| CVE-2024-57935 |
In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix accessing invalid dip_ctx during destroyin... |
Low |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-27 |
| CVE-2024-57934 |
In the Linux kernel, the following vulnerability has been resolved: fgraph: Add READ_ONCE() when accessing fgraph_array[]\n... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2024-57932 |
In the Linux kernel, the following vulnerability has been resolved: gve: guard XDP xmit NDO on existence of xdp queues In... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2024-57931 |
In the Linux kernel, the following vulnerability has been resolved: selinux: ignore unknown extended permissions When eva... |
Moderate |
kernel:5.10, kernel:4.19, kernel:6.6 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2024-57930 |
In the Linux kernel, the following vulnerability has been resolved: tracing: Have process_string() also allow arrays In o... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2024-57924 |
In the Linux kernel, the following vulnerability has been resolved: fs: relax assertions on failure to encode file handles\n... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2024-57923 |
In the Linux kernel, the following vulnerability has been resolved: btrfs: zlib: fix avail_in bytes for s390 zlib HW compres... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2024-57921 |
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Add a lock when accessing the buddy trim fun... |
Low |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-27 |
| CVE-2024-57920 |
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: wq_release signals dma_fence only when avail... |
Low |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-05-14 |
| CVE-2024-57919 |
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix divide error in DM plane scale calc... |
Low |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-27 |
| CVE-2024-57918 |
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix page fault due to max surface defin... |
Low |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-27 |
| CVE-2024-57916 |
In the Linux kernel, the following vulnerability has been resolved: misc: microchip: pci1xxxx: Resolve kernel panic during G... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2024-57914 |
In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpci: fix NULL pointer issue on shared irq ... |
Low |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-27 |
| CVE-2024-57905 |
In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-ads1119: fix information leak in triggered ... |
Low |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-22 |
| CVE-2022-49726 |
漏洞存在于Linux内核的clocksource模块,漏洞成因是使用了不合适的组合EXPORT_SYMBOL和__init,导致初�... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49720 |
漏洞存在于Linux内核的块设备(block)模块,漏洞成因是在处理离线队列时,`blk_mq_alloc_request_hctx(... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49710 |
漏洞存在于Linux内核的dm-log模块,漏洞成因是bitset_size向上取整时未充分考虑unsignedlong指针在64位�... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49626 |
In the Linux kernel, the following vulnerability has been resolved: sfc: fix use after free when disabling sriov Use afte... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49489 |
In the Linux kernel, the following vulnerability has been resolved: drm/msm/disp/dpu1: set vbif hw config to NULL to avoid u... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49470 |
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtksdio: fix use-after-free at btmtksdio_re... |
Low |
kernel:5.10, kernel:4.19, kernel:6.6 |
否 |
完成修复 |
2025-02-28 |
2026-01-22 |
| CVE-2022-49455 |
In the Linux kernel, the following vulnerability has been resolved: misc: ocxl: fix possible double free in ocxl_file_regist... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49413 |
In the Linux kernel, the following vulnerability has been resolved: \n \nbfq: Update cgroup information before merging bio \n ... |
