| CVE-2023-39417 |
IN THE EXTENSION SCRIPT, a SQL Injection vulnerability was found in PostgreSQL if it uses @extowner@, @extschema@, or @extschem... |
Important |
postgresql:12, libpq, postgresql:13, ghostscript, postgresql, postgresql:15 |
否 |
完成修复 |
2023-08-11 |
2026-01-04 |
| CVE-2023-30590 |
No description is available for this CVE. |
Moderate |
nodejs:18, nodejs, nodejs:16 |
是 |
完成修复 |
2023-08-11 |
2026-03-26 |
| CVE-2023-30589 |
The llhttp parser in the http module in Node v20.2.0 does not strictly use the CRLF sequence to delimit HTTP requests. This can... |
Important |
noslate-anode, nodejs:16, nodejs:18, nodejs:20, nodejs |
否 |
完成修复 |
2023-08-11 |
2026-01-05 |
| CVE-2023-30588 |
No description is available for this CVE. |
Moderate |
nodejs:18, nodejs, nodejs:16 |
是 |
完成修复 |
2023-08-11 |
2026-03-26 |
| CVE-2023-30581 |
The use of proto in process.mainModule.proto.require() can bypass the policy mechanism and require modules outside of t... |
Important |
nodejs:18, nodejs, nodejs:16 |
否 |
完成修复 |
2023-08-11 |
2026-01-05 |
| CVE-2021-3236 |
vim 8.2.2348 is affected by null pointer dereference, allows local attackers to cause a denial of service (DoS) via the ex_buff... |
Moderate |
vim |
是 |
完成修复 |
2023-08-11 |
2026-03-26 |
| CVE-2021-28025 |
Integer Overflow vulnerability in qsvghandler.cpp in Qt qtsvg versions 5.15.1, 6.0.0, 6.0.2, and 6.2, allows local attackers to... |
Moderate |
qt5-qtsvg |
是 |
完成修复 |
2023-08-11 |
2026-03-26 |
| CVE-2020-36024 |
An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (DoS) via ... |
Moderate |
poppler |
是 |
完成修复 |
2023-08-11 |
2026-07-10 |
| CVE-2023-40225 |
HAProxy至2.0.32、2.1.x和2.2.x至2.2.30、2.3.x和2.4.x至2.4.23、2.6.15之前的2.5.x和2.6.x、2.7.10之前的2.7.x、2.8.... |
Important |
haproxy |
否 |
完成修复 |
2023-08-10 |
2026-01-05 |
| CVE-2023-38712 |
在4.12之前的Libreswan3.x和4.x中发现了一个问题。当IKEv1ISAKMPSA信息交换数据包包含删除/通知有效负�... |
Important |
libreswan |
否 |
完成修复 |
2023-08-10 |
2026-01-05 |
| CVE-2023-38711 |
4.12之前在Libreswan发现了一个问题。当使用ID_IPV4_ADDR或ID_IPV6_ADDR配置的IKEv1快速模式连接接收到ID_F... |
Important |
libreswan |
否 |
完成修复 |
2023-08-10 |
2026-01-05 |
| CVE-2023-38710 |
4.12之前在Libreswan发现了一个问题。当IKEv2ChildSAREKEY数据包包含无效的IPsec协议ID号0或1时,将发送�... |
Important |
libreswan |
否 |
完成修复 |
2023-08-10 |
2026-01-05 |
| CVE-2023-3824 |
In PHP version 8.0. before 8.0.30, 8.1. before 8.1.22, and 8.2.* before 8.2.8, when loading phar file, while reading PHAR di... |
Moderate |
php, php:8.0, php:7.4, php-pear |
是 |
完成修复 |
2023-08-10 |
2026-07-10 |
| CVE-2023-3823 |
In PHP versions 8.0. before 8.0.30, 8.1. before 8.1.22, and 8.2.* before 8.2.8 various XML functions rely on libxml global st... |
Important |
php, php:8.0, php:7.4 |
否 |
完成修复 |
2023-08-10 |
2026-01-04 |
| CVE-2023-23908 |
Improper access control in some 3rd Generation Intel(R) Xeon(R) Scalable processors may allow a privileged user to potentially ... |
Moderate |
microcode_ctl |
是 |
完成修复 |
2023-08-10 |
2026-07-10 |
| CVE-2023-20569 |
某些AMDCPU上的侧通道漏洞可能允许攻击者影响返回地址预测。这可能会导致在攻击者控制的地址�... |
