CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2024-32614 HDF5 Library through 1.14.3 has a SEGV in H5VM_memcpyvv in H5VM.c. Important hdf5 完成修复 2024-11-25 2025-12-29
CVE-2024-32613 HDF5 Library through 1.14.3 contains a heap-based buffer over-read in the function H5HL__fl_deserialize in H5HLcache.c, a diffe... Important hdf5 完成修复 2024-11-25 2025-12-29
CVE-2024-32612 HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5HL__fl_deserialize in H5HLcache.c, resulting in the cor... Important hdf5 完成修复 2024-11-25 2025-12-29
CVE-2024-32611 HDF5 Library through 1.14.3 may use an uninitialized value in H5A__attr_release_table in H5Aint.c. Important hdf5 完成修复 2024-11-25 2025-12-29
CVE-2024-32610 HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer. Important hdf5 完成修复 2024-11-25 2025-12-29
CVE-2024-32607 HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in the corruption of the instruction pointer. Important hdf5 完成修复 2024-11-25 2025-12-29
CVE-2024-32606 HDF5 Library through 1.14.3 may attempt to dereference uninitialized values in h5tools_str_sprint in tools/lib/h5tools_str.c (c... Important hdf5 完成修复 2024-11-25 2025-12-29
CVE-2024-32605 HDF5 Library through 1.14.3 has a heap-based buffer over-read in H5VM_memcpyvv in H5VM.c (called from H5D__compact_readvv in H5... Important hdf5 完成修复 2024-11-25 2025-12-29
CVE-2024-32230 FFmpeg 7.0 is vulnerable to Buffer Overflow. There is a negative-size-param bug at libavcodec/mpegvideo_enc.c:1216:21 in load_i... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2024-32229 FFmpeg 7.0 contains a heap-buffer-overflow at libavfilter/vf_tiltandshift.c:189:5 in copy_column. Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2024-31583 Pytorch before version v2.2.0 was discovered to contain a use-after-free vulnerability in torch/csrc/jit/mobile/interpreter.cpp... Important pytorch 完成修复 2024-11-25 2026-01-04
CVE-2024-31582 FFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the draw_block_rectangle function of liba... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2024-31581 FFmpeg version n6.1 was discovered to contain an improper validation of array index vulnerability in libavcodec/cbs_h266_syntax... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2024-29943 An attacker was able to perform an out-of-bounds read or write on a JavaScript object by fooling range-based bounds check elimi... Critical firefox 完成修复 2024-11-25 2026-01-04
CVE-2024-29509 Artifex Ghostscript before 10.03.0 has a heap-based overflow when PDFPassword (e.g., for runpdf) has a \000 byte in the middle... Important ghostscript 完成修复 2024-11-25 2026-01-06
CVE-2024-29506 Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter ... Important ghostscript 完成修复 2024-11-25 2026-01-06
CVE-2024-23334 aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. When using aiohttp as a web server and configur... Moderate python-aiohttp 完成修复 2024-11-25 2026-06-25
CVE-2024-23271 A logic issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, Safari 17.3, tvOS 17.3, macO... Important webkitgtk, webkit2gtk3 完成修复 2024-11-25 2026-01-04
CVE-2024-22861 Integer overflow vulnerability in FFmpeg before n6.1, allows attackers to cause a denial of service (DoS) via the avcodec/osq m... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2024-22749 GPAC v2.3 was detected to contain a buffer overflow via the function gf_isom_new_generic_sample_description function in the iso... Important gpac 完成修复 2024-11-25 2026-01-04
CVE-2024-22391 A heap-based buffer overflow vulnerability exists in the LookupTable::SetLUT functionality of Mathieu Malaterre Grassroot DICOM... Important gdcm 完成修复 2024-11-25 2026-01-07
CVE-2024-22373 An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Gras... Important gdcm 完成修复 2024-11-25 2026-01-07
CVE-2024-2002 A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an a... Moderate libdwarf 完成修复 2024-11-25 2026-03-18
CVE-2024-1013 An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes ... Moderate unixODBC 完成修复 2024-11-25 2026-06-26
CVE-2024-0760 A malicious client can send many DNS messages over TCP, potentially causing the server to become unstable while the attack is i... Important bind 完成修复 2024-11-25 2026-01-06
