CVE List

cve编号 漏洞描述 危险等级 包名 是否影响lns23-3 修复状态 发现时间 修复时间
CVE-2023-30456 An issue was discovered in arch/x86/kvm/vmx/nested.c in the Linux kernel before 6.2.8. nVMX on x86_64 lacks consistency checks ... Important kernel, kernel:4.18, kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2023-04-10 2025-12-05
CVE-2023-1916 A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of... Moderate libtiff 完成修复 2023-04-10 2026-07-11
CVE-2021-45985 In Lua 5.4.3, an erroneous finalizer called during a tail call leads to a heap-based buffer over-read. Important lua, lua-lpeg 完成修复 2023-04-10 2026-01-04
CVE-2023-1801 The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network packet. Moderate tcpdump 完成修复 2023-04-07 2026-03-24
CVE-2023-24538 Templates do not properly consider backticks (`) as Javascript string delimiters, and do not escape them as expected. Backticks... Moderate grafana, go-toolset:an8, container-tools:2.0, container-tools:3.0, container-tools:an8, rhc, golang 完成修复 2023-04-06 2025-12-10
CVE-2023-24537 Calling any of the Parse functions on Go source code which contains //line directives with very large line numbers can cause an... Important golang, container-tools:an8 完成修复 2023-04-06 2025-12-10
CVE-2023-24536 Multipart form parsing can consume large amounts of CPU and memory when processing form inputs containing very large numbers of... Moderate container-tools:4.0, go-toolset, golang-dbus, grafana, container-tools:2.0, go-toolset:an8, container-tools:3.0, container-tools:an8, git-lfs, golang 完成修复 2023-04-06 2025-12-10
CVE-2023-24534 HTTP and MIME header parsing can allocate large amounts of memory, even when parsing small inputs, potentially leading to a den... Important grafana, golang-dbus, go-toolset:an8, container-tools:3.0, container-tools:an8, git-lfs, golang 完成修复 2023-04-06 2025-12-10
CVE-2023-20682 In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege w... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20679 In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20677 In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure ... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20676 In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure ... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20675 In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure ... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20674 In wlan, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure ... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20663 In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege w... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20662 In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege w... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20661 In wlan, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege w... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20660 In wlan, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure wit... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-20659 In wlan, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg... Moderate kernel 完成修复 2023-04-06 2026-01-06
CVE-2023-1838 A use-after-free flaw was found in vhost_net_set_backend in drivers/vhost/net.c in virtio network subcomponent in the Linux ker... Important kernel, kernel:4.18, kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2023-04-06 2025-12-04
CVE-2022-46781 An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU memory processing operat... Low kernel 完成修复 2023-04-06 2026-01-23
CVE-2023-28328 az6027驱动存在空指针解引用,影响版本2.6.34-rc1<=版本<6.2-rc1,包含4.19和5.10 Moderate kernel 完成修复 2023-04-05 2026-01-06
CVE-2023-28327 UNIX协议里存在空指针解引用,影响版本5.3-rc1<=版本<6.1,包含5.10 Moderate kernel 完成修复 2023-04-05 2026-01-06
CVE-2023-1855 A use-after-free flaw was found in xgene_hwmon_remove in drivers/hwmon/xgene-hwmon.c in the Hardware Monitoring Linux Kernel Dr... Moderate kernel, kernel:4.18, kernel:6.6, kernel:4.19, kernel:5.10 完成修复 2023-04-05 2026-01-06
CVE-2023-1582 A race problem was found in fs/proc/task_mmu.c in the memory management sub-component in the Linux kernel. This issue may allow... Moderate kernel 5.10, kernel 4.19, kernel(RHCK)4.18 完成修复 2023-04-05 2026-01-06
CVE-2023-1382 tipc协议中存在空指针解引用,影响版本3.11-rc1<=版本<6.1-rc7,包含4.19和5.10 Moderate kernel 完成修复 2023-04-05 2026-01-06
