| CVE-2023-24535 |
解析无效消息可能会引起恐慌。解析一条文本格式的消息,其中包含一个由减号、一个或多个空�... |
Moderate |
grafana, protobuf-c, container-tools:2.0, skopeo, protobuf, container-tools:1.0 |
是 |
完成修复 |
2023-06-13 |
2026-03-25 |
| CVE-2023-3161 |
A flaw was found in the Framebuffer Console (fbcon) in the Linux Kernel. When providing font->width and font->height greater th... |
Moderate |
kernel |
否 |
完成修复 |
2023-06-12 |
2026-01-06 |
| CVE-2023-3159 |
A use after free issue was discovered in driver/firewire in outbound_phy_packet_callback in the Linux Kernel. In this flaw a lo... |
Moderate |
kernel:4.19, kernel, kernel:5.10 |
否 |
完成修复 |
2023-06-12 |
2026-01-06 |
| CVE-2023-3141 |
A use-after-free flaw was found in r592_remove in drivers/memstick/host/r592.c in media access in the Linux Kernel. This flaw a... |
Moderate |
kernel:4.19, kernel:6.6, kernel, kernel:5.10 |
否 |
完成修复 |
2023-06-09 |
2026-01-06 |
| CVE-2023-24805 |
cups-filters contains backends, filters, and other software required to get the cups printing service working on operating syst... |
Important |
cups-filters |
否 |
完成修复 |
2023-06-09 |
2026-01-04 |
| CVE-2023-2455 |
Row security policies disregard user ID changes after inlining; PostgreSQL could permit incorrect policies to be applied in cer... |
Moderate |
postgresql:12, libpq, postgresql:15, postgresql:13, postgresql, postgresql:10 |
是 |
完成修复 |
2023-06-09 |
2026-03-25 |
| CVE-2023-2454 |
schema_element defeats protective search_path changes; It was found that certain database calls in PostgreSQL could permit an a... |
Important |
postgresql:12, libpq, postgresql:15, postgresql:13, postgresql, postgresql:10 |
否 |
完成修复 |
2023-06-09 |
2026-01-04 |
| CVE-2023-3164 |
在LibTIFF、tools/tiffcrop.c:7916和tools/tiffcrop.c:7801的extractImageSection()中发现堆缓冲区溢出漏洞。此缺陷... |
Moderate |
libtiff |
是 |
完成修复 |
2023-06-08 |
2026-03-25 |
| CVE-2023-34969 |
D-Bus before 1.15.6 sometimes allows unprivileged users to crash dbus-daemon. If a privileged user with control over the dbus-d... |
Moderate |
dbus |
是 |
完成修复 |
2023-06-07 |
2026-03-25 |
| CVE-2023-33460 |
yajl2.1.0使用yajl_tree_parse函数时存在内存泄漏。这将导致服务器内存不足并导致崩溃。 |
Moderate |
yajl |
是 |
完成修复 |
2023-06-07 |
2026-07-10 |
| CVE-2023-32373 |
A use after free vulnerability was found in the webkitgtk package. Processing maliciously crafted web content may lead to arbit... |
Important |
webkitgtk, webkit2gtk3 |
否 |
完成修复 |
2023-06-07 |
2026-01-04 |
| CVE-2023-28204 |
A flaw was found in the webkitgtk package. An out of bounds read may be possible when processing malicious web content, which c... |
Moderate |
webkitgtk, webkit2gtk3 |
是 |
完成修复 |
2023-06-07 |
2026-03-25 |
| CVE-2023-2801 |
Grafana is an open-source platform for monitoring and observability. Using public dashboards users can query multiple disti... |
Moderate |
grafana |
否 |
完成修复 |
2023-06-06 |
2026-01-22 |
| CVE-2023-2183 |
Grafana is an open-source platform for monitoring and observability. The option to send a test alert is not available from ... |
Moderate |
grafana |
否 |
完成修复 |
2023-06-06 |
2026-01-22 |
| CVE-2023-20716 |
