docker.io/jpillora/dnsmasq:latest linux/amd64

docker.io/jpillora/dnsmasq:latest - Trivy安全扫描结果 扫描时间: 2024-12-26 09:42
全部漏洞信息
低危漏洞:12 中危漏洞:67 高危漏洞:76 严重漏洞:8

系统OS: alpine 3.8.0 扫描引擎: Trivy 扫描时间: 2024-12-26 09:42

docker.io/jpillora/dnsmasq:latest (alpine 3.8.0) (alpine)
低危漏洞:12 中危漏洞:67 高危漏洞:76 严重漏洞:8
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
apk-tools CVE-2021-36159 严重 2.10.3-r0 2.12.6-r0 libfetch: an out of boundary read while libfetch uses strtol to parse the relevant numbers into address bytes leads to information leak or crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36159

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-08-03 14:15 修改: 2023-11-07 03:36

busybox CVE-2022-48174 严重 1.29.3-r4 1.36.1-r2 busybox: stack overflow vulnerability in ash.c leads to arbitrary code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-48174

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-08-22 19:16 修改: 2024-11-29 12:15

libcrypto1.1 CVE-2021-3711 严重 1.1.1a-r1 1.1.1l-r0 openssl: SM2 Decryption Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3711

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2021-3711 严重 1.1.1a-r1 1.1.1l-r0 openssl: SM2 Decryption Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3711

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

musl CVE-2019-14697 严重 1.1.20-r2 1.1.23-r2 musl libc through 1.1.23 has an x87 floating-point stack adjustment im ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14697

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-08-06 16:15 修改: 2023-03-03 17:43

musl-utils CVE-2019-14697 严重 1.1.20-r2 1.1.23-r2 musl libc through 1.1.23 has an x87 floating-point stack adjustment im ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14697

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-08-06 16:15 修改: 2023-03-03 17:43

ssl_client CVE-2022-48174 严重 1.29.3-r4 1.36.1-r2 busybox: stack overflow vulnerability in ash.c leads to arbitrary code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-48174

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-08-22 19:16 修改: 2024-11-29 12:15

zlib CVE-2022-37434 严重 1.2.11-r1 1.2.12-r2 zlib: heap-based buffer over-read and overflow in inflate() in inflate.c via a large gzip header extra field

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37434

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-08-05 07:15 修改: 2023-07-19 00:56

busybox CVE-2021-42380 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the clrvar()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42380

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42381 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the hash_init()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42381

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42382 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42382

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42383 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42383

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42384 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the handle_special()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42384

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42385 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42385

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42386 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42386

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2022-28391 高危 1.29.3-r4 1.35.0-r7 busybox: remote attackers may execute arbitrary code if netstat is used

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-28391

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-04-03 21:15 修改: 2022-08-11 18:44

busybox CVE-2022-30065 高危 1.29.3-r4 1.35.0-r17 busybox: A use-after-free in Busybox's awk applet leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-30065

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-05-18 15:15 修改: 2023-02-11 17:44

dnsmasq CVE-2020-25681 高危 2.80-r3 2.83-r0 dnsmasq: heap-based buffer overflow in sort_rrset() when DNSSEC is enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25681

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2021-01-20 17:15 修改: 2023-11-07 03:20

dnsmasq CVE-2020-25682 高危 2.80-r3 2.83-r0 dnsmasq: buffer overflow in extract_name() due to missing length check when DNSSEC is enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25682

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2021-01-20 17:15 修改: 2023-11-07 03:20

dnsmasq CVE-2022-0934 高危 2.80-r3 2.86-r1 dnsmasq: Heap use after free in dhcp6_no_relay

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0934

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2022-08-29 15:15 修改: 2023-03-07 18:12

dnsmasq CVE-2023-28450 高危 2.80-r3 2.89-r3 dnsmasq: default maximum EDNS.0 UDP packet size was set to 4096 but should be 1232

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28450

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2023-03-15 21:15 修改: 2023-11-07 04:10

dnsmasq CVE-2023-50387 高危 2.80-r3 2.90-r0 bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50387

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

dnsmasq CVE-2023-50868 高危 2.80-r3 2.90-r0 bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50868

