Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 25 065

Количество 25 065

msrc логотип

CVE-2021-28216

6 месяцев назад

BootPerformanceTable pointer is read from an NVRAM variable in PEI. Recommend setting PcdFirmwarePerformanceDataTableS3Support to FALSE.

EPSS: Низкий
msrc логотип

CVE-2021-28211

11 месяцев назад

A heap overflow in LzmaUefiDecompressGetInfo function in EDK II.

EPSS: Низкий
msrc логотип

CVE-2021-28210

11 месяцев назад

An unlimited recursion in DxeCore in EDK II.

EPSS: Низкий
msrc логотип

CVE-2021-28153

больше 5 лет назад

An issue was discovered in GNOME GLib before 2.66.8. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION to replace a path that is a dangling symlink it incorrectly also creates the target of the symlink as an empty file which could conceivably have security relevance if the symlink is attacker-controlled. (If the path is a symlink to a file that already exists then the contents of that file correctly remain unchanged.)

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2021-28091

больше 4 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-28041

больше 5 лет назад

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios such as unconstrained agent-socket access on a legacy operating system or the forwarding of an agent to an attacker-controlled host.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2021-27928

больше 5 лет назад

A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37 10.3 before 10.3.28 10.4 before 10.4.18 and 10.5 before 10.5.9; Percona Server through 2021-03-03; and the wsrep patch through 2021-03-03 for MySQL. An untrusted search path leads to eval injection in which a database SUPER user can execute OS commands after modifying wsrep_provider and wsrep_notify_cmd. NOTE: this does not affect an Oracle product.

CVSS3: 7.2
EPSS: Средний
msrc логотип

CVE-2021-27918

больше 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27803

больше 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27506

больше 5 лет назад

The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19 3.11.7 and 4.2.1.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-27378

6 месяцев назад

An issue was discovered in the rand_core crate before 0.6.2 for Rust. Because read_u32_into and read_u64_into mishandle certain buffer-length checks a random number generator may be seeded with too little data.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2021-27367

10 месяцев назад

Controller/Backend/FileEditController.php and Controller/Backend/FilemanagerController.php in Bolt before 4.1.13 allow Directory Traversal.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27365

больше 5 лет назад

An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks and can exceed the PAGE_SIZE value. An unprivileged user can send a Netlink message that is associated with iSCSI and has a length up to the maximum length of a Netlink message.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-27364

больше 5 лет назад

An issue was discovered in the Linux kernel through 5.11.3. drivers/scsi/scsi_transport_iscsi.c is adversely affected by the ability of an unprivileged user to craft Netlink messages.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2021-27363

больше 5 лет назад

An issue was discovered in the Linux kernel through 5.11.3. A kernel pointer leak can be used to determine the address of the iscsi_transport structure. When an iSCSI transport is registered with the iSCSI subsystem the transport's handle is available to unprivileged users via the sysfs file system at /sys/class/iscsi_transport/$TRANSPORT_NAME/handle. When read the show_transport_handle function (in drivers/scsi/scsi_transport_iscsi.c) is called which leaks the handle. This handle is actually the pointer to an iscsi_transport struct in the kernel module's global variables.

CVSS3: 4.4
EPSS: Низкий
msrc логотип

CVE-2021-27291

больше 5 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27219

больше 5 лет назад

An issue was discovered in GNOME GLib before 2.66.6 and 2.67.x before 2.67.3. The function g_bytes_new has an integer overflow on 64-bit platforms due to an implicit cast from 64 bits to 32 bits. The overflow could potentially lead to memory corruption.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27218

больше 5 лет назад

An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with a buffer of 4GB or more on a 64-bit platform the length would be truncated modulo 2**32 causing unintended length truncation.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-27212

больше 5 лет назад

In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet resulting in a denial of service (daemon exit) via a short timestamp. This is related to schema_init.c and checkTime.

CVSS3: 7.5
EPSS: Средний
msrc логотип

CVE-2021-27135

больше 4 лет назад

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2021-28216

BootPerformanceTable pointer is read from an NVRAM variable in PEI. Recommend setting PcdFirmwarePerformanceDataTableS3Support to FALSE.

0%
Низкий
6 месяцев назад
msrc логотип
CVE-2021-28211

A heap overflow in LzmaUefiDecompressGetInfo function in EDK II.

