CVEs (1,858)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
6Debian FedoraprojectLibssh+3 more7Cloud Backup Debian LinuxEnterprise Linux+4 moreJun 17, 2026 Aug 31, 2021 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A flaw has been found in libssh in versions prior to 0.9.6. The SSH protocol keeps track of two shared secrets during the lifetime of the session. One of them is called secret_hash and the other session_id. Initially, bo...Show more |
4Debian FedoraprojectRedhat+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Aug 27, 2021 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal o...Show more |
3Debian OpenexrRedhat3Debian Linux Enterprise LinuxOpenexrJun 17, 2026 Aug 25, 2021 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 There's a flaw in OpenEXR's rleUncompress functionality in versions prior to 3.0.5. An attacker who is able to submit a crafted file to an application linked with OpenEXR could cause an out-of-bounds read. The greatest r...Show more |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelJun 17, 2026 Aug 13, 2021 N/A· v4 4.4 MEDIUM· v3 4.9 MEDIUM· v2 A flaw was found in the Linux kernel netfilter implementation in versions prior to 5.5-rc7. A user with root (CAP_SYS_ADMIN) access is able to panic the system when issuing netfilter netflow commands. |
3Fedoraproject LinuxRedhat3Enterprise Linux FedoraLinux KernelJun 17, 2026 Aug 13, 2021 N/A· v4 6.4 MEDIUM· v3 6.9 MEDIUM· v2 A use-after-free in function hci_sock_bound_ioctl() of the Linux kernel HCI subsystem was found in the way user calls ioct HCIUNBLOCKADDR or other way triggers race condition of the call hci_unregister_dev() together wit...Show more |
3Fedoraproject Libspf2Redhat3Enterprise Linux FedoraLibspf2Jun 17, 2026 Aug 12, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Stack buffer overflow in libspf2 versions below 1.2.11 when processing certain SPF macros can lead to Denial of service and potentially code execution via malicious crafted SPF explanation messages. |
4Debian LinuxNetapp+1 more7Debian Linux Element SoftwareEnterprise Linux+4 moreJun 17, 2026 Aug 7, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 In drivers/char/virtio_console.c in the Linux kernel before 5.13.4, data corruption or loss can be triggered by an untrusted device that supplies a buf->len value exceeding the buffer size. NOTE: the vendor indicates tha...Show more |
3Debian LinuxRedhat3Debian Linux Enterprise LinuxLinux KernelJun 17, 2026 Aug 5, 2021 N/A· v4 3.3 LOW· v3 2.1 LOW· v2 A vulnerability was found in the Linux kernel in versions prior to v5.14-rc1. Missing size validations on inbound SCTP packets may allow the kernel to read uninitialized memory. |
4Debian NetappNettle Project+1 more4Debian Linux Enterprise LinuxNettle+1 moreJun 17, 2026 Aug 5, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A flaw was found in the way nettle's RSA decryption functions handled specially crafted ciphertext. An attacker could use this flaw to provide a manipulated ciphertext leading to application crash and denial of service. |
3Debian QemuRedhat3Debian Linux Enterprise LinuxQemuJun 17, 2026 Aug 5, 2021 N/A· v4 8.5 HIGH· v3 6.0 MEDIUM· v2 A flaw was found in the USB redirector device emulation of QEMU in versions prior to 6.1.0-rc2. It occurs when dropping packets during a bulk transfer from a SPICE client due to the packet queue being full. A malicious S...Show more |
3Debian LinuxRedhat3Debian Linux Enterprise LinuxLinux KernelJun 17, 2026 Aug 5, 2021 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 A lack of CPU resource in the Linux kernel tracing module functionality in versions prior to 5.14-rc3 was found in the way user uses trace ring buffer in a specific way. Only privileged local users (with CAP_SYS_ADMIN ca...Show more |
6Debian FedoraprojectLinux+3 more17Cloud Backup Communications Cloud Native Core Binding Support FunctionCommunications Cloud Native Core Network Exposure Function+14 moreJun 17, 2026 Jul 9, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls ioctl JSIOCSBTNMAP. This flaw allows a local user to crash the system or...Show more |
3Fedoraproject Linuxptp ProjectRedhat3Enterprise Linux FedoraLinuxptpJun 17, 2026 Jul 9, 2021 N/A· v4 7.1 HIGH· v3 5.5 MEDIUM· v2 A flaw was found in the ptp4l program of the linuxptp package. When ptp4l is operating on a little-endian architecture as a PTP transparent clock, a remote attacker could send a crafted one-step sync message to cause an...Show more |
4Debian FedoraprojectLinuxptp Project+1 more7Debian Linux Enterprise LinuxEnterprise Linux Aus+4 moreJun 17, 2026 Jul 9, 2021 N/A· v4 8.8 HIGH· v3 8.0 HIGH· v2 A flaw was found in the ptp4l program of the linuxptp package. A missing length check when forwarding a PTP message between ports allows a remote attacker to cause an information leak, crash, or potentially remote code e...Show more |
3Debian OpenexrRedhat3Debian Linux Enterprise LinuxOpenexrJun 17, 2026 Jul 6, 2021 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 There's a flaw in OpenEXR's ImfDeepScanLineInputFile functionality in versions prior to 3.0.5. An attacker who is able to submit a crafted file to an application linked with OpenEXR could cause an out-of-bounds read. The...Show more |
4Debian FedoraprojectLibslirp Project+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Jun 15, 2021 N/A· v4 3.8 LOW· v3 2.1 LOW· v2 An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the tftp_input() function and could occur while processing a udp packet that is smaller than the size o...Show more |
4Debian FedoraprojectLibslirp Project+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Jun 15, 2021 N/A· v4 3.8 LOW· v3 2.1 LOW· v2 An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp_input() function and could occur while processing a udp packet that is smaller than the size of...Show more |
4Debian FedoraprojectLibslirp Project+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Jun 15, 2021 N/A· v4 3.8 LOW· v3 2.1 LOW· v2 An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the udp6_input() function and could occur while processing a udp packet that is smaller than the size o...Show more |
4Debian FedoraprojectLibslirp Project+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Jun 15, 2021 N/A· v4 3.8 LOW· v3 2.1 LOW· v2 An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the bootp_input() function and could occur while processing a udp packet that is smaller than the size...Show more |
3Bluez DebianRedhat3Bluez Debian LinuxEnterprise LinuxJun 17, 2026 Jun 9, 2021 N/A· v4 5.7 MEDIUM· v3 2.7 LOW· v2 Improper access control in BlueZ may allow an authenticated user to potentially enable information disclosure via adjacent access. |