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

apk-tools CVE-2021-30139 高危 2.10.3-r0 2.12.5-r0

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-30139

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-04-21 16:15 修改: 2021-04-22 18:21

libcrypto1.1 CVE-2019-1543 高危 1.1.1a-r1 1.1.1b-r1 openssl: ChaCha20-Poly1305 with long nonces

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1543

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-03-06 21:29 修改: 2023-11-07 03:08

libcrypto1.1 CVE-2020-1967 高危 1.1.1a-r1 1.1.1g-r0 openssl: Segmentation fault in SSL_check_chain causes denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-1967

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2020-04-21 14:15 修改: 2023-11-07 03:19

libcrypto1.1 CVE-2021-23840 高危 1.1.1a-r1 1.1.1j-r0 openssl: integer overflow in CipherUpdate

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23840

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-02-16 17:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2021-3450 高危 1.1.1a-r1 1.1.1k-r0 openssl: CA certificate check bypass with X509_V_FLAG_X509_STRICT

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3450

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-03-25 15:15 修改: 2023-11-07 03:38

libcrypto1.1 CVE-2021-3712 高危 1.1.1a-r1 1.1.1l-r0 openssl: Read buffer overruns processing ASN.1 strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3712

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2021-4044 高危 1.1.1a-r1 3.0.1-r0 openssl: invalid handling of X509_verify_cert() internal errors in libssl

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4044

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-12-14 19:15 修改: 2023-11-09 14:44

libcrypto1.1 CVE-2022-0778 高危 1.1.1a-r1 3.0.2-r0 openssl: Infinite loop in BN_mod_sqrt() reachable when parsing certificates

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0778

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-03-15 17:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2022-1473 高危 1.1.1a-r1 3.0.3-r0 openssl: OPENSSL_LH_flush() breaks reuse of memory

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1473

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-05-03 16:15 修改: 2023-11-07 03:41

libcrypto1.1 CVE-2022-3358 高危 1.1.1a-r1 3.0.6-r0 openssl: Using a Custom Cipher with NID_undef may lead to NULL encryption

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3358

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-10-11 15:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2022-3602 高危 1.1.1a-r1 3.0.7-r0 OpenSSL: X.509 Email Address Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3602

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-11-01 18:15 修改: 2023-08-08 14:21

libcrypto1.1 CVE-2022-3786 高危 1.1.1a-r1 3.0.7-r0 OpenSSL: X.509 Email Address Variable Length Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3786

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-11-01 18:15 修改: 2023-11-07 03:51

libcrypto1.1 CVE-2022-3996 高危 1.1.1a-r1 3.0.7-r2 openssl: double locking leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3996

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-12-13 16:15 修改: 2024-08-01 22:35

libcrypto1.1 CVE-2022-4450 高危 1.1.1a-r1 3.0.8-r0 openssl: double free after calling PEM_read_bio_ex

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4450

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0215 高危 1.1.1a-r1 3.0.8-r0 openssl: use-after-free following BIO_new_NDEF

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0215

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2023-0216 高危 1.1.1a-r1 3.0.8-r0 openssl: invalid pointer dereference in d2i_PKCS7 functions

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0216

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0217 高危 1.1.1a-r1 3.0.8-r0 openssl: NULL dereference validating DSA public key

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0217

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0286 高危 1.1.1a-r1 3.0.8-r0 openssl: X.400 address type confusion in X.509 GeneralName

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0286

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0401 高危 1.1.1a-r1 3.0.8-r0 openssl: NULL dereference during PKCS7 data verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0401

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0464 高危 1.1.1a-r1 3.1.0-r1 openssl: Denial of service by excessive resource usage in verifying X509 policy constraints

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0464

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-03-22 17:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2023-5363 高危 1.1.1a-r1 3.1.4-r0 openssl: Incorrect cipher key and IV length processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5363

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-10-25 18:17 修改: 2024-10-14 15:15

busybox CVE-2018-20679 高危 1.29.3-r4 1.29.3-r10 busybox: Out of bounds read in udhcp components resulting in information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-20679

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-01-09 16:29 修改: 2019-09-04 23:15

libssl1.1 CVE-2019-1543 高危 1.1.1a-r1 1.1.1b-r1 openssl: ChaCha20-Poly1305 with long nonces