0%
Низкий
11 месяцев назад
msrc логотип
CVE-2021-28210

An unlimited recursion in DxeCore in EDK II.

0%
Низкий
11 месяцев назад
msrc логотип
CVE-2021-28153

An issue was discovered in GNOME GLib before 2.66.8. When g_file_replace() is used with G_FILE_CREATE_REPLACE_DESTINATION to replace a path that is a dangling symlink it incorrectly also creates the target of the symlink as an empty file which could conceivably have security relevance if the symlink is attacker-controlled. (If the path is a symlink to a file that already exists then the contents of that file correctly remain unchanged.)

CVSS3: 5.3
3%
Низкий
больше 5 лет назад
msrc логотип
CVSS3: 7.5
1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-28041

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios such as unconstrained agent-socket access on a legacy operating system or the forwarding of an agent to an attacker-controlled host.

CVSS3: 7.1
3%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-27928

A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37 10.3 before 10.3.28 10.4 before 10.4.18 and 10.5 before 10.5.9; Percona Server through 2021-03-03; and the wsrep patch through 2021-03-03 for MySQL. An untrusted search path leads to eval injection in which a database SUPER user can execute OS commands after modifying wsrep_provider and wsrep_notify_cmd. NOTE: this does not affect an Oracle product.

CVSS3: 7.2
38%
Средний
больше 5 лет назад
msrc логотип
CVSS3: 7.5
3%
Низкий
больше 5 лет назад
msrc логотип
CVSS3: 7.5
1%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-27506

The ClamAV Engine (version 0.103.1 and below) component embedded in Storsmshield Network Security (SNS) is subject to DoS in case of parsing of malformed png files. This affect Netasq versions 9.1.0 to 9.1.11 and SNS versions 1.0.0 to 4.2.0. This issue is fixed in SNS 3.7.19 3.11.7 and 4.2.1.

CVSS3: 5.5
1%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-27378

An issue was discovered in the rand_core crate before 0.6.2 for Rust. Because read_u32_into and read_u64_into mishandle certain buffer-length checks a random number generator may be seeded with too little data.

CVSS3: 9.8
1%
Низкий
6 месяцев назад
msrc логотип
CVE-2021-27367

Controller/Backend/FileEditController.php and Controller/Backend/FilemanagerController.php in Bolt before 4.1.13 allow Directory Traversal.

CVSS3: 7.5
2%
Низкий
10 месяцев назад
msrc логотип
CVE-2021-27365

An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks and can exceed the PAGE_SIZE value. An unprivileged user can send a Netlink message that is associated with iSCSI and has a length up to the maximum length of a Netlink message.

CVSS3: 7.8
2%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-27364

An issue was discovered in the Linux kernel through 5.11.3. drivers/scsi/scsi_transport_iscsi.c is adversely affected by the ability of an unprivileged user to craft Netlink messages.

CVSS3: 7.1
1%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-27363

An issue was discovered in the Linux kernel through 5.11.3. A kernel pointer leak can be used to determine the address of the iscsi_transport structure. When an iSCSI transport is registered with the iSCSI subsystem the transport's handle is available to unprivileged users via the sysfs file system at /sys/class/iscsi_transport/$TRANSPORT_NAME/handle. When read the show_transport_handle function (in drivers/scsi/scsi_transport_iscsi.c) is called which leaks the handle. This handle is actually the pointer to an iscsi_transport struct in the kernel module's global variables.

CVSS3: 4.4
1%
Низкий
больше 5 лет назад
msrc логотип
CVSS3: 7.5
4%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-27219

An issue was discovered in GNOME GLib before 2.66.6 and 2.67.x before 2.67.3. The function g_bytes_new has an integer overflow on 64-bit platforms due to an implicit cast from 64 bits to 32 bits. The overflow could potentially lead to memory corruption.

CVSS3: 7.5
3%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-27218

An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with a buffer of 4GB or more on a 64-bit platform the length would be truncated modulo 2**32 causing unintended length truncation.

CVSS3: 7.5
4%
Низкий
больше 5 лет назад
msrc логотип
CVE-2021-27212

In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet resulting in a denial of service (daemon exit) via a short timestamp. This is related to schema_init.c and checkTime.

CVSS3: 7.5
64%
Средний
больше 5 лет назад
msrc логотип
CVSS3: 9.8
8%
Низкий
больше 4 лет назад

Уязвимостей на страницу