docker.io/curlimages/curl:7.85.0 linux/amd64

docker.io/curlimages/curl:7.85.0 - Trivy安全扫描结果 扫描时间: 2024-11-12 10:16
全部漏洞信息
低危漏洞:0 中危漏洞:13 高危漏洞:12 严重漏洞:0

系统OS: alpine 3.15.4 扫描引擎: Trivy 扫描时间: 2024-11-12 10:16

docker.io/curlimages/curl:7.85.0 (alpine 3.15.4) (alpine)
低危漏洞:0 中危漏洞:13 高危漏洞:12 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libcrypto1.1 CVE-2022-4450 高危 1.1.1q-r0 1.1.1t-r0 openssl: double free after calling PEM_read_bio_ex

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4450

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0215 高危 1.1.1q-r0 1.1.1t-r0 openssl: use-after-free following BIO_new_NDEF

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0215

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-02-08 20:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2023-0286 高危 1.1.1q-r0 1.1.1t-r0 openssl: X.400 address type confusion in X.509 GeneralName

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0286

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0464 高危 1.1.1q-r0 1.1.1t-r2 openssl: Denial of service by excessive resource usage in verifying X509 policy constraints

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0464

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-03-22 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2022-4450 高危 1.1.1q-r0 1.1.1t-r0 openssl: double free after calling PEM_read_bio_ex

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4450

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0215 高危 1.1.1q-r0 1.1.1t-r0 openssl: use-after-free following BIO_new_NDEF

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0215

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-02-08 20:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2023-0286 高危 1.1.1q-r0 1.1.1t-r0 openssl: X.400 address type confusion in X.509 GeneralName

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0286

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0464 高危 1.1.1q-r0 1.1.1t-r2 openssl: Denial of service by excessive resource usage in verifying X509 policy constraints

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0464

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-03-22 17:15 修改: 2024-06-21 19:15

nghttp2-dev CVE-2023-35945 高危 1.46.0-r0 1.46.0-r1 envoy: HTTP/2 memory leak in nghttp2 codec

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-35945

镜像层: sha256:c238aa1d9c53cb3ef52c3507bf4378c4c2a644146bdd1e064bd8efb560110752

发布日期: 2023-07-13 21:15 修改: 2023-10-24 17:26

nghttp2-dev CVE-2023-44487 高危 1.46.0-r0 1.46.0-r2 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:c238aa1d9c53cb3ef52c3507bf4378c4c2a644146bdd1e064bd8efb560110752

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

nghttp2-libs CVE-2023-35945 高危 1.46.0-r0 1.46.0-r1 envoy: HTTP/2 memory leak in nghttp2 codec

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-35945

镜像层: sha256:c238aa1d9c53cb3ef52c3507bf4378c4c2a644146bdd1e064bd8efb560110752

发布日期: 2023-07-13 21:15 修改: 2023-10-24 17:26

nghttp2-libs CVE-2023-44487 高危 1.46.0-r0 1.46.0-r2 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:c238aa1d9c53cb3ef52c3507bf4378c4c2a644146bdd1e064bd8efb560110752

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

libcrypto1.1 CVE-2023-2650 中危 1.1.1q-r0 1.1.1u-r0 openssl: Possible DoS translating ASN.1 object identifiers

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2650

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-05-30 14:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-3446 中危 1.1.1q-r0 1.1.1u-r2 openssl: Excessive time spent checking DH keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3446

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-07-19 12:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2022-4304 中危 1.1.1q-r0 1.1.1t-r0 openssl: timing attack in RSA Decryption implementation

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4304

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0465 中危 1.1.1q-r0 1.1.1t-r2 openssl: Invalid certificate policies in leaf certificates are silently ignored

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0465

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-2650 中危 1.1.1q-r0 1.1.1u-r0 openssl: Possible DoS translating ASN.1 object identifiers

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2650

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-05-30 14:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-3446 中危 1.1.1q-r0 1.1.1u-r2 openssl: Excessive time spent checking DH keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3446

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-07-19 12:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-3817 中危 1.1.1q-r0 1.1.1v-r0 OpenSSL: Excessive time spent checking DH q parameter value

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3817

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-07-31 16:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-5678 中危 1.1.1q-r0 1.1.1w-r1 openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5678

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-11-06 16:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2023-3817 中危 1.1.1q-r0 1.1.1v-r0 OpenSSL: Excessive time spent checking DH q parameter value

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3817

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-07-31 16:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2023-5678 中危 1.1.1q-r0 1.1.1w-r1 openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5678

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-11-06 16:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2022-4304 中危 1.1.1q-r0 1.1.1t-r0 openssl: timing attack in RSA Decryption implementation

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4304

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0465 中危 1.1.1q-r0 1.1.1t-r2 openssl: Invalid certificate policies in leaf certificates are silently ignored

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0465

镜像层: sha256:030b25dbdb9e14af81178cea7d208bf781a35a584193e996e89699495b13890f

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

pkgconf CVE-2023-24056 中危 1.8.0-r0 1.8.1-r0 pkgconf: unbounded string expansion due to incorrect checks may result in buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24056

镜像层: sha256:c238aa1d9c53cb3ef52c3507bf4378c4c2a644146bdd1e064bd8efb560110752

发布日期: 2023-01-22 04:15 修改: 2023-02-03 16:47