CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2024-47598 GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been discovered in t... Moderate gstreamer1-plugins-good 完成修复 2025-05-14 2026-07-11
CVE-2024-47597 GStreamer is a library for constructing graphs of media-handling components. An OOB-read has been detected in the function qtde... Moderate gstreamer1-plugins-good 完成修复 2025-05-14 2026-07-11
CVE-2023-26136 Versions of the package tough-cookie before 4.1.3 are vulnerable to Prototype Pollution due to improper handling of Cookies whe... Moderate grafana, pcs, mozjs60, firefox, cockpit 完成修复 2025-05-14 2026-07-10
CVE-2021-21334 In containerd (an industry-standard container runtime) before versions 1.3.10 and 1.4.4, containers launched through containerd... Moderate containerd 完成修复 2025-05-14 2026-03-19
CVE-2019-17359 The ASN.1 parser in Bouncy Castle Crypto (aka BC Java) 1.63 can trigger a large attempted memory allocation, and resultant OutO... Important bouncycastle 完成修复 2025-05-14 2026-01-05
CVE-2025-4432 A flaw was found in Rust's Ring package. A panic may be triggered when overflow checking is enabled. In the QUIC protocol, this... Moderate rust 完成修复 2025-05-10 2025-12-16
CVE-2025-47153 Certain build processes for libuv and Node.js for 32-bit systems, such as for the nodejs binary package through nodejs_20.19.0+... Moderate nodejs, nodejs:20, libuv 完成修复 2025-05-09 2026-03-19
CVE-2025-1948 In Eclipse Jetty versions 12.0.0 to 12.0.16 included, an HTTP/2 client can specify a very large value for the HTTP/2 settings p... Important jetty, eclipse:an8 完成修复 2025-05-09 2026-01-06
CVE-2024-13009 In Eclipse Jetty versions 9.4.0 to 9.4.56 a buffer can be incorrectly released when confronted with a gzip error when inflating... Important jetty, pki-core:10.6, pki-deps:10.6 完成修复 2025-05-09 2026-01-06
CVE-2024-4577 In PHP versions 8.1. before 8.1.29, 8.2. before 8.2.20, 8.3.* before 8.3.8, when using Apache and PHP-CGI on Windows, if the... Critical php 完成修复 2025-05-08 2025-12-29
CVE-2025-4373 A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function. When the positi... Moderate mingw-glib2, librsvg2, glib2 完成修复 2025-05-07 2026-07-10
CVE-2025-3154 Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid VerticesPerRow value in a PDF shading dictionary. Low xpdf 完成修复 2025-05-07 2026-07-09
CVE-2024-29511 Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a directory traversal issue that allows arbitrary file ... Important ghostscript 完成修复 2025-05-07 2026-01-06
CVE-2024-22421 JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Architect... Moderate jupyterlab 完成修复 2025-05-07 2026-06-27
CVE-2024-1557 Memory safety bugs present in Firefox 122. Some of these bugs showed evidence of memory corruption and we presume that with eno... Important firefox 完成修复 2025-05-07 2025-12-29
CVE-2021-25317 A Incorrect Default Permissions vulnerability in the packaging of cups of SUSE Linux Enterprise Server 11-SP4-LTSS, SUSE Manage... Low cups 完成修复 2025-05-07 2026-03-19
CVE-2019-14250 An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_match in simple-object-elf.c d... Low gcc, binutils 完成修复 2025-05-07 2025-12-11
CVE-2019-13118 In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid c... Low libxslt 完成修复 2025-05-07 2026-03-18
CVE-2019-13117 In numbers.c in libxslt 1.1.33, an xsl:number with certain format strings could lead to a uninitialized read in xsltNumberForma... Low libxslt 完成修复 2025-05-07 2026-03-18
CVE-2025-47268 ping in iputils through 20240905 allows a denial of service (application error or incorrect data collection) via a crafted ICMP... Moderate iputils 完成修复 2025-05-06 2026-07-09
CVE-2022-21546 In newer version of the SBC specs, we have a NDOB bit that indicates there is no data buffer that gets written out. If this bit... Important kernel 完成修复 2025-05-03 2025-12-08
CVE-2019-25076 The TSS (Tuple Space Search) algorithm in Open vSwitch 2.x through 2.17.2 and 3.0.0 allows remote attackers to cause a denial o... Moderate openvswitch 完成修复 2025-05-03 2026-03-18
CVE-2025-4093 Memory safety bug present in Firefox ESR 128.9, and Thunderbird 128.9. This bug showed evidence of memory corruption and we pre... Moderate firefox, thunderbird 完成修复 2025-05-01 2026-01-20
CVE-2025-4083 A process isolation vulnerability in Firefox stemmed from improper handling of javascript: URIs, which could allow content to e... Important firefox, thunderbird 完成修复 2025-05-01 2025-12-29
CVE-2025-4092 Memory safety bugs present in Firefox 137 and Thunderbird 137. Some of these bugs showed evidence of memory corruption and we p... Moderate firefox, thunderbird 完成修复 2025-04-30 2026-01-20
CVE-2025-4091 Memory safety bugs present in Firefox 137, Thunderbird 137, Firefox ESR 128.9, and Thunderbird 128.9. Some of these bugs showed... Moderate firefox, thunderbird 完成修复 2025-04-30 2026-01-20
CVE-2025-4089 Due to insufficient escaping of special characters in the "copy as cURL" feature, an attacker could trick a user into using thi... Moderate firefox, thunderbird 完成修复 2025-04-30 2026-01-20
CVE-2025-4088 A security vulnerability in Firefox allowed malicious sites to use redirects to send credentialed requests to arbitrary endpoin... Moderate firefox, thunderbird 完成修复 2025-04-30 2026-01-20
CVE-2025-4087 A vulnerability was identified in Firefox where XPath parsing could trigger undefined behavior due to missing null checks durin... Moderate firefox, thunderbird 完成修复 2025-04-30 2026-01-20
CVE-2025-3608 A race condition existed in nsHttpTransaction that could have been exploited to cause memory corruption, potentially leading to... Moderate firefox 完成修复 2025-04-30 2026-01-20
CVE-2025-30722 Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected... Moderate mariadb:10.5, mysql:8.0, mysql 完成修复 2025-04-30 2026-06-24
