CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2023-24535 解析无效消息可能会引起恐慌。解析一条文本格式的消息,其中包含一个由减号、一个或多个空�... Moderate grafana, protobuf-c, container-tools:2.0, skopeo, protobuf, container-tools:1.0 完成修复 2023-06-13 2026-03-25
CVE-2023-3161 A flaw was found in the Framebuffer Console (fbcon) in the Linux Kernel. When providing font->width and font->height greater th... Moderate kernel 完成修复 2023-06-12 2026-01-06
CVE-2023-3159 A use after free issue was discovered in driver/firewire in outbound_phy_packet_callback in the Linux Kernel. In this flaw a lo... Moderate kernel:4.19, kernel, kernel:5.10 完成修复 2023-06-12 2026-01-06
CVE-2023-3141 A use-after-free flaw was found in r592_remove in drivers/memstick/host/r592.c in media access in the Linux Kernel. This flaw a... Moderate kernel:4.19, kernel:6.6, kernel, kernel:5.10 完成修复 2023-06-09 2026-01-06
CVE-2023-24805 cups-filters contains backends, filters, and other software required to get the cups printing service working on operating syst... Important cups-filters 完成修复 2023-06-09 2026-01-04
CVE-2023-2455 Row security policies disregard user ID changes after inlining; PostgreSQL could permit incorrect policies to be applied in cer... Moderate postgresql:12, libpq, postgresql:15, postgresql:13, postgresql, postgresql:10 完成修复 2023-06-09 2026-03-25
CVE-2023-2454 schema_element defeats protective search_path changes; It was found that certain database calls in PostgreSQL could permit an a... Important postgresql:12, libpq, postgresql:15, postgresql:13, postgresql, postgresql:10 完成修复 2023-06-09 2026-01-04
CVE-2023-3164 在LibTIFF、tools/tiffcrop.c:7916和tools/tiffcrop.c:7801的extractImageSection()中发现堆缓冲区溢出漏洞。此缺陷... Moderate libtiff 完成修复 2023-06-08 2026-03-25
CVE-2023-34969 D-Bus before 1.15.6 sometimes allows unprivileged users to crash dbus-daemon. If a privileged user with control over the dbus-d... Moderate dbus 完成修复 2023-06-07 2026-03-25
CVE-2023-33460 yajl2.1.0使用yajl_tree_parse函数时存在内存泄漏。这将导致服务器内存不足并导致崩溃。 Moderate yajl 完成修复 2023-06-07 2026-07-10
CVE-2023-32373 A use after free vulnerability was found in the webkitgtk package. Processing maliciously crafted web content may lead to arbit... Important webkitgtk, webkit2gtk3 完成修复 2023-06-07 2026-01-04
CVE-2023-28204 A flaw was found in the webkitgtk package. An out of bounds read may be possible when processing malicious web content, which c... Moderate webkitgtk, webkit2gtk3 完成修复 2023-06-07 2026-03-25
CVE-2023-2801 Grafana is an open-source platform for monitoring and observability. Using public dashboards users can query multiple disti... Moderate grafana 完成修复 2023-06-06 2026-01-22
CVE-2023-2183 Grafana is an open-source platform for monitoring and observability. The option to send a test alert is not available from ... Moderate grafana 完成修复 2023-06-06 2026-01-22
CVE-2023-20716 In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg... Moderate kernel 完成修复 2023-06-06 2026-01-06
CVE-2023-20715 In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg... Moderate kernel 完成修复 2023-06-06 2026-01-06
CVE-2023-20712 In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg... Moderate kernel 完成修复 2023-06-06 2026-01-06
CVE-2023-0668 Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and prior,... Moderate wireshark 完成修复 2023-06-06 2026-03-25
CVE-2023-0667 Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an ... Moderate wireshark 完成修复 2023-06-06 2026-07-11
