Логотип exploitDog
source:"msrc"
Консоль
Логотип exploitDog

exploitDog

source:"msrc"

Количество 18 769

Количество 18 769

msrc логотип

CVE-2021-28235

почти 3 года назад

Authentication vulnerability found in Etcd-io v.3.4.10 allows remote attackers to escalate privileges via the debug function.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2021-28216

5 месяцев назад

BootPerformanceTable pointer is read from an NVRAM variable in PEI. Recommend setting PcdFirmwarePerformanceDataTableS3Support to FALSE.

EPSS: Низкий
msrc логотип

CVE-2021-28211

5 месяцев назад

A heap overflow in LzmaUefiDecompressGetInfo function in EDK II.

EPSS: Низкий
msrc логотип

CVE-2021-28210

5 месяцев назад

An unlimited recursion in DxeCore in EDK II.

EPSS: Низкий
msrc логотип

CVE-2021-28153

почти 5 лет назад

An issue was discovered in GNOME GLib before 2.66.8. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION to replace a path that is a dangling symlink it incorrectly also creates the target of the symlink as an empty file which could conceivably have security relevance if the symlink is attacker-controlled. (If the path is a symlink to a file that already exists then the contents of that file correctly remain unchanged.)

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2021-28091

около 4 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-28041

почти 5 лет назад

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios such as unconstrained agent-socket access on a legacy operating system or the forwarding of an agent to an attacker-controlled host.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2021-27928

почти 5 лет назад

A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37 10.3 before 10.3.28 10.4 before 10.4.18 and 10.5 before 10.5.9; Percona Server through 2021-03-03; and the wsrep patch through 2021-03-03 for MySQL. An untrusted search path leads to eval injection in which a database SUPER user can execute OS commands after modifying wsrep_provider and wsrep_notify_cmd. NOTE: this does not affect an Oracle product.

CVSS3: 7.2
EPSS: Средний
msrc логотип

CVE-2021-27918

почти 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27803

почти 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27506

почти 5 лет назад

The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19 3.11.7 and 4.2.1.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-27378

больше 1 года назад

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2021-27367

4 месяца назад

Controller/Backend/FileEditController.php and Controller/Backend/FilemanagerController.php in Bolt before 4.1.13 allow Directory Traversal.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27365

почти 5 лет назад

An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks and can exceed the PAGE_SIZE value. An unprivileged user can send a Netlink message that is associated with iSCSI and has a length up to the maximum length of a Netlink message.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-27364

почти 5 лет назад

An issue was discovered in the Linux kernel through 5.11.3. drivers/scsi/scsi_transport_iscsi.c is adversely affected by the ability of an unprivileged user to craft Netlink messages.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2021-27363

почти 5 лет назад

An issue was discovered in the Linux kernel through 5.11.3. A kernel pointer leak can be used to determine the address of the iscsi_transport structure. When an iSCSI transport is registered with the iSCSI subsystem the transport's handle is available to unprivileged users via the sysfs file system at /sys/class/iscsi_transport/$TRANSPORT_NAME/handle. When read the show_transport_handle function (in drivers/scsi/scsi_transport_iscsi.c) is called which leaks the handle. This handle is actually the pointer to an iscsi_transport struct in the kernel module's global variables.

CVSS3: 4.4
EPSS: Низкий
msrc логотип

CVE-2021-27291

почти 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27219

почти 5 лет назад

An issue was discovered in GNOME GLib before 2.66.6 and 2.67.x before 2.67.3. The function g_bytes_new has an integer overflow on 64-bit platforms due to an implicit cast from 64 bits to 32 bits. The overflow could potentially lead to memory corruption.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27218

почти 5 лет назад

An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with a buffer of 4GB or more on a 64-bit platform the length would be truncated modulo 2**32 causing unintended length truncation.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27212

почти 5 лет назад

In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet resulting in a denial of service (daemon exit) via a short timestamp. This is related to schema_init.c and checkTime.