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1543

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-03-06 21:29 修改: 2023-11-07 03:08

libssl1.1 CVE-2020-1967 高危 1.1.1a-r1 1.1.1g-r0 openssl: Segmentation fault in SSL_check_chain causes denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-1967

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2020-04-21 14:15 修改: 2023-11-07 03:19

libssl1.1 CVE-2021-23840 高危 1.1.1a-r1 1.1.1j-r0 openssl: integer overflow in CipherUpdate

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23840

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-02-16 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2021-3450 高危 1.1.1a-r1 1.1.1k-r0 openssl: CA certificate check bypass with X509_V_FLAG_X509_STRICT

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3450

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-03-25 15:15 修改: 2023-11-07 03:38

libssl1.1 CVE-2021-3712 高危 1.1.1a-r1 1.1.1l-r0 openssl: Read buffer overruns processing ASN.1 strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3712

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2021-4044 高危 1.1.1a-r1 3.0.1-r0 openssl: invalid handling of X509_verify_cert() internal errors in libssl

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4044

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-12-14 19:15 修改: 2023-11-09 14:44

libssl1.1 CVE-2022-0778 高危 1.1.1a-r1 3.0.2-r0 openssl: Infinite loop in BN_mod_sqrt() reachable when parsing certificates

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0778

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-03-15 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2022-1473 高危 1.1.1a-r1 3.0.3-r0 openssl: OPENSSL_LH_flush() breaks reuse of memory

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1473

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-05-03 16:15 修改: 2023-11-07 03:41

libssl1.1 CVE-2022-3358 高危 1.1.1a-r1 3.0.6-r0 openssl: Using a Custom Cipher with NID_undef may lead to NULL encryption

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3358

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-10-11 15:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2022-3602 高危 1.1.1a-r1 3.0.7-r0 OpenSSL: X.509 Email Address Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3602

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-11-01 18:15 修改: 2023-08-08 14:21

libssl1.1 CVE-2022-3786 高危 1.1.1a-r1 3.0.7-r0 OpenSSL: X.509 Email Address Variable Length Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3786

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-11-01 18:15 修改: 2023-11-07 03:51

libssl1.1 CVE-2022-3996 高危 1.1.1a-r1 3.0.7-r2 openssl: double locking leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3996

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-12-13 16:15 修改: 2024-08-01 22:35

libssl1.1 CVE-2022-4450 高危 1.1.1a-r1 3.0.8-r0 openssl: double free after calling PEM_read_bio_ex

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4450

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0215 高危 1.1.1a-r1 3.0.8-r0 openssl: use-after-free following BIO_new_NDEF

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0215

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2023-0216 高危 1.1.1a-r1 3.0.8-r0 openssl: invalid pointer dereference in d2i_PKCS7 functions

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0216

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0217 高危 1.1.1a-r1 3.0.8-r0 openssl: NULL dereference validating DSA public key

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0217

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0286 高危 1.1.1a-r1 3.0.8-r0 openssl: X.400 address type confusion in X.509 GeneralName

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0286

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0401 高危 1.1.1a-r1 3.0.8-r0 openssl: NULL dereference during PKCS7 data verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0401

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0464 高危 1.1.1a-r1 3.1.0-r1 openssl: Denial of service by excessive resource usage in verifying X509 policy constraints

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0464

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-03-22 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2023-5363 高危 1.1.1a-r1 3.1.4-r0 openssl: Incorrect cipher key and IV length processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5363

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-10-25 18:17 修改: 2024-10-14 15:15

busybox CVE-2019-5747 高危 1.29.3-r4 1.30.1-r2 busybox: Out of bounds read in udhcp components resulting in information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-5747

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-01-09 16:29 修改: 2022-10-29 02:30

busybox CVE-2021-28831 高危 1.29.3-r4 1.33.0-r5 busybox: invalid free or segmentation fault via malformed gzip data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28831

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-03-19 05:15 修改: 2023-11-07 03:32

busybox CVE-2021-42378 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_i()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42378

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2018-20679 高危 1.29.3-r4 1.29.3-r10 busybox: Out of bounds read in udhcp components resulting in information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-20679

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-01-09 16:29 修改: 2019-09-04 23:15

ssl_client CVE-2019-5747 高危 1.29.3-r4 1.30.1-r2 busybox: Out of bounds read in udhcp components resulting in information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-5747