In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg... |
Moderate |
kernel |
否 |
完成修复 |
2023-06-06 |
2026-01-06 |
| CVE-2023-20715 |
In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg... |
Moderate |
kernel |
否 |
完成修复 |
2023-06-06 |
2026-01-06 |
| CVE-2023-20712 |
In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg... |
Moderate |
kernel |
否 |
完成修复 |
2023-06-06 |
2026-01-06 |
| CVE-2023-0668 |
Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior,... |
Moderate |
wireshark |
是 |
完成修复 |
2023-06-06 |
2026-03-25 |
| CVE-2023-0667 |
Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an ... |
Moderate |
wireshark |
是 |
完成修复 |
2023-06-06 |
2026-07-11 |
| CVE-2023-0666 |
Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark version 4.0.5 and prior, by defa... |
Moderate |
wireshark |
是 |
完成修复 |
2023-06-06 |
2026-03-25 |
| CVE-2023-34410 |
在5.15.15之前的Qt、6.2.9之前的6.x以及6.5.2之前的6.3.x到6.5.x中发现了一个问题。TLS证书验证并不总�... |
Moderate |
adwaita-qt, qt5-qtbase |
是 |
完成修复 |
2023-06-05 |
2026-07-11 |
| CVE-2023-3111 |
A use after free vulnerability was found in prepare_to_relocate in fs/btrfs/relocation.c in btrfs in the Linux Kernel. This pos... |
Low |
kernel |
是 |
完成修复 |
2023-06-05 |
2026-01-23 |
| CVE-2023-32665 |
GLib中发现一个缺陷。GVariant反序列化很容易受到指数爆炸问题的影响,精心设计的GVariant可能会�... |
Moderate |
perl-Glib, glib2 |
是 |
完成修复 |
2023-06-01 |
2026-03-25 |
| CVE-2023-32643 |
GLib中发现一个缺陷。GVariant反序列化代码容易受到CVE-2023-32665修复程序引入的堆缓冲区溢出的影�... |
Moderate |
perl-Glib, glib2 |
是 |
完成修复 |
2023-06-01 |
2026-03-25 |
| CVE-2023-32636 |
glib中发现了一个缺陷,其中gvariant反序列化代码容易受到为解析CVE-2023-29499而添加的额外输入验�... |
Moderate |
perl-Glib, glib2 |
是 |
完成修复 |
2023-06-01 |
2026-03-25 |
| CVE-2023-32611 |
GLib中发现一个缺陷。GVariant反序列化很容易受到减速问题的影响,精心设计的GVariant可能会导致�... |
Moderate |
perl-Glib, glib2 |
是 |
完成修复 |
2023-06-01 |
2026-03-25 |
| CVE-2023-29499 |
GLib中发现一个缺陷。GVariant反序列化无法验证输入是否符合预期格式,从而导致拒绝服务。 |
Moderate |
perl-Glib, glib2 |
是 |
完成修复 |
2023-06-01 |
2026-03-25 |
| CVE-2023-2650 |
OpenSSL的UAF,在转换ASN.1对象标识符时可能导致dos |
Moderate |
compat-openssl10, mingw-openssl, openssl, openssl1.1 |
是 |
完成修复 |
2023-06-01 |
2026-03-25 |
| CVE-2022-41973 |
multipath-tools 0.7.7 through 0.9.x before 0.9.2 allows local users to obtain root access, as exploited in conjunction with CVE... |
Important |
device-mapper-multipath |
否 |
完成修复 |
2023-06-01 |
2026-01-08 |
| CVE-2022-41715 |
Programs which compile regular expressions from untrusted sources may be vulnerable to memory exhaustion or denial of service. ... |
Important |
grafana, cockpit-composer, golang-dbus, osbuild, container-tools:an8, osbuild-composer, git-lfs, golang |
是 |
完成修复 |
2023-06-01 |
2025-12-10 |
| CVE-2022-40023 |
Sqlalchemy mako before 1.2.2 is vulnerable to Regular expression Denial of Service when using the Lexer class to parse. This al... |
Important |
python-mako |
否 |
完成修复 |
2023-06-01 |
2026-01-09 |
| CVE-2022-38784 |
Poppler prior to and including 22.08.0 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in J... |
Important |
poppler |
否 |
完成修复 |
2023-06-01 |
2026-01-04 |
| CVE-2022-2929 |