Moderate |
kernel, linux-firmware |
否 |
完成修复 |
2023-08-10 |
2026-01-07 |
| CVE-2022-46329 |
Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi software may allow a privileged user to potentially enable ... |
Important |
linux-firmware |
否 |
完成修复 |
2023-08-10 |
2026-01-05 |
| CVE-2022-41804 |
Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user t... |
Moderate |
microcode_ctl |
是 |
完成修复 |
2023-08-10 |
2026-07-10 |
| CVE-2022-40982 |
Information exposure through microarchitectural state after transient execution in certain vector execution units for some Inte... |
Moderate |
microcode_ctl, kernel |
否 |
完成修复 |
2023-08-10 |
2026-01-07 |
| CVE-2022-40964 |
Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to pote... |
Important |
linux-firmware |
否 |
完成修复 |
2023-08-10 |
2026-01-05 |
| CVE-2022-38076 |
Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to... |
Low |
linux-firmware |
是 |
完成修复 |
2023-08-10 |
2026-03-26 |
| CVE-2022-36351 |
Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an unauthenticated user ... |
Moderate |
linux-firmware |
是 |
完成修复 |
2023-08-10 |
2026-03-26 |
| CVE-2022-27635 |
Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to pote... |
Important |
linux-firmware |
否 |
完成修复 |
2023-08-10 |
2026-01-05 |
| CVE-2021-25786 |
QPDF版本10.0.4中发现了一个问题,允许远程攻击者通过精心制作的.pdf文件对libqpdf中的Pl_ASCII85Decode... |
Low |
qpdf |
是 |
完成修复 |
2023-08-10 |
2026-07-10 |
| CVE-2023-4273 |
A flaw was found in the exFAT driver of the Linux kernel. The vulnerability exists in the implementation of the file name reco... |
Moderate |
kernel |
否 |
完成修复 |
2023-08-09 |
2026-01-07 |
| CVE-2023-3953 |
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory\nBuffer vulnerability exists that could cause memor... |
Moderate |
at |
是 |
完成修复 |
2023-08-09 |
2026-03-26 |
| CVE-2022-48586 |
A SQL injection vulnerability exists in the “json walker” feature of the ScienceLogic SL1 that takes unsanitized user?contr... |
Important |
lua-json |
否 |
完成修复 |
2023-08-09 |
2026-01-04 |
| CVE-2023-20562 |
Insufficient validation in the IOCTL (Input Output Control) input buffer in AMD uProf may allow an authenticated user to load a... |
Moderate |
kernel |
否 |
完成修复 |
2023-08-08 |
2026-01-07 |
| CVE-2023-4194 |
A flaw was found in the Linux kernel's TUN/TAP functionality. This issue could allow a local user to bypass network filters and... |
Low |
kernel |
是 |
完成修复 |
2023-08-07 |
2026-01-23 |
| CVE-2023-4155 |
内核的AMDSecureEncryptedVirtualization(SEV)模块存在栈溢出,可导致dos,影响版本5.11-rc1<版本,修复还未... |
Moderate |
kernel |
是 |
完成修复 |
2023-08-07 |
2026-01-27 |
| CVE-2023-39976 |
log_blackbox.c in libqb before 2.0.8 allows a buffer overflow via long log messages because the header size is not considered. |
Moderate |
libqb |
否 |
完成修复 |
2023-08-07 |
2026-01-22 |
| CVE-2023-3896 |
vim/vim中从9.0.1367-1到9.0.1367-3中除以零 |
Important |
vim |
否 |
完成修复 |
2023-08-07 |
2026-01-05 |
| CVE-2023-36054 |
lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A ... |