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-01-09 16:29 修改: 2022-10-29 02:30

ssl_client CVE-2021-28831 高危 1.29.3-r4 1.33.0-r5 busybox: invalid free or segmentation fault via malformed gzip data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28831

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-03-19 05:15 修改: 2023-11-07 03:32

ssl_client CVE-2021-42378 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_i()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42378

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42379 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the next_input_file()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42379

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42380 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the clrvar()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42380

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42381 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the hash_init()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42381

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42382 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42382

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42383 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42383

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42384 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the handle_special()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42384

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42385 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42385

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42386 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42386

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2022-28391 高危 1.29.3-r4 1.35.0-r7 busybox: remote attackers may execute arbitrary code if netstat is used

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-28391

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-04-03 21:15 修改: 2022-08-11 18:44

ssl_client CVE-2022-30065 高危 1.29.3-r4 1.35.0-r17 busybox: A use-after-free in Busybox's awk applet leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-30065

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-05-18 15:15 修改: 2023-02-11 17:44

busybox CVE-2021-42379 高危 1.29.3-r4 1.34.0-r0 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the next_input_file()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42379

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

zlib CVE-2018-25032 高危 1.2.11-r1 1.2.11-r4 zlib: A flaw found in zlib when compressing (not decompressing) certain inputs

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-25032

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-03-25 09:15 修改: 2023-11-07 02:56

busybox CVE-2021-42374 中危 1.29.3-r4 1.34.0-r0 busybox: out-of-bounds read in unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42374

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42375 中危 1.29.3-r4 1.34.0-r0 busybox: incorrect handling of a special element in ash applet leads to denial of service when processing a crafted shell command

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42375

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2023-42363 中危 1.29.3-r4 1.36.1-r27 busybox: use-after-free in awk

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42363

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-27 22:15 修改: 2023-11-30 05:06

libcrypto1.1 CVE-2019-1547 中危 1.1.1a-r1 1.1.1d-r1 openssl: side-channel weak encryption vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1547

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-09-10 17:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2019-1549 中危 1.1.1a-r1 1.1.1d-r1 openssl: information disclosure in fork()

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1549

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-09-10 17:15 修改: 2023-11-07 03:08

libcrypto1.1 CVE-2019-1551 中危 1.1.1a-r1 1.1.1d-r3 openssl: Integer overflow in RSAZ modular exponentiation on x86_64

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1551

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-12-06 18:15 修改: 2023-11-07 03:08

libcrypto1.1 CVE-2020-1971 中危 1.1.1a-r1 1.1.1i-r0 openssl: EDIPARTYNAME NULL pointer de-reference

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-1971

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2020-12-08 16:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2021-23841 中危 1.1.1a-r1 1.1.1j-r0 openssl: NULL pointer dereference in X509_issuer_and_serial_hash()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23841

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-02-16 17:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2021-3449 中危 1.1.1a-r1 1.1.1k-r0 openssl: NULL pointer dereference in signature_algorithms processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3449

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-03-25 15:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2022-1343 中危 1.1.1a-r1 3.0.3-r0 openssl: Signer certificate verification returns inaccurate response when using OCSP_NOCHECKS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1343

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-05-03 16:15 修改: 2023-11-07 03:41

libcrypto1.1 CVE-2022-1434 中危 1.1.1a-r1 3.0.3-r0 openssl: Incorrect MAC key used in the RC4-MD5 ciphersuite

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1434

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-05-03 16:15 修改: 2023-11-07 03:41

libcrypto1.1 CVE-2022-2097 中危 1.1.1a-r1 3.0.5-r0 openssl: AES OCB fails to encrypt some bytes

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2097

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-07-05 11:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2022-4203 中危 1.1.1a-r1 3.0.8-r0 openssl: read buffer overflow in X.509 certificate verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4203

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-24 15:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2022-4304 中危 1.1.1a-r1 3.0.8-r0 openssl: timing attack in RSA Decryption implementation

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4304

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0465 中危 1.1.1a-r1 3.1.0-r2 openssl: Invalid certificate policies in leaf certificates are silently ignored

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0465

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2019-1547 中危 1.1.1a-r1 1.1.1d-r1 openssl: side-channel weak encryption vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1547