In ISC DHCP 1.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1 a system with access to a DHCP server, sending DHCP packets cra... |
Moderate |
dhcp |
否 |
完成修复 |
2023-06-01 |
2026-01-22 |
| CVE-2022-2928 |
In ISC DHCP 4.4.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1, when the function option_code_hash_lookup() is called from a... |
Moderate |
dhcp |
否 |
完成修复 |
2023-06-01 |
2026-01-22 |
| CVE-2022-2880 |
Requests forwarded by ReverseProxy include the raw query parameters from the inbound request, including unparseable parameters ... |
Important |
grafana, cockpit-composer, golang-dbus, osbuild, container-tools:an8, osbuild-composer, git-lfs, golang |
是 |
完成修复 |
2023-06-01 |
2025-12-11 |
| CVE-2023-34256 |
DISPUTED An issue was discovered in the Linux kernel before 6.3.3. There is an out-of-bounds read in crc16 in lib/crc16.c... |
Moderate |
kernel:4.19, kernel:6.6, kernel, kernel:5.10 |
否 |
完成修复 |
2023-05-31 |
2026-01-06 |
| CVE-2023-33461 |
iniparserv4.1容易受到函数iniparser_getlongint中NULL指针取消引用的影响,它会错过对函数iniparser_getstrin... |
Moderate |
iniparser |
是 |
完成修复 |
2023-05-31 |
2026-07-09 |
| CVE-2023-32324 |
OpenPrintingCUPS是一个开源打印系统。在版本2.4.2及更早版本中,堆缓冲区溢出漏洞将允许远程攻击�... |
Moderate |
cups |
是 |
完成修复 |
2023-05-31 |
2026-03-25 |
| CVE-2023-32181 |
openSUSElibeconf中的不检查输入大小的缓冲区复制(经典缓冲区溢出)漏洞允许通过格式错误的配置... |
Moderate |
libeconf |
否 |
完成修复 |
2023-05-31 |
2026-01-04 |
| CVE-2023-3006 |
A known cache speculation vulnerability, known as Branch History Injection (BHI) or Spectre-BHB, becomes actual again for the n... |
Moderate |
kernel |
否 |
完成修复 |
2023-05-31 |
2026-01-06 |
| CVE-2023-2985 |
fs中的UAF,可能导致本地dos |
Low |
kernel |
是 |
完成修复 |
2023-05-31 |
2026-01-23 |
| CVE-2023-2598 |
A flaw was found in the fixed buffer registration code for io_uring (io_sqe_buffer_register in io_uring/rsrc.c) in the Linux ke... |
Moderate |
kernel |
否 |
完成修复 |
2023-05-31 |
2026-01-06 |
| CVE-2022-48502 |
An issue was discovered in the Linux kernel before 6.2. The ntfs3 subsystem does not properly check for correctness during disk... |
Moderate |
kernel |
否 |
完成修复 |
2023-05-31 |
2026-01-06 |
| CVE-2022-25255 |
In Qt 5.9.x through 5.15.x before 5.15.9 and 6.x before 6.2.4 on Linux and UNIX, QProcess could execute a binary from the curre... |
Important |
qt5, qt5-qtbase |
否 |
完成修复 |
2023-05-31 |
2026-01-04 |
| CVE-2023-34152 |
A vulnerability was found in ImageMagick. This security flaw cause a remote code execution vulnerability in OpenBlob with --ena... |
Important |
ImageMagick |
否 |
完成修复 |
2023-05-30 |
2026-01-05 |
| CVE-2023-33183 |
Calendar app for Nextcloud easily sync events from various devices with your Nextcloud. Some internal paths of the website are ... |
Moderate |
ocaml-calendar |
是 |
完成修复 |
2023-05-30 |
2026-03-25 |
| CVE-2023-32342 |
IBM GSKit could allow a remote attacker to obtain sensitive information, caused by a timing-based side channel in the RSA Decry... |
Important |
httpd |
否 |
完成修复 |
2023-05-30 |
2026-01-09 |
| CVE-2023-2977 |
OpenSC中发现一个漏洞。此安全缺陷导致pkcs15cardos_have_verifyrc_package中存在缓冲区溢出漏洞。攻击者... |
Moderate |
opensc |
否 |
完成修复 |
2023-05-30 |
2026-05-14 |
