| libcrypto3 |
CVE-2026-45447 |
高危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Heap Use-After-Free in OpenSSL PKCS7_verify()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45447
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:56
|
| libexpat |
CVE-2026-45186 |
高危 |
2.7.5-r0 |
2.8.1-r0 |
libexpat: denial of service via crafted XML input
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45186
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-05-10 07:16 修改: 2026-05-14 17:20
|
| libssl3 |
CVE-2026-45447 |
高危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Heap Use-After-Free in OpenSSL PKCS7_verify()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45447
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:56
|
| libxml2 |
CVE-2026-6732 |
高危 |
2.13.9-r0 |
2.13.9-r1 |
libxml2: libxml2: Denial of Service via crafted XSD-validated document
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-6732
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-04-23 23:16 修改: 2026-05-15 14:36
|
| nghttp2-libs |
CVE-2026-27135 |
高危 |
1.68.0-r0 |
1.68.1 |
nghttp2: nghttp2: Denial of Service via malformed HTTP/2 frames after session termination
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27135
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-18 18:16 修改: 2026-05-13 22:16
|
| curl |
CVE-2025-14017 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Security bypass due to global TLS option changes in multi-threaded LDAPS transfers
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14017
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-01-08 10:15 修改: 2026-01-27 21:29
|
| libcrypto3 |
CVE-2026-34182 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34182
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:13
|
| libcrypto3 |
CVE-2026-34183 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34183
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:12
|
| libcrypto3 |
CVE-2026-42764 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: NULL pointer dereference in QUIC server initial packet handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42764
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:25
|
| libcrypto3 |
CVE-2026-45445 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: AES-OCB IV Ignored on EVP_Cipher() Path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45445
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:57
|
| libcurl |
CVE-2025-14017 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Security bypass due to global TLS option changes in multi-threaded LDAPS transfers
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14017
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-01-08 10:15 修改: 2026-01-27 21:29
|
| libcurl |
CVE-2026-1965 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Authentication bypass due to incorrect connection reuse with Negotiate authentication
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-1965
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-11 11:15 修改: 2026-03-12 14:11
|
| libcurl |
CVE-2026-3783 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Information disclosure via OAuth2 bearer token leakage during HTTP(S) redirect
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3783
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-11 11:16 修改: 2026-03-12 14:10
|
| libcurl |
CVE-2026-3784 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Unauthorized access due to improper HTTP proxy connection reuse
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3784
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-11 11:16 修改: 2026-06-02 14:16
|
| libcurl |
CVE-2026-3805 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Arbitrary code execution or Denial of Service via use-after-free in SMB request handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3805
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-11 11:16 修改: 2026-03-12 14:08
|
| curl |
CVE-2026-1965 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Authentication bypass due to incorrect connection reuse with Negotiate authentication
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-1965
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-11 11:15 修改: 2026-03-12 14:11
|
| libpng |
CVE-2026-40930 |
中危 |
1.6.57-r0 |
1.6.58-r1 |
LIBPNG is a reference library for use in applications that process PNG ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40930
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-06-04 16:16 修改: 2026-06-04 16:23
|
| curl |
CVE-2026-3783 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Information disclosure via OAuth2 bearer token leakage during HTTP(S) redirect
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3783
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-11 11:16 修改: 2026-03-12 14:10
|
| libssl3 |
CVE-2026-34182 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34182
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:13
|
| libssl3 |
CVE-2026-34183 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34183
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:12
|
| libssl3 |
CVE-2026-42764 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: NULL pointer dereference in QUIC server initial packet handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42764
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:25
|
| libssl3 |
CVE-2026-45445 |
中危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: AES-OCB IV Ignored on EVP_Cipher() Path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45445
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:57
|
| curl |
CVE-2026-3784 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Unauthorized access due to improper HTTP proxy connection reuse
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3784
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-11 11:16 修改: 2026-06-02 14:16
|
| libxpm |
CVE-2026-4367 |
中危 |
3.5.17-r0 |
3.5.19-r0 |
libXpm: libXpm: Denial of Service via out-of-bounds read in XPM file parsing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-4367
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-06-16 19:16 修改: 2026-06-16 20:42
