docker.io/postgis/postgis:11-2.5-alpine linux/amd64

docker.io/postgis/postgis:11-2.5-alpine - Trivy安全扫描结果 扫描时间: 2024-12-23 16:03
全部漏洞信息
低危漏洞:3 中危漏洞:84 高危漏洞:42 严重漏洞:3

系统OS: alpine 3.16.2 扫描引擎: Trivy 扫描时间: 2024-12-23 16:03

docker.io/postgis/postgis:11-2.5-alpine (alpine 3.16.2) (alpine)
低危漏洞:3 中危漏洞:84 高危漏洞:42 严重漏洞:3
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libcurl CVE-2022-32221 严重 7.83.1-r3 7.83.1-r4 curl: POST following PUT confusion

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-32221

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-12-05 22:15 修改: 2024-03-27 15:00

libcurl CVE-2023-23914 严重 7.83.1-r3 7.83.1-r6 curl: HSTS ignored on multiple requests

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-23914

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-23 20:15 修改: 2024-03-27 14:55

libcurl CVE-2023-38545 严重 7.83.1-r3 8.4.0-r0 curl: heap based buffer overflow in the SOCKS5 proxy handshake

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-38545

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-10-18 04:15 修改: 2024-10-17 22:35

expat CVE-2024-28757 高危 2.4.8-r0 2.6.2-r0 expat: XML Entity Expansion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28757

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2024-03-10 05:15 修改: 2024-05-01 19:15

krb5-libs CVE-2022-42898 高危 1.19.3-r0 1.19.4-r0 krb5: integer overflow vulnerabilities in PAC parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42898

镜像层: sha256:f21e1b46500f1a69833db51cbc6a6f00ff7bb32a3af23905122bb85c000aa322

发布日期: 2022-12-25 06:15 修改: 2023-10-08 09:15

libcom_err CVE-2022-1304 高危 1.46.5-r0 1.46.6-r0 e2fsprogs: out-of-bounds read/write via crafted filesystem

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1304

镜像层: sha256:f21e1b46500f1a69833db51cbc6a6f00ff7bb32a3af23905122bb85c000aa322

发布日期: 2022-04-14 21:15 修改: 2024-11-22 12:15

libcrypto1.1 CVE-2022-4450 高危 1.1.1q-r0 1.1.1t-r0 openssl: double free after calling PEM_read_bio_ex

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4450

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0215 高危 1.1.1q-r0 1.1.1t-r0 openssl: use-after-free following BIO_new_NDEF

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0215

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-02-08 20:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2023-0286 高危 1.1.1q-r0 1.1.1t-r0 openssl: X.400 address type confusion in X.509 GeneralName

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0286

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0464 高危 1.1.1q-r0 1.1.1t-r1 openssl: Denial of service by excessive resource usage in verifying X509 policy constraints

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0464

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-03-22 17:15 修改: 2024-06-21 19:15

expat CVE-2022-40674 高危 2.4.8-r0 2.4.9-r0 expat: a use-after-free in the doContent function in xmlparse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40674

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-09-14 11:15 修改: 2023-11-07 03:52

expat CVE-2022-43680 高危 2.4.8-r0 2.5.0-r0 expat: use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43680

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-10-24 14:15 修改: 2024-01-21 02:08

expat CVE-2023-52425 高危 2.4.8-r0 2.6.0-r0 expat: parsing large tokens can trigger a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-52425

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2024-02-04 20:15 修改: 2024-08-26 20:35

libcurl CVE-2022-42915 高危 7.83.1-r3 7.83.1-r4 curl: HTTP proxy double-free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42915

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-10-29 20:15 修改: 2024-03-27 14:59

libcurl CVE-2022-42916 高危 7.83.1-r3 7.83.1-r4 curl: HSTS bypass via IDN

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42916

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-10-29 02:15 修改: 2024-03-27 14:59

libcurl CVE-2022-43551 高危 7.83.1-r3 7.83.1-r5 curl: HSTS bypass via IDN

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43551

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-12-23 15:15 修改: 2024-03-27 14:58

libcurl CVE-2023-27533 高危 7.83.1-r3 8.0.1-r0 curl: TELNET option IAC injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27533