Moderate |
krb5 |
否 |
完成修复 |
2023-08-07 |
2026-01-22 |
| CVE-2023-4196 |
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.3. |
Important |
cockpit |
否 |
完成修复 |
2023-08-06 |
2026-01-08 |
| CVE-2023-4195 |
PHP Remote File Inclusion in GitHub repository cockpit-hq/cockpit prior to 2.6.3. |
Critical |
cockpit |
否 |
完成修复 |
2023-08-06 |
2026-01-10 |
| CVE-2023-4147 |
Linuxkernel的Netfilter模块当通过NFTA_RULE_CHAIN_ID添加rule时触发uaf,可导致提权,影响5.9<版本6.5-rc4,�... |
Important |
kernel |
是 |
完成修复 |
2023-08-06 |
2025-12-09 |
| CVE-2023-4016 |
在某些情况下,此弱点允许有权在计算机上运行ps实用程序的用户能够将几乎无限量的未过滤数�... |
Low |
procps-ng |
是 |
完成修复 |
2023-08-06 |
2026-07-10 |
| CVE-2023-38611 |
该问题已通过改进内存处理得到解决。此问题已在iOS16.6和iPadOS16.6、tvOS16.6、macOSVentura13.5、Safari16... |
Important |
webkitgtk, webkit2gtk3 |
否 |
完成修复 |
2023-08-06 |
2026-01-04 |
| CVE-2023-38600 |
该问题已通过改进检查得到解决。此问题已在iOS16.6和iPadOS16.6、tvOS16.6、macOSVentura13.5、Safari16.6、w... |
Important |
webkitgtk, webkit2gtk3 |
否 |
完成修复 |
2023-08-06 |
2026-01-04 |
| CVE-2023-38599 |
通过改进状态管理解决了逻辑问题。此问题已在Safari16.6、watchOS9.6、iOS15.7.8和iPadOS15.7.8、tvOS16.6、... |
Moderate |
webkitgtk, webkit2gtk3 |
是 |
完成修复 |
2023-08-06 |
2026-07-11 |
| CVE-2023-38597 |
该问题已通过改进检查得到解决。此问题已在iOS15.7.8和iPadOS15.7.8、iOS16.6和iPadOS16.6、macOSVentura13.5�... |
Important |
webkitgtk, webkit2gtk3 |
否 |
完成修复 |
2023-08-06 |
2026-01-04 |
| CVE-2023-38595 |
该问题已通过改进检查得到解决。此问题已在iOS16.6和iPadOS16.6、tvOS16.6、macOSVentura13.5、Safari16.6、w... |
Important |
|
否 |
完成修复 |
2023-08-06 |
2026-01-04 |
| CVE-2023-38594 |
该问题已通过改进检查得到解决。此问题已在iOS15.7.8和iPadOS15.7.8、iOS16.6和iPadOS16.6、tvOS16.6、macOSV... |
Important |
webkitgtk, webkit2gtk3 |
否 |
完成修复 |
2023-08-06 |
2026-01-04 |
| CVE-2023-38592 |
通过改进限制解决了逻辑问题。此问题已在iOS16.6和iPadOS16.6、watchOS9.6、tvOS16.6、macOSVentura13.5中修�... |
Important |
webkitgtk, webkit2gtk3 |
否 |
完成修复 |
2023-08-06 |
2026-01-04 |
| CVE-2023-38572 |
该问题已通过改进检查得到解决。此问题已在iOS15.7.8和iPadOS15.7.8、iOS16.6和iPadOS16.6、tvOS16.6、macOSV... |
Moderate |
webkitgtk, webkit2gtk3 |
是 |
完成修复 |
2023-08-06 |
2026-07-11 |
| CVE-2023-38133 |
该问题已通过改进检查得到解决。此问题已在iOS15.7.8和iPadOS15.7.8、iOS16.6和iPadOS16.6、tvOS16.6、macOSV... |
Moderate |
webkitgtk, webkit2gtk3 |
是 |
完成修复 |
2023-08-06 |
2026-07-11 |
| CVE-2023-29409 |
证书链中非常大的RSA密钥可能会导致客户端/服务器花费大量CPU时间来验证签名。通过修复,握手... |
Moderate |
golang, container-tools:an8 |
是 |
完成修复 |
2023-08-06 |
2025-12-11 |
| CVE-2023-38408 |
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code ... |
Important |
openssh |
否 |
完成修复 |
2023-08-04 |
2026-01-09 |
| CVE-2023-33170 |
ASP.NET and Visual Studio Security Feature Bypass Vulnerability |
Important |
dotnet6.0, dotnet |
否 |
完成修复 |
2023-08-04 |
2025-12-05 |
| CVE-2023-33128 |
.NET and Visual Studio Remote Code Execution Vulnerability |
Important |
dotnet6.0 |
否 |
完成修复 |
2023-08-04 |
2025-12-05 |
| CVE-2023-29337 |
NuGet Client Remote Code Execution Vulnerability |
Important |
dotnet6.0 |
否 |
完成修复 |
2023-08-04 |
2025-12-05 |
| CVE-2023-29331 |
