CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2024-45617 A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Dev... Low opensc 完成修复 2025-04-03 2026-01-22
CVE-2024-45616 A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. An attacker could use a crafted USB Dev... Low opensc 完成修复 2025-04-03 2026-01-22
CVE-2024-45615 A vulnerability was found in OpenSC, OpenSC tools, PKCS#11 module, minidriver, and CTK. \nThe problem is missing initializatio... Low opensc 完成修复 2025-04-03 2026-01-22
CVE-2024-45310 runc is a CLI tool for spawning and running containers according to the OCI specification. runc 1.1.13 and earlier, as well as ... Low container-tools:4.0, container-tools:2.0, runc, container-tools:3.0, container-tools:an8, container-tools:1.0 完成修复 2025-04-03 2026-06-24
CVE-2024-43805 jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture.... Moderate jupyterlab 完成修复 2025-04-03 2026-06-27
CVE-2024-43790 Vim is an open source command line text editor. When performing a search and displaying the search-count message is disabled (:... Moderate vim 完成修复 2025-04-03 2026-06-26
CVE-2024-42367 aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.10.2, static routes which co... Moderate python-aiohttp 完成修复 2025-04-03 2026-06-25
CVE-2024-42353 WebOb provides objects for HTTP requests and responses. When WebOb normalizes the HTTP Location header to include the request h... Moderate python-webob 完成修复 2025-04-03 2026-06-24
CVE-2024-34508 dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message. Moderate dcmtk 完成修复 2025-04-03 2026-01-22
CVE-2024-32608 HDF5 library through 1.14.3 has memory corruption in H5A__close resulting in the corruption of the instruction pointer and caus... Moderate hdf5 完成修复 2025-04-03 2026-03-18
CVE-2024-29507 Artifex Ghostscript before 10.03.0 sometimes has a stack-based buffer overflow via the CIDFSubstPath and CIDFSubstFont paramete... Moderate ghostscript 完成修复 2025-04-03 2026-01-22
CVE-2024-24968 Improper finite state machines (FSMs) in hardware logic in some Intel(R) Processors may allow an privileged user to potentially... Moderate microcode_ctl 完成修复 2025-04-03 2026-07-10
CVE-2024-1554 The fetch() API and navigation incorrectly shared the same cache, as the cache key did not include the optional headers `fetc... Critical firefox 完成修复 2025-04-03 2026-01-04
CVE-2022-49603 In the Linux kernel, the following vulnerability has been resolved: \n \nip: Fix data-races around sysctl_ip_fwd_update_priorit... Important kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2025-04-03 2025-12-08
CVE-2021-3658 bluetoothd from bluez incorrectly saves adapters' Discoverable status when a device is powered down, and restores it when power... Low bluez 完成修复 2025-04-03 2026-03-18
CVE-2025-3034 Memory safety bugs present in Firefox 136 and Thunderbird 136. Some of these bugs showed evidence of memory corruption and we p... Important firefox, thunderbird 完成修复 2025-04-02 2025-12-29
CVE-2025-3033 After selecting a malicious Windows .url shortcut from the local filesystem, an unexpected file could be uploaded. \n*This ... Important firefox, thunderbird 完成修复 2025-04-02 2025-12-29
CVE-2025-3032 Leaking of file descriptors from the fork server to web content processes could allow for privilege escalation attacks. This vu... Important firefox, thunderbird 完成修复 2025-04-02 2025-12-29
CVE-2025-3031 An attacker could read 32 bits of values spilled onto the stack in a JIT compiled function. This vulnerability affects Firefox ... Moderate firefox, thunderbird 完成修复 2025-04-02 2026-01-20
CVE-2025-3030 Memory safety bugs present in Firefox 136, Thunderbird 136, Firefox ESR 128.8, and Thunderbird 128.8. Some of these bugs showed... Important firefox, thunderbird 完成修复 2025-04-02 2025-12-29
CVE-2025-3029 A crafted URL containing specific Unicode characters could have hidden the true origin of the page, resulting in a potential sp... Important firefox, thunderbird 完成修复 2025-04-02 2025-12-29
CVE-2025-3028 JavaScript code running while transforming a document with the XSLTProcessor could lead to a use-after-free. This vulnerability... Moderate firefox, thunderbird 完成修复 2025-04-02 2026-01-20
CVE-2025-2857 Following the recent Chrome sandbox escape (CVE-2025-2783), various Firefox developers identified a similar pattern in our IPC ... Critical firefox 完成修复 2025-04-02 2026-01-04
CVE-2024-48615 Null Pointer Dereference vulnerability in libarchive 3.7.6 and earlier when running program bsdtar in function header_pax_exten... Important libarchive 完成修复 2025-04-02 2026-01-08
CVE-2024-4776 A file dialog shown while in full-screen mode could have resulted in the window remaining disabled. This vulnerability affects ... Important firefox 完成修复 2025-04-02 2025-12-29
