Количество 18 824
Количество 18 824
CVE-2021-41336
Windows Kernel Information Disclosure Vulnerability
CVE-2021-41335
Windows Kernel Elevation of Privilege Vulnerability
CVE-2021-41334
Windows Desktop Bridge Elevation of Privilege Vulnerability
CVE-2021-41333
Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2021-41332
Windows Print Spooler Information Disclosure Vulnerability
CVE-2021-41331
Windows Media Audio Decoder Remote Code Execution Vulnerability
CVE-2021-41330
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
CVE-2021-4122
It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium such as a flash disk could use this flaw to force a user into permanently disabling the encryption layer of that medium.
CVE-2021-41186
ReDoS vulnerability in parser_apache2
CVE-2021-41103
Insufficiently restricted permissions on plugin directories
CVE-2021-41099
Integer overflow issue with strings in Redis
CVE-2021-41073
loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFERS to trigger a free of a kernel buffer as demonstrated by using /proc/<pid>/maps for exploitation.
CVE-2021-41072
CVE-2021-41054
tftpd_file.c in atftp through 0.7.4 has a buffer overflow because buffer-size handling does not properly consider the combination of data OACK and other options.
CVE-2021-4102
Chromium: CVE-2021-4102 Use after free in V8
CVE-2021-4101
Chromium: CVE-2021-4101 Heap buffer overflow in Swiftshader
CVE-2021-4100
Chromium: CVE-2021-4100 Object lifecycle issue in ANGLE
CVE-2021-4099
Chromium: CVE-2021-4099 Use after free in Swiftshader
CVE-2021-4098
Chromium: CVE-2021-4098 Insufficient data validation in Mojo
CVE-2021-4095
A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of service by issuing a KVM_XEN_HVM_SET_ATTR ioctl. This flaw affects Linux kernel versions prior to 5.17-rc1.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-41336 Windows Kernel Information Disclosure Vulnerability | CVSS3: 5.5 | 0% Низкий | больше 4 лет назад | |
CVE-2021-41335 Windows Kernel Elevation of Privilege Vulnerability | CVSS3: 7.8 | 0% Низкий | больше 4 лет назад | |
CVE-2021-41334 Windows Desktop Bridge Elevation of Privilege Vulnerability | CVSS3: 7 | 0% Низкий | больше 4 лет назад | |
CVE-2021-41333 Windows Print Spooler Elevation of Privilege Vulnerability | CVSS3: 7.8 | 1% Низкий | около 4 лет назад | |
CVE-2021-41332 Windows Print Spooler Information Disclosure Vulnerability | CVSS3: 6.5 | 21% Средний | больше 4 лет назад | |
CVE-2021-41331 Windows Media Audio Decoder Remote Code Execution Vulnerability | CVSS3: 7.8 | 3% Низкий | больше 4 лет назад | |
CVE-2021-41330 Microsoft Windows Media Foundation Remote Code Execution Vulnerability | CVSS3: 7.8 | 3% Низкий | больше 4 лет назад | |
CVE-2021-4122 It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium such as a flash disk could use this flaw to force a user into permanently disabling the encryption layer of that medium. | CVSS3: 4.3 | 0% Низкий | больше 3 лет назад | |
CVE-2021-41186 ReDoS vulnerability in parser_apache2 | CVSS3: 5.9 | 0% Низкий | 4 месяца назад | |
CVE-2021-41103 Insufficiently restricted permissions on plugin directories | CVSS3: 7.8 | 0% Низкий | больше 4 лет назад | |
CVE-2021-41099 Integer overflow issue with strings in Redis | CVSS3: 7.5 | 0% Низкий | больше 4 лет назад | |
CVE-2021-41073 loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFERS to trigger a free of a kernel buffer as demonstrated by using /proc/<pid>/maps for exploitation. | CVSS3: 7.8 | 1% Низкий | больше 4 лет назад | |
CVSS3: 8.1 | 4% Низкий | около 4 лет назад | ||
CVE-2021-41054 tftpd_file.c in atftp through 0.7.4 has a buffer overflow because buffer-size handling does not properly consider the combination of data OACK and other options. | CVSS3: 7.5 | 1% Низкий | больше 4 лет назад | |
CVE-2021-4102 Chromium: CVE-2021-4102 Use after free in V8 | 5% Низкий | около 4 лет назад | ||
CVE-2021-4101 Chromium: CVE-2021-4101 Heap buffer overflow in Swiftshader | 1% Низкий | около 4 лет назад | ||
CVE-2021-4100 Chromium: CVE-2021-4100 Object lifecycle issue in ANGLE | 1% Низкий | около 4 лет назад | ||
CVE-2021-4099 Chromium: CVE-2021-4099 Use after free in Swiftshader | 1% Низкий | около 4 лет назад | ||
CVE-2021-4098 Chromium: CVE-2021-4098 Insufficient data validation in Mojo | 0% Низкий | около 4 лет назад | ||
CVE-2021-4095 A NULL pointer dereference was found in the Linux kernel's KVM when dirty ring logging is enabled without an active vCPU context. An unprivileged local attacker on the host may use this flaw to cause a kernel oops condition and thus a denial of service by issuing a KVM_XEN_HVM_SET_ATTR ioctl. This flaw affects Linux kernel versions prior to 5.17-rc1. | CVSS3: 5.5 | 0% Низкий | почти 4 года назад |
Уязвимостей на страницу