CVE-2023-0666 Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark version 4.0.5 and prior, by defa... Moderate wireshark 完成修复 2023-06-06 2026-03-25
CVE-2023-34410 在5.15.15之前的Qt、6.2.9之前的6.x以及6.5.2之前的6.3.x到6.5.x中发现了一个问题。TLS证书验证并不总�... Moderate adwaita-qt, qt5-qtbase 完成修复 2023-06-05 2026-07-11
CVE-2023-3111 A use after free vulnerability was found in prepare_to_relocate in fs/btrfs/relocation.c in btrfs in the Linux Kernel. This pos... Low kernel 完成修复 2023-06-05 2026-01-23
CVE-2023-32665 GLib中发现一个缺陷。GVariant反序列化很容易受到指数爆炸问题的影响,精心设计的GVariant可能会�... Moderate perl-Glib, glib2 完成修复 2023-06-01 2026-03-25
CVE-2023-32643 GLib中发现一个缺陷。GVariant反序列化代码容易受到CVE-2023-32665修复程序引入的堆缓冲区溢出的影�... Moderate perl-Glib, glib2 完成修复 2023-06-01 2026-03-25
CVE-2023-32636 glib中发现了一个缺陷,其中gvariant反序列化代码容易受到为解析CVE-2023-29499而添加的额外输入验�... Moderate perl-Glib, glib2 完成修复 2023-06-01 2026-03-25
CVE-2023-32611 GLib中发现一个缺陷。GVariant反序列化很容易受到减速问题的影响,精心设计的GVariant可能会导致�... Moderate perl-Glib, glib2 完成修复 2023-06-01 2026-03-25
CVE-2023-29499 GLib中发现一个缺陷。GVariant反序列化无法验证输入是否符合预期格式,从而导致拒绝服务。 Moderate perl-Glib, glib2 完成修复 2023-06-01 2026-03-25
CVE-2023-2650 OpenSSL的UAF,在转换ASN.1对象标识符时可能导致dos Moderate compat-openssl10, mingw-openssl, openssl, openssl1.1 完成修复 2023-06-01 2026-03-25
CVE-2022-41973 multipath-tools 0.7.7 through 0.9.x before 0.9.2 allows local users to obtain root access, as exploited in conjunction with CVE... Important device-mapper-multipath 完成修复 2023-06-01 2026-01-08
CVE-2022-41715 Programs which compile regular expressions from untrusted sources may be vulnerable to memory exhaustion or denial of service. ... Important grafana, cockpit-composer, golang-dbus, osbuild, container-tools:an8, osbuild-composer, git-lfs, golang 完成修复 2023-06-01 2025-12-10
CVE-2022-40023 Sqlalchemy mako before 1.2.2 is vulnerable to Regular expression Denial of Service when using the Lexer class to parse. This al... Important python-mako 完成修复 2023-06-01 2026-01-09
CVE-2022-38784 Poppler prior to and including 22.08.0 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in J... Important poppler 完成修复 2023-06-01 2026-01-04
CVE-2022-2929 In ISC DHCP 1.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1 a system with access to a DHCP server, sending DHCP packets cra... Moderate dhcp 完成修复 2023-06-01 2026-01-22
CVE-2022-2928 In ISC DHCP 4.4.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1, when the function option_code_hash_lookup() is called from a... Moderate dhcp 完成修复 2023-06-01 2026-01-22
CVE-2022-2880 Requests forwarded by ReverseProxy include the raw query parameters from the inbound request, including unparseable parameters ... Important grafana, cockpit-composer, golang-dbus, osbuild, container-tools:an8, osbuild-composer, git-lfs, golang 完成修复 2023-06-01 2025-12-11
CVE-2023-34256 DISPUTED An issue was discovered in the Linux kernel before 6.3.3. There is an out-of-bounds read in crc16 in lib/crc16.c... Moderate kernel:4.19, kernel:6.6, kernel, kernel:5.10 完成修复 2023-05-31 2026-01-06
CVE-2023-33461 iniparserv4.1容易受到函数iniparser_getlongint中NULL指针取消引用的影响,它会错过对函数iniparser_getstrin... Moderate iniparser 完成修复 2023-05-31 2026-07-09
CVE-2023-32324 OpenPrintingCUPS是一个开源打印系统。在版本2.4.2及更早版本中,堆缓冲区溢出漏洞将允许远程攻击�... Moderate cups 完成修复 2023-05-31 2026-03-25