|
| curl |
CVE-2026-3805 |
中危 |
8.17.0-r1 |
8.19.0-r0 |
curl: curl: Arbitrary code execution or Denial of Service via use-after-free in SMB request handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3805
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-03-11 11:16 修改: 2026-03-12 14:08
|
| xz-libs |
CVE-2026-34743 |
中危 |
5.8.2-r0 |
5.8.3-r0 |
xz: XZ Utils: Denial of Service via buffer overflow in index decoding
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34743
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-04-02 19:21 修改: 2026-04-15 17:33
|
| libcrypto3 |
CVE-2026-42766 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Possible NULL Dereference in Password-Based CMS Decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42766
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:25
|
| libcurl |
CVE-2025-14524 |
低危 |
8.17.0-r1 |
8.19.0-r0 |
curl: Information disclosure via cross-protocol redirect with OAuth2 bearer token
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14524
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:53
|
| libcurl |
CVE-2025-14819 |
低危 |
8.17.0-r1 |
8.19.0-r0 |
curl: libcurl: Improper certificate validation due to cached TLS settings reuse
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14819
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:51
|
| libcrypto3 |
CVE-2026-42767 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: NULL Pointer Dereference in CRMF EncryptedValue Decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42767
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:58
|
| libexpat |
CVE-2026-41080 |
低危 |
2.7.5-r0 |
2.8.1-r0 |
libexpat: expat: libexpat: Denial of Service via hash flooding with crafted XML
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41080
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-04-16 17:16 修改: 2026-06-12 18:43
|
| libcrypto3 |
CVE-2026-42768 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42768
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:58
|
| libcrypto3 |
CVE-2026-42769 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42769
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:26
|
| libcrypto3 |
CVE-2026-42770 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: FFC-DH Peer Validation Uses Attacker-Supplied q
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42770
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:58
|
| libcrypto3 |
CVE-2026-45446 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45446
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:57
|
| libcrypto3 |
CVE-2026-7383 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Heap buffer overflow due to signed integer overflow in Unicode output sizing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7383
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:46
|
| libcrypto3 |
CVE-2026-9076 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9076
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:45
|
| libssl3 |
CVE-2026-34180 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Heap buffer over-read in ASN.1 decoding can lead to denial of service or information disclosure.
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34180
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:13
|
| libssl3 |
CVE-2026-34181 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34181
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:13
|
| libssl3 |
CVE-2026-42766 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Possible NULL Dereference in Password-Based CMS Decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42766
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:25
|
| libssl3 |
CVE-2026-42767 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: NULL Pointer Dereference in CRMF EncryptedValue Decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42767
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:58
|
| libssl3 |
CVE-2026-42768 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42768
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:58
|
| libssl3 |
CVE-2026-42769 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42769
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:26
|
| libssl3 |
CVE-2026-42770 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: FFC-DH Peer Validation Uses Attacker-Supplied q
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42770
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:58
|
| libssl3 |
CVE-2026-45446 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45446
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:57
|
| libssl3 |
CVE-2026-7383 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Heap buffer overflow due to signed integer overflow in Unicode output sizing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-7383
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:46
|
| libssl3 |
CVE-2026-9076 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-9076
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-16 02:45
|
| curl |
CVE-2025-14819 |
低危 |
8.17.0-r1 |
8.19.0-r0 |
curl: libcurl: Improper certificate validation due to cached TLS settings reuse
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14819
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:51
|
| curl |
CVE-2025-14524 |
低危 |
8.17.0-r1 |
8.19.0-r0 |
curl: Information disclosure via cross-protocol redirect with OAuth2 bearer token
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14524
镜像层: sha256:ac45a1fbc4ddc23ac3adedca185fae8a60bc9a95866b5a351768b4759979afea
发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:53
|
| libcrypto3 |
CVE-2026-34180 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: OpenSSL: Heap buffer over-read in ASN.1 decoding can lead to denial of service or information disclosure.
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34180
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:13
|
| libcrypto3 |
CVE-2026-34181 |
低危 |
3.5.6-r0 |
3.5.7-r0 |
openssl: PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34181
镜像层: sha256:a8d26d037006414043b277ecb95287692d0960219289d9e27b0bcea0ce233b02
发布日期: 2026-06-09 17:17 修改: 2026-06-15 18:13
|