| CVE-2023-2952 |
XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or cr... |
Moderate |
wireshark |
否 |
完成修复 |
2023-05-30 |
2026-01-22 |
| CVE-2023-32762 |
An issue was discovered in Qt before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. Qt Network incorrectly pa... |
Moderate |
qt5-qtbase |
是 |
完成修复 |
2023-05-29 |
2026-06-24 |
| CVE-2023-2953 |
openldap中发现漏洞。此安全缺陷会导致ber_memalloc_x()函数中出现空指针取消引用。 |
Moderate |
openldap |
是 |
完成修复 |
2023-05-28 |
2026-03-25 |
| CVE-2023-2283 |
A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pkiverify... |
Moderate |
libssh |
是 |
完成修复 |
2023-05-27 |
2026-03-25 |
| CVE-2023-1667 |
A NULL pointer dereference was found In libssh during re-keying with algorithm guessing. This issue may allow an authenticated ... |
Moderate |
libssh |
是 |
完成修复 |
2023-05-27 |
2026-03-25 |
| CVE-2023-2879 |
GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted ca... |
Important |
wireshark |
否 |
完成修复 |
2023-05-26 |
2026-01-05 |
| CVE-2023-2858 |
NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file |
Moderate |
wireshark |
否 |
完成修复 |
2023-05-26 |
2026-01-22 |
| CVE-2023-2857 |
BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file |
Moderate |
wireshark |
否 |
完成修复 |
2023-05-26 |
2026-01-22 |
| CVE-2023-2856 |
VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture f... |
Moderate |
wireshark |
否 |
完成修复 |
2023-05-26 |
2026-01-22 |
| CVE-2023-2855 |
Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file |
Moderate |
wireshark |
否 |
完成修复 |
2023-05-26 |
2026-01-22 |
| CVE-2023-2854 |
BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file |
Moderate |
wireshark |
否 |
完成修复 |
2023-05-26 |
2026-01-22 |
| CVE-2023-28322 |
An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the ... |
Low |
curl |
是 |
完成修复 |
2023-05-26 |
2026-03-25 |
| CVE-2023-28321 |
An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns wh... |
Moderate |
curl |
是 |
完成修复 |
2023-05-26 |
2026-03-25 |
| CVE-2023-20883 |
In Spring Boot versions 3.0.0 - 3.0.6, 2.7.0 - 2.7.11, 2.6.0 - 2.6.14, 2.5.0 - 2.5.14 and older unsupported versions, there is ... |
Important |
log4j, log4j:2 |
否 |
完成修复 |
2023-05-26 |
2026-01-05 |
| CVE-2023-2002 |
A vulnerability was found in the HCI sockets implementation due to a missing capability check in net/bluetooth/hci_sock.c in th... |
Moderate |
kernel |
否 |
完成修复 |
2023-05-26 |
2026-01-06 |
| CVE-2023-1981 |
A vulnerability was found in the avahi library. This flaw allows an unprivileged user to make a dbus call, causing the avahi da... |
Moderate |
avahi |
是 |
完成修复 |
2023-05-26 |
2026-07-11 |
| CVE-2023-28370 |
Open redirect vulnerability in Tornado versions 6.3.1 and earlier allows a remote unauthenticated attacker to redirect a user t... |
Moderate |
pcs, python-tornado |
是 |
完成修复 |
2023-05-25 |
2026-03-25 |
| CVE-2023-2804 |
A heap-based buffer overflow issue was discovered in libjpeg-turbo in h2v2_merged_upsample_internal() function of jdmrgext.c fi... |
Moderate |
libjpeg-turbo, mingw-libjpeg-turbo |
是 |
完成修复 |
2023-05-25 |
2026-03-27 |
| CVE-2023-2255 |
Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document tha... |
Moderate |
libreoffice |
是 |
完成修复 |
2023-05-25 |
2026-07-11 |
| CVE-2023-0950 |
Improper Validation of Array Index vulnerability in the spreadsheet component of The Document Foundation LibreOffice allows an ... |
Moderate |
libreoffice |
是 |
完成修复 |
2023-05-25 |
2026-07-11 |
| CVE-2023-29007 |
Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.3... |
Important |
git |
否 |
完成修复 |
2023-05-24 |
2026-01-06 |
| CVE-2023-33285 |
在5.15.14之前的Qt5.x、6.2.9之前的6.x以及6.5.1之前的6.3.x到6.5.x中发现了问题。QDnsLookup通过来自DNS服�... |
Moderate |
adwaita-qt, qt5-qtbase |
是 |
完成修复 |
2023-05-23 |
2026-07-11 |
| CVE-2023-33288 |
An issue was discovered in the Linux kernel before 6.2.9. A use-after-free was found in bq24190_remove in drivers/power/supply/... |
Moderate |
kernel |
否 |
完成修复 |
2023-05-22 |
2026-01-06 |
| CVE-2023-33250 |
The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c. |
Low |
kernel |
是 |
完成修复 |
2023-05-21 |
2026-01-23 |
| CVE-2023-28709 |
对于ApacheTomcat11.0.0-M2到11.0.0-M4、10.1.5到10.1.7、9.0.71到9.0.73以及8.5.85到8.5.87,CVE-2023-24998的修复不�... |
Moderate |
tomcat |
是 |
完成修复 |
2023-05-21 |
2026-06-26 |
| CVE-2020-36694 |
An issue was discovered in netfilter in the Linux kernel before 5.10. There can be a use-after-free in the packet processing co... |
Moderate |
kernel 5.10, kernel 4.19 |
否 |
完成修复 |
2023-05-21 |
2026-01-06 |
| CVE-2023-32700 |
LuaTeX before 1.17.0 allows execution of arbitrary shell commands when compiling a TeX file obtained from an untrusted source. ... |
Important |
texlive |
否 |
完成修复 |
2023-05-20 |
2026-01-05 |
| CVE-2023-32213 |
The Mozilla Foundation Security Advisory describes this flaw as: |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2023-05-19 |
2026-01-24 |
| CVE-2023-32212 |
The Mozilla Foundation Security Advisory describes this flaw as: |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2023-05-19 |
2026-01-24 |
| CVE-2023-32211 |
The Mozilla Foundation Security Advisory describes this flaw as: |
Moderate |
firefox, thunderbird |
否 |
完成修复 |
2023-05-19 |
2026-01-24 |
| CVE-2023-30775 |
A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSamples32bit... |
Moderate |
libtiff |
是 |
完成修复 |
2023-05-19 |
2026-03-25 |
| CVE-2023-30774 |
A vulnerability was found in the libtiff library. This flaw causes a heap buffer overflow issue via the TIFFTAG_INKNAMES and TI... |
Moderate |
libtiff |
是 |
完成修复 |
2023-05-19 |
2026-03-25 |
| CVE-2023-33204 |
sysstat through 12.7.2 allows a multiplication integer overflow in check_overflow in common.c. NOTE: this issue exists because ... |
Important |
sysstat |
否 |
完成修复 |
2023-05-18 |
2026-01-04 |
| CVE-2023-33203 |
The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/net/ethernet/qualcomm/emac/emac.c if... |
Low |
kernel:4.19, kernel:6.6, kernel, kernel:5.10 |
否 |
完成修复 |
2023-05-18 |
2026-01-22 |
| CVE-2023-31655 |
redis-7.0.10被发现包含分段违规。 |
Moderate |
redis |
是 |
完成修复 |
2023-05-18 |
2026-03-25 |
| CVE-2023-32254 |
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the proc... |
Important |