CVE-2023-32181 openSUSElibeconf中的不检查输入大小的缓冲区复制(经典缓冲区溢出)漏洞允许通过格式错误的配置... Moderate libeconf 完成修复 2023-05-31 2026-01-04
CVE-2023-3006 A known cache speculation vulnerability, known as Branch History Injection (BHI) or Spectre-BHB, becomes actual again for the n... Moderate kernel 完成修复 2023-05-31 2026-01-06
CVE-2023-2985 fs中的UAF,可能导致本地dos Low kernel 完成修复 2023-05-31 2026-01-23
CVE-2023-2598 A flaw was found in the fixed buffer registration code for io_uring (io_sqe_buffer_register in io_uring/rsrc.c) in the Linux ke... Moderate kernel 完成修复 2023-05-31 2026-01-06
CVE-2022-48502 An issue was discovered in the Linux kernel before 6.2. The ntfs3 subsystem does not properly check for correctness during disk... Moderate kernel 完成修复 2023-05-31 2026-01-06
CVE-2022-25255 In Qt 5.9.x through 5.15.x before 5.15.9 and 6.x before 6.2.4 on Linux and UNIX, QProcess could execute a binary from the curre... Important qt5, qt5-qtbase 完成修复 2023-05-31 2026-01-04
CVE-2023-34152 A vulnerability was found in ImageMagick. This security flaw cause a remote code execution vulnerability in OpenBlob with --ena... Important ImageMagick 完成修复 2023-05-30 2026-01-05
CVE-2023-33183 Calendar app for Nextcloud easily sync events from various devices with your Nextcloud. Some internal paths of the website are ... Moderate ocaml-calendar 完成修复 2023-05-30 2026-03-25
CVE-2023-32342 IBM GSKit could allow a remote attacker to obtain sensitive information, caused by a timing-based side channel in the RSA Decry... Important httpd 完成修复 2023-05-30 2026-01-09
CVE-2023-2977 OpenSC中发现一个漏洞。此安全缺陷导致pkcs15cardos_have_verifyrc_package中存在缓冲区溢出漏洞。攻击者... Moderate opensc 完成修复 2023-05-30 2026-05-14
CVE-2023-2952 XRA dissector infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or cr... Moderate wireshark 完成修复 2023-05-30 2026-01-22
CVE-2023-32762 An issue was discovered in Qt before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. Qt Network incorrectly pa... Moderate qt5-qtbase 完成修复 2023-05-29 2026-06-24
CVE-2023-2953 openldap中发现漏洞。此安全缺陷会导致ber_memalloc_x()函数中出现空指针取消引用。 Moderate openldap 完成修复 2023-05-28 2026-03-25
CVE-2023-2283 A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pkiverify... Moderate libssh 完成修复 2023-05-27 2026-03-25
CVE-2023-1667 A NULL pointer dereference was found In libssh during re-keying with algorithm guessing. This issue may allow an authenticated ... Moderate libssh 完成修复 2023-05-27 2026-03-25
CVE-2023-2879 GDSDB infinite loop in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via packet injection or crafted ca... Important wireshark 完成修复 2023-05-26 2026-01-05
CVE-2023-2858 NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file Moderate wireshark 完成修复 2023-05-26 2026-01-22
CVE-2023-2857 BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file Moderate wireshark 完成修复 2023-05-26 2026-01-22
CVE-2023-2856 VMS TCPIPtrace file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture f... Moderate wireshark 完成修复 2023-05-26 2026-01-22
CVE-2023-2855 Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file Moderate wireshark 完成修复 2023-05-26 2026-01-22
CVE-2023-2854 BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file Moderate wireshark 完成修复 2023-05-26 2026-01-22
CVE-2023-28322 An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the ... Low curl 完成修复 2023-05-26 2026-03-25
CVE-2023-28321 An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns wh... Moderate curl 完成修复 2023-05-26 2026-03-25