CVE-2024-0745 The WebAudio OscillatorNode object was susceptible to a stack buffer overflow. This could have led to a potentially exploitab... Moderate firefox 完成修复 2024-11-25 2026-01-24
CVE-2024-0744 In some circumstances, JIT compiled code could have dereferenced a wild pointer value. This could have led to an exploitable cr... Moderate firefox 完成修复 2024-11-25 2026-01-24
CVE-2024-0211 DOCSIS dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file Important wireshark 完成修复 2024-11-25 2026-01-05
CVE-2024-0210 Zigbee TLV dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file Important wireshark 完成修复 2024-11-25 2026-01-05
CVE-2024-0209 IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet inject... Important wireshark 完成修复 2024-11-25 2026-01-05
CVE-2024-0208 GVCP dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or ... Important wireshark 完成修复 2024-11-25 2026-01-05
CVE-2024-0207 HTTP3 dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file Important wireshark 完成修复 2024-11-25 2026-01-05
CVE-2024-0132 NVIDIA Container Toolkit 1.16.1 or earlier contains a Time-of-check Time-of-Use (TOCTOU) vulnerability when used with default c... Important nvidia-container-toolkit 完成修复 2024-11-25 2026-01-05
CVE-2023-7090 A flaw was found in sudo in the handling of ipa_hostname, where ipa_hostname from /etc/sssd/sssd.conf was not propagated in sud... Moderate sudo 完成修复 2024-11-25 2026-06-27
CVE-2023-5855 Use after free in Reading Mode in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engag... Important qt5-qtwebengine 完成修复 2024-11-25 2026-01-04
CVE-2023-52424 The IEEE 802.11 standard sometimes enables an adversary to trick a victim into connecting to an unintended or untrusted network... Important wpa_supplicant, hostapd, linux-firmware, NetworkManager 完成修复 2024-11-25 2026-01-08
CVE-2023-51798 Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via a floating ... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2023-51795 Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfi... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2023-51794 Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfi... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2023-51793 Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavut... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2023-51791 Buffer Overflow vulenrability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavco... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2023-51596 BlueZ Phone Book Access Profile Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows netwo... Important bluez 完成修复 2024-11-25 2026-01-05
CVE-2023-50981 ModularSquareRoot in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (infinite loop) via cr... Important cryptopp 完成修复 2024-11-25 2025-12-29
CVE-2023-50700 Insecure Permissions vulnerability in Deepin dde-file-manager 6.0.54 and earlier allows privileged operations to be called by u... Important dde-file-manager 完成修复 2024-11-25 2026-01-06
CVE-2023-50386 Improper Control of Dynamically-Managed Code Resources, Unrestricted Upload of File with Dangerous Type, Inclusion of Functiona... Important lucene 完成修复 2024-11-25 2026-01-05
CVE-2023-50298 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Solr.This issue affects Apache Solr: from 6.... Important lucene 完成修复 2024-11-25 2026-01-05
CVE-2023-50292 Incorrect Permission Assignment for Critical Resource, Improper Control of Dynamically-Managed Code Resources vulnerability in ... Important lucene 完成修复 2024-11-25 2026-01-05
CVE-2023-50291 Insufficiently Protected Credentials vulnerability in Apache Solr. \n \nThis issue affects Apache Solr: from 6.0.0 through 8.11... Important lucene 完成修复 2024-11-25 2026-01-05
CVE-2023-50255 Deepin-Compressor is the default archive manager of Deepin Linux OS. Prior to 5.12.21, there's a path traversal vulnerability i... Important deepin-compressor 完成修复 2024-11-25 2026-01-08
CVE-2023-50010 Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the set_enco... Important ffmpeg 完成修复 2024-11-25 2025-12-06
CVE-2023-31722 There exists a heap buffer overflow in nasm 2.16.02rc1 (GitHub commit: b952891). Important nasm 完成修复 2024-11-25 2026-01-06
CVE-2024-7272 A vulnerability, which was classified as critical, was found in FFmpeg up to 5.1.5. This affects the function fill_audiodata of... Important ffmpeg 完成修复 2024-11-24 2025-12-06