Low |
kernel:5.10, kernel:4.19 |
是 |
完成修复 |
2025-02-28 |
2026-01-22 |
| CVE-2022-49411 |
In the Linux kernel, the following vulnerability has been resolved: bfq: Make sure bfqg for which we are queueing requests i... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49395 |
In the Linux kernel, the following vulnerability has been resolved: um: Fix out-of-bounds read in LDT setup syscallstub... |
Moderate |
kernel:5.10, kernel:4.18, kernel:4.19, kernel:6.6 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49388 |
In the Linux kernel, the following vulnerability has been resolved: ubi: ubi_create_volume: Fix use-after-free when volume c... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49385 |
In the Linux kernel, the following vulnerability has been resolved: driver: base: fix UAF when driver_attach failed When ... |
Moderate |
kernel:5.10, kernel:4.19, kernel:6.6 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49368 |
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: out of bounds read in mtk_hw... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49356 |
In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Trap RDMA segment overflows Prevent svcrdma... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49280 |
In the Linux kernel, the following vulnerability has been resolved: NFSD: prevent underflow in nfssvc_decode_writeargs() ... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49275 |
In the Linux kernel, the following vulnerability has been resolved: can: m_can: m_can_tx_handler(): fix use after free of sk... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49261 |
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gem: add missing boundary check in vm_access\n... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49258 |
In the Linux kernel, the following vulnerability has been resolved: crypto: ccree - Fix use after free in cc_cipher_exit()\n... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49129 |
In the Linux kernel, the following vulnerability has been resolved: mt76: mt7921: fix crash when startup fails. If the ni... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49082 |
In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Fix use after free in _scsih_expander_nod... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49076 |
In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Fix use-after-free bug for mm struct Under... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2022-49059 |
In the Linux kernel, the following vulnerability has been resolved: nfc: nci: add flush_workqueue to prevent uaf Our dete... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2021-47638 |
In the Linux kernel, the following vulnerability has been resolved: ubifs: rename_whiteout: Fix double free for whiteout_ui-... |
Moderate |
kernel:5.10, kernel:4.19 |
否 |
完成修复 |
2025-02-28 |
2026-01-19 |
| CVE-2025-1094 |
A flaw was found in PostgreSQL. Due to improper neutralization of quoting syntax, affected versions potentially allow a databas... |
Important |
postgresql:15, postgresql:12, postgresql:13, postgresql, libpq |
否 |
完成修复 |
2025-02-21 |
2026-01-04 |
| CVE-2024-7264 |
libcurl's ASN1 parser code has the GTime2str() function, used for parsing an \nASN.1 Generalized Time field. If given an synt... |
Moderate |
curl, mysql, mysql:8.0 |
否 |
完成修复 |
2025-02-21 |
2026-01-05 |
| CVE-2024-21199 |
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39... |
Moderate |
mecab, mysql, mysql:8.0 |
是 |
完成修复 |
2025-02-21 |
2026-06-24 |
| CVE-2025-21490 |
A flaw was found in the MySQL Server component: InnoDB. This vulnerability allows a high-privileged attacker to cause a denial ... |
Moderate |
mariadb, mariadb:10.5, mysql:8.0, mariadb:10.3, mysql |
是 |
完成修复 |
2025-02-20 |
2026-06-24 |
| CVE-2025-24014 |
Vim is an open source, command line text editor. A segmentation fault was found in Vim before 9.1.1043. In silent Ex mode (-s -... |
Moderate |
vim |
是 |
完成修复 |
2025-02-18 |