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-09-10 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2019-1549 中危 1.1.1a-r1 1.1.1d-r1 openssl: information disclosure in fork()

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1549

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-09-10 17:15 修改: 2023-11-07 03:08

libssl1.1 CVE-2019-1551 中危 1.1.1a-r1 1.1.1d-r3 openssl: Integer overflow in RSAZ modular exponentiation on x86_64

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1551

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-12-06 18:15 修改: 2023-11-07 03:08

libssl1.1 CVE-2020-1971 中危 1.1.1a-r1 1.1.1i-r0 openssl: EDIPARTYNAME NULL pointer de-reference

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-1971

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2020-12-08 16:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2021-23841 中危 1.1.1a-r1 1.1.1j-r0 openssl: NULL pointer dereference in X509_issuer_and_serial_hash()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23841

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-02-16 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2021-3449 中危 1.1.1a-r1 1.1.1k-r0 openssl: NULL pointer dereference in signature_algorithms processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3449

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-03-25 15:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2022-1343 中危 1.1.1a-r1 3.0.3-r0 openssl: Signer certificate verification returns inaccurate response when using OCSP_NOCHECKS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1343

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-05-03 16:15 修改: 2023-11-07 03:41

libssl1.1 CVE-2022-1434 中危 1.1.1a-r1 3.0.3-r0 openssl: Incorrect MAC key used in the RC4-MD5 ciphersuite

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1434

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-05-03 16:15 修改: 2023-11-07 03:41

libssl1.1 CVE-2022-2097 中危 1.1.1a-r1 3.0.5-r0 openssl: AES OCB fails to encrypt some bytes

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2097

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2022-07-05 11:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2022-4203 中危 1.1.1a-r1 3.0.8-r0 openssl: read buffer overflow in X.509 certificate verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4203

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-24 15:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2022-4304 中危 1.1.1a-r1 3.0.8-r0 openssl: timing attack in RSA Decryption implementation

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4304

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0465 中危 1.1.1a-r1 3.1.0-r2 openssl: Invalid certificate policies in leaf certificates are silently ignored

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0465

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-1255 中危 1.1.1a-r1 3.1.0-r4 openssl: Input buffer over-read in AES-XTS implementation on 64 bit ARM

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1255

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-04-20 17:15 修改: 2023-09-08 17:15

libssl1.1 CVE-2023-2650 中危 1.1.1a-r1 3.1.1-r0 openssl: Possible DoS translating ASN.1 object identifiers

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2650

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-05-30 14:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-2975 中危 1.1.1a-r1 3.1.1-r2 openssl: AES-SIV cipher implementation contains a bug that causes it to ignore empty associated data entries

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2975

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-07-14 12:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-3446 中危 1.1.1a-r1 3.1.1-r3 openssl: Excessive time spent checking DH keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3446

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-07-19 12:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-3817 中危 1.1.1a-r1 3.1.2-r0 OpenSSL: Excessive time spent checking DH q parameter value

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3817

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-07-31 16:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-5678 中危 1.1.1a-r1 3.1.4-r1 openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5678

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-06 16:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-6129 中危 1.1.1a-r1 3.1.4-r3 openssl: POLY1305 MAC implementation corrupts vector registers on PowerPC

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6129

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-01-09 17:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-6237 中危 1.1.1a-r1 3.1.4-r4 openssl: Excessive time spent checking invalid RSA public keys

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6237

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-04-25 07:15 修改: 2024-11-01 15:35

libssl1.1 CVE-2024-0727 中危 1.1.1a-r1 3.1.4-r5 openssl: denial of service via null dereference

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0727

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-01-26 09:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2024-4603 中危 1.1.1a-r1 3.3.0-r2 openssl: Excessive time spent checking DSA keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4603

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-05-16 16:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2024-4741 中危 1.1.1a-r1 3.3.0-r3 openssl: Use After Free with SSL_free_buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4741

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-11-13 11:15 修改: 2024-11-13 17:01

libssl1.1 CVE-2024-5535 中危 1.1.1a-r1 3.3.1-r1 openssl: SSL_select_next_proto buffer overread

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-5535

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-06-27 11:15 修改: 2024-07-12 14:15

libssl1.1 CVE-2024-6119 中危 1.1.1a-r1 3.3.2-r0 openssl: Possible denial of service in X.509 name checks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6119

