Starwindsoftware
starwindsoftware
30 CVEs • 8 products
Products (8)
Click to collapseToggle
Products (8)
Click to collapse
CVEs (30)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
4Canonical DebianLinux+1 more4Debian Linux Linux KernelStarwind Virtual San+1 moreJun 17, 2026 Sep 15, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 A memory out-of-bounds read flaw was found in the Linux kernel before 5.9-rc2 with the ext3/ext4 file system, in the way it accesses a directory with broken indexing. This flaw allows a local user to crash the system if...Show more |
5Canonical LinuxOpensuse+2 more5Leap Linux KernelSd Wan Edge+2 moreJun 17, 2026 Aug 19, 2020 N/A· v4 7.1 HIGH· v3 3.6 LOW· v2 In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set incorrect permissions on new filesystem objects when the filesystem lacks ACL support, aka CID-22cf8419f131. This occurs because the current uma...Show more |
6Apple CanonicalDebian+3 more7Command Center Debian LinuxLeap+4 moreJun 17, 2026 May 28, 2020 N/A· v4 5.3 MEDIUM· v3 4.6 MEDIUM· v2 In Vim before 8.1.0881, users can circumvent the rvim restricted mode and execute arbitrary OS commands via scripting interfaces (e.g., Python, Ruby, or Lua). |
6Canonical DebianKyzer+3 more8Debian Linux Enterprise Linux DesktopEnterprise Linux Server+5 moreNov 21, 2024 Oct 23, 2018 N/A· v4 4.3 MEDIUM· v3 4.3 MEDIUM· v2 chmd_read_headers in mspack/chmd.c in libmspack before 0.8alpha accepts a filename that has '\0' as its first or second character (such as the "/\0" name). |
7Cabextract Project CanonicalDebian+4 more7Cabextract Debian LinuxEnterprise Linux+4 moreNov 21, 2024 Oct 23, 2018 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write. |
3Debian StarwindsoftwareTinc Vpn3Debian Linux Starwind Virtual SanTincNov 21, 2024 Oct 10, 2018 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 Missing message authentication in the meta-protocol in Tinc VPN version 1.0.34 and earlier allows a man-in-the-middle attack to disable the encryption of VPN packets. |
3Debian StarwindsoftwareTinc Vpn3Debian Linux Starwind Virtual SanTincNov 21, 2024 Oct 10, 2018 N/A· v4 3.7 LOW· v3 4.3 MEDIUM· v2 tinc 1.0.30 through 1.0.34 has a broken authentication protocol, although there is a partial mitigation. This is fixed in 1.1. |
2Starwindsoftware Tinc Vpn2Starwind Virtual San TincNov 21, 2024 Oct 10, 2018 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 tinc before 1.0.30 has a broken authentication protocol, without even a partial mitigation. |
3Debian LibsdlStarwindsoftware3Debian Linux Sdl ImageStarwind Virtual SanNov 21, 2024 Apr 10, 2018 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 An exploitable code execution vulnerability exists in the XCF image rendering functionality of Simple DirectMedia Layer SDL2_image-2.0.2. A specially crafted XCF image can cause an out-of-bounds write on the heap, result...Show more |
3Debian LibsdlStarwindsoftware3Debian Linux Sdl ImageStarwind Virtual SanNov 21, 2024 Apr 10, 2018 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 An exploitable information disclosure vulnerability exists in the PCX image rendering functionality of Simple DirectMedia Layer SDL2_image-2.0.2. A specially crafted PCX image can cause an out-of-bounds read on the heap,...Show more |