2026-06-26 |
| CVE-2025-22867 |
On Darwin, building a Go module which contains CGO can trigger arbitrary code execution when using the Apple version of ld, due... |
Important |
golang |
是 |
完成修复 |
2025-02-18 |
2025-12-11 |
| CVE-2025-22866 |
Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits ... |
Important |
golang, go-toolset:an8 |
是 |
完成修复 |
2025-02-18 |
2025-12-11 |
| CVE-2025-22865 |
Using ParsePKCS1PrivateKey to parse a RSA key that is missing the CRT values would panic when verifying that the key is well fo... |
Important |
golang |
是 |
完成修复 |
2025-02-18 |
2025-12-10 |
| CVE-2025-1148 |
A vulnerability was found in GNU Binutils 2.43 and classified as problematic. Affected by this issue is the function link_order... |
Low |
binutils |
是 |
完成修复 |
2025-02-18 |
2025-12-11 |
| CVE-2025-1019 |
The z-order of the browser windows could be manipulated to hide the fullscreen notification. This could potentially be leverage... |
Moderate |
thunderbird, firefox |
否 |
完成修复 |
2025-02-18 |
2026-01-24 |
| CVE-2025-0938 |
The Python standard library functions urllib.parse.urlsplit and urlparse accepted domain names that included square bracket... |
Moderate |
python3.11, python3 |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2025-0840 |
A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function disassemb... |
Moderate |
binutils |
是 |
完成修复 |
2025-02-18 |
2025-12-11 |
| CVE-2025-0725 |
When libcurl is asked to perform automatic gzip decompression of \ncontent-encoded HTTP responses with the `CURLOPT_ACCEPT_ENCO... |
Low |
curl |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2025-0577 |
An insufficient entropy vulnerability was found in glibc. The getrandom and arc4random family of functions may return predictab... |
Moderate |
glibc |
是 |
完成修复 |
2025-02-18 |
2025-12-11 |
| CVE-2025-0167 |
When asked to use a .netrc file for credentials and to follow HTTP \nredirects, curl could leak the password used for the... |
Low |
curl |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2024-56738 |
GNU GRUB (aka GRUB2) through 2.12 does not use a constant-time algorithm for grub_crypto_memcmp and thus allows side-channel at... |
Moderate |
grub2 |
否 |
完成修复 |
2025-02-18 |
2025-12-31 |
| CVE-2024-52005 |
Git is a source code management tool. When cloning from a server (or fetching, or pushing), informational or error messages are... |
Important |
git |
是 |
完成修复 |
2025-02-18 |
2026-01-04 |
| CVE-2024-51741 |
Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a mal... |
Moderate |
redis:6, redis |
是 |
完成修复 |
2025-02-18 |
2026-06-24 |
| CVE-2024-27980 |
Due to the improper handling of batch files in child_process.spawn / child_process.spawnSync, a malicious command line argument... |
Important |
nodejs:20, nodejs:16, nodejs, nodejs:18 |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2024-13176 |
Issue summary: A timing side-channel which could potentially allow recovering \nthe private key exists in the ECDSA signature c... |
Moderate |
shim, openssl, edk2 |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2024-12747 |
A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's d... |
Moderate |
rsync |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2024-12705 |
Clients using DNS-over-HTTPS (DoH) can exhaust a DNS resolver's CPU and/or memory by flooding it with crafted valid or invalid ... |
Important |
bind9.16, bind |
否 |
完成修复 |
2025-02-18 |
2026-01-06 |
| CVE-2024-12243 |
A flaw was found in GnuTLS, which relies on libtasn1 for ASN.1 data processing. Due to an inefficient algorithm in libtasn1, de... |
Moderate |
gnutls |
是 |
完成修复 |
2025-02-18 |
2026-07-13 |
| CVE-2024-12133 |
A flaw in libtasn1 causes inefficient handling of specific certificate data. When processing a large number of elements in a ce... |
Moderate |
libtasn1 |
是 |
完成修复 |
2025-02-18 |
2026-07-11 |
| CVE-2024-12088 |
A flaw was found in rsync. When using the --safe-links option, the rsync client fails to properly verify if a symbolic link d... |
