Количество 25 045
Количество 25 045
CVE-2026-54986
Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-54983
Windows Active Directory Federation Services Denial of Service Vulnerability
CVE-2026-54982
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability
CVE-2026-54908
Pion DTLS: Denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message
CVE-2026-54906
concurrent-ruby: ReadWriteLock allows wrong-thread write release and stray read-release counter corruption
CVE-2026-54905
concurrent-ruby: `ReentrantReadWriteLock` read-count overflow grants a write lock without exclusivity
CVE-2026-54891
Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl
CVE-2026-54886
SSH SFTP server denial of service via extended channel data infinite loop
CVE-2026-5479
wolfSSL EVP ChaCha20-Poly1305 AEAD authentication tag
CVE-2026-5477
Prefix-substitution forgery via integer overflow in wolfCrypt CMAC
CVE-2026-54679
jq: potential integer overflow in jvp_string_append
CVE-2026-5466
wc_VerifyEccsiHash missing sanity check
CVE-2026-5460
Heap Use-After-Free in PQC Hybrid KeyShare Error Cleanup in wolfSSL TLS 1.3
CVE-2026-5450
scanf %mc off-by-one heap buffer overflow
CVE-2026-5448
1-2 Byte Buffer Overflow in wolfSSL_X509_notAfter/notBefore
CVE-2026-5447
Heap buffer overflow in CertFromX509() via AuthorityKeyIdentifier
CVE-2026-54478
DNS Cookie bypass when combined with proxy-protocol use
CVE-2026-5446
wolfSSL ARIA-GCM TLS 1.2/DTLS 1.2 GCM nonce reuse
CVE-2026-54411
Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeatedly drive authentication through a calling service to recover the plaintext password of a target account by measuring response-timing differences. The comparison uses strncmp() (or strncasecmp() when PAM_ICASE_ARG is set) preceded by a length-equality check, so the time to reject a candidate depends on the index of the first differing byte and on whether the candidate's length matches the stored password, leaking the password length and individual prefix bytes. The vulnerable path is reached when the administrator configures pam_userdb with crypt=none, with an unrecognized crypt method, or without a crypt= argument, causing the module to store and compare credentials in plaintext.
CVE-2026-54371
attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-54986 Windows Win32k Elevation of Privilege Vulnerability | CVSS3: 7.8 | 2% Низкий | 20 дней назад | |
CVE-2026-54983 Windows Active Directory Federation Services Denial of Service Vulnerability | CVSS3: 7.5 | 1% Низкий | 20 дней назад | |
CVE-2026-54982 Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability | CVSS3: 8.8 | 0% Низкий | 20 дней назад | |
CVE-2026-54908 Pion DTLS: Denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message | 0% Низкий | 23 дня назад | ||
CVE-2026-54906 concurrent-ruby: ReadWriteLock allows wrong-thread write release and stray read-release counter corruption | CVSS3: 9.8 | 0% Низкий | около 1 месяца назад | |
CVE-2026-54905 concurrent-ruby: `ReentrantReadWriteLock` read-count overflow grants a write lock without exclusivity | CVSS3: 5.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-54891 Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl | 0% Низкий | 27 дней назад | ||
CVE-2026-54886 SSH SFTP server denial of service via extended channel data infinite loop | 0% Низкий | 23 дня назад | ||
CVE-2026-5479 wolfSSL EVP ChaCha20-Poly1305 AEAD authentication tag | 0% Низкий | 4 месяца назад | ||
CVE-2026-5477 Prefix-substitution forgery via integer overflow in wolfCrypt CMAC | 0% Низкий | 4 месяца назад | ||
CVE-2026-54679 jq: potential integer overflow in jvp_string_append | 0% Низкий | около 1 месяца назад | ||
CVE-2026-5466 wc_VerifyEccsiHash missing sanity check | 0% Низкий | 4 месяца назад | ||
CVE-2026-5460 Heap Use-After-Free in PQC Hybrid KeyShare Error Cleanup in wolfSSL TLS 1.3 | 0% Низкий | 4 месяца назад | ||
CVE-2026-5450 scanf %mc off-by-one heap buffer overflow | 1% Низкий | 3 месяца назад | ||
CVE-2026-5448 1-2 Byte Buffer Overflow in wolfSSL_X509_notAfter/notBefore | 0% Низкий | 4 месяца назад | ||
CVE-2026-5447 Heap buffer overflow in CertFromX509() via AuthorityKeyIdentifier | 0% Низкий | 4 месяца назад | ||
CVE-2026-54478 DNS Cookie bypass when combined with proxy-protocol use | CVSS3: 3.7 | 0% Низкий | 11 дней назад | |
CVE-2026-5446 wolfSSL ARIA-GCM TLS 1.2/DTLS 1.2 GCM nonce reuse | 0% Низкий | 4 месяца назад | ||
CVE-2026-54411 Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeatedly drive authentication through a calling service to recover the plaintext password of a target account by measuring response-timing differences. The comparison uses strncmp() (or strncasecmp() when PAM_ICASE_ARG is set) preceded by a length-equality check, so the time to reject a candidate depends on the index of the first differing byte and on whether the candidate's length matches the stored password, leaking the password length and individual prefix bytes. The vulnerable path is reached when the administrator configures pam_userdb with crypt=none, with an unrecognized crypt method, or without a crypt= argument, causing the module to store and compare credentials in plaintext. | 0% Низкий | около 2 месяцев назад | ||
CVE-2026-54371 attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr | CVSS3: 7.1 | 0% Низкий | около 1 месяца назад |
Уязвимостей на страницу