| java-21-openjdk-headless |
CVE-2025-66293 |
高危 |
1:21.0.11.0.10-2.el9 |
|
libpng: LIBPNG out-of-bounds read in png_image_read_composite
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66293
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2025-12-03 21:15 修改: 2026-06-17 09:56
|
| java-21-openjdk-headless |
CVE-2026-22020 |
高危 |
1:21.0.11.0.10-2.el9 |
|
Important: java-17-openjdk security update
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-22020
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| java-21-openjdk-headless |
CVE-2026-25646 |
高危 |
1:21.0.11.0.10-2.el9 |
|
libpng: LIBPNG has a heap buffer overflow in png_set_quantize
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-25646
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-02-10 18:16 修改: 2026-06-17 10:25
|
| glibc |
CVE-2026-6238 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Application crash or uninitialized memory read via crafted DNS response
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6238
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2026-04-28 19:37 修改: 2026-06-19 21:17
|
| glibc-common |
CVE-2026-5435 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Out-of-bounds write via TSIG record processing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5435
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2026-04-28 13:19 修改: 2026-06-17 10:59
|
| glibc-common |
CVE-2026-5450 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` format specifier and large width
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5450
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2026-04-20 21:16 修改: 2026-06-17 10:59
|
| glibc-common |
CVE-2026-5928 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Information disclosure or denial of service via ungetwc function with specific wide character encodings
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5928
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2026-04-20 21:16 修改: 2026-06-17 10:59
|
| glibc-common |
CVE-2026-6238 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Application crash or uninitialized memory read via crafted DNS response
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6238
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2026-04-28 19:37 修改: 2026-06-19 21:17
|
| glibc-langpack-en |
CVE-2026-5435 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Out-of-bounds write via TSIG record processing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5435
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-04-28 13:19 修改: 2026-06-17 10:59
|
| glibc-langpack-en |
CVE-2026-5450 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` format specifier and large width
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5450
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-04-20 21:16 修改: 2026-06-17 10:59
|
| glibc-langpack-en |
CVE-2026-5928 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Information disclosure or denial of service via ungetwc function with specific wide character encodings
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5928
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-04-20 21:16 修改: 2026-06-17 10:59
|
| glibc-langpack-en |
CVE-2026-6238 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Application crash or uninitialized memory read via crafted DNS response
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6238
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-04-28 19:37 修改: 2026-06-19 21:17
|
| glibc |
CVE-2026-5435 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Out-of-bounds write via TSIG record processing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5435
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2026-04-28 13:19 修改: 2026-06-17 10:59
|
| glibc |
CVE-2026-5450 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` format specifier and large width
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5450
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2026-04-20 21:16 修改: 2026-06-17 10:59
|
| glibc |
CVE-2026-5928 |
中危 |
2.34-270.el9_8 |
|
glibc: glibc: Information disclosure or denial of service via ungetwc function with specific wide character encodings
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5928
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2026-04-20 21:16 修改: 2026-06-17 10:59
|
| java-21-openjdk-headless |
CVE-2025-28164 |
中危 |
1:21.0.11.0.10-2.el9 |
|
libpng: libpng: Denial of Service via buffer overflow in png_create_read_struct() function
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-28164
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-01-27 16:16 修改: 2026-06-17 09:04