CVE-2025-30721 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affected are 8... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-30705 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-30703 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-... Low mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-30699 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are a... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-30693 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-... Moderate mariadb:10.3, mysql, mysql:8.0, mariadb, mariadb:10.5 完成修复 2025-04-30 2026-06-24
CVE-2025-30689 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-30688 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-30684 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affect... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-30683 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affect... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-30682 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-2817 Mozilla Firefox's update mechanism allowed a medium-integrity user process to interfere with the SYSTEM-level updater by manipu... Important firefox, thunderbird 完成修复 2025-04-30 2025-12-29
CVE-2025-21588 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-21580 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-21579 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected a... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-21577 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-... Moderate mysql:8.0, mysql 完成修复 2025-04-30 2026-03-18
CVE-2025-4035 A flaw was found in libsoup. When handling cookies, libsoup clients mistakenly allow cookies to be set for public suffix domain... Moderate libsoup3, libsoup 完成修复 2025-04-29 2026-07-11
CVE-2025-46646 In Artifex Ghostscript before 10.05.0, decode_utf8 in base/gp_utf8.c mishandles overlong UTF-8 encoding. NOTE: this issue exist... Moderate ghostscript 完成修复 2025-04-26 2026-01-25
CVE-2022-45866 qpress before PierreLvx/qpress 20220819 and before version 11.3, as used in Percona XtraBackup and other products, allows direc... Moderate qpress 完成修复 2025-04-26 2026-03-18
CVE-2025-46421 A flaw was found in libsoup. When libsoup clients encounter an HTTP redirect, they mistakenly send the HTTP Authorization heade... Moderate libsoup 完成修复 2025-04-24 2026-07-11
CVE-2025-46420 A flaw was found in libsoup. It is vulnerable to memory leaks in the soup_header_parse_quality_list() function when parsing a q... Moderate libsoup 完成修复 2025-04-24 2026-07-11
CVE-2025-46394 In tar in BusyBox through 1.37.0, a TAR archive can have filenames hidden from a listing through the use of terminal escape seq... Low busybox 完成修复 2025-04-24 2026-06-24
CVE-2025-43903 NSSCryptoSignBackend.cc in Poppler before 25.04.0 does not verify the adbe.pkcs7.sha1 signatures on documents, resulting in pot... Moderate poppler 完成修复 2025-04-24 2026-01-25
CVE-2025-21605 Redis is an open source, in-memory database that persists on disk. In versions starting at 2.6 and prior to 7.4.3, An unauthent... Important redis, redis:6 完成修复 2025-04-24 2025-12-30
CVE-2024-58251 In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal... Low busybox 完成修复 2025-04-24 2026-06-24
CVE-2024-36623 moby v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concurrent... Important docker, moby 完成修复 2025-04-23 2025-12-17
CVE-2020-15257 containerd is an industry-standard container runtime and is available as a daemon for Linux and Windows. In containerd before v... Moderate containerd 完成修复 2025-04-23 2026-03-18
CVE-2020-15157 In containerd (an industry-standard container runtime) before version 1.2.14 there is a credential leaking vulnerability. If a ... Moderate containerd 完成修复 2025-04-23 2026-03-18
CVE-2024-36621 moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be use... Moderate moby 完成修复 2025-04-22 2026-07-10
CVE-2024-36620 moby v25.0.0 - v26.0.2 is vulnerable to NULL Pointer Dereference via daemon/images/image_history.go. Moderate docker, moby 完成修复 2025-04-22 2026-03-18
CVE-2023-25153 containerd is an open source container runtime. Before versions 1.6.18 and 1.5.18, when importing an OCI image, there was no li... Moderate containerd 完成修复 2025-04-22 2026-03-18
CVE-2021-4128 When transitioning in and out of fullscreen mode, a graphics object was not correctly protected; resulting in memory corruption... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-38491 Mixed-content checks were unable to analyze opaque origins which led to some mixed content being loaded. This vulnerability aff... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-3700 A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirp... Low usbredir 完成修复 2025-04-22 2026-03-18
CVE-2021-32760 containerd is a container runtime. A bug was found in containerd versions prior to 1.4.8 and 1.5.4 where pulling and extracting... Moderate containerd 完成修复 2025-04-22 2026-03-18
