31 2026-02-01
CVE-2025-38486 No description is available for this CVE. Moderate kernel:5.10, kernel:4.18, kernel:4.19, kernel:6.6 完成修复 2025-07-31 2026-02-01
CVE-2025-38484 In the Linux kernel, the following vulnerability has been resolved: iio: backend: fix out-of-bound write The buffer is se... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-07-31 2026-02-01
CVE-2025-38475 No description is available for this CVE. Moderate kernel:5.10, kernel:4.18, kernel:4.19, kernel:6.6 完成修复 2025-07-31 2026-02-01
CVE-2025-38407 In the Linux kernel, the following vulnerability has been resolved: riscv: cpu_ops_sbi: Use static array for boot_data Si... Moderate kernel:5.10, kernel:4.18, kernel:4.19, kernel:6.6 完成修复 2025-07-31 2026-02-01
CVE-2025-8058 The regcomp function in the GNU C library version from 2.4 to 2.41 is \nsubject to a double free if some previous allocation f... Moderate nss, glibc 完成修复 2025-07-30 2025-12-03

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:31

results matching ""

    No results matching ""

    results matching ""

      No results matching ""