|
| java-21-openjdk-headless |
CVE-2025-64505 |
中危 |
1:21.0.11.0.10-2.el9 |
|
libpng: LIBPNG heap buffer overflow via malformed palette index
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-64505
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2025-11-25 00:15 修改: 2026-06-17 09:54
|
| java-21-openjdk-headless |
CVE-2025-64506 |
中危 |
1:21.0.11.0.10-2.el9 |
|
libpng: LIBPNG heap buffer over-read
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-64506
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2025-11-25 00:15 修改: 2026-06-17 09:54
|
| java-21-openjdk-headless |
CVE-2026-22693 |
中危 |
1:21.0.11.0.10-2.el9 |
|
harfbuzz: Null Pointer Dereference in harfbuzz
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-22693
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-01-10 06:15 修改: 2026-06-17 10:20
|
| java-21-openjdk-headless |
CVE-2026-22695 |
中危 |
1:21.0.11.0.10-2.el9 |
|
libpng: libpng: Denial of service and information disclosure via heap buffer over-read in png_image_finish_read
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-22695
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-01-12 23:15 修改: 2026-06-17 10:20
|
| java-21-openjdk-headless |
CVE-2026-22801 |
中危 |
1:21.0.11.0.10-2.el9 |
|
libpng: libpng: Information disclosure and denial of service via integer truncation in simplified write API
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-22801
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-01-12 23:15 修改: 2026-06-17 10:20
|
| java-21-openjdk-headless |
CVE-2026-33416 |
中危 |
1:21.0.11.0.10-2.el9 |
|
libpng: libpng: Arbitrary code execution due to use-after-free vulnerability
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33416
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-03-26 17:16 修改: 2026-06-17 10:37
|
| java-21-openjdk-headless |
CVE-2026-33636 |
中危 |
1:21.0.11.0.10-2.el9 |
|
libpng: libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33636
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-03-26 17:16 修改: 2026-06-17 10:37
|
| java-21-openjdk-headless |
CVE-2026-34757 |
中危 |
1:21.0.11.0.10-2.el9 |
|
libpng: libpng: Information disclosure and data corruption via use-after-free vulnerability
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34757
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-04-09 15:16 修改: 2026-06-17 10:39
|
| java-21-openjdk-headless |
CVE-2026-41254 |
中危 |
1:21.0.11.0.10-2.el9 |
|
Little CMS: lcms2: mm2/Little-CMS: Little CMS: Information disclosure or denial of service via integer overflow in CubeSize
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41254
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-04-18 07:16 修改: 2026-06-17 10:46
|
| sed |
CVE-2026-5958 |
中危 |
4.8-10.el9 |
|
sed: GNU sed TOCTOU race condition
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5958
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-04-20 12:16 修改: 2026-06-17 10:59
|
| libgcc |
CVE-2021-46195 |
低危 |
11.5.0-14.el9 |
|
gcc: uncontrolled recursion in libiberty/rust-demangle.c
漏洞详情: https://avd.aquasec.com/nvd/cve-2021-46195
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2022-01-14 20:15 修改: 2026-06-17 04:14
|
| libgcc |
CVE-2022-27943 |
低危 |
11.5.0-14.el9 |
|
binutils: libiberty/rust-demangle.c in GNU GCC 11.2 allows stack exhaustion in demangle_const
漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27943
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2022-03-26 13:15 修改: 2026-06-17 04:37
|
| ncurses-base |
CVE-2023-50495 |
低危 |
6.2-12.20210508.el9 |
|
ncurses: segmentation fault via _nc_wrap_entry()
漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50495
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2023-12-12 15:15 修改: 2026-06-17 06:39
|
| ncurses-libs |
CVE-2023-50495 |
低危 |
6.2-12.20210508.el9 |
|
ncurses: segmentation fault via _nc_wrap_entry()
漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50495
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2023-12-12 15:15 修改: 2026-06-17 06:39
|
| nspr |
CVE-2020-12413 |
低危 |
4.36.0-8.el9_4 |
|
nss: Information exposure when DH secret are reused across multiple TLS connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2020-12413
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2023-02-16 22:15 修改: 2026-06-17 02:51
|
| nspr |
CVE-2024-7531 |
低危 |
4.36.0-8.el9_4 |
|
mozilla: nss: PK11_Encrypt using CKM_CHACHA20 can reveal plaintext on Intel Sandy Bridge machines
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7531
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2024-08-06 13:15 修改: 2026-06-17 08:20
|
| nss |
CVE-2020-12413 |
低危 |
3.112.0-8.el9_4 |