CVE-2024-4772 An HTTP digest authentication nonce value was generated using rand() which could lead to predictable values. This vulnerabili... Moderate firefox 完成修复 2025-04-02 2026-01-20
CVE-2024-4771 A memory allocation check was missing which would lead to a use-after-free if the allocation failed. This could have triggered ... Important firefox 完成修复 2025-04-02 2025-12-29
CVE-2024-2606 Passing invalid data could have led to invalid wasm values being created, such as arbitrary integers turning into pointer value... Low firefox 完成修复 2025-04-02 2026-01-20
CVE-2025-24264 The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.4, tvOS 18.4, iPadOS 17.7.6, iOS 18.4 ... Important webkit2gtk3 完成修复 2025-04-01 2025-12-29
CVE-2024-3865 Memory safety bugs present in Firefox 124. Some of these bugs showed evidence of memory corruption and we presume that with eno... Important firefox 完成修复 2025-04-01 2025-12-29
CVE-2024-3858 It was possible to mutate a JavaScript object so that the JIT could crash while tracing it. This vulnerability affects Firefox ... Important firefox 完成修复 2025-04-01 2025-12-29
CVE-2024-3855 In certain cases the JIT incorrectly optimized MSubstr operations, which led to out-of-bounds reads. This vulnerability affects... Moderate firefox 完成修复 2025-04-01 2026-01-20
CVE-2020-24292 Buffer Overflow vulnerability in load function in PluginICO.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to run arbi... Important freeimage 完成修复 2025-04-01 2026-01-07
CVE-2020-21428 Buffer Overflow vulnerability in function LoadRGB in PluginDDS.cpp in FreeImage 3.18.0 allows remote attackers to run arbitrary... Important freeimage 完成修复 2025-04-01 2026-01-07
CVE-2023-53013 In the Linux kernel, the following vulnerability has been resolved: ptdma: pt_core_execute_cmd() should use spinlock The ... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-31 2026-01-17
CVE-2023-53011 In the Linux kernel, the following vulnerability has been resolved: net: stmmac: enable all safety features by default In... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-31 2026-01-17
CVE-2023-53031 In the Linux kernel, the following vulnerability has been resolved: powerpc/imc-pmu: Fix use of mutex in IRQs disabled secti... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-30 2026-01-17
CVE-2023-53029 In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix the use of GFP_KERNEL in atomic contex... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-30 2026-01-17
CVE-2023-53019 In the Linux kernel, the following vulnerability has been resolved: net: mdio: validate parameter addr in mdiobus_get_phy()... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-30 2026-01-17
CVE-2023-53014 In the Linux kernel, the following vulnerability has been resolved: dmaengine: tegra: Fix memory leak in terminate_all() ... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-30 2026-01-17
CVE-2025-21890 In the Linux kernel, the following vulnerability has been resolved: idpf: fix checksums set in idpf_rx_rsc() idpf_rx_rsc(... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21889 In the Linux kernel, the following vulnerability has been resolved: perf/core: Add RCU read lock protection to perfiterate... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21887 In the Linux kernel, the following vulnerability has been resolved: ovl: fix UAF in ovl_dentry_update_reval by moving dput()... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21886 In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix implicit ODP hang on parent deregistratio... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21882 In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix vport QoS cleanup on error When enablin... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21880 In the Linux kernel, the following vulnerability has been resolved: drm/xe/userptr: fix EFAULT handling Currently we trea... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21879 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free on inode when scanning root du... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21877 In the Linux kernel, the following vulnerability has been resolved: usbnet: gl620a: fix endpoint checking in genelink_bind()... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21875 In the Linux kernel, the following vulnerability has been resolved: mptcp: always handle address removal under msk socket lo... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21872 In the Linux kernel, the following vulnerability has been resolved: efi: Don't map the entire mokvar table to determine ... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21870 In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-topology: Harden loops for looking up AL... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21869 In the Linux kernel, the following vulnerability has been resolved: powerpc/code-patching: Disable KASAN report during patch... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21868 In the Linux kernel, the following vulnerability has been resolved: net: allow small head cache usage with large MAX_SKB_FRA... Moderate kernel:5.10, kernel:4.18, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-21867 In the Linux kernel, the following vulnerability has been resolved: bpf, test_run: Fix use-after-free issue in eth_skb_pkt_t... Moderate kernel:5.10, kernel:4.18, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2024-58091 In the Linux kernel, the following vulnerability has been resolved: drm/fbdev-dma: Add shadow buffering for deferred I/O ... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2024-58090 In the Linux kernel, the following vulnerability has been resolved: sched/core: Prevent rescheduling when interrupts are dis... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-53028 In the Linux kernel, the following vulnerability has been resolved: Revert "wifi: mac80211: fix memory leak in ieee80211... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-53024 In the Linux kernel, the following vulnerability has been resolved: \n \nbpf: Fix pointer-leak due to insufficient speculative ... Important kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2025-12-08
CVE-2023-53015 In the Linux kernel, the following vulnerability has been resolved: HID: betop: check shape of output reports betopff_ini... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-53009 In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Add sync after creating vram bo There wil... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-53004 In the Linux kernel, the following vulnerability has been resolved: ovl: fix tmpfile leak Missed an error cleanup. Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-53000 In the Linux kernel, the following vulnerability has been resolved: netlink: prevent potential spectre v1 gadgets Most ne... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-52987 In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-mtrace: prevent underflow in sof_ipc4_pr... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-52981 In the Linux kernel, the following vulnerability has been resolved: drm/i915: Fix request ref counting during error capture ... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-52939 In the Linux kernel, the following vulnerability has been resolved: mm: memcg: fix NULL pointer in memcgroup_track_foreign... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-52933 In the Linux kernel, the following vulnerability has been resolved: Squashfs: fix handling and sanity checking of xattr_ids ... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2023-52929 In the Linux kernel, the following vulnerability has been resolved: nvmem: core: fix cleanup after devset_name() If dev... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2022-49757 In the Linux kernel, the following vulnerability has been resolved: EDAC/highbank: Fix memory leak in highbank_mc_probe()\n... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2022-49751 In the Linux kernel, the following vulnerability has been resolved: w1: fix WARNING after calling w1_process() I got the ... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2022-49744 In the Linux kernel, the following vulnerability has been resolved: mm/uffd: fix pte marker when fork() without fork event\n... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2021-4454 In the Linux kernel, the following vulnerability has been resolved: can: j1939: fix errant WARN_ON_ONCE in j1939_session_dea... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-29 2026-01-17
CVE-2025-0624 A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data ... Important grub2 完成修复 2025-03-28 2025-12-31
CVE-2025-30850 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sfaerber Dr. Flex allows ... Moderate flex 完成修复 2025-03-27 2026-03-18
CVE-2024-47739 In the Linux kernel, the following vulnerability has been resolved:padata: use integer wrap around to prevent deadlock on seq_n... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-27 2026-01-17
CVE-2024-26283 An attacker could have executed unauthorized scripts on top origin sites using a JavaScript URI when opening an external URL wi... Important firefox 完成修复 2025-03-27 2025-12-29