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability |
Important |
dotnet6.0 |
否 |
完成修复 |
2023-08-04 |
2025-12-05 |
| CVE-2023-24936 |
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability |
Important |
dotnet6.0 |
否 |
完成修复 |
2023-08-04 |
2025-12-05 |
| CVE-2023-4135 |
QEMU中的虚拟nvme设备中发现堆越界内存读取缺陷。在计算主机堆指针(用于将数据复制回客户机�... |
Moderate |
qemu |
否 |
完成修复 |
2023-08-03 |
2025-12-18 |
| CVE-2023-4132 |
A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device initializ... |
Moderate |
kernel |
否 |
完成修复 |
2023-08-03 |
2026-01-07 |
| CVE-2023-4058 |
Memory safety bugs present in Firefox 115. Some of these bugs showed evidence of memory corruption and we presume that with eno... |
Moderate |
firefox |
否 |
完成修复 |
2023-08-02 |
2026-01-24 |
| CVE-2023-3428 |
A vulnerability classified as critical was found in ImageMagick up to 7.1.1-12 (Image Processing Software). Affected by this vu... |
Moderate |
ImageMagick |
是 |
完成修复 |
2023-08-02 |
2026-06-24 |
| CVE-2023-3347 |
A vulnerability was found in Samba's SMB2 packet signing mechanism. The SMB2 packet signing is not enforced if an admin configu... |
Moderate |
samba |
是 |
完成修复 |
2023-08-02 |
2026-07-09 |
| CVE-2022-40609 |
IBM SDK, Java Technology Edition 7.1.5.18 and 8.0.8.0 could allow a remote attacker to execute arbitrary code on the system, ca... |
Important |
java-1.8.0-openjdk |
否 |
完成修复 |
2023-08-02 |
2025-12-05 |
| CVE-2023-4057 |
Firefox115、FirefoxESR115.0和Thunderbird115.0中存在内存安全错误。其中一些错误显示了内存损坏的证据�... |
Important |
firefox, thunderbird, xulrunner |
否 |
完成修复 |
2023-08-01 |
2026-01-07 |
| CVE-2023-4056 |
Memory safety bugs present in Firefox 115, Firefox ESR 115.0, Firefox ESR 102.13, Thunderbird 115.0, and Thunderbird 102.13. So... |
Important |
firefox, thunderbird |
否 |
完成修复 |
2023-08-01 |
2025-12-30 |
| CVE-2023-4055 |
当document.cookie中每个域的cookie数量超出时,发送到主机的实际cookiejar不再与预期的cookiejar状态一�... |
Low |
firefox, thunderbird |
否 |
完成修复 |
2023-08-01 |
2026-01-24 |
| CVE-2023-4054 |
When opening appref-ms files, Firefox did not warn the user that these files may contain malicious code. \n*This bug only affec... |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2023-08-01 |
2026-01-24 |
| CVE-2023-4053 |
网站可能通过使用具有由外部程序处理的方案(例如mailtoURL)的URL来遮挡全屏通知。这可能会导�... |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2023-08-01 |
2026-01-24 |
| CVE-2023-4052 |
Firefox更新程序创建了一个非特权用户可写的目录。卸载Firefox时,该目录中的任何文件都会以卸�... |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2023-08-01 |
2026-01-24 |
| CVE-2023-4051 |
网站可能通过使用文件打开对话框来遮挡全屏通知。这可能会导致用户困惑并可能导致欺骗攻击�... |
Moderate |
thunderbird, firefox |
否 |
完成修复 |
2023-08-01 |
2026-01-24 |
| CVE-2023-4050 |
In some cases, an untrusted input stream was copied to a stack buffer without checking its size. This resulted in a potentially... |
Important |
thunderbird, firefox |
否 |
完成修复 |
2023-08-01 |
2026-01-04 |
| CVE-2023-4048 |
An out-of-bounds read could have led to an exploitable crash when parsing HTML with DOMParser in low memory situations. This vu... |