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-09-03 16:15 修改: 2024-09-03 21:35

libcrypto1.1 CVE-2023-1255 中危 1.1.1a-r1 3.1.0-r4 openssl: Input buffer over-read in AES-XTS implementation on 64 bit ARM

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1255

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-04-20 17:15 修改: 2023-09-08 17:15

musl CVE-2020-28928 中危 1.1.20-r2 1.2.2_pre2-r0 In musl libc through 1.2.1, wcsnrtombs mishandles particular combinati ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-28928

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2020-11-24 18:15 修改: 2023-11-07 03:21

libcrypto1.1 CVE-2023-2650 中危 1.1.1a-r1 3.1.1-r0 openssl: Possible DoS translating ASN.1 object identifiers

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2650

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-05-30 14:15 修改: 2024-02-04 09:15

musl-utils CVE-2020-28928 中危 1.1.20-r2 1.2.2_pre2-r0 In musl libc through 1.2.1, wcsnrtombs mishandles particular combinati ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-28928

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2020-11-24 18:15 修改: 2023-11-07 03:21

libcrypto1.1 CVE-2023-2975 中危 1.1.1a-r1 3.1.1-r2 openssl: AES-SIV cipher implementation contains a bug that causes it to ignore empty associated data entries

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2975

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-07-14 12:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2023-3446 中危 1.1.1a-r1 3.1.1-r3 openssl: Excessive time spent checking DH keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3446

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-07-19 12:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2023-3817 中危 1.1.1a-r1 3.1.2-r0 OpenSSL: Excessive time spent checking DH q parameter value

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3817

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-07-31 16:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2023-5678 中危 1.1.1a-r1 3.1.4-r1 openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5678

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-06 16:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2023-6129 中危 1.1.1a-r1 3.1.4-r3 openssl: POLY1305 MAC implementation corrupts vector registers on PowerPC

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6129

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-01-09 17:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2023-6237 中危 1.1.1a-r1 3.1.4-r4 openssl: Excessive time spent checking invalid RSA public keys

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6237

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-04-25 07:15 修改: 2024-11-01 15:35

libcrypto1.1 CVE-2024-0727 中危 1.1.1a-r1 3.1.4-r5 openssl: denial of service via null dereference

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0727

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-01-26 09:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2024-4603 中危 1.1.1a-r1 3.3.0-r2 openssl: Excessive time spent checking DSA keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4603

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-05-16 16:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2024-4741 中危 1.1.1a-r1 3.3.0-r3 openssl: Use After Free with SSL_free_buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4741

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-11-13 11:15 修改: 2024-11-13 17:01

libcrypto1.1 CVE-2024-5535 中危 1.1.1a-r1 3.3.1-r1 openssl: SSL_select_next_proto buffer overread

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-5535

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-06-27 11:15 修改: 2024-07-12 14:15

libcrypto1.1 CVE-2024-6119 中危 1.1.1a-r1 3.3.2-r0 openssl: Possible denial of service in X.509 name checks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6119

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-09-03 16:15 修改: 2024-09-03 21:35

busybox CVE-2023-42364 中危 1.29.3-r4 1.36.1-r30 busybox: use-after-free

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42364

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-27 23:15 修改: 2024-10-11 21:36

busybox CVE-2023-42365 中危 1.29.3-r4 1.36.1-r30 busybox: use-after-free

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42365

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-27 23:15 修改: 2023-11-30 05:08

busybox CVE-2023-42366 中危 1.29.3-r4 1.36.1-r25 busybox: A heap-buffer-overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42366

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-27 23:15 修改: 2024-12-06 14:15

dnsmasq CVE-2020-25683 中危 2.80-r3 2.83-r0 dnsmasq: heap-based buffer overflow with large memcpy in get_rdata() when DNSSEC is enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25683

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2021-01-20 16:15 修改: 2023-11-07 03:20

ssl_client CVE-2021-42374 中危 1.29.3-r4 1.34.0-r0 busybox: out-of-bounds read in unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42374

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42375 中危 1.29.3-r4 1.34.0-r0 busybox: incorrect handling of a special element in ash applet leads to denial of service when processing a crafted shell command