CVE-2024-26281 Upon scanning a JavaScript URI with the QR code scanner, an attacker could have executed unauthorized scripts on the current to... Moderate firefox 完成修复 2025-03-27 2026-01-20
CVE-2024-1556 The incorrect object was checked for NULL in the built-in profiler, potentially leading to invalid memory access and undefined ... Moderate firefox 完成修复 2025-03-27 2026-01-20
CVE-2024-1555 When opening a website using the firefox:// protocol handler, SameSite cookies were not properly respected. This vulnerabilit... Important firefox 完成修复 2025-03-27 2025-12-29
CVE-2025-30612 Cross-Site Request Forgery (CSRF) vulnerability in mandegarweb Replace Default Words allows Stored XSS. This issue affects Repl... Important words 完成修复 2025-03-26 2026-01-04
CVE-2025-27837 An issue was discovered in Artifex Ghostscript before 10.05.0. Access to arbitrary files can occur through a truncated path wit... Moderate ghostscript 完成修复 2025-03-26 2026-01-22
CVE-2025-27833 An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs for a long TTF font name to pdf/pdf_fma... Important ghostscript 完成修复 2025-03-26 2026-01-06
CVE-2025-27832 An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/ja... Moderate ghostscript 完成修复 2025-03-26 2026-01-22
CVE-2025-2312 A flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the cifs-utils package... Moderate cifs-utils 完成修复 2025-03-26 2026-07-13
CVE-2024-57795 In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Remove the direct link to net_device The si... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2025-03-26 2026-01-17
CVE-2025-29927 Next.js is a React framework for building full-stack web applications. Prior to 14.2.25 and 15.2.3, it is possible to bypass au... Critical firefox, thunderbird 完成修复 2025-03-25 2026-01-10
CVE-2025-27516 A flaw was found in Jinja. In affected versions, an oversight in how the Jinja sandboxed environment interacts with the attr... Important fence-agents, python-jinja2 完成修复 2025-03-25 2025-12-29
CVE-2025-2588 A vulnerability has been found in Hercules Augeas 1.14.1 and classified as problematic. This vulnerability affects the function... Low augeas 完成修复 2025-03-25 2026-06-24
CVE-2025-2584 A vulnerability was found in WebAssembly wabt 1.0.36. It has been declared as critical. This vulnerability affects the function... Moderate firefox, thunderbird 完成修复 2025-03-25 2026-01-20
CVE-2024-56737 GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock data in an HFS filesystem. Important grub2 完成修复 2025-03-21 2025-12-31
CVE-2024-54467 A cookie management issue was addressed with improved state management. This issue is fixed in watchOS 11, macOS Sequoia 15, Sa... Moderate webkitgtk4, webkitgtk3, webkit2gtk3 完成修复 2025-03-21 2026-07-11
CVE-2024-44192 The issue was addressed with improved checks. This issue is fixed in watchOS 11, macOS Sequoia 15, Safari 18, visionOS 2, iOS 1... Moderate webkitgtk4, webkitgtk3, webkit2gtk3 完成修复 2025-03-21 2026-07-11
CVE-2024-6874 libcurl's URL API function\ncurl_url_get() offers punycode\nconversions, to and ... Low curl 完成修复 2025-03-20 2026-03-18
CVE-2023-29458 Duktape is an 3rd-party embeddable JavaScript engine, with a focus on portability and compact footprint. When adding too many v... Moderate duktape 完成修复 2025-03-20 2026-03-18
CVE-2022-48579 UnRAR before 6.2.3 allows extraction of files outside of the destination folder via symlink chains. Important unrar 完成修复 2025-03-20 2025-12-30
CVE-2022-47069 p7zip 16.02 was discovered to contain a heap-buffer-overflow vulnerability via the function NArchive::NZip::CInArchive::FindCd(... Important p7zip 完成修复 2025-03-20 2025-12-30
CVE-2022-29885 The documentation of Apache Tomcat 10.1.0-M1 to 10.1.0-M14, 10.0.0-M1 to 10.0.20, 9.0.13 to 9.0.62 and 8.5.38 to 8.5.78 for the... Low tomcat 完成修复 2025-03-20 2026-07-10
CVE-2021-40263 A heap overflow vulnerability in FreeImage 1.18.0 via the ofLoad function in PluginTIFF.cpp. Important freeimage 完成修复 2025-03-20 2026-01-07
CVE-2021-39537 An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow. Low ncurses 完成修复 2025-03-20 2026-03-18
CVE-2021-3905 A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to ... Important openvswitch 完成修复 2025-03-20 2026-01-05
CVE-2021-32839 sqlparse is a non-validating SQL parser module for Python. In sqlparse versions 0.4.0 and 0.4.1 there is a regular Expression D... Important python-sqlparse 完成修复 2025-03-20 2026-01-04

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-06 01:29:23

results matching ""

    No results matching ""

    results matching ""

      No results matching ""