CVE-2023-20883 In Spring Boot versions 3.0.0 - 3.0.6, 2.7.0 - 2.7.11, 2.6.0 - 2.6.14, 2.5.0 - 2.5.14 and older unsupported versions, there is ... Important log4j, log4j:2 完成修复 2023-05-26 2026-01-05
CVE-2023-2002 A vulnerability was found in the HCI sockets implementation due to a missing capability check in net/bluetooth/hci_sock.c in th... Moderate kernel 完成修复 2023-05-26 2026-01-06
CVE-2023-1981 A vulnerability was found in the avahi library. This flaw allows an unprivileged user to make a dbus call, causing the avahi da... Moderate avahi 完成修复 2023-05-26 2026-07-11
CVE-2023-28370 Open redirect vulnerability in Tornado versions 6.3.1 and earlier allows a remote unauthenticated attacker to redirect a user t... Moderate pcs, python-tornado 完成修复 2023-05-25 2026-03-25
CVE-2023-2804 A heap-based buffer overflow issue was discovered in libjpeg-turbo in h2v2_merged_upsample_internal() function of jdmrgext.c fi... Moderate libjpeg-turbo, mingw-libjpeg-turbo 完成修复 2023-05-25 2026-03-27
CVE-2023-2255 Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document tha... Moderate libreoffice 完成修复 2023-05-25 2026-07-11
CVE-2023-0950 Improper Validation of Array Index vulnerability in the spreadsheet component of The Document Foundation LibreOffice allows an ... Moderate libreoffice 完成修复 2023-05-25 2026-07-11
CVE-2023-29007 Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.3... Important git 完成修复 2023-05-24 2026-01-06
CVE-2023-33285 在5.15.14之前的Qt5.x、6.2.9之前的6.x以及6.5.1之前的6.3.x到6.5.x中发现了问题。QDnsLookup通过来自DNS服�... Moderate adwaita-qt, qt5-qtbase 完成修复 2023-05-23 2026-07-11
CVE-2023-33288 An issue was discovered in the Linux kernel before 6.2.9. A use-after-free was found in bq24190_remove in drivers/power/supply/... Moderate kernel 完成修复 2023-05-22 2026-01-06
CVE-2023-33250 The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c. Low kernel 完成修复 2023-05-21 2026-01-23
CVE-2023-28709 对于ApacheTomcat11.0.0-M2到11.0.0-M4、10.1.5到10.1.7、9.0.71到9.0.73以及8.5.85到8.5.87,CVE-2023-24998的修复不�... Moderate tomcat 完成修复 2023-05-21 2026-06-26
CVE-2020-36694 An issue was discovered in netfilter in the Linux kernel before 5.10. There can be a use-after-free in the packet processing co... Moderate kernel 5.10, kernel 4.19 完成修复 2023-05-21 2026-01-06
CVE-2023-32700 LuaTeX before 1.17.0 allows execution of arbitrary shell commands when compiling a TeX file obtained from an untrusted source. ... Important texlive 完成修复 2023-05-20 2026-01-05
CVE-2023-32213 The Mozilla Foundation Security Advisory describes this flaw as: Moderate firefox, thunderbird 完成修复 2023-05-19 2026-01-24
CVE-2023-32212 The Mozilla Foundation Security Advisory describes this flaw as: Moderate firefox, thunderbird 完成修复 2023-05-19 2026-01-24
CVE-2023-32211 The Mozilla Foundation Security Advisory describes this flaw as: Moderate firefox, thunderbird 完成修复 2023-05-19 2026-01-24
CVE-2023-30775 A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSamples32bit... Moderate libtiff 完成修复 2023-05-19 2026-03-25
CVE-2023-30774 A vulnerability was found in the libtiff library. This flaw causes a heap buffer overflow issue via the TIFFTAG_INKNAMES and TI... Moderate libtiff 完成修复 2023-05-19 2026-03-25
CVE-2023-33204 sysstat through 12.7.2 allows a multiplication integer overflow in check_overflow in common.c. NOTE: this issue exists because ... Important sysstat 完成修复 2023-05-18 2026-01-04