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-30 20:15 修改: 2024-03-27 14:54

libcurl CVE-2023-27534 高危 7.83.1-r3 8.0.1-r0 curl: SFTP path ~ resolving discrepancy

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27534

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-30 20:15 修改: 2024-03-27 14:54

libcurl CVE-2023-28319 高危 7.83.1-r3 8.1.0-r0 curl: use after free in SSH sha256 fingerprint check

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28319

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-05-26 21:15 修改: 2023-10-20 18:42

libcurl CVE-2023-38039 高危 7.83.1-r3 8.3.0-r0 curl: out of heap memory issue due to missing limit on header quantity

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-38039

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-09-15 04:15 修改: 2024-04-01 15:45

libde265 CVE-2020-21598 高危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow in the ff_hevc_put_unw ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21598

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-22 18:02

libde265 CVE-2022-47655 高危 1.0.8-r2 1.0.11-r0 Libde265 1.0.9 is vulnerable to Buffer Overflow in function void put_q ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-47655

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-01-05 16:15 修改: 2023-02-11 13:15

libde265 CVE-2023-27103 高危 1.0.8-r2 1.0.11-r1 Libde265 v1.0.11 was discovered to contain a heap buffer overflow via ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27103

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-15 15:15 修改: 2023-11-30 19:15

libde265 CVE-2023-49465 高危 1.0.8-r2 1.0.15-r0 Libde265 v1.0.14 was discovered to contain a heap-buffer-overflow vuln ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-49465

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-07 20:15 修改: 2023-12-30 21:15

libde265 CVE-2023-49467 高危 1.0.8-r2 1.0.15-r0 Libde265 v1.0.14 was discovered to contain a heap-buffer-overflow vuln ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-49467

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-07 20:15 修改: 2023-12-30 21:15

libde265 CVE-2023-49468 高危 1.0.8-r2 1.0.15-r0 Libde265 v1.0.14 was discovered to contain a global buffer overflow vu ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-49468

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-07 20:15 修改: 2024-08-28 17:35

libpq CVE-2023-2454 高危 14.5-r0 14.8-r0 postgresql: schema_element defeats protective search_path changes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2454

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-06-09 19:15 修改: 2023-07-06 19:15

libpq CVE-2023-39417 高危 14.5-r0 14.9-r0 postgresql: extension script @substitutions@ within quoting allow SQL injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39417

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-08-11 13:15 修改: 2024-09-09 08:15

libpq CVE-2023-5869 高危 14.5-r0 14.10-r0 postgresql: Buffer overrun from integer overflow in array modification

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5869

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-10 18:15 修改: 2024-09-14 00:15

libpq CVE-2024-0985 高危 14.5-r0 14.11-r0 postgresql: non-owner 'REFRESH MATERIALIZED VIEW CONCURRENTLY' executes arbitrary SQL

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0985

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2024-02-08 13:15 修改: 2024-12-20 13:15

libssl1.1 CVE-2022-4450 高危 1.1.1q-r0 1.1.1t-r0 openssl: double free after calling PEM_read_bio_ex

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4450

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0215 高危 1.1.1q-r0 1.1.1t-r0 openssl: use-after-free following BIO_new_NDEF

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0215

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-02-08 20:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2023-0286 高危 1.1.1q-r0 1.1.1t-r0 openssl: X.400 address type confusion in X.509 GeneralName

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0286

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0464 高危 1.1.1q-r0 1.1.1t-r1 openssl: Denial of service by excessive resource usage in verifying X509 policy constraints

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0464

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-03-22 17:15 修改: 2024-06-21 19:15

libwebp CVE-2023-1999 高危 1.2.3-r0 1.2.3-r1 Mozilla: libwebp: Double-free in libwebp

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1999

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-06-20 12:15 修改: 2023-09-17 09:15

libwebp CVE-2023-4863 高危 1.2.3-r0 1.2.3-r2 libwebp: Heap buffer overflow in WebP Codec