CVE-2021-29983 Firefox for Android could get stuck in fullscreen mode and not exit it even after normal interactions that should cause it to e... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29975 Through a series of DOM manipulations, a message, over which the attacker had control of the text but not HTML or formatting, c... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29974 When network partitioning was enabled, e.g. as a result of Enhanced Tracking Protection settings, a TLS error page would allow ... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29965 A malicious website that causes an HTTP Authentication dialog to be spawned could trick the built-in password manager to sugges... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29963 Address bar search suggestions in private browsing mode were re-using session data from normal mode. *This bug only affects Fir... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29962 Firefox for Android would become unstable and hard-to-recover when a website opened too many popups. *This bug only affects Fir... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29961 When styling and rendering an oversized <select> element, Firefox did not apply correct clipping which allowed an attacker to... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29960 Firefox used to cache the last filename used for printing a file. When generating a filename for printing, Firefox usually sugg... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29959 When a user has already allowed a website to access microphone and camera, disabling camera sharing would not fully prevent the... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29958 When a download was initiated, the client did not check whether it was in normal or private browsing mode, which led to private... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29955 A transient execution vulnerability, named Floating Point Value Injection (FPVI) allowed an attacker to leak arbitrary memory a... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-29944 Lack of escaping allowed HTML injection when a webpage was viewed in Reader View. While a Content Security Policy prevents dire... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-25740 A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would otherwi... Low kubernetes 完成修复 2025-04-22 2026-03-18
CVE-2021-25737 A security issue was discovered in Kubernetes where a user may be able to redirect pod traffic to private networks on a Node. K... Low kubernetes 完成修复 2025-04-22 2026-03-18
CVE-2021-24001 A compromised content process could have performed session history manipulations it should not have been able to due to testing... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23996 By utilizing 3D CSS in conjunction with Javascript, content could have been rendered outside the webpage's viewport, resulting ... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23986 A malicious extension with the 'search' permission could have installed a new search engine whose favicon referenced a cross-or... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23985 If an attacker is able to alter specific about:config values (for example malware running on the user's computer), the Devtools... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23983 By causing a transition on a parent node by removing a CSS rule, an invalid property for a marker could have been applied, resu... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23977 Firefox for Android suffered from a time-of-check-time-of-use vulnerability that allowed a malicious application to read sensit... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23975 The developer page about:memory has a Measure function for exploring what object types the browser has allocated and their size... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23974 The DOMParser API did not properly process ' Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23971 When processing a redirect with a conflicting Referrer-Policy, Firefox would have adopted the redirect's Referrer-Policy. This ... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23970 Context-specific code was included in a shared jump table; resulting in assertions being triggered in multithreaded wasm code. ... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23963 When sharing geolocation during an active WebRTC share, Firefox could have reset the webRTC sharing state in the user interface... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23959 An XSS bug in internal error pages could have led to various spoofing attacks, including other error pages and the address bar.... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23958 The browser could have been confused into transferring a screen sharing state into another tab, which would leak unintended inf... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23956 An ambiguous file picker design could have confused users who intended to select and upload a single file into uploading a whol... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-23955 The browser could have been confused into transferring a pointer lock state into another tab, which could have lead to clickjac... Moderate firefox 完成修复 2025-04-22 2026-01-20
CVE-2021-21661 Jenkins Kubernetes CLI Plugin 1.10.0 and earlier does not perform permission checks in several HTTP endpoints, allowing attacke... Moderate kubernetes 完成修复 2025-04-22 2026-03-18
CVE-2021-20206 An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plu... Moderate podman 完成修复 2025-04-22 2026-03-18
CVE-2021-0146 Hardware allows activation of test or debug logic at runtime for some Intel(R) processors which may allow an unauthenticated us... Moderate microcode_ctl 完成修复 2025-04-22 2026-07-10
CVE-2020-8566 In Kubernetes clusters using Ceph RBD as a storage provisioner, with logging level of at least 4, Ceph RBD admin secrets can be... Moderate kubernetes 完成修复 2025-04-22 2026-03-18
CVE-2020-8565 In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This ca... Moderate kubernetes 完成修复 2025-04-22 2026-03-18
CVE-2020-8564 In Kubernetes clusters using a logging level of at least 4, processing a malformed docker config file will result in the conten... Moderate kubernetes 完成修复 2025-04-22 2026-03-18

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:31

results matching ""

    No results matching ""

    results matching ""

      No results matching ""