CVEs (10,001)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Debian Linux2Debian Linux Linux KernelJun 17, 2026 Jun 18, 2022 N/A· v4 3.3 LOW· v3 2.1 LOW· v2 drivers/block/floppy.c in the Linux kernel before 5.17.6 is vulnerable to a denial of service, because of a concurrency use-after-free flaw after deallocating raw_cmd in the raw_cmd_ioctl function. |
2Debian Genivi2Debian Linux Diagnostic Log And TraceJun 17, 2026 Jun 16, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An issue in dlt_config_file_parser.c of dlt-daemon v2.18.8 allows attackers to cause a double free via crafted TCP packets. |
In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when pdo_mysql extension with mysqlnd driver, if the third party is allowed to supply host to connect to and the password for the connection,...Show more |
In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory usin...Show more |
5Debian FedoraprojectIntel+2 more7Debian Linux EsxiFedora+4 moreJun 17, 2026 Jun 15, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
3Debian IntelXen5Debian Linux Sgx DcapSgx Psw+2 moreJun 17, 2026 Jun 15, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Incomplete cleanup in specific special register read operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
5Debian FedoraprojectIntel+2 more7Debian Linux EsxiFedora+4 moreJun 17, 2026 Jun 15, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
5Debian FedoraprojectIntel+2 more7Debian Linux EsxiFedora+4 moreJun 17, 2026 Jun 15, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
XFCE 4.16 allows attackers to execute arbitrary code because xdg-open can execute a .desktop file on an attacker-controlled FTP server. |
3Debian DrupalGuzzlephp3Debian Linux DrupalGuzzleJun 17, 2026 Jun 10, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Guzzle is an open source PHP HTTP client. In affected versions `Authorization` headers on requests are sensitive information. On making a request using the `https` scheme to a server which responds with a redirect to a U...Show more |
3Debian DrupalGuzzlephp3Debian Linux DrupalGuzzleJun 17, 2026 Jun 10, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Guzzle is an open source PHP HTTP client. In affected versions the `Cookie` headers on requests are sensitive information. On making a request using the `https` scheme to a server which responds with a redirect to a URI...Show more |
2Debian Oracle2Debian Linux LinuxJun 17, 2026 Jun 9, 2022 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 KGDB and KDB allow read and write access to kernel memory, and thus should be restricted during lockdown. An attacker with access to a serial port could trigger the debugger so it is important that the debugger respect t...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Jun 9, 2022 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 x86 pv: Insufficient care with non-coherent mappings T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen maintains a type reference count f...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Jun 9, 2022 N/A· v4 6.7 MEDIUM· v3 7.2 HIGH· v2 x86 pv: Insufficient care with non-coherent mappings T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Xen maintains a type reference count f...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Jun 9, 2022 N/A· v4 6.4 MEDIUM· v3 6.9 MEDIUM· v2 x86 pv: Race condition in typeref acquisition Xen maintains a type reference count for pages, in addition to a regular reference count. This scheme is used to maintain invariants required for Xen's safety, e.g. PV guests...Show more |
3Debian FedoraprojectFirejail Project3Debian Linux FedoraFirejailJun 17, 2026 Jun 9, 2022 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 A Privilege Context Switching issue was discovered in join.c in Firejail 0.9.68. By crafting a bogus Firejail container that is accepted by the Firejail setuid-root program as a join target, a local attacker can enter an...Show more |
2Debian Teluu2Debian Linux PjsipJun 17, 2026 Jun 9, 2022 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In versions prior to and including 2.12.1 a stack b...Show more |
4Apple DebianFedoraproject+1 more4Debian Linux FedoraMacos+1 moreJun 17, 2026 Jun 9, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Out-of-bounds Write in GitHub repository vim/vim prior to 8.2. |
3Debian FedoraprojectLinuxfoundation3Containerd Debian LinuxFedoraJun 17, 2026 Jun 9, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 containerd is an open source container runtime. A bug was found in the containerd's CRI implementation where programs inside a container can cause the containerd daemon to consume memory without bound during invocation o...Show more |
23cx Debian2Debian Linux Phone System FirmwareJun 17, 2026 Jun 7, 2022 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 PhoneSystem Terminal in 3CX Phone System (Debian based installation) 16.0.0.1570 allows an authenticated attacker to run arbitrary commands with the phonesystem user privileges because of "<space><space> followed by <shi...Show more |