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4863

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-09-12 15:15 修改: 2024-12-20 19:00

libxml2 CVE-2022-40303 高危 2.9.14-r1 2.9.14-r2 libxml2: integer overflows with XML_PARSE_HUGE

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40303

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-23 00:15 修改: 2023-11-07 03:52

libxml2 CVE-2022-40304 高危 2.9.14-r1 2.9.14-r2 libxml2: dict corruption caused by entity reference cycles

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40304

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-23 18:15 修改: 2023-11-07 03:52

ncurses-libs CVE-2023-29491 高危 6.3_p20220521-r0 6.3_p20220521-r1 ncurses: Local users can trigger security-relevant memory corruption via malformed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29491

镜像层: sha256:f21e1b46500f1a69833db51cbc6a6f00ff7bb32a3af23905122bb85c000aa322

发布日期: 2023-04-14 01:15 修改: 2024-01-31 03:15

ncurses-terminfo-base CVE-2023-29491 高危 6.3_p20220521-r0 6.3_p20220521-r1 ncurses: Local users can trigger security-relevant memory corruption via malformed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29491

镜像层: sha256:f21e1b46500f1a69833db51cbc6a6f00ff7bb32a3af23905122bb85c000aa322

发布日期: 2023-04-14 01:15 修改: 2024-01-31 03:15

nghttp2-libs CVE-2023-35945 高危 1.47.0-r0 1.47.0-r1 envoy: HTTP/2 memory leak in nghttp2 codec

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-35945

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-07-13 21:15 修改: 2023-10-24 17:26

nghttp2-libs CVE-2023-44487 高危 1.47.0-r0 1.47.0-r2 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-10-10 14:15 修改: 2024-12-20 17:40

openexr CVE-2021-23169 高危 2.5.5-r3 3.1.1-r0 OpenEXR: Heap-buffer-overflow in Imf_2_5::copyIntoFrameBuffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23169

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-06-08 12:15 修改: 2023-11-07 03:30

sqlite-libs CVE-2023-7104 高危 3.38.5-r0 3.40.1-r1 sqlite: heap-buffer-overflow at sessionfuzz

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7104

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-29 10:15 修改: 2024-05-17 02:34

tiff CVE-2022-3970 高危 4.3.0-r1 4.4.0-r1 libtiff: integer overflow in function TIFFReadRGBATileExt of the file

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3970

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-13 08:15 修改: 2023-11-17 19:04

libde265 CVE-2020-21594 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow in the put_epel_hv_fal ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21594

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2020-21595 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow in the mc_luma functio ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21595

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2020-21596 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a global buffer overflow in the decode_CABAC_ ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21596

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-22 18:02

libde265 CVE-2020-21597 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow in the mc_chroma funct ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21597

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-22 18:02

libde265 CVE-2020-21599 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow in the de265_image::av ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21599

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-16 03:05

libde265 CVE-2020-21600 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow in the put_weighted_pr ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21600

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2020-21601 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a stack buffer overflow in the put_qpel_fallb ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21601

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2020-21602 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow in the put_weighted_bi ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21602

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2020-21603 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow in the put_qpel_0_0_fa ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21603

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2020-21604 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow fault in the _mm_loadl ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21604

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2020-21605 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a segmentation fault in the apply_sao_interna ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21605

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2020-21606 中危 1.0.8-r2 1.0.11-r0 libde265 v1.0.4 contains a heap buffer overflow fault in the put_epel_ ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21606

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-09-16 22:15 修改: 2023-02-11 13:15

libde265 CVE-2022-43236 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vuln ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43236

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:18

libde265 CVE-2022-43237 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vuln ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43237

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:18

libde265 CVE-2022-43238 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43238

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:23

libde265 CVE-2022-43239 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43239

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:23

libde265 CVE-2022-43240 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43240

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:24

libde265 CVE-2022-43241 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43241

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:24

libde265 CVE-2022-43242 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43242

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:25

libde265 CVE-2022-43243 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43243

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:25

libde265 CVE-2022-43244 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43244