CVE-2024-6119 Issue summary: Applications performing certificate name checks (e.g., TLS \nclients checking server certificates) may attempt t... Important mingw-openssl, openssl 完成修复 2024-11-24 2025-12-30
CVE-2024-5187 A vulnerability in the download_model_with_test_data function of the onnx/onnx framework, version 1.16.0, allows for arbitrar... Important onnx 完成修复 2024-11-24 2025-12-29
CVE-2024-47910 An issue was discovered in SonarSource SonarQube before 9.9.5 LTA and 10.x before 10.5. A SonarQube user with the Administrator... Important sonarqube 完成修复 2024-11-24 2026-01-04
CVE-2024-46956 An issue was discovered in psi/zfile.c in Artifex Ghostscript before 10.04.0. Out-of-bounds data access in filenameforall can l... Moderate ghostscript 完成修复 2024-11-24 2026-01-25
CVE-2024-46954 An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0. Overlong UTF-8 encoding leads t... Moderate ghostscript 完成修复 2024-11-24 2026-01-25
CVE-2024-46953 An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0. An integer overflow when parsing the filename... Moderate ghostscript 完成修复 2024-11-24 2026-01-25
CVE-2024-46952 An issue was discovered in pdf/pdf_xref.c in Artifex Ghostscript before 10.04.0. There is a buffer overflow during handling of ... Moderate ghostscript 完成修复 2024-11-24 2026-01-25
CVE-2024-46951 An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0. An unchecked Implementation pointer in Pattern c... Moderate ghostscript 完成修复 2024-11-24 2026-01-25
CVE-2024-4558 Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corrupti... Important webkitgtk, webkit2gtk3 完成修复 2024-11-24 2026-01-04
CVE-2024-45506 HAProxy 2.9.x before 2.9.10, 3.0.x before 3.0.4, and 3.1.x through 3.1-dev6 allows a remote denial of service. Important haproxy 完成修复 2024-11-24 2026-01-05
CVE-2024-4453 GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attacker... Important gstreamer1, gstreamer1-plugins-bad-free, gstreamer1-plugins-base 完成修复 2024-11-24 2025-12-29
CVE-2024-43495 Windows libarchive Remote Code Execution Vulnerability Important libarchive 完成修复 2024-11-24 2026-01-08
CVE-2024-43402 Rust is a programming language. The fix for CVE-2024-24576, where std::process::Command incorrectly escaped arguments when in... Important rust, rust-toolset:an8 完成修复 2024-11-24 2025-12-16
CVE-2024-42415 An integer overflow vulnerability exists in the Compound Document Binary File format parser of v1.14.52 of the GNOME Project G ... Important libgsf 完成修复 2024-11-24 2026-01-06
CVE-2024-42005 An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. QuerySet.values() and values_list() methods on models... Important python-django 完成修复 2024-11-24 2026-01-04
CVE-2024-41991 An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. The urlize and urlizetrunc template filters, and the ... Important python-django 完成修复 2024-11-24 2026-01-04
CVE-2024-41990 An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. The urlize() and urlizetrunc() template filters are s... Important python-django 完成修复 2024-11-24 2026-01-04
CVE-2024-41989 An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. The floatformat template filter is subject to signifi... Important python-django 完成修复 2024-11-24 2026-01-04
CVE-2024-41817 ImageMagick is a free and open-source software suite, used for editing and manipulating digital images. The AppImage version ... Important ImageMagick 完成修复 2024-11-24 2026-01-05
CVE-2024-41671 Twisted is an event-based framework for internet applications, supporting Python 3.6+. The HTTP 1.0 and 1.1 server provided by ... Important python-twisted 完成修复 2024-11-24 2026-01-04
CVE-2024-41184 In the vrrp_ipsets_handler handler (fglobal_parser.c) of keepalived through 2.3.1, an integer overflow can occur. NOTE: this CV... Moderate keepalived 完成修复 2024-11-24 2026-06-27
CVE-2024-41110 Moby is an open-source project created by Docker for software containerization. A security vulnerability has been detected in c... Critical container-tools:4.0, container-tools:2.0, podman, container-tools:3.0, moby, container-tools:an8, docker, container-tools:1.0 完成修复 2024-11-24 2026-01-04
CVE-2024-40898 SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a mal... Important httpd 完成修复 2024-11-24 2026-01-09
