Количество 26 124
Количество 26 124
CVE-2025-4435
Tarfile extracts filtered members when errorlevel=0
CVE-2025-4432
Ring: some aes functions may panic when overflow checking is enabled in ring
CVE-2025-43857
net-imap rubygem vulnerable to possible DoS by memory exhaustion
CVE-2025-43853
iwasm vulnerable to filesystem sandbox escape with symlink when using uvwasi feature
CVE-2025-4373
Glib: buffer underflow on glib through glib/gstring.c via function g_string_insert_unichar
CVE-2025-4372
Chromium: CVE-2025-4372 Use after free in WebAudio
CVE-2025-4330
Extraction filter bypass for linking outside extraction directory
CVE-2025-4287
PyTorch nccl.py torch.cuda.nccl.reduce denial of service
CVE-2025-4207
PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation
CVE-2025-4138
Bypassing extraction filter to create symlinks to arbitrary targets outside extraction directory
CVE-2025-41244
VMSA-2025-0015: VMware Aria Operations and VMware Tools updates address multiple vulnerabilities (CVE-2025-41244,CVE-2025-41245, CVE-2025-41246)
CVE-2025-4096
Chromium: CVE-2025-4096 Heap buffer overflow in HTML
CVE-2025-40928
JSON::XS before version 4.04 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impact
CVE-2025-40914
Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow
CVE-2025-40913
Net::Dropbear versions through 0.16 for Perl contains a dependency that may be susceptible to an integer overflow
CVE-2025-40909
Perl threads have a working directory race condition where file operations may target unintended paths
CVE-2025-40780
Cache poisoning due to weak PRNG
CVE-2025-40778
Cache poisoning attacks with unsolicited RRs
CVE-2025-40777
A possible assertion failure when 'stale-answer-client-timeout' is set to '0'
CVE-2025-40776
Birthday Attack against Resolvers supporting ECS
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-4435 Tarfile extracts filtered members when errorlevel=0 | CVSS3: 6.5 | 1% Низкий | 12 месяцев назад | |
CVE-2025-4432 Ring: some aes functions may panic when overflow checking is enabled in ring | CVSS3: 3.7 | 1% Низкий | 7 месяцев назад | |
CVE-2025-43857 net-imap rubygem vulnerable to possible DoS by memory exhaustion | 0% Низкий | 9 месяцев назад | ||
CVE-2025-43853 iwasm vulnerable to filesystem sandbox escape with symlink when using uvwasi feature | 0% Низкий | 4 дня назад | ||
CVE-2025-4373 Glib: buffer underflow on glib through glib/gstring.c via function g_string_insert_unichar | CVSS3: 6.5 | 1% Низкий | 12 месяцев назад | |
CVE-2025-4372 Chromium: CVE-2025-4372 Use after free in WebAudio | 0% Низкий | больше 1 года назад | ||
CVE-2025-4330 Extraction filter bypass for linking outside extraction directory | CVSS3: 7.5 | 1% Низкий | около 1 года назад | |
CVE-2025-4287 PyTorch nccl.py torch.cuda.nccl.reduce denial of service | 0% Низкий | 5 дней назад | ||
CVE-2025-4207 PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation | CVSS3: 5.9 | 1% Низкий | около 1 года назад | |
CVE-2025-4138 Bypassing extraction filter to create symlinks to arbitrary targets outside extraction directory | CVSS3: 7.5 | 1% Низкий | около 1 года назад | |
CVE-2025-41244 VMSA-2025-0015: VMware Aria Operations and VMware Tools updates address multiple vulnerabilities (CVE-2025-41244,CVE-2025-41245, CVE-2025-41246) | CVSS3: 7.8 | 8% Низкий | 24 дня назад | |
CVE-2025-4096 Chromium: CVE-2025-4096 Heap buffer overflow in HTML | 0% Низкий | больше 1 года назад | ||
CVE-2025-40928 JSON::XS before version 4.04 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impact | CVSS3: 7.5 | 1% Низкий | 11 месяцев назад | |
CVE-2025-40914 Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад | |
CVE-2025-40913 Net::Dropbear versions through 0.16 for Perl contains a dependency that may be susceptible to an integer overflow | CVSS3: 6.5 | 0% Низкий | 12 месяцев назад | |
CVE-2025-40909 Perl threads have a working directory race condition where file operations may target unintended paths | CVSS3: 5.9 | 0% Низкий | около 1 года назад | |
CVE-2025-40780 Cache poisoning due to weak PRNG | CVSS3: 8.6 | 0% Низкий | 10 месяцев назад | |
CVE-2025-40778 Cache poisoning attacks with unsolicited RRs | CVSS3: 8.6 | 1% Низкий | 9 месяцев назад | |
CVE-2025-40777 A possible assertion failure when 'stale-answer-client-timeout' is set to '0' | CVSS3: 7.5 | 1% Низкий | 12 месяцев назад | |
CVE-2025-40776 Birthday Attack against Resolvers supporting ECS | 0% Низкий | 10 дней назад |
Уязвимостей на страницу