CVE-2023-28841 Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, ... Moderate moby 完成修复 2023-04-04 2026-07-10
CVE-2023-28840 Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, ... Important docker, moby 完成修复 2023-04-04 2026-01-08
CVE-2023-1611 A use-after-free flaw was found in btrfs_search_slot in fs/btrfs/ctree.c in btrfs in the Linux Kernel.This flaw allows an attac... Moderate kernel 完成修复 2023-04-03 2026-01-06
CVE-2022-36440 A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can maliciously ... Moderate frr 完成修复 2023-04-03 2026-07-10
CVE-2023-26112 All versions of the package configobj are vulnerable to Regular Expression Denial of Service (ReDoS) via the validate function,... Moderate python-configobj 完成修复 2023-04-02 2026-06-24
CVE-2023-28879 In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the Post... Moderate ghostscript 完成修复 2023-03-31 2026-03-24
CVE-2023-28756 A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1. The Time parser mishandles invalid URLs... Moderate ruby:2.5, ruby, ruby:2.7, ruby:3.0 完成修复 2023-03-31 2026-03-24
CVE-2023-27535 An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong cr... Moderate curl 完成修复 2023-03-31 2026-03-24
CVE-2023-1393 A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client explicitl... Important xorg-x11-server, tigervnc, xorg-x11-server-Xwayland 完成修复 2023-03-31 2026-01-04
CVE-2022-4899 A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to... Low mysql, mysql:8.0 完成修复 2023-03-31 2026-03-24
CVE-2023-28642 runc is a CLI tool for spawning and running containers according to the OCI specification. It was found that AppArmor can be by... Important container-tools:2.0, container-tools:3.0, container-tools:an8, container-tools:4.0, container-tools:1.0, runc 完成修复 2023-03-30 2026-01-07
CVE-2023-1670 A flaw use after free in the Linux kernel Xircom 16-bit PCMCIA (PC-card) Ethernet driver was found.A local user could use this ... Low kernel 完成修复 2023-03-30 2026-01-23
CVE-2023-28427 The Mozilla Foundation Security Advisory describes this flaw as: \n \nThunderbird users who use the Matrix chat protocol were v... Important thunderbird 完成修复 2023-03-29 2026-01-04
CVE-2023-26116 Versions of the package angular from 1.2.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the angular.copy... Moderate cockpit 完成修复 2023-03-29 2026-07-11
CVE-2023-25809 runc is a CLI tool for spawning and running containers according to the OCI specification. In affected versions it was found th... Low container-tools:2.0, container-tools:3.0, container-tools:an8, container-tools:4.0, container-tools:1.0, runc 完成修复 2023-03-29 2026-07-09
CVE-2023-1652 A use-after-free flaw was found in nfsd4_ssc_setup_dul in fs/nfsd/nfs4proc.c in the NFS filesystem in the Linux Kernel. This is... Moderate kernel 5.10, kernel 4.19 完成修复 2023-03-29 2026-01-06
CVE-2023-0922 No description is available for this CVE. Moderate samba 完成修复 2023-03-29 2026-03-27
CVE-2023-0614 No description is available for this CVE. Moderate samba 完成修复 2023-03-29 2026-03-27
CVE-2023-0225 No description is available for this CVE. Moderate samba 完成修复 2023-03-29 2026-03-27
CVE-2022-44370 NASM v2.16 was discovered to contain a heap buffer overflow in the component quote_for_pmake() asm/nasm.c:856 Moderate nasm 完成修复 2023-03-29 2026-03-24
CVE-2022-44369 NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c. Low nasm 完成修复 2023-03-29 2026-03-24
CVE-2022-44368 NASM v2.16 was discovered to contain a null pointer deference in the NASM component Low nasm 完成修复 2023-03-29 2026-03-24
CVE-2022-42432 This vulnerability allows local attackers to disclose sensitive information on affected installations of the Linux Kernel 6.0-r... Low kernel 完成修复 2023-03-29 2026-01-22
CVE-2023-28464 A double-free vulnerability was found in the hci_conn_cleanup in net/bluetooth/hci_conn.c in the Linux Kernel. This issue may c... Moderate kernel 完成修复 2023-03-28 2026-01-05
CVE-2023-26924 LLVM a0dab4950 has a segmentation fault in mlir::outlineSingleBlockRegion. Low llvm-toolset:an8, llvm 完成修复 2023-03-28 2025-12-05
CVE-2023-1637 A flaw that boot CPU could be vulnerable for the speculative execution behavior kind of attacks in the Linux kernel X86 CPU Pow... Moderate kernel:5.10, kernel:4.19, kernel, kernel:6.6 完成修复 2023-03-28 2026-01-06
