| libcrypto3 |
CVE-2026-14456 |
高危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: OpenSSL: Denial of Service via unbounded memory growth in QUIC server
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14456
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-13 15:19 修改: 2026-08-28 19:46
|
| libssl3 |
CVE-2026-14456 |
高危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: OpenSSL: Denial of Service via unbounded memory growth in QUIC server
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14456
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-13 15:19 修改: 2026-08-28 19:46
|
| curl |
CVE-2026-80255 |
中危 |
8.21.0-r0 |
8.22.0-r0 |
A `Set-Cookie:` header using tab (horizontal tab, ASCII code 9) instea ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-80255
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| curl |
CVE-2026-19931 |
中危 |
8.21.0-r0 |
8.22.0-r0 |
curl: libcurl: Information disclosure via incorrect connection reuse with Negotiate authentication
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-19931
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcrypto3 |
CVE-2026-18798 |
中危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: QUIC server may trigger double free when processing INITIAL packet
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18798
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:17 修改: 2026-08-28 19:46
|
| libcrypto3 |
CVE-2026-63072 |
中危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: heap buffer overflow in CMS key unwrapping
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63072
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:16
|
| libcrypto3 |
CVE-2026-63076 |
中危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: invalid pointer dereference in CMP server via crafted protectionAlg
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63076
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:17
|
| libcurl |
CVE-2026-19931 |
中危 |
8.21.0-r0 |
8.22.0-r0 |
curl: libcurl: Information disclosure via incorrect connection reuse with Negotiate authentication
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-19931
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcurl |
CVE-2026-80229 |
中危 |
8.21.0-r0 |
8.22.0-r0 |
When performing transfers via libcurl\u2019s multi interface, pooled T ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-80229
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcurl |
CVE-2026-80255 |
中危 |
8.21.0-r0 |
8.22.0-r0 |
A `Set-Cookie:` header using tab (horizontal tab, ASCII code 9) instea ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-80255
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| curl |
CVE-2026-80229 |
中危 |
8.21.0-r0 |
8.22.0-r0 |
When performing transfers via libcurl\u2019s multi interface, pooled T ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-80229
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libssl3 |
CVE-2026-18798 |
中危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: QUIC server may trigger double free when processing INITIAL packet
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18798
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:17 修改: 2026-08-28 19:46
|
| libssl3 |
CVE-2026-63072 |
中危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: heap buffer overflow in CMS key unwrapping
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63072
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:16
|
| libssl3 |
CVE-2026-63076 |
中危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: invalid pointer dereference in CMP server via crafted protectionAlg
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63076
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:17
|
| libcrypto3 |
CVE-2026-63073 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: untrusted sender DN used as format string in CMP response validation
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63073
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:16
|
| libcrypto3 |
CVE-2026-63074 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: CMP indefinite cache growth of ExtraCerts
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63074
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:16
|
| libcrypto3 |
CVE-2026-63075 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: QUIC ACK-only packet retention can cause memory exhaustion
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63075
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:17
|
| libcrypto3 |
CVE-2026-75803 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: openssl: AEAD forgeries possible with empty ciphertext in EVP_Cipher()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-75803
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:17
|
| curl |
CVE-2026-82209 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: libcurl: Information disclosure via improper Public Suffix List boundary check
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-82209
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| curl |
CVE-2026-13608 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: curl: Authentication bypass in OpenLDAP SASL negotiation via Man-in-the-Middle (MITM) attack
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13608
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| curl |
CVE-2026-18924 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: libcurl: Use-after-free in HTTP/2 Server Push with shared connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18924
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcurl |
CVE-2026-13608 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: curl: Authentication bypass in OpenLDAP SASL negotiation via Man-in-the-Middle (MITM) attack
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13608
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcurl |
CVE-2026-18924 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: libcurl: Use-after-free in HTTP/2 Server Push with shared connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18924
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcurl |
CVE-2026-80230 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: curl: Public key pinning bypass allows unauthenticated connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-80230
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcurl |
CVE-2026-80231 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: curl: Incorrect HTTPS connection reuse with Native CA Store
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-80231
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcurl |
CVE-2026-82209 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: libcurl: Information disclosure via improper Public Suffix List boundary check
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-82209
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| curl |
CVE-2026-80230 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: curl: Public key pinning bypass allows unauthenticated connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-80230
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| curl |
CVE-2026-80231 |
低危 |
8.21.0-r0 |
8.22.0-r0 |
curl: curl: Incorrect HTTPS connection reuse with Native CA Store
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-80231
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| libcrypto3 |
CVE-2026-14457 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: RPK server signature algorithm selection can dereference a missing certificate
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14457
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:17 修改: 2026-09-11 21:14
|
| libcrypto3 |
CVE-2026-54874 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: excessive memory use buffering DTLS records for a future epoch
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-54874
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:16
|
| libssl3 |
CVE-2026-14457 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: RPK server signature algorithm selection can dereference a missing certificate
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-14457
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:17 修改: 2026-09-11 21:14
|
| libssl3 |
CVE-2026-54874 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: excessive memory use buffering DTLS records for a future epoch
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-54874
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:16
|
| libssl3 |
CVE-2026-63073 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: untrusted sender DN used as format string in CMP response validation
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63073
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:16
|
| libssl3 |
CVE-2026-63074 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: CMP indefinite cache growth of ExtraCerts
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63074
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:16
|
| libssl3 |
CVE-2026-63075 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: QUIC ACK-only packet retention can cause memory exhaustion
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-63075
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:17
|
| libssl3 |
CVE-2026-75803 |
低危 |
3.5.7-r0 |
3.5.8-r0 |
openssl: openssl: AEAD forgeries possible with empty ciphertext in EVP_Cipher()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-75803
镜像层: sha256:b2848c02ac6ff53d265469b5b30f649f335e546a83330cd8916d54e65e640409
发布日期: 2026-08-25 13:19 修改: 2026-09-11 21:17
|
| libcurl |
CVE-2026-80256 |
未知 |
8.21.0-r0 |
8.22.0-r0 |
漏洞详情:
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libcurl |
CVE-2026-82208 |
未知 |
8.21.0-r0 |
8.22.0-r0 |
With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_S ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-82208
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|
| curl |
CVE-2026-80256 |
未知 |
8.21.0-r0 |
8.22.0-r0 |
漏洞详情:
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| curl |
CVE-2026-82208 |
未知 |
8.21.0-r0 |
8.22.0-r0 |
With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_S ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-82208
镜像层: sha256:905adbe1a5c702550237be64607e949300a9ca8d2a4572ed4f5e41ad934eeae1
发布日期: 2026-09-06 18:17 修改: 2026-09-15 07:16
|