CVEs (10,001)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Artifex DebianFedoraproject3Debian Linux FedoraMujsJun 17, 2026 May 18, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 compile in regexp.c in Artifex MuJS through 1.2.0 results in stack consumption because of unlimited recursion, a different issue than CVE-2019-11413. |
2Debian Needrestart Project2Debian Linux NeedrestartJun 17, 2026 May 17, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 needrestart 0.8 through 3.5 before 3.6 is prone to local privilege escalation. Regexes to detect the Perl, Python, and Ruby interpreters are not anchored, allowing a local user to escalate privileges when needrestart tri...Show more |
4Canonical DebianLinux+1 more11Debian Linux H300e FirmwareH300s Firmware+8 moreJun 17, 2026 May 17, 2022 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege escalation to root. This issue affects: Linux Kernel versions prior to 5.18; version 4.14 and later v...Show more |
5Debian FedoraprojectNetapp+2 more13Active Iq Unified Manager Debian LinuxEnterprise Linux+10 moreJun 17, 2026 May 16, 2022 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled regul...Show more |
3Debian LinuxNetapp10Debian Linux H300e FirmwareH300s Firmware+7 moreJun 17, 2026 May 16, 2022 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 A use-after-free flaw was found in the Linux kernel’s Atheros wireless adapter driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messages. This flaw allows a local user to cra...Show more |
3Debian IntelNetapp399Celeron J1750 Firmware Celeron J1800 FirmwareCeleron J1850 Firmware+396 moreJun 17, 2026 May 12, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Processor optimization removal or modification of security-critical code for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
2Debian Eventsource2Debian Linux EventsourceJun 17, 2026 May 12, 2022 N/A· v4 9.3 CRITICAL· v3 5.8 MEDIUM· v2 Improper Removal of Sensitive Information Before Storage or Transfer in GitHub repository eventsource/eventsource prior to v2.0.2. |
3Apache DebianOracle3Debian Linux Hospitality Cruise Shipboard Property Management SystemTomcatJun 17, 2026 May 12, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The documentation of Apache Tomcat 10.1.0-M1 to 10.1.0-M14, 10.0.0-M1 to 10.0.20, 9.0.13 to 9.0.62 and 8.5.38 to 8.5.78 for the EncryptInterceptor incorrectly stated it enabled Tomcat clustering to run over an untrusted...Show more |
3Debian LinuxNetapp138300 Firmware 8700 FirmwareA400 Firmware+10 moreJun 17, 2026 May 12, 2022 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 The Linux kernel before 5.17.2 mishandles seccomp permissions. The PTRACE_SEIZE code path allows attackers to bypass intended restrictions on setting the PT_SUSPEND_SECCOMP flag. |
4Debian FedoraprojectLibtiff+1 more4Debian Linux FedoraLibtiff+1 moreJun 17, 2026 May 11, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:624, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is avai...Show more |
4Apple DebianFedoraproject+1 more4Debian Linux FedoraMacos+1 moreJun 17, 2026 May 10, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Heap buffer overflow in vim_strncpy find_word in GitHub repository vim/vim prior to 8.2.4919. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution |
3Apple DebianRuby Lang3Debian Linux MacosRubyJun 17, 2026 May 9, 2022 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 There is a buffer over-read in Ruby before 2.6.10, 2.7.x before 2.7.6, 3.x before 3.0.4, and 3.1.x before 3.1.2. It occurs in String-to-Float conversion, including Kernel#Float and String#to_f. |
2Debian Htmldoc Project2Debian Linux HtmldocJun 17, 2026 May 9, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 There is a vulnerability in htmldoc 1.9.16. In image_load_jpeg function image.cxx when it calls malloc,'img->width' and 'img->height' they are large enough to cause an integer overflow. So, the malloc function may return...Show more |
2Debian Rarlab2Debian Linux UnrarJun 17, 2026 May 9, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR ar...Show more |
2Debian Imagemagick2Debian Linux ImagemagickJun 17, 2026 May 8, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 ImageMagick 7.1.0-27 is vulnerable to Buffer Overflow. |
5Apple DebianFedoraproject+2 more6Debian Linux FedoraHci Management Node+3 moreJun 17, 2026 May 8, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub repository vim/vim prior to 8.2.4899. This vulnerabilities are capable of crashing software, modify memory, and possible remote execution |
2Admesh Project Debian2Admesh Debian LinuxNov 21, 2024 May 8, 2022 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 ADMesh through 0.98.4 has a heap-based buffer over-read in stl_update_connects_remove_1 (called from stl_remove_degenerate) in connect.c in libadmesh.a. |
4Apple DebianFedoraproject+1 more4Debian Linux FedoraMacos+1 moreJun 17, 2026 May 7, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution |
2Debian Webkitgtk2Debian Linux WebkitgtkJun 17, 2026 May 6, 2022 N/A· v4 7.5 HIGH· v3 5.1 MEDIUM· v2 In WebKitGTK through 2.36.0 (and WPE WebKit), there is a heap-based buffer overflow in WebCore::TextureMapperLayer::setContentsLayer in WebCore/platform/graphics/texmap/TextureMapperLayer.cpp. |
4Debian FedoraprojectNetapp+1 more4Active Iq Unified Manager Debian LinuxFedora+1 moreJun 17, 2026 May 6, 2022 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 Rsyslog is a rocket-fast system for log processing. Modules for TCP syslog reception have a potential heap buffer overflow when octet-counted framing is used. This can result in a segfault or some other malfunction. As o...Show more |