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:25

libde265 CVE-2022-43245 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a segmentation violation via ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43245

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:25

libde265 CVE-2022-43248 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43248

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:25

libde265 CVE-2022-43249 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43249

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:25

libde265 CVE-2022-43250 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43250

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:25

libde265 CVE-2022-43252 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43252

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:25

libde265 CVE-2022-43253 中危 1.0.8-r2 1.0.11-r0 Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulne ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43253

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-11-02 14:15 修改: 2023-02-27 15:26

libde265 CVE-2023-27102 中危 1.0.8-r2 1.0.11-r1 Libde265 v1.0.11 was discovered to contain a segmentation violation vi ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27102

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-15 15:15 修改: 2023-11-30 19:15

busybox CVE-2023-42366 中危 1.35.0-r17 1.35.0-r18 busybox: A heap-buffer-overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42366

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-11-27 23:15 修改: 2024-12-06 14:15

expat CVE-2023-52426 中危 2.4.8-r0 2.6.0-r0 expat: recursive XML entity expansion vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-52426

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2024-02-04 20:15 修改: 2024-03-07 17:15

libcurl CVE-2022-43552 中危 7.83.1-r3 7.83.1-r5 curl: Use-after-free triggered by an HTTP proxy deny response

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-43552

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-09 20:15 修改: 2024-10-27 15:35

libcurl CVE-2023-23915 中危 7.83.1-r3 7.83.1-r6 curl: HSTS amnesia with --parallel

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-23915

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-23 20:15 修改: 2024-03-27 14:55

libpq CVE-2023-2455 中危 14.5-r0 14.8-r0 postgresql: row security policies disregard user ID changes after inlining.

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2455

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-06-09 19:15 修改: 2023-07-06 19:15

libpq CVE-2023-39418 中危 14.5-r0 14.9-r0 postgresql: MERGE fails to enforce UPDATE or SELECT row security policies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39418

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-08-11 13:15 修改: 2024-12-06 11:15

libpq CVE-2023-5868 中危 14.5-r0 14.10-r0 postgresql: Memory disclosure in aggregate function calls

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5868

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-10 18:15 修改: 2024-09-14 00:15

libpq CVE-2023-5870 中危 14.5-r0 14.10-r0 postgresql: Role pg_signal_backend can signal certain superuser processes.

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5870

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-10 18:15 修改: 2024-09-14 00:15

libcurl CVE-2023-23916 中危 7.83.1-r3 7.83.1-r6 curl: HTTP multi-header compression denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-23916

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-23 20:15 修改: 2024-03-27 14:54

libcurl CVE-2023-27535 中危 7.83.1-r3 8.0.1-r0 curl: FTP too eager connection reuse

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27535

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-30 20:15 修改: 2024-03-27 14:47

libcurl CVE-2023-27536 中危 7.83.1-r3 8.0.1-r0 curl: GSS delegation too eager connection re-use

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27536

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-30 20:15 修改: 2024-03-27 14:46

libcurl CVE-2023-27537 中危 7.83.1-r3 8.0.1-r0 curl: HSTS double-free

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27537

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-30 20:15 修改: 2024-03-27 14:46

libssl1.1 CVE-2022-4304 中危 1.1.1q-r0 1.1.1t-r0 openssl: timing attack in RSA Decryption implementation

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4304

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0465 中危 1.1.1q-r0 1.1.1t-r2 openssl: Invalid certificate policies in leaf certificates are silently ignored

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0465

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-2650 中危 1.1.1q-r0 1.1.1u-r0 openssl: Possible DoS translating ASN.1 object identifiers

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2650

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-05-30 14:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-3446 中危 1.1.1q-r0 1.1.1u-r2 openssl: Excessive time spent checking DH keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3446

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-07-19 12:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-3817 中危 1.1.1q-r0 1.1.1v-r0 OpenSSL: Excessive time spent checking DH q parameter value

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3817

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-07-31 16:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-5678 中危 1.1.1q-r0 1.1.1w-r1 openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5678