CVE-2023-1079 Moderate kernel:4.19, kernel:4.18, kernel, kernel:6.6, kernel:5.10 完成修复 2023-03-28 2026-01-05
CVE-2023-0778 A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal file i... Moderate container-tools:2.0, podman, container-tools:an8, container-tools:3.0, container-tools:4.0, container-tools:1.0 完成修复 2023-03-28 2026-03-24
CVE-2023-0466 A flaw was found in OpenSSL. The X509_VERIFY_PARAM_add0_policy() function is documented to enable the certificate policy check ... Low openssl 完成修复 2023-03-28 2026-01-22
CVE-2023-0465 A flaw was found in OpenSSL. Applications that use a non-default option when verifying certificates may be vulnerable to an att... Low openssl 完成修复 2023-03-28 2026-01-22
CVE-2021-3923 A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local account can ... Low kernel 完成修复 2023-03-28 2026-01-22
CVE-2023-1380 A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.... Moderate kernel, kernel(ANCK)5.10 完成修复 2023-03-27 2026-01-06
CVE-2022-3637 A flaw was found in the Linux Kernel, affecting the jlink_init function of the monitor/jlink.c file in the BlueZ component. Man... Low bluez 完成修复 2023-03-27 2026-07-09
CVE-2023-28859 redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune ... Moderate python-redis 完成修复 2023-03-26 2026-03-24
CVE-2023-28858 redis-py before 4.5.3 leaves a connection open after canceling an async Redis command at an inopportune time, and can send resp... Low python-redis, redis 完成修复 2023-03-26 2026-03-24
CVE-2023-25664 TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a heap buffer overflo... Important tensorflow 完成修复 2023-03-25 2026-01-04
CVE-2023-1252 Moderate kernel 完成修复 2023-03-24 2026-01-06
CVE-2020-36691 An issue was discovered in the Linux kernel before 5.8. lib/nlattr.c allows attackers to cause a denial of service (unbounded r... Moderate kernel 4.19 完成修复 2023-03-24 2026-01-06
CVE-2023-28772 An issue was discovered in the Linux kernel before 5.13.3. lib/seq_buf.c has a seq_buf_putmem_hex buffer overflow. Moderate kernel 完成修复 2023-03-23 2026-01-06
CVE-2023-1513 A flaw was found in KVM. When calling the KVM_GET_DEBUGREGS ioctl, on 32-bit systems, there might be some uninitialized portion... Low kernel:6.6, kernel:4.19, kernel:5.10, kernel 完成修复 2023-03-23 2025-12-18
CVE-2023-0464 A security vulnerability has been identified in all supported OpenSSL versions related to verifying X.509 certificate chains th... Low openssl 完成修复 2023-03-23 2026-01-25
CVE-2023-28708 When using the RemoteIpFilter with requests received from a reverse proxy via HTTP that include the X-Forwarded-Proto header se... Moderate tomcat, tomcatjss 完成修复 2023-03-22 2026-06-26
CVE-2023-1281 A use-after-free vulnerability was found in the traffic control index filter (tcindex) in the Linux kernel. The imperfect hash ... Important kernel 完成修复 2023-03-22 2025-12-04
CVE-2023-0386 Linux内核中发现了一个缺陷,在Linux内核的OverlayFS子系统中,用户如何将有能力的文件从nosuid挂载... Important kernel 完成修复 2023-03-22 2025-12-04
CVE-2022-4095 A use-after-free flaw was found in Linux kernel before 5.19.2. This issue occurs in cmd_hdl_filter in drivers/staging/rtl8712/r... Moderate kernel 完成修复 2023-03-22 2026-01-06
CVE-2022-1708 A vulnerability was found in CRI-O that causes memory or disk space exhaustion on the node for anyone with access to the Kube A... Moderate container-tools:3.0, udica 完成修复 2023-03-22 2026-07-11
CVE-2023-28176 A flaw was found in Mozilla. The Mozilla Foundation Security Advisory described the issue in which Mozilla developers Timothy N... Important firefox, thunderbird 完成修复 2023-03-21 2025-12-30
CVE-2023-28164 A flaw was found in Mozilla. The Mozilla Foundation Security Advisory described the issue of dragging a URL from a cross-origin... Moderate firefox, thunderbird 完成修复 2023-03-21 2026-01-24
CVE-2023-28162 A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue that while implementing AudioWorklets... Moderate firefox, thunderbird 完成修复 2023-03-21 2026-01-24
CVE-2023-25752 A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue that when accessing throttled streams... Moderate firefox, thunderbird 完成修复 2023-03-21 2026-01-24
CVE-2023-25751 A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue of invalidating JIT code while follow... Important firefox, thunderbird 完成修复 2023-03-21 2025-12-30