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42375

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2023-42363 中危 1.29.3-r4 1.36.1-r27 busybox: use-after-free in awk

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42363

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-27 22:15 修改: 2023-11-30 05:06

ssl_client CVE-2023-42364 中危 1.29.3-r4 1.36.1-r30 busybox: use-after-free

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42364

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-27 23:15 修改: 2024-10-11 21:36

ssl_client CVE-2023-42365 中危 1.29.3-r4 1.36.1-r30 busybox: use-after-free

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42365

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-27 23:15 修改: 2023-11-30 05:08

ssl_client CVE-2023-42366 中危 1.29.3-r4 1.36.1-r25 busybox: A heap-buffer-overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42366

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2023-11-27 23:15 修改: 2024-12-06 14:15

dnsmasq CVE-2020-25687 中危 2.80-r3 2.83-r0 dnsmasq: heap-based buffer overflow with large memcpy in sort_rrset() when DNSSEC is enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25687

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2021-01-20 17:15 修改: 2023-11-07 03:20

dnsmasq CVE-2021-3448 中危 2.80-r3 2.85-r0 dnsmasq: fixed outgoing port used when --server is used with an interface name

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3448

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2021-04-08 23:15 修改: 2023-11-07 03:38

dnsmasq CVE-2020-25686 低危 2.80-r3 2.83-r0 dnsmasq: multiple queries forwarded for the same name makes forging replies easier for an off-path attacker

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25686

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2021-01-20 17:15 修改: 2023-11-07 03:20

dnsmasq CVE-2019-14834 低危 2.80-r3 2.80-r5 dnsmasq: memory leak in the create_helper() function in /src/helper.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14834

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2020-01-07 17:15 修改: 2023-02-12 23:34

dnsmasq CVE-2020-25684 低危 2.80-r3 2.83-r0 dnsmasq: loose address/port check in reply_query() makes forging replies easier for an off-path attacker

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25684

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2021-01-20 16:15 修改: 2023-11-07 03:20

libcrypto1.1 CVE-2019-1563 低危 1.1.1a-r1 1.1.1d-r1 openssl: information disclosure in PKCS7_dataDecode and CMS_decrypt_set1_pkey

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1563

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-09-10 17:15 修改: 2023-11-07 03:08

libcrypto1.1 CVE-2021-23839 低危 1.1.1a-r1 1.1.1j-r0 openssl: incorrect SSLv2 rollback protection

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23839

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-02-16 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2019-1563 低危 1.1.1a-r1 1.1.1d-r1 openssl: information disclosure in PKCS7_dataDecode and CMS_decrypt_set1_pkey

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1563

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2019-09-10 17:15 修改: 2023-11-07 03:08

libssl1.1 CVE-2021-23839 低危 1.1.1a-r1 1.1.1j-r0 openssl: incorrect SSLv2 rollback protection

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23839

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2021-02-16 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2024-2511 低危 1.1.1a-r1 3.2.1-r2 openssl: Unbounded memory growth with session handling in TLSv1.3

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2511

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-04-08 14:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2024-9143 低危 1.1.1a-r1 3.3.2-r3 openssl: Low-level invalid GF(2^m) parameters lead to OOB memory access

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-9143

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-10-16 17:15 修改: 2024-11-08 16:35

libcrypto1.1 CVE-2024-2511 低危 1.1.1a-r1 3.2.1-r2 openssl: Unbounded memory growth with session handling in TLSv1.3

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2511

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-04-08 14:15 修改: 2024-10-14 15:15

libcrypto1.1 CVE-2024-9143 低危 1.1.1a-r1 3.3.2-r3 openssl: Low-level invalid GF(2^m) parameters lead to OOB memory access

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-9143

镜像层: sha256:0b32a561a108aaf4f684cba9ea2907c5503f04c64b7e80a206a5a66cc5941e12

发布日期: 2024-10-16 17:15 修改: 2024-11-08 16:35

dnsmasq CVE-2020-25685 低危 2.80-r3 2.83-r0 dnsmasq: loose query name check in reply_query() makes forging replies easier for an off-path attacker

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25685

镜像层: sha256:a914d23f05d6d126daf0f11c9e0329e6ec2f95a68630b550e0e9f19ca3bda679

发布日期: 2021-01-20 16:15 修改: 2023-11-07 03:20