Moderate |
rsync |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2024-12087 |
A path traversal vulnerability exists in rsync. It stems from behavior enabled by the --inc-recursive option, a default-enabl... |
Moderate |
rsync |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2024-12086 |
A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. Th... |
Moderate |
rsync |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2024-11187 |
It is possible to construct a zone such that some queries to it will generate responses containing numerous records in the Addi... |
Important |
bind9.16, bind |
否 |
完成修复 |
2025-02-18 |
2026-01-06 |
| CVE-2024-0135 |
NVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted container image could lead to m... |
Important |
nvidia-container-toolkit |
否 |
完成修复 |
2025-02-18 |
2026-01-05 |
| CVE-2022-49043 |
A flaw was found in libxml2 where improper handling of memory allocation failures in libxml2 can lead to crashes, memory leak... |
Important |
libxml2 |
否 |
完成修复 |
2025-02-18 |
2026-01-09 |
| CVE-2007-5967 |
A flaw in Mozilla's embedded certificate code might allow web sites to install root certificates on devices without user approv... |
Moderate |
firefox |
否 |
完成修复 |
2025-02-18 |
2026-01-24 |
| CVE-2025-21692 |
In the Linux kernel, the following vulnerability has been resolved:\nnet: sched: fix ets qdisc OOB Indexing\nHaowei Yan <g10426... |
Moderate |
kernel:6.6, kernel:4.19, kernel:5.10, kernel |
否 |
完成修复 |
2025-02-14 |
2026-01-19 |
| CVE-2025-23085 |
A vulnerability was found in NodeJS when handling HTTP/2 connections, where the remote peer abruptly closes the socket without ... |
Moderate |
nodejs, nodejs:20, nodejs:18 |
是 |
完成修复 |
2025-02-13 |
2026-06-25 |
| CVE-2025-1016 |
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19, and Thun... |
Important |
firefox, thunderbird |
否 |
完成修复 |
2025-02-12 |
2025-12-29 |
| CVE-2025-1014 |
Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. Thi... |
Low |
firefox, thunderbird |
否 |
完成修复 |
2025-02-12 |
2026-01-24 |
| CVE-2025-1013 |
A race condition could have led to private browsing tabs being opened in normal browsing windows. This could have resulted in a... |
Low |
firefox, thunderbird |
否 |
完成修复 |
2025-02-12 |
2026-01-24 |
| CVE-2025-1012 |
A flaw was found in Firefox. The Mozilla Foundation's Security Advisory describes the following issue: A race during concurrent... |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2025-02-12 |
2026-01-24 |
| CVE-2025-1011 |
A bug in WebAssembly code generation could have lead to a crash. It may have been possible for an attacker to leverage this to ... |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2025-02-12 |
2026-01-24 |
| CVE-2025-1010 |
An attacker could have caused a use-after-free via the Custom Highlight API, leading to a potentially exploitable crash. This v... |
Important |
firefox, thunderbird |
否 |
完成修复 |
2025-02-12 |
2025-12-29 |
| CVE-2025-1009 |
A flaw was found in Firefox. The Mozilla Foundation's Security Advisory describes the following issue: An attacker could have c... |
Important |
firefox, thunderbird |
否 |
完成修复 |
2025-02-12 |
2025-12-29 |
| CVE-2025-1147 |
A vulnerability has been found in GNU Binutils 2.43 and classified as problematic. Affected by this vulnerability is the functi... |
Low |
binutils |
是 |
完成修复 |
2025-02-11 |
2025-12-11 |
| CVE-2025-1020 |
Memory safety bugs present in Firefox 134 and Thunderbird 134. Some of these bugs showed evidence of memory corruption and we p... |
Important |
firefox, thunderbird |
否 |
完成修复 |
2025-02-11 |
2025-12-29 |
| CVE-2025-1017 |
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6. Some of these bugs showed... |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2025-02-10 |
2026-01-24 |
| CVE-2024-46901 |
Insufficient validation of filenames against control characters in Apache Subversion repositories served via mod_dav_svn allows... |
Low |
subversion |
是 |
完成修复 |
2025-02-10 |
2026-07-10 |