|
nss: Information exposure when DH secret are reused across multiple TLS connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2020-12413
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2023-02-16 22:15 修改: 2026-06-17 02:51
|
| nss |
CVE-2024-7531 |
低危 |
3.112.0-8.el9_4 |
|
mozilla: nss: PK11_Encrypt using CKM_CHACHA20 can reveal plaintext on Intel Sandy Bridge machines
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7531
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2024-08-06 13:15 修改: 2026-06-17 08:20
|
| nss-softokn |
CVE-2020-12413 |
低危 |
3.112.0-8.el9_4 |
|
nss: Information exposure when DH secret are reused across multiple TLS connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2020-12413
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2023-02-16 22:15 修改: 2026-06-17 02:51
|
| nss-softokn |
CVE-2024-7531 |
低危 |
3.112.0-8.el9_4 |
|
mozilla: nss: PK11_Encrypt using CKM_CHACHA20 can reveal plaintext on Intel Sandy Bridge machines
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7531
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2024-08-06 13:15 修改: 2026-06-17 08:20
|
| nss-softokn-freebl |
CVE-2020-12413 |
低危 |
3.112.0-8.el9_4 |
|
nss: Information exposure when DH secret are reused across multiple TLS connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2020-12413
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2023-02-16 22:15 修改: 2026-06-17 02:51
|
| nss-softokn-freebl |
CVE-2024-7531 |
低危 |
3.112.0-8.el9_4 |
|
mozilla: nss: PK11_Encrypt using CKM_CHACHA20 can reveal plaintext on Intel Sandy Bridge machines
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7531
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2024-08-06 13:15 修改: 2026-06-17 08:20
|
| nss-sysinit |
CVE-2020-12413 |
低危 |
3.112.0-8.el9_4 |
|
nss: Information exposure when DH secret are reused across multiple TLS connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2020-12413
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2023-02-16 22:15 修改: 2026-06-17 02:51
|
| nss-sysinit |
CVE-2024-7531 |
低危 |
3.112.0-8.el9_4 |
|
mozilla: nss: PK11_Encrypt using CKM_CHACHA20 can reveal plaintext on Intel Sandy Bridge machines
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7531
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2024-08-06 13:15 修改: 2026-06-17 08:20
|
| nss-util |
CVE-2020-12413 |
低危 |
3.112.0-8.el9_4 |
|
nss: Information exposure when DH secret are reused across multiple TLS connections
漏洞详情: https://avd.aquasec.com/nvd/cve-2020-12413
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2023-02-16 22:15 修改: 2026-06-17 02:51
|
| nss-util |
CVE-2024-7531 |
低危 |
3.112.0-8.el9_4 |
|
mozilla: nss: PK11_Encrypt using CKM_CHACHA20 can reveal plaintext on Intel Sandy Bridge machines
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7531
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2024-08-06 13:15 修改: 2026-06-17 08:20
|
| pcre2 |
CVE-2022-41409 |
低危 |
10.40-6.el9 |
|
pcre2: negative repeat value in a pcre2test subject line leads to inifinite loop
漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41409
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2023-07-18 14:15 修改: 2026-06-17 05:03
|
| pcre2-syntax |
CVE-2022-41409 |
低危 |
10.40-6.el9 |
|
pcre2: negative repeat value in a pcre2test subject line leads to inifinite loop
漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41409
镜像层: sha256:38da07aa98de857aefd58868dc52d2f008d620cb66d93e7ac7b6acd0a15475ff
发布日期: 2023-07-18 14:15 修改: 2026-06-17 05:03
|
| java-21-openjdk-headless |
CVE-2026-27171 |
低危 |
1:21.0.11.0.10-2.el9 |
|
zlib: zlib: Denial of Service via infinite loop in CRC32 combine functions
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27171
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-02-18 04:16 修改: 2026-06-17 10:26
|
| sqlite-libs |
CVE-2024-0232 |
低危 |
3.34.1-10.el9_8 |
|
sqlite: use-after-free bug in jsonParseAddNodeArray
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0232
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2024-01-16 14:15 修改: 2026-06-17 06:53
|
| sqlite-libs |
CVE-2025-70873 |
低危 |
3.34.1-10.el9_8 |
|
sqlite: SQLite: Information Disclosure via Crafted ZIP File
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-70873
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-03-12 19:16 修改: 2026-06-17 10:03
|
| zlib |
CVE-2026-27171 |
低危 |
1.2.11-40.el9 |
|
zlib: zlib: Denial of Service via infinite loop in CRC32 combine functions
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27171
镜像层: sha256:a8ba1c7ad7d29f6d5772bea6732a612c1f0353e82ee2735fb7d81237cfed5e6a
发布日期: 2026-02-18 04:16 修改: 2026-06-17 10:26
|