CVE-2023-33203 The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/net/ethernet/qualcomm/emac/emac.c if... Low kernel:4.19, kernel:6.6, kernel, kernel:5.10 完成修复 2023-05-18 2026-01-22
CVE-2023-31655 redis-7.0.10被发现包含分段违规。 Moderate redis 完成修复 2023-05-18 2026-03-25
CVE-2023-32254 A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the proc... Important kernel 5.10, kernel:5.10, kernel:4.19, kernel 4.19 完成修复 2023-05-17 2025-12-05
CVE-2023-28320 curl<v8.1.0中存在拒绝服务漏洞,其方式是libcurl提供了多个不同的后端来解析构建时选择的主机名�... Moderate curl 完成修复 2023-05-17 2026-03-25
CVE-2023-28319 curl<v8.1.0中存在释放后使用漏洞,其方式是libcurl提供使用SHA256哈希验证SSH服务器公钥的功能。当�... Moderate curl 完成修复 2023-05-17 2026-03-25
CVE-2023-2731 A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a l... Moderate libtiff 完成修复 2023-05-17 2026-03-25
CVE-2023-2203 A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability. This ... Important webkit2gtk3 完成修复 2023-05-17 2026-01-04
CVE-2023-1972 A potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf.c. This may lead to loss of avai... Low binutils 完成修复 2023-05-17 2025-12-11
CVE-2023-1859 A use-after-free flaw was found in xen_9pfs_front_removet in net/9p/trans_xen.c in Xen transport for 9pfs in the Linux Kernel. ... Moderate kernel:6.6, kernel:5.10, kernel, kernel:4.19 完成修复 2023-05-17 2026-01-06
CVE-2023-2124 An out-of-bounds memory access flaw was found in the Linux kernel’s XFS file system in how a user restores an XFS image after... Moderate kernel 完成修复 2023-05-15 2026-01-06
CVE-2023-21106 In adreno_set_param of adreno_gpu.c, there is a possible memory corruption due to a double free. This could lead to local escal... Important kernel 完成修复 2023-05-15 2025-12-05
CVE-2023-21102 In __efi_rt_asm_wrapper of efi-rt-wrapper.S, there is a possible bypass of shadow stack protection due to a logic error in the ... Moderate kernel:5.10, kernel:4.19, kernel:6.6 完成修复 2023-05-15 2026-01-06
CVE-2023-1729 A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an applic... Moderate libraw1394, LibRaw 完成修复 2023-05-15 2026-03-25
CVE-2023-0459 Several vulnerabilities have been discovered in the Linux kernel thatmay lead to a privilege escalation, denial of service, or ... Moderate kernel:6.6, kernel:5.10, kernel, kernel:4.19 完成修复 2023-05-15 2025-12-18
CVE-2023-32573 在5.15.14之前的Qt、6.2.9之前的6.0.x到6.2.x以及6.5.1之前的6.3.x到6.5.x中,QtSvgQSvgFontm_unitsPerEm初始化处... Moderate adwaita-qt, qt5-qtsvg 完成修复 2023-05-12 2026-07-11
CVE-2023-2680 此CVE的存在是因为CVE-2021-3750的修复不完整。更具体地说,通过RHSA-2022:7967为RedHatEnterpriseLinux9.1发�... Moderate virt:an, qemu-kvm 完成修复 2023-05-12 2025-12-19
CVE-2023-24540 A flaw was found in golang, where not all valid JavaScript white-space characters were considered white space. Due to this issu... Important golang, container-tools:2.0, container-tools:3.0, container-tools:an8, container-tools:4.0, go-toolset:an8, grafana 完成修复 2023-05-12 2025-12-10
CVE-2022-0108 Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origi... Moderate webkitgtk 完成修复 2023-05-12 2026-03-25
CVE-2023-29933 通过组件mlir::Block::getArgument发现llvm-projectcommitbd456297包含分段错误。 Moderate llvm 完成修复 2023-05-11 2025-12-05

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:31

results matching ""

    No results matching ""

    results matching ""

      No results matching ""