| libcrypto3 |
CVE-2026-45447 |
高危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Heap Use-After-Free in OpenSSL PKCS7_verify()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45447
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:52
|
| libexpat |
CVE-2026-45186 |
高危 |
2.7.5-r0 |
2.8.1-r0 |
libexpat: denial of service via crafted XML input
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45186
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-05-10 07:16 修改: 2026-06-17 10:51
|
| libssl3 |
CVE-2026-45447 |
高危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Heap Use-After-Free in OpenSSL PKCS7_verify()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45447
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:52
|
| libxml2 |
CVE-2026-6732 |
高危 |
2.13.9-r0 |
2.13.9-r1 |
libxml2: libxml2: Denial of Service via crafted XSD-validated document
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6732
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-04-23 23:16 修改: 2026-06-17 11:01
|
| nghttp2-libs |
CVE-2026-27135 |
高危 |
1.68.0-r0 |
1.68.1 |
nghttp2: nghttp2: Denial of Service via malformed HTTP/2 frames after session termination
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27135
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-18 18:16 修改: 2026-06-17 10:26
|
| curl |
CVE-2025-14017 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Security bypass due to global TLS option changes in multi-threaded LDAPS transfers
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14017
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-01-08 10:15 修改: 2026-06-17 08:35
|
| libcrypto3 |
CVE-2026-34182 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34182
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:38
|
| libcrypto3 |
CVE-2026-34183 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34183
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:38
|
| libcrypto3 |
CVE-2026-42764 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: NULL pointer dereference in QUIC server initial packet handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42764
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libcrypto3 |
CVE-2026-45445 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: AES-OCB IV Ignored on EVP_Cipher() Path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45445
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:52
|
| libcurl |
CVE-2025-14017 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Security bypass due to global TLS option changes in multi-threaded LDAPS transfers
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14017
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-01-08 10:15 修改: 2026-06-17 08:35
|
| libcurl |
CVE-2026-1965 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Authentication bypass due to incorrect connection reuse with Negotiate authentication
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-1965
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-11 11:15 修改: 2026-06-17 10:16
|
| libcurl |
CVE-2026-3783 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Information disclosure via OAuth2 bearer token leakage during HTTP(S) redirect
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3783
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-11 11:16 修改: 2026-06-17 10:44
|
| libcurl |
CVE-2026-3784 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Unauthorized access due to improper HTTP proxy connection reuse
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3784
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-11 11:16 修改: 2026-06-17 10:44
|
| libcurl |
CVE-2026-3805 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Arbitrary code execution or Denial of Service via use-after-free in SMB request handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3805
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-11 11:16 修改: 2026-06-17 10:44
|
| curl |
CVE-2026-1965 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Authentication bypass due to incorrect connection reuse with Negotiate authentication
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-1965
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-11 11:15 修改: 2026-06-17 10:16
|
| libpng |
CVE-2026-40930 |
中危 |
1.6.57-r0 |
1.6.58-r1 |
LIBPNG is a reference library for use in applications that process PNG ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40930
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-06-04 16:16 修改: 2026-06-17 10:45
|
| curl |
CVE-2026-3783 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Information disclosure via OAuth2 bearer token leakage during HTTP(S) redirect
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3783
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-11 11:16 修改: 2026-06-17 10:44
|
| libssl3 |
CVE-2026-34182 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34182
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:38
|
| libssl3 |
CVE-2026-34183 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34183
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:38
|
| libssl3 |
CVE-2026-42764 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: NULL pointer dereference in QUIC server initial packet handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42764
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libssl3 |
CVE-2026-45445 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: AES-OCB IV Ignored on EVP_Cipher() Path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45445
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:52
|
| curl |
CVE-2026-3784 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Unauthorized access due to improper HTTP proxy connection reuse
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3784
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-11 11:16 修改: 2026-06-17 10:44
|
| libxpm |
CVE-2026-4367 |
中危 |
3.5.17-r0 |
3.5.19-r0 |
libXpm: libXpm: Denial of Service via out-of-bounds read in XPM file parsing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4367
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-06-16 19:16 修改: 2026-06-17 10:56