CVE-2023-1583 A NULL pointer dereference flaw was found in the io_uring sub-component in io_file_bitmap_get of io_uring/filetable.c.the in th... Moderate kernel 完成修复 2023-03-21 2026-01-06
CVE-2023-28425 A command injection flaw was discovered in Redis, which exists due to a reachable assertion when handling the MSETNX command. B... Moderate redis:6, redis 完成修复 2023-03-20 2026-03-24
CVE-2023-27538 An authentication bypass vulnerability exists in libcurl v8.0.0 where it reuses a previously established SSH connection despite... Low curl 完成修复 2023-03-20 2026-07-09
CVE-2023-27537 A double free vulnerability exists in libcurl <8.0.0 when sharing HSTS data between separate "handles". This sharing was introd... Low curl 完成修复 2023-03-20 2026-03-24
CVE-2023-27536 An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously establi... Moderate curl 完成修复 2023-03-20 2026-03-24
CVE-2023-27534 A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly replaced ... Low curl 完成修复 2023-03-20 2026-07-09
CVE-2023-27533 A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to... Low curl 完成修复 2023-03-20 2026-07-09
CVE-2023-20861 A flaw found was found in Spring Framework. This flaw allows a malicious user to use a specially crafted SpEL expression that c... Moderate log4j, log4j:2 完成修复 2023-03-20 2026-07-10
CVE-2023-20860 A flaw was found in Spring Framework. In this issue, a security bypass is possible due to the behavior of the wildcard pattern. Important log4j, log4j:2 完成修复 2023-03-20 2026-01-05
CVE-2022-4744 A double-free flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user registers the device whe... Moderate kernel 完成修复 2023-03-20 2026-01-06
CVE-2023-28617 A flaw was found in the Emacs text editor. Processing a specially crafted org-mode code with the function org-babel-execute:lat... Important emacs 完成修复 2023-03-19 2026-01-07
CVE-2022-48425 In the Linux kernel through 6.2.7, fs/ntfs3/inode.c has an invalid kfree because it does not validate MFT flags before replayin... Important kernel:4.19, kernel, kernel:5.10, kernel 4.19, kernel 5.10 完成修复 2023-03-19 2025-12-04
CVE-2022-48423 In the Linux kernel before 6.1.3, fs/ntfs3/record.c does not validate resident attribute names. An out-of-bounds write may occu... Important kernel 5.10, kernel:5.10, kernel:4.19 完成修复 2023-03-19 2025-12-04
CVE-2022-48424 In the Linux kernel before 6.1.3, fs/ntfs3/inode.c does not validate the attribute name offset. An unhandled page fault may occ... Moderate kernel 完成修复 2023-03-18 2026-01-06
CVE-2021-46877 jackson-databind 2.10.x through 2.12.x before 2.12.6 and 2.13.x before 2.13.1 allows attackers to cause a denial of service (2 ... Moderate jackson-databind 完成修复 2023-03-18 2026-07-09
CVE-2023-28531 A vulnerability was found in openssh. This issue occurs when adding smartcard keys to ssh-agent(1) with per-hop destination con... Moderate openssh 完成修复 2023-03-17 2026-01-25
CVE-2023-28115 Snappy is a PHP library allowing thumbnail, snapshot or PDF generation from a url or a html page. Prior to version 1.4.2, Snapp... Critical snappy 完成修复 2023-03-17 2026-01-10
CVE-2023-28487 A flaw was found in the sudo package, shipped with Red Hat Enterprise Linux 8 and 9, where the "sudoreplay -l' command improper... Moderate sudo 完成修复 2023-03-16 2026-01-22
CVE-2023-28486 A flaw was found in the sudo package, shipped with Red Hat Enterprise Linux 8 and 9, where sudo improperly escapes terminal con... Moderate sudo 完成修复 2023-03-16 2026-01-22
CVE-2023-28466 Moderate kernel(ANCK)5.10, kernel 完成修复 2023-03-16 2026-01-06
CVE-2023-28450 A flaw was found in Dnsmasq. The default maximum EDNS.0 UDP packet size was set to 4096 but should be 1232 because of DNS Flag ... Important dnsmasq 完成修复 2023-03-16 2026-01-09
CVE-2023-28101 A flaw was found in Flatpak, a system for building, distributing, and running sandboxed desktop applications on Linux. Suppose ... Moderate flatpak 完成修复 2023-03-16 2026-03-24
CVE-2023-28100 A flaw was found in Flatpak, a system for building, distributing, and running sandboxed desktop applications on Linux. It conta... Moderate flatpak 完成修复 2023-03-16 2026-03-24

第1页 | 上一页| 下一页 | 最后一页

©龙芯开源社区 all right reserved,powered by Gitbook文档更新时间: 2026-08-05 21:34:31

results matching ""

    No results matching ""

    results matching ""

      No results matching ""