CVE-2024-40782 A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safa... Moderate webkitgtk4, webkitgtk, webkitgtk3, webkit2gtk3 完成修复 2024-11-24 2026-07-11
CVE-2024-39614 An issue was discovered in Django 5.0 before 5.0.7 and 4.2 before 4.2.14. get_supported_language_variant() was subject to a pot... Important python-django 完成修复 2024-11-24 2026-01-04
CVE-2024-36474 An integer overflow vulnerability exists in the Compound Document Binary File format parser of the GNOME Project G Structured F... Important libgsf 完成修复 2024-11-24 2026-01-06
CVE-2024-34509 dcmdata in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message. Important dcmtk 完成修复 2024-11-24 2025-12-29
CVE-2024-34402 An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long keys or v... Important uriparser 完成修复 2024-11-24 2025-12-30
CVE-2024-33877 HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c. Important hdf5 完成修复 2024-11-24 2025-12-29
CVE-2024-33876 HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c. Important hdf5 完成修复 2024-11-24 2026-01-05
CVE-2024-26817 In the Linux kernel, the following vulnerability has been resolved: Moderate kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2024-11-24 2026-01-21
CVE-2023-50009 Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the ff_gauss... Important ffmpeg 完成修复 2024-11-24 2025-12-06
CVE-2023-50008 Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the av_mallo... Important ffmpeg 完成修复 2024-11-24 2025-12-06
CVE-2023-49528 Buffer Overflow vulnerability in FFmpeg version n6.1-3-g466799d4f5, allows a local attacker to execute arbitrary code and cause... Important ffmpeg 完成修复 2024-11-24 2025-12-06
CVE-2023-49502 Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the ff_bwdif... Important ffmpeg 完成修复 2024-11-24 2025-12-06
CVE-2023-49501 Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the config_e... Important ffmpeg 完成修复 2024-11-24 2025-12-06
CVE-2023-47994 An integer overflow vulnerability in LoadPixelDataRLE4 function in PluginBMP.cpp in Freeimage 3.18.0 allows attackers to obtain... Important freeimage 完成修复 2024-11-24 2026-01-08
CVE-2023-47992 An integer overflow vulnerability in FreeImageIO.cpp::_MemoryReadProc in FreeImage 3.18.0 allows attackers to obtain sensitive ... Important freeimage 完成修复 2024-11-24 2026-01-07
CVE-2023-4785 Lack of error handling in the TCP server in Google's gRPC starting version 1.23 on posix-compatible platforms (ex. Linux) allow... Important grpc 完成修复 2024-11-24 2026-01-17
CVE-2023-47470 Buffer Overflow vulnerability in Ffmpeg before github commit 4565747056a11356210ed8edcecb920105e40b60 allows a remote attacker ... Important ffmpeg 完成修复 2024-11-24 2025-12-06
CVE-2023-46427 An issue was discovered in gpac version 2.3-DEV-rev588-g7edc40fee-master, allows remote attackers to execute arbitrary code, ca... Critical gpac 完成修复 2024-11-24 2026-01-10
CVE-2023-46426 Heap-based Buffer Overflow vulnerability in gpac version 2.3-DEV-rev588-g7edc40fee-master, allows remote attackers to execute a... Important gpac 完成修复 2024-11-24 2026-01-04
CVE-2023-46047 An issue in Sane 1.2.1 allows a local attacker to execute arbitrary code via a crafted file to the sanei_configure_attach() fun... Important sane-backends 完成修复 2024-11-24 2026-01-04
CVE-2023-45922 glx_pbuffer.c in Mesa 23.0.4 was discovered to contain a segmentation violation when calling __glXGetDrawableAttribute(). NOTE:... Important mesa 完成修复 2024-11-24 2026-01-05
CVE-2023-41038 Firebird is a relational database. Versions 4.0.0 through 4.0.3 and version 5.0 beta1 are vulnerable to a server crash when a u... Important firebird 完成修复 2024-11-24 2025-12-29
CVE-2023-40481 7-Zip SquashFS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers... Important p7zip 完成修复 2024-11-24 2025-12-30
CVE-2023-39018 FFmpeg 0.7.0 and below was discovered to contain a code injection vulnerability in the component net.bramp.ffmpeg.FFmpeg.<const... Critical ffmpeg 完成修复 2024-11-24 2025-12-06
CVE-2023-33953 gRPC contains a vulnerability that allows hpack table accounting errors could lead to unwanted disconnects between clients and ... Important grpc 完成修复 2024-11-24 2026-01-17

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:31

results matching ""

    No results matching ""

    results matching ""

      No results matching ""