| CVE-2025-0665 |
libcurl would wrongly close the same eventfd file descriptor twice when taking\ndown a connection channel after having complete... |
Low |
curl |
是 |
完成修复 |
2025-02-05 |
2026-06-24 |
| CVE-2024-53263 |
A flaw was found in the Git LFS git extension. When Git LFS requests credentials from Git for a remote host, it passes portions... |
Important |
git-lfs |
否 |
完成修复 |
2025-02-05 |
2026-01-03 |
| CVE-2025-21655 |
In the Linux kernel, the following vulnerability has been resolved: io_uring/eventfd: ensure io_eventfd_signal() defers anot... |
Moderate |
kernel:4.19, kernel:5.10 |
否 |
完成修复 |
2025-01-22 |
2026-01-19 |
| CVE-2023-52923 |
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: adapt set backend to use GC transa... |
Moderate |
kernel:6.6, kernel:4.19, kernel:5.10, kernel |
否 |
完成修复 |
2025-01-22 |
2026-01-19 |
| CVE-2024-57929 |
In the Linux kernel, the following vulnerability has been resolved: dm array: fix releasing a faulty array block twice in dm... |
Moderate |
kernel:6.6, kernel:4.19, kernel:5.10 |
否 |
完成修复 |
2025-01-21 |
2026-01-19 |
| CVE-2024-57928 |
In the Linux kernel, the following vulnerability has been resolved: netfs: Fix enomem handling in buffered reads If netfs... |
Low |
kernel:4.19, kernel:5.10 |
否 |
完成修复 |
2025-01-21 |
2026-01-22 |
| CVE-2024-57927 |
In the Linux kernel, the following vulnerability has been resolved: \n \nnfs: Fix oops in nfs_netfs_init_request() when copying... |
Important |
kernel:6.6, kernel:4.19, kernel:5.10 |
是 |
完成修复 |
2025-01-21 |
2025-12-11 |
| CVE-2024-57913 |
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Remove WARN_ON in functionfs_bind ... |
Moderate |
kernel:6.6, kernel:4.19, kernel:5.10 |
否 |
完成修复 |
2025-01-21 |
2026-01-19 |
| CVE-2024-57909 |
In the Linux kernel, the following vulnerability has been resolved: iio: light: bh1745: fix information leak in triggered bu... |
Low |
kernel:4.19, kernel:5.10 |
否 |
完成修复 |
2025-01-21 |
2026-01-22 |
| CVE-2024-12084 |
A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled ... |
Critical |
rsync |
否 |
完成修复 |
2025-01-21 |
2026-01-06 |
| CVE-2024-12085 |
A flaw was found in the rsync daemon which could be triggered when rsync compares file checksums. This flaw allows an attacker ... |
Important |
rsync |
否 |
完成修复 |
2025-01-15 |
2026-01-04 |
| CVE-2024-9681 |
When curl is asked to use HSTS, the expiry time for a subdomain might \noverwrite a parent domain's cache entry, making it end ... |
Moderate |
curl |
否 |
完成修复 |
2025-01-10 |
2026-01-05 |
| CVE-2024-8986 |
The grafana plugin SDK bundles build metadata into the binaries it compiles; this metadata includes the repository URI for the ... |
Moderate |
grafana, grafana-pcp |
是 |
完成修复 |
2025-01-10 |
2026-07-10 |
| CVE-2024-8805 |
VUL-0: CVE-2024-8805: bluez: BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability |
Important |
bluez |
否 |
完成修复 |
2025-01-10 |
2026-01-05 |
| CVE-2024-5694 |
An attacker could have caused a use-after-free in the JavaScript engine to read memory in the JavaScript string section of the ... |
Important |
firefox |
否 |
完成修复 |
2025-01-10 |
2025-12-29 |
| CVE-2024-56732 |
HarfBuzz is a text shaping engine. Starting with 8.5.0 through 10.0.1, there is a heap-based buffer overflow in the hb_cairo_gl... |
Important |
harfbuzz |
否 |
完成修复 |
2025-01-10 |
2026-01-05 |
| CVE-2024-5642 |
CPython 3.9 and earlier doesn't disallow configuring an empty list ("[]") for SSLContext.set_npn_protocols() which is an invali... |
Moderate |
python3, python39:3.9, python, python3.11 |
是 |
完成修复 |
2025-01-10 |
2026-03-19 |
| CVE-2024-56378 |
libpoppler.so in Poppler through 24.12.0 has an out-of-bounds read vulnerability within the JBIG2Bitmap::combine function in JB... |
Moderate |
poppler |
是 |
完成修复 |
2025-01-10 |
2026-07-10 |
| CVE-2024-54677 |
Uncontrolled Resource Consumption vulnerability in the examples web application provided with Apache Tomcat leads to denial of ... |
Moderate |
tomcat |
是 |
完成修复 |
2025-01-10 |
2026-06-26 |