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-11-06 16:15 修改: 2024-10-14 15:15

libcurl CVE-2023-27538 中危 7.83.1-r3 8.0.1-r0 curl: SSH connection too eager reuse still

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27538

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-30 20:15 修改: 2024-03-27 14:46

libcurl CVE-2023-28320 中危 7.83.1-r3 8.1.0-r0 curl: siglongjmp race condition may lead to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28320

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-05-26 21:15 修改: 2023-10-20 18:42

libcurl CVE-2023-28321 中危 7.83.1-r3 8.1.0-r0 curl: IDN wildcard match may lead to Improper Cerificate Validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28321

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-05-26 21:15 修改: 2023-11-07 04:10

libcurl CVE-2023-46218 中危 7.83.1-r3 8.5.0-r0 curl: information disclosure by exploiting a mixed case flaw

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46218

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-07 01:15 修改: 2024-01-25 14:15

libcurl CVE-2023-46219 中危 7.83.1-r3 8.5.0-r0 curl: excessively long file name may lead to unknown HSTS status

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46219

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-12-12 02:15 修改: 2024-01-19 16:15

libcrypto1.1 CVE-2022-4304 中危 1.1.1q-r0 1.1.1t-r0 openssl: timing attack in RSA Decryption implementation

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4304

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-02-08 20:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-0465 中危 1.1.1q-r0 1.1.1t-r2 openssl: Invalid certificate policies in leaf certificates are silently ignored

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0465

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-2650 中危 1.1.1q-r0 1.1.1u-r0 openssl: Possible DoS translating ASN.1 object identifiers

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2650

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-05-30 14:15 修改: 2024-02-04 09:15

libcrypto1.1 CVE-2023-3446 中危 1.1.1q-r0 1.1.1u-r2 openssl: Excessive time spent checking DH keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3446

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-07-19 12:15 修改: 2024-10-14 15:15

openexr CVE-2021-23215 中危 2.5.5-r3 3.1.1-r0 OpenEXR: Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23215

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-06-08 12:15 修改: 2023-11-07 03:30

openexr CVE-2021-26260 中危 2.5.5-r3 3.1.1-r0 OpenEXR: Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-26260

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-06-08 12:15 修改: 2023-11-07 03:31

openexr CVE-2021-26945 中危 2.5.5-r3 3.1.1-r0 OpenEXR: Integer-overflow in bool Imf_2_5::readDeepTile<Imf_2_5::DeepTiledInputPart>

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-26945

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-06-08 12:15 修改: 2022-10-19 13:19

openexr CVE-2021-3598 中危 2.5.5-r3 3.1.1-r0 OpenEXR: Heap buffer overflow in Imf_3_1::CharPtrIO::readChars

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3598

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2021-07-06 15:15 修改: 2023-11-07 03:38

openexr CVE-2021-45942 中危 2.5.5-r3 3.1.4-r0 OpenEXR: heap-based buffer overflow in Imf_3_1:LineCompositeTask:execute

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-45942

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-01-01 01:15 修改: 2023-11-07 03:39

libcrypto1.1 CVE-2023-3817 中危 1.1.1q-r0 1.1.1v-r0 OpenSSL: Excessive time spent checking DH q parameter value

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3817

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-07-31 16:15 修改: 2024-10-14 15:15

ssl_client CVE-2023-42366 中危 1.35.0-r17 1.35.0-r18 busybox: A heap-buffer-overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-42366

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-11-27 23:15 修改: 2024-12-06 14:15

libcrypto1.1 CVE-2023-5678 中危 1.1.1q-r0 1.1.1w-r1 openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5678

镜像层: sha256:994393dc58e7931862558d06e46aa2bb17487044f670f310dffe1d24e4d1eec7

发布日期: 2023-11-06 16:15 修改: 2024-10-14 15:15

tiff CVE-2022-2056 中危 4.3.0-r1 4.4.0-r3 libtiff: division by zero issues in tiffcrop

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2056

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-06-30 16:15 修改: 2023-11-07 03:46

tiff CVE-2022-2057 中危 4.3.0-r1 4.4.0-r3 libtiff: division by zero issues in tiffcrop

