CVEs (10,001)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause an out-of-bounds read in ntfs_ie_lookup in NTFS-3G < 2021.8.22. |
4Debian FedoraprojectRedhat+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 A crafted NTFS image can cause a NULL pointer dereference in ntfs_extent_inode_open in NTFS-3G < 2021.8.22. |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJul 9, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 NTFS-3G versions < 2021.8.22, a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or escalation of privileges when setuid-root. |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJul 9, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting in memory disclosure, denial of service and even code execution. |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJul 9, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In NTFS-3G versions < 2021.8.22, when specially crafted NTFS attributes are read in the function ntfs_attr_pread_i, a heap buffer overflow can occur and allow for writing to arbitrary memory or denial of service of the a...Show more |
2Debian Tuxera2Debian Linux Ntfs 3gJul 9, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In NTFS-3G versions < 2021.8.22, when a specially crafted unicode string is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution. |
2Debian Simplesystems2Debian Linux LibtiffJun 17, 2026 Sep 7, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the "invertImage()" function in the component "tiffcrop". |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJul 9, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges. |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJul 9, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode is loaded in the function ntfs_inode_real_open, a heap buffer overflow can occur allowing for code execution and escalation of privileges. |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJul 9, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution. |
4Debian FedoraprojectRedhat+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Sep 7, 2021 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute is supplied to the function ntfs_get_attribute_value, a heap buffer overflow can occur allowing for memory disclosure or denial of service. The vul...Show more |
2Debian Weechat2Debian Linux WeechatJun 17, 2026 Sep 5, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 WeeChat before 3.2.1 allows remote attackers to cause a denial of service (crash) via a crafted WebSocket frame that trigger an out-of-bounds read in plugins/relay/relay-websocket.c in the Relay plugin. |
3Debian FedoraprojectOpenidc3Debian Linux FedoraMod Auth OpenidcJun 17, 2026 Sep 3, 2021 N/A· v4 6.1 MEDIUM· v3 5.8 MEDIUM· v2 mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In versions prior to 2...Show more |
2Debian Gnu2Debian Linux InetutilsJun 17, 2026 Sep 3, 2021 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 The ftp client in GNU Inetutils before 2.2 does not validate addresses returned by PASV/LSPV responses to make sure they match the server address. This is similar to CVE-2020-8284 for curl. |
4Debian FedoraprojectLinux+1 more16Aff A250 Firmware Debian LinuxFas 500f Firmware+13 moreJun 17, 2026 Sep 3, 2021 N/A· v4 7.0 HIGH· v3 4.4 MEDIUM· v2 A race condition was discovered in ext4_write_inline_data_end in fs/ext4/inline.c in the ext4 subsystem in the Linux kernel through 5.13.13. |
2Adobe Debian2Debian Linux Xmp Toolkit Software Development KitJun 17, 2026 Sep 1, 2021 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 XMP Toolkit SDK version 2020.1 (and earlier) is affected by a stack-based buffer overflow vulnerability potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user int...Show more |
2Adobe Debian2Debian Linux Xmp Toolkit Software Development KitJun 17, 2026 Sep 1, 2021 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 XMP Toolkit version 2020.1 (and earlier) is affected by a Buffer Underflow vulnerability which could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interac...Show more |
2Adobe Debian2Debian Linux Xmp Toolkit Software Development KitJun 17, 2026 Sep 1, 2021 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Integer Overflow vulnerability potentially resulting in application-level denial of service in the context of the current user. Exploitation requires user in...Show more |
2Adobe Debian2Debian Linux Xmp Toolkit Software Development KitJun 17, 2026 Sep 1, 2021 N/A· v4 3.3 LOW· v3 2.1 LOW· v2 XMP Toolkit SDK version 2020.1 (and earlier) is affected by a write-what-where condition vulnerability caused during the application's memory allocation process. This may cause the memory management functions to become m...Show more |
2Adobe Debian2Debian Linux Xmp Toolkit Software Development KitJun 17, 2026 Sep 1, 2021 N/A· v4 7.3 HIGH· v3 9.3 HIGH· v2 XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer overflow vulnerability potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in...Show more |