Количество 18 824
Количество 18 824
CVE-2021-44964
CVE-2021-44879
In gc_data_segment in fs/f2fs/gc.c in the Linux kernel before 5.16.3 special files are not considered leading to a move_data_page NULL pointer dereference.
CVE-2021-44790
Possible buffer overflow when parsing multipart content in mod_lua of Apache HTTP Server 2.4.51 and earlier
CVE-2021-44758
CVE-2021-44733
CVE-2021-44732
Mbed TLS before 3.0.1 has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure.
CVE-2021-44716
CVE-2021-44647
CVE-2021-44533
CVE-2021-44532
CVE-2021-44531
CVE-2021-44269
An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV files. This issue triggered in function WavpackPackSamples of file src/pack_utils.c tainted variable cnt is too large that makes pointer sptr read beyond heap bound.
CVE-2021-44228
Apache Log4j Remote Code Execution Vulnerability
CVE-2021-44225
CVE-2021-44224
Possible NULL dereference or SSRF in forward proxy configurations in Apache HTTP Server 2.4.51 and earlier
CVE-2021-44142
CVE-2021-44141
CVE-2021-44038
An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update.
CVE-2021-43976
In the Linux kernel through 5.15.2 mwifiex_usb_recv in drivers/net/wireless/marvell/mwifiex/usb.c allows an attacker (who can connect a crafted USB device) to cause a denial of service (skb_over_panic).
CVE-2021-43975
In the Linux kernel through 5.15.2 hw_atl_utils_fw_rpc_wait in drivers/net/ethernet/aquantia/atlantic/hw_atl/hw_atl_utils.c allows an attacker (who can introduce a crafted device) to trigger an out-of-bounds write via a crafted length value.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVSS3: 6.3 | 0% Низкий | почти 4 года назад | ||
CVE-2021-44879 In gc_data_segment in fs/f2fs/gc.c in the Linux kernel before 5.16.3 special files are not considered leading to a move_data_page NULL pointer dereference. | CVSS3: 5.5 | 0% Низкий | почти 4 года назад | |
CVE-2021-44790 Possible buffer overflow when parsing multipart content in mod_lua of Apache HTTP Server 2.4.51 and earlier | CVSS3: 9.8 | 87% Высокий | около 4 лет назад | |
CVSS3: 7.5 | 0% Низкий | больше 1 года назад | ||
CVSS3: 7 | 0% Низкий | около 4 лет назад | ||
CVE-2021-44732 Mbed TLS before 3.0.1 has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure. | 1% Низкий | 5 месяцев назад | ||
CVSS3: 7.5 | 0% Низкий | около 4 лет назад | ||
CVSS3: 5.5 | 0% Низкий | почти 4 года назад | ||
CVSS3: 5.3 | 0% Низкий | почти 4 года назад | ||
CVSS3: 5.3 | 0% Низкий | почти 4 года назад | ||
CVSS3: 7.4 | 0% Низкий | почти 4 года назад | ||
CVE-2021-44269 An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV files. This issue triggered in function WavpackPackSamples of file src/pack_utils.c tainted variable cnt is too large that makes pointer sptr read beyond heap bound. | CVSS3: 5.5 | 0% Низкий | почти 4 года назад | |
CVE-2021-44228 Apache Log4j Remote Code Execution Vulnerability | 94% Критический | около 4 лет назад | ||
CVSS3: 5.4 | 0% Низкий | около 4 лет назад | ||
CVE-2021-44224 Possible NULL dereference or SSRF in forward proxy configurations in Apache HTTP Server 2.4.51 and earlier | CVSS3: 8.2 | 11% Средний | около 4 лет назад | |
CVSS3: 8.8 | 31% Средний | больше 1 года назад | ||
CVSS3: 4.3 | 0% Низкий | больше 1 года назад | ||
CVE-2021-44038 An issue was discovered in Quagga through 1.2.4. Unsafe chown/chmod operations in the suggested spec file allow users (with control of the non-root-owned directory /etc/quagga) to escalate their privileges to root upon package installation or update. | CVSS3: 7.8 | 0% Низкий | 4 месяца назад | |
CVE-2021-43976 In the Linux kernel through 5.15.2 mwifiex_usb_recv in drivers/net/wireless/marvell/mwifiex/usb.c allows an attacker (who can connect a crafted USB device) to cause a denial of service (skb_over_panic). | CVSS3: 4.6 | 0% Низкий | около 4 лет назад | |
CVE-2021-43975 In the Linux kernel through 5.15.2 hw_atl_utils_fw_rpc_wait in drivers/net/ethernet/aquantia/atlantic/hw_atl/hw_atl_utils.c allows an attacker (who can introduce a crafted device) to trigger an out-of-bounds write via a crafted length value. | CVSS3: 6.7 | 0% Низкий | около 4 лет назад |
Уязвимостей на страницу