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2057

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-06-30 16:15 修改: 2023-11-07 03:46

tiff CVE-2022-2058 中危 4.3.0-r1 4.4.0-r3 libtiff: division by zero issues in tiffcrop

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2058

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-06-30 16:15 修改: 2023-11-07 03:46

tiff CVE-2022-2519 中危 4.3.0-r1 4.4.0-r3 libtiff: Double free or corruption in rotateImage() function at tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2519

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-08-31 16:15 修改: 2023-02-23 15:57

tiff CVE-2022-2520 中危 4.3.0-r1 4.4.0-r3 libtiff: Assertion fail in rotateImage() function at tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2520

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-08-31 16:15 修改: 2023-02-28 15:39

tiff CVE-2022-2521 中危 4.3.0-r1 4.4.0-r3 libtiff: Invalid pointer free operation in TIFFClose() at tif_close.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2521

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-08-31 16:15 修改: 2023-02-23 15:59

tiff CVE-2022-2867 中危 4.3.0-r1 4.4.0-r0 libtiff: uint32_t underflow leads to out of bounds read and write in tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2867

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-08-17 22:15 修改: 2023-11-07 03:47

tiff CVE-2022-2868 中危 4.3.0-r1 4.4.0-r0 libtiff: Invalid crop_width and/or crop_length could cause an out-of-bounds read in reverseSamples16bits()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2868

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-08-17 22:15 修改: 2023-11-07 03:47

tiff CVE-2022-2869 中危 4.3.0-r1 4.4.0-r0 libtiff: tiffcrop.c has uint32_t underflow which leads to out of bounds read and write in extractContigSamples8bits()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2869

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-08-17 22:15 修改: 2023-11-07 03:47

tiff CVE-2022-34526 中危 4.3.0-r1 4.4.0-r3 libtiff: A stack overflow was discovered in the _TIFFVGetField function of Tiffsplit

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-34526

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2022-07-29 23:15 修改: 2023-11-07 03:48

tiff CVE-2023-0795 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds read in extractContigSamplesShifted16bits() in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0795

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0796 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds read in extractContigSamplesShifted24bits() in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0796

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0797 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds read in _TIFFmemcpy() in libtiff/tif_unix.c when called by functions in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0797

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0798 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds read in extractContigSamplesShifted8bits() in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0798

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0799 中危 4.3.0-r1 4.4.0-r2 libtiff: use-after-free in extractContigSamplesShifted32bits() in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0799

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0800 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds write in extractContigSamplesShifted16bits() in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0800

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0801 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds write in _TIFFmemcpy() in libtiff/tif_unix.c when called by functions in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0801

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0802 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds write in extractContigSamplesShifted32bits() in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0802

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0803 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds write in extractContigSamplesShifted16bits() in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0803

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-05-30 06:16

tiff CVE-2023-0804 中危 4.3.0-r1 4.4.0-r2 libtiff: out-of-bounds write in extractContigSamplesShifted24bits() in tools/tiffcrop.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0804

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-02-13 23:15 修改: 2023-11-07 04:01

tiff CVE-2023-3316 中危 4.3.0-r1 4.4.0-r4 libtiff: tiffcrop: null pointer dereference in TIFFClose()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3316

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-06-19 12:15 修改: 2023-08-01 02:15

libcurl CVE-2023-28322 低危 7.83.1-r3 8.1.0-r0 curl: more POST-after-PUT confusion

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28322

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-05-26 21:15 修改: 2023-12-22 16:15

libcurl CVE-2023-38546 低危 7.83.1-r3 8.4.0-r0 curl: cookie injection with none file

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-38546

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-10-18 04:15 修改: 2024-07-09 14:15

libpq CVE-2022-41862 低危 14.5-r0 14.7-r0 postgresql: Client memory disclosure when connecting with Kerberos to modified server

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41862

镜像层: sha256:b21ec381456e9934ba07cb1de707c41f753d5398784811b1d817caf66aef4b1d

发布日期: 2023-03-03 16:15 修改: 2023-04-27 15:15