Количество 18 824
Количество 18 824
CVE-2021-46023
An Untrusted Pointer Dereference was discovered in function mrb_vm_exec in mruby before 3.1.0-rc. The vulnerability causes a segmentation fault and application crash.
CVE-2021-45985
Mitre: CVE-2021-45985 Erroneous finalizer call in Lua leads to a heap-based buffer over-read
CVE-2021-45960
CVE-2021-45957
CVE-2021-45956
CVE-2021-45955
CVE-2021-45954
CVE-2021-45953
CVE-2021-45952
CVE-2021-45868
In the Linux kernel before 5.15.3 fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can for example lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.
CVE-2021-45707
CVE-2021-45486
CVE-2021-45485
CVE-2021-45480
An issue was discovered in the Linux kernel before 5.15.11. There is a memory leak in the __rds_conn_create() function in net/rds/connection.c in a certain combination of circumstances.
CVE-2021-45469
CVE-2021-45444
In zsh before 5.8.1 an attacker can achieve code execution if they control a command output inside the prompt as demonstrated by a %F argument. This occurs because of recursive PROMPT_SUBST expansion.
CVE-2021-45402
The check_alu_op() function in kernel/bpf/verifier.c in the Linux kernel through v5.16-rc5 did not properly update bounds while handling the mov32 instruction which allows local users to obtain potentially sensitive address information aka a "pointer leak."
CVE-2021-45095
pep_sock_accept in net/phonet/pep.c in the Linux kernel through 5.15.8 has a refcount leak.
CVE-2021-45079
CVE-2021-45078
stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact as demonstrated by an out-of-bounds write. NOTE: this issue exists because of an incorrect fix for CVE-2018-12699.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-46023 An Untrusted Pointer Dereference was discovered in function mrb_vm_exec in mruby before 3.1.0-rc. The vulnerability causes a segmentation fault and application crash. | CVSS3: 7.5 | 0% Низкий | почти 3 года назад | |
CVE-2021-45985 Mitre: CVE-2021-45985 Erroneous finalizer call in Lua leads to a heap-based buffer over-read | CVSS3: 5.5 | 0% Низкий | около 1 года назад | |
CVSS3: 8.8 | 0% Низкий | около 4 лет назад | ||
CVSS3: 9.8 | 0% Низкий | почти 4 года назад | ||
CVSS3: 9.8 | 0% Низкий | почти 4 года назад | ||
CVSS3: 9.8 | 0% Низкий | почти 4 года назад | ||
CVSS3: 9.8 | 0% Низкий | почти 4 года назад | ||
CVSS3: 9.8 | 0% Низкий | почти 4 года назад | ||
CVSS3: 9.8 | 0% Низкий | почти 4 года назад | ||
CVE-2021-45868 In the Linux kernel before 5.15.3 fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can for example lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file. | CVSS3: 5.5 | 0% Низкий | почти 4 года назад | |
CVSS3: 9.8 | 0% Низкий | больше 1 года назад | ||
CVSS3: 3.5 | 0% Низкий | около 4 лет назад | ||
CVSS3: 7.5 | 1% Низкий | около 4 лет назад | ||
CVE-2021-45480 An issue was discovered in the Linux kernel before 5.15.11. There is a memory leak in the __rds_conn_create() function in net/rds/connection.c in a certain combination of circumstances. | CVSS3: 5.5 | 0% Низкий | около 4 лет назад | |
CVSS3: 7.8 | 0% Низкий | около 4 лет назад | ||
CVE-2021-45444 In zsh before 5.8.1 an attacker can achieve code execution if they control a command output inside the prompt as demonstrated by a %F argument. This occurs because of recursive PROMPT_SUBST expansion. | CVSS3: 7.8 | 0% Низкий | почти 4 года назад | |
CVE-2021-45402 The check_alu_op() function in kernel/bpf/verifier.c in the Linux kernel through v5.16-rc5 did not properly update bounds while handling the mov32 instruction which allows local users to obtain potentially sensitive address information aka a "pointer leak." | CVSS3: 5.5 | 0% Низкий | почти 4 года назад | |
CVE-2021-45095 pep_sock_accept in net/phonet/pep.c in the Linux kernel through 5.15.8 has a refcount leak. | CVSS3: 5.5 | 0% Низкий | около 4 лет назад | |
CVSS3: 9.1 | 0% Низкий | около 4 лет назад | ||
CVE-2021-45078 stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact as demonstrated by an out-of-bounds write. NOTE: this issue exists because of an incorrect fix for CVE-2018-12699. | CVSS3: 7.8 | 0% Низкий | около 4 лет назад |
Уязвимостей на страницу