Important |
firefox, thunderbird |
否 |
完成修复 |
2023-08-01 |
2025-12-30 |
| CVE-2023-4047 |
A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permis... |
Important |
firefox, thunderbird |
否 |
完成修复 |
2023-08-01 |
2025-12-30 |
| CVE-2023-4045 |
Offscreen Canvas did not properly track cross-origin tainting, which could have been used to access image data from another sit... |
Important |
firefox, thunderbird |
否 |
完成修复 |
2023-08-01 |
2025-12-30 |
| CVE-2023-38560 |
An integer overflow flaw was found in pcl/pl/plfont.c:418 in pl_glyph_name in ghostscript. This issue may allow a local attacke... |
Moderate |
ghostscript |
是 |
完成修复 |
2023-08-01 |
2026-03-26 |
| CVE-2023-38559 |
A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local a... |
Moderate |
ghostscript |
是 |
完成修复 |
2023-08-01 |
2026-07-13 |
| CVE-2023-36664 |
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe cha... |
Important |
ghostscript |
否 |
完成修复 |
2023-08-01 |
2026-01-07 |
| CVE-2023-4010 |
A flaw was found in the USB Host Controller Driver framework in the Linux kernel. The usb_giveback_urb function has a logic loo... |
Moderate |
kernel:6.6, kernel:4.19, kernel:5.10, kernel |
否 |
完成修复 |
2023-07-31 |
2026-01-07 |
| CVE-2023-4004 |
netfilter的nft_pipapo_remove函数存在uaf漏洞,这个漏洞目前只能造成dos,真正实现提权的可能比较低�... |
Moderate |
kernel |
否 |
完成修复 |
2023-07-31 |
2026-01-21 |
| CVE-2023-34872 |
23.06.0之前的PopplerOutline.cc中存在漏洞,允许远程攻击者通过OutlineItem::open中精心设计的PDF文件造�... |
Moderate |
poppler |
是 |
完成修复 |
2023-07-31 |
2026-07-10 |
| CVE-2023-3301 |
QEMU中发现一个缺陷。热拔出的异步特性会导致出现竞争场景,其中网络设备后端在virtio-netpci前�... |
Moderate |
qemu, virt:an, qemu-kvm |
否 |
完成修复 |
2023-07-31 |
2025-12-19 |
| CVE-2023-4128 |
A use-after-free flaw was found in net/sched/cls_fw.c in classifiers (cls_fw, cls_u32, and cls_route) in the Linux Kernel. This... |
Important |
kernel |
是 |
完成修复 |
2023-07-29 |
2025-12-19 |
| CVE-2023-22049 |
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (compo... |
Low |
java-11-openjdk, java-1.8.0-openjdk, java-17-openjdk |
否 |
完成修复 |
2023-07-28 |
2025-12-05 |
| CVE-2023-22041 |
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (compo... |
Moderate |
java-11-openjdk, java-17-openjdk |
否 |
完成修复 |
2023-07-28 |
2025-12-05 |
| CVE-2023-22036 |
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (compo... |
Low |
java-11-openjdk, java-17-openjdk |
否 |
完成修复 |
2023-07-28 |
2025-12-05 |
| CVE-2023-22006 |
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (compo... |
Low |
java-11-openjdk, java-17-openjdk |
否 |
完成修复 |
2023-07-28 |
2025-12-05 |
| CVE-2022-3606 |
A vulnerability was found in Linux Kernel. It has been classified as problematic. This affects the function find_prog_by_sec_in... |
Moderate |
kernel:5.10, kernel:4.19, kernel(ANCK)5.10, kernel:6.6 |
否 |
完成修复 |
2023-07-28 |
2026-01-07 |
| CVE-2021-32256 |
GNUlibiberty中发现了一个问题,分布在GNUBinutils2.36中。这是rust-demangle.c中demangle_type的堆栈溢出问题... |
Moderate |
binutils |
否 |
完成修复 |
2023-07-27 |
2025-12-11 |