kernel 5.10, kernel:5.10, kernel:4.19, kernel 4.19 |
否 |
完成修复 |
2023-05-17 |
2025-12-05 |
| CVE-2023-28320 |
curl<v8.1.0中存在拒绝服务漏洞,其方式是libcurl提供了多个不同的后端来解析构建时选择的主机名�... |
Moderate |
curl |
是 |
完成修复 |
2023-05-17 |
2026-03-25 |
| CVE-2023-28319 |
curl<v8.1.0中存在释放后使用漏洞,其方式是libcurl提供使用SHA256哈希验证SSH服务器公钥的功能。当�... |
Moderate |
curl |
是 |
完成修复 |
2023-05-17 |
2026-03-25 |
| CVE-2023-2731 |
A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a l... |
Moderate |
libtiff |
是 |
完成修复 |
2023-05-17 |
2026-03-25 |
| CVE-2023-2203 |
A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability. This ... |
Important |
webkit2gtk3 |
否 |
完成修复 |
2023-05-17 |
2026-01-04 |
| CVE-2023-1972 |
A potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf.c. This may lead to loss of avai... |
Low |
binutils |
否 |
完成修复 |
2023-05-17 |
2025-12-11 |
| CVE-2023-1859 |
A use-after-free flaw was found in xen_9pfs_front_removet in net/9p/trans_xen.c in Xen transport for 9pfs in the Linux Kernel. ... |
Moderate |
kernel:6.6, kernel:5.10, kernel, kernel:4.19 |
否 |
完成修复 |
2023-05-17 |
2026-01-06 |
| CVE-2023-2124 |
An out-of-bounds memory access flaw was found in the Linux kernel’s XFS file system in how a user restores an XFS image after... |
Moderate |
kernel |
否 |
完成修复 |
2023-05-15 |
2026-01-06 |
| CVE-2023-21106 |
In adreno_set_param of adreno_gpu.c, there is a possible memory corruption due to a double free. This could lead to local escal... |
Important |
kernel |
否 |
完成修复 |
2023-05-15 |
2025-12-05 |
| CVE-2023-21102 |
In __efi_rt_asm_wrapper of efi-rt-wrapper.S, there is a possible bypass of shadow stack protection due to a logic error in the ... |
Moderate |
kernel:5.10, kernel:4.19, kernel:6.6 |
否 |
完成修复 |
2023-05-15 |
2026-01-06 |
| CVE-2023-1729 |
A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an applic... |
Moderate |
libraw1394, LibRaw |
是 |
完成修复 |
2023-05-15 |
2026-03-25 |
| CVE-2023-0459 |
Several vulnerabilities have been discovered in the Linux kernel thatmay lead to a privilege escalation, denial of service, or ... |
Moderate |
kernel:6.6, kernel:5.10, kernel, kernel:4.19 |
否 |
完成修复 |
2023-05-15 |
2025-12-18 |
| CVE-2023-32573 |
在5.15.14之前的Qt、6.2.9之前的6.0.x到6.2.x以及6.5.1之前的6.3.x到6.5.x中,QtSvgQSvgFontm_unitsPerEm初始化处... |
Moderate |
adwaita-qt, qt5-qtsvg |
是 |
完成修复 |
2023-05-12 |
2026-07-11 |
| CVE-2023-2680 |
此CVE的存在是因为CVE-2021-3750的修复不完整。更具体地说,通过RHSA-2022:7967为RedHatEnterpriseLinux9.1发�... |
Moderate |
virt:an, qemu-kvm |
否 |
完成修复 |
2023-05-12 |
2025-12-19 |
| CVE-2023-24540 |
A flaw was found in golang, where not all valid JavaScript white-space characters were considered white space. Due to this issu... |
Important |
golang, container-tools:2.0, container-tools:3.0, container-tools:an8, container-tools:4.0, go-toolset:an8, grafana |
是 |
完成修复 |
2023-05-12 |
2025-12-10 |
| CVE-2022-0108 |
Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origi... |
Moderate |
webkitgtk |
是 |
完成修复 |
2023-05-12 |
2026-03-25 |
| CVE-2023-29933 |
通过组件mlir::Block::getArgument发现llvm-projectcommitbd456297包含分段错误。 |
Moderate |
llvm |
否 |
完成修复 |
2023-05-11 |
2025-12-05 |