CVSS3: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2021-28235

Authentication vulnerability found in Etcd-io v.3.4.10 allows remote attackers to escalate privileges via the debug function.

CVSS3: 9.8
0%
Низкий
почти 3 года назад
msrc логотип
CVE-2021-28216

BootPerformanceTable pointer is read from an NVRAM variable in PEI. Recommend setting PcdFirmwarePerformanceDataTableS3Support to FALSE.

0%
Низкий
5 месяцев назад
msrc логотип
CVE-2021-28211

A heap overflow in LzmaUefiDecompressGetInfo function in EDK II.

0%
Низкий
5 месяцев назад
msrc логотип
CVE-2021-28210

An unlimited recursion in DxeCore in EDK II.

0%
Низкий
5 месяцев назад
msrc логотип
CVE-2021-28153

An issue was discovered in GNOME GLib before 2.66.8. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION to replace a path that is a dangling symlink it incorrectly also creates the target of the symlink as an empty file which could conceivably have security relevance if the symlink is attacker-controlled. (If the path is a symlink to a file that already exists then the contents of that file correctly remain unchanged.)

CVSS3: 5.3
1%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 7.5
1%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-28041

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios such as unconstrained agent-socket access on a legacy operating system or the forwarding of an agent to an attacker-controlled host.

CVSS3: 7.1
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-27928

A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37 10.3 before 10.3.28 10.4 before 10.4.18 and 10.5 before 10.5.9; Percona Server through 2021-03-03; and the wsrep patch through 2021-03-03 for MySQL. An untrusted search path leads to eval injection in which a database SUPER user can execute OS commands after modifying wsrep_provider and wsrep_notify_cmd. NOTE: this does not affect an Oracle product.

CVSS3: 7.2
47%
Средний
почти 5 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-27506

The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19 3.11.7 and 4.2.1.

CVSS3: 5.5
0%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 9.8
0%
Низкий
больше 1 года назад
msrc логотип
CVE-2021-27367

Controller/Backend/FileEditController.php and Controller/Backend/FilemanagerController.php in Bolt before 4.1.13 allow Directory Traversal.

CVSS3: 7.5
0%
Низкий
4 месяца назад
msrc логотип
CVE-2021-27365

An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks and can exceed the PAGE_SIZE value. An unprivileged user can send a Netlink message that is associated with iSCSI and has a length up to the maximum length of a Netlink message.

CVSS3: 7.8
1%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-27364

An issue was discovered in the Linux kernel through 5.11.3. drivers/scsi/scsi_transport_iscsi.c is adversely affected by the ability of an unprivileged user to craft Netlink messages.

CVSS3: 7.1
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-27363

An issue was discovered in the Linux kernel through 5.11.3. A kernel pointer leak can be used to determine the address of the iscsi_transport structure. When an iSCSI transport is registered with the iSCSI subsystem the transport's handle is available to unprivileged users via the sysfs file system at /sys/class/iscsi_transport/$TRANSPORT_NAME/handle. When read the show_transport_handle function (in drivers/scsi/scsi_transport_iscsi.c) is called which leaks the handle. This handle is actually the pointer to an iscsi_transport struct in the kernel module's global variables.

CVSS3: 4.4
0%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 7.5
3%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-27219

An issue was discovered in GNOME GLib before 2.66.6 and 2.67.x before 2.67.3. The function g_bytes_new has an integer overflow on 64-bit platforms due to an implicit cast from 64 bits to 32 bits. The overflow could potentially lead to memory corruption.

CVSS3: 7.5
2%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-27218

An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with a buffer of 4GB or more on a 64-bit platform the length would be truncated modulo 2**32 causing unintended length truncation.

CVSS3: 7.5
5%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-27212

In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet resulting in a denial of service (daemon exit) via a short timestamp. This is related to schema_init.c and checkTime.

CVSS3: 7.5
22%
Средний
почти 5 лет назад

Уязвимостей на страницу