| CVE-2023-38285 |
Trustwave ModSecurity 3.x before 3.0.10 has Inefficient Algorithmic Complexity. |
Moderate |
mod_security |
是 |
完成修复 |
2023-07-26 |
2026-07-10 |
| CVE-2023-32393 |
The issue was addressed with improved memory handling. This issue is fixed in watchOS 9.3, tvOS 16.3, macOS Ventura 13.2, iOS 1... |
Important |
webkitgtk, webkit2gtk3 |
否 |
完成修复 |
2023-07-26 |
2026-01-04 |
| CVE-2023-30577 |
AMANDA (Advanced Maryland Automatic Network Disk Archiver) before tag-community-3.5.4 mishandles argument checking for runtar.c... |
Low |
amanda |
是 |
完成修复 |
2023-07-26 |
2026-07-09 |
| CVE-2023-39130 |
GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap buffer overflow via the function pe_as16() at /gdb/coff-pe-... |
Moderate |
gdb |
否 |
完成修复 |
2023-07-25 |
2025-12-09 |
| CVE-2023-39129 |
GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap use after free via the function add_pe_exported_sym() at /g... |
Moderate |
gdb |
否 |
完成修复 |
2023-07-25 |
2025-12-09 |
| CVE-2023-39128 |
GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a stack overflow via the function ada_decode at /gdb/ada-lang.c. |
Moderate |
gdb |
否 |
完成修复 |
2023-07-25 |
2025-12-09 |
| CVE-2023-37460 |
Plexis Archiver is a collection of Plexus components to create archives or extract archives to a directory with a unified `Arch... |
Important |
plexus-archiver |
否 |
完成修复 |
2023-07-25 |
2025-12-30 |
| CVE-2023-32629 |
Local privilege escalation vulnerability in Ubuntu Kernels overlayfs ovl_copy_up_meta_inode_data skip permission checks when ca... |
Important |
kernel |
否 |
完成修复 |
2023-07-25 |
2025-12-09 |
| CVE-2023-2640 |
On Ubuntu kernels carrying both c914c0e27eb0 and "UBUNTU: SAUCE: overlayfs: Skip permission checking for trusted.overlayfs.* xa... |
Important |
kernel |
否 |
完成修复 |
2023-07-25 |
2025-12-09 |
| CVE-2023-20593 |
An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access sens... |
Moderate |
linux-firmware, kernel |
否 |
完成修复 |
2023-07-25 |
2026-01-07 |
| CVE-2023-3772 |
linux内核的XFRM模块存在空指针解引用,可导致dos,patch未合并到主分支,影响版本2.6.39-rc1<版本,... |
Moderate |
kernel |
否 |
完成修复 |
2023-07-24 |
2026-01-07 |
| CVE-2023-3750 |
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulting in a... |
Moderate |
libvirt, virt:an |
否 |
完成修复 |
2023-07-24 |
2025-12-18 |
| CVE-2023-3611 |
linux内核的sch_qfq模块存在越界写漏洞,lmax变量如果比数据包的长度小的话,会直接被赋值为数据... |
Important |
kernel |
否 |
完成修复 |
2023-07-24 |
2025-12-06 |
| CVE-2023-3609 |
linux内核中的cls_u32模块存在doublefree漏洞,u32_set_parms函数中因为错误的执行流,当tcf_change_indev函�... |
Important |
kernel |
否 |
完成修复 |
2023-07-24 |
2025-12-06 |
| CVE-2023-3417 |
Thunderbird allowed the Text Direction Override Unicode Character in filenames. An email attachment could be incorrectly shown ... |
Moderate |
thunderbird |
是 |
完成修复 |
2023-07-24 |
2026-06-26 |
| CVE-2023-33952 |
A double-free vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists within the handling of vmw_buff... |
Moderate |
kernel |
否 |
完成修复 |
2023-07-24 |
2026-01-07 |