|
| curl |
CVE-2026-3805 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Arbitrary code execution or Denial of Service via use-after-free in SMB request handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3805
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-03-11 11:16 修改: 2026-06-17 10:44
|
| xz-libs |
CVE-2026-34743 |
中危 |
5.8.2-r0 |
5.8.3-r0 |
xz: XZ Utils: Denial of Service via buffer overflow in index decoding
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34743
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-04-02 19:21 修改: 2026-06-17 10:39
|
| libcrypto3 |
CVE-2026-42766 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Possible NULL Dereference in Password-Based CMS Decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42766
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libcurl |
CVE-2025-14524 |
低危 |
8.17.0-r1 |
8.19.0-r0 |
curl: Information disclosure via cross-protocol redirect with OAuth2 bearer token
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14524
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-01-08 10:15 修改: 2026-06-17 08:36
|
| libcurl |
CVE-2025-14819 |
低危 |
8.17.0-r1 |
8.19.0-r0 |
curl: libcurl: Improper certificate validation due to cached TLS settings reuse
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14819
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-01-08 10:15 修改: 2026-06-17 08:36
|
| libcrypto3 |
CVE-2026-42767 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: NULL Pointer Dereference in CRMF EncryptedValue Decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42767
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libexpat |
CVE-2026-41080 |
低危 |
2.7.5-r0 |
2.8.1-r0 |
libexpat: expat: libexpat: Denial of Service via hash flooding with crafted XML
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41080
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-04-16 17:16 修改: 2026-06-17 10:46
|
| libcrypto3 |
CVE-2026-42768 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42768
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libcrypto3 |
CVE-2026-42769 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42769
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libcrypto3 |
CVE-2026-42770 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: FFC-DH Peer Validation Uses Attacker-Supplied q
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42770
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libcrypto3 |
CVE-2026-45446 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45446
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:52
|
| libcrypto3 |
CVE-2026-7383 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Heap buffer overflow due to signed integer overflow in Unicode output sizing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7383
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 11:02
|
| libcrypto3 |
CVE-2026-9076 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9076
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 11:04
|
| libssl3 |
CVE-2026-34180 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Heap buffer over-read in ASN.1 decoding can lead to denial of service or information disclosure.
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34180
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:38
|
| libssl3 |
CVE-2026-34181 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34181
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:38
|
| libssl3 |
CVE-2026-42766 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Possible NULL Dereference in Password-Based CMS Decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42766
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libssl3 |
CVE-2026-42767 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: NULL Pointer Dereference in CRMF EncryptedValue Decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42767
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libssl3 |
CVE-2026-42768 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42768
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libssl3 |
CVE-2026-42769 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42769
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libssl3 |
CVE-2026-42770 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: FFC-DH Peer Validation Uses Attacker-Supplied q
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42770
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:48
|
| libssl3 |
CVE-2026-45446 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45446
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:52
|
| libssl3 |
CVE-2026-7383 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Heap buffer overflow due to signed integer overflow in Unicode output sizing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7383
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 11:02
|
| libssl3 |
CVE-2026-9076 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9076
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 11:04
|
| curl |
CVE-2025-14819 |
低危 |
8.17.0-r1 |
8.19.0-r0 |
curl: libcurl: Improper certificate validation due to cached TLS settings reuse
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14819
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-01-08 10:15 修改: 2026-06-17 08:36
|
| curl |
CVE-2025-14524 |
低危 |
8.17.0-r1 |
8.19.0-r0 |
curl: Information disclosure via cross-protocol redirect with OAuth2 bearer token
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14524
镜像层: sha256:36c003a300d15169fe53876c4c807b1668568414660e5249ba6d168badab54fa
发布日期: 2026-01-08 10:15 修改: 2026-06-17 08:36
|
| libcrypto3 |
CVE-2026-34180 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Heap buffer over-read in ASN.1 decoding can lead to denial of service or information disclosure.
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34180
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:38
|
| libcrypto3 |
CVE-2026-34181 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34181
镜像层: sha256:29df493baa13de438d6d2ece3a8333032e0b7b9b9d8cce4ee82194da255f61e1
发布日期: 2026-06-09 17:17 修改: 2026-06-17 10:38
|