CVEs (10,001)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Abcm2ps Project DebianFedoraproject3Abcm2ps Debian LinuxFedoraJun 17, 2026 Mar 10, 2022 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 An out-of-bounds read in the function write_title() in subs.c of abcm2ps v8.14.11 allows remote attackers to cause a Denial of Service (DoS) via unspecified vectors. |
3Abcm2ps Project DebianFedoraproject3Abcm2ps Debian LinuxFedoraJun 17, 2026 Mar 10, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 Stack-based buffer overflow in the function get_key in parse.c of abcm2ps v8.14.11 allows remote attackers to cause a Denial of Service (DoS) via unspecified vectors. |
3Abcm2ps Project DebianFedoraproject3Abcm2ps Debian LinuxFedoraJun 17, 2026 Mar 10, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 abcm2ps v8.14.11 was discovered to contain an out-of-bounds read in the function calculate_beam at draw.c. |
3Debian FedoraprojectZabbix3Debian Linux FedoraFrontendJun 17, 2026 Mar 9, 2022 N/A· v4 4.4 MEDIUM· v3 2.1 LOW· v2 An authenticated user can create a link with reflected Javascript code inside it for graphs’ page and send it to other users. The payload can be executed only with a known CSRF token value of the victim, which is changed...Show more |
3Debian FedoraprojectZabbix3Debian Linux FedoraFrontendJun 17, 2026 Mar 9, 2022 N/A· v4 4.4 MEDIUM· v3 2.1 LOW· v2 An authenticated user can create a link with reflected Javascript code inside it for services’ page and send it to other users. The payload can be executed only with a known CSRF token value of the victim, which is chang...Show more |
3Debian FedoraprojectZabbix3Debian Linux FedoraFrontendJun 17, 2026 Mar 9, 2022 N/A· v4 4.4 MEDIUM· v3 2.1 LOW· v2 An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modi...Show more |
3Debian FedoraprojectRust Lang3Debian Linux FedoraRegexJun 17, 2026 Mar 8, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 regex is an implementation of regular expressions for the Rust language. The regex crate features built-in mitigations to prevent denial of service attacks caused by untrusted regexes, or untrusted input matched by trust...Show more |
2Debian Readymedia Project2Debian Linux ReadymediaJun 17, 2026 Mar 6, 2022 N/A· v4 7.4 HIGH· v3 4.3 MEDIUM· v2 A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files. |
3Debian FedoraprojectNetwork Block Device Project3Debian Linux FedoraNetwork Block DeviceJun 17, 2026 Mar 6, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 In nbd-server in nbd before 3.24, there is a stack-based buffer overflow. An attacker can cause a buffer overflow in the parsing of the name field by sending a crafted NBD_OPT_INFO or NBD_OPT_GO message with an large val...Show more |
3Debian FedoraprojectNetwork Block Device Project3Debian Linux FedoraNetwork Block DeviceJun 17, 2026 Mar 6, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 In nbd-server in nbd before 3.24, there is an integer overflow with a resultant heap-based buffer overflow. A value of 0xffffffff in the name length field will cause a zero-sized buffer to be allocated for the name, resu...Show more |
4Debian FedoraprojectLinux+1 more11Debian Linux FedoraH300e Firmware+8 moreJun 17, 2026 Mar 6, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTION buffer overflows because of untrusted length parameters. |
3Debian GolangNetapp3Astra Trident Debian LinuxGoJun 17, 2026 Mar 5, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 regexp.Compile in Go before 1.16.15 and 1.17.x before 1.17.8 allows stack exhaustion via a deeply nested expression. |
2Debian Openexr2Debian Linux OpenexrJun 17, 2026 Mar 4, 2022 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 A flaw found in function dataWindowForTile() of IlmImf/ImfTiledMisc.cpp. An attacker who is able to submit a crafted file to be processed by OpenEXR could trigger an integer overflow, leading to an out-of-bounds write on...Show more |
2Debian Openexr2Debian Linux OpenexrJun 17, 2026 Mar 4, 2022 N/A· v4 5.5 MEDIUM· v3 7.1 HIGH· v2 A flaw was found in OpenEXR's TiledInputFile functionality. This flaw allows an attacker who can submit a crafted single-part non-image to be processed by OpenEXR, to trigger a floating-point exception error. The highest...Show more |
2Debian Openexr2Debian Linux OpenexrJun 17, 2026 Mar 4, 2022 N/A· v4 5.5 MEDIUM· v3 7.1 HIGH· v2 A flaw was found in OpenEXR's hufUncompress functionality in OpenEXR/IlmImf/ImfHuf.cpp. This flaw allows an attacker who can submit a crafted file that is processed by OpenEXR, to trigger an integer overflow. The highest...Show more |
5Debian FedoraprojectLinux+2 more23Build Of Quarkus Codeready Linux BuilderCodeready Linux Builder Eus+20 moreJun 17, 2026 Mar 4, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c, which allows attackers to cause a denial of service (memory consumption). This vulnerability is simi...Show more |
3Cacti DebianFedoraproject3Cacti Debian LinuxFedoraJun 17, 2026 Mar 3, 2022 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 Under certain ldap conditions, Cacti authentication can be bypassed with certain credential types. |
5Canonical DebianFedoraproject+2 more12Debian Linux FedoraH300e Firmware+9 moreJun 17, 2026 Mar 3, 2022 N/A· v4 7.0 HIGH· v3 6.9 MEDIUM· v2 A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with th...Show more |
4Debian FedoraprojectLinux+1 more6Communications Cloud Native Core Binding Support Function Communications Cloud Native Core Network Exposure FunctionCommunications Cloud Native Core Policy+3 moreJun 17, 2026 Mar 3, 2022 N/A· v4 4.4 MEDIUM· v3 3.6 LOW· v2 A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment with the fault of some of the memory pages...Show more |
4Debian FedoraprojectOracle+1 more5Debian Linux FedoraHttp Server+2 moreJun 17, 2026 Mar 3, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Twisted is an event-based framework for internet applications, supporting Python 3.6+. Prior to 22.2.0, Twisted SSH client and server implement is able to accept an infinite amount of data for the peer's SSH version iden...Show more |