docker.io/romancin/tinymediamanager:latest linux/amd64

docker.io/romancin/tinymediamanager:latest - Trivy安全扫描结果 扫描时间: 2024-12-01 03:05
全部漏洞信息
低危漏洞:0 中危漏洞:24 高危漏洞:51 严重漏洞:14

系统OS: alpine 3.12.6 扫描引擎: Trivy 扫描时间: 2024-12-01 03:05

docker.io/romancin/tinymediamanager:latest (alpine 3.12.6) (alpine)
低危漏洞:0 中危漏洞:24 高危漏洞:51 严重漏洞:14
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
apk-tools CVE-2021-36159 严重 2.10.5-r1 2.10.7-r0 libfetch: an out of boundary read while libfetch uses strtol to parse the relevant numbers into address bytes leads to information leak or crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36159

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-08-03 14:15 修改: 2023-11-07 03:36

expat CVE-2022-22822 严重 2.2.9-r1 2.2.10-r0 expat: Integer overflow in addBinding in xmlparse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22822

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-10 14:12 修改: 2022-10-06 15:29

expat CVE-2022-22823 严重 2.2.9-r1 2.2.10-r0 expat: Integer overflow in build_model in xmlparse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22823

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-10 14:12 修改: 2022-10-06 14:47

expat CVE-2022-22824 严重 2.2.9-r1 2.2.10-r0 expat: Integer overflow in defineAttribute in xmlparse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22824

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-10 14:12 修改: 2022-10-06 14:47

expat CVE-2022-23852 严重 2.2.9-r1 2.2.10-r1 expat: Integer overflow in function XML_GetBuffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23852

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-24 02:15 修改: 2022-10-29 02:44

expat CVE-2022-25235 严重 2.2.9-r1 2.2.10-r2 expat: Malformed 2- and 3-byte UTF-8 sequences can lead to arbitrary code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25235

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-16 01:15 修改: 2023-11-07 03:44

expat CVE-2022-25236 严重 2.2.9-r1 2.2.10-r2 expat: Namespace-separator characters in "xmlns[:prefix]" attribute values can lead to arbitrary code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25236

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-16 01:15 修改: 2023-11-07 03:44

expat CVE-2022-25315 严重 2.2.9-r1 2.2.10-r2 expat: Integer overflow in storeRawNames()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25315

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-18 05:15 修改: 2023-11-07 03:44

freetype CVE-2022-27404 严重 2.10.4-r0 2.10.4-r1 FreeType: Buffer overflow in sfnt_init_face

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27404

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-04-22 14:15 修改: 2024-02-29 01:34

libcrypto1.1 CVE-2021-3711 严重 1.1.1k-r0 1.1.1l-r0 openssl: SM2 Decryption Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3711

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2021-3711 严重 1.1.1k-r0 1.1.1l-r0 openssl: SM2 Decryption Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3711

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

libx11 CVE-2021-31535 严重 1.6.12-r0 1.6.12-r1 libX11: missing request length checks

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-31535

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-05-27 13:15 修改: 2023-11-07 03:34

openssl CVE-2021-3711 严重 1.1.1k-r0 1.1.1l-r0 openssl: SM2 Decryption Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3711

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

zlib CVE-2022-37434 严重 1.2.11-r3 1.2.12-r2 zlib: heap-based buffer over-read and overflow in inflate() in inflate.c via a large gzip header extra field

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37434

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2022-08-05 07:15 修改: 2023-07-19 00:56

apk-tools CVE-2021-30139 高危 2.10.5-r1 2.10.6-r0

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-30139

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-04-21 16:15 修改: 2021-04-22 18:21

busybox CVE-2021-42378 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_i()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42378

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42379 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the next_input_file()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42379

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42380 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the clrvar()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42380

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42381 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the hash_init()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42381

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42382 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42382

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

busybox CVE-2021-42383 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42383

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

expat CVE-2021-45960 高危 2.2.9-r1 2.2.10-r0 expat: Large number of prefixed XML attributes on a single tag can crash libexpat

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-45960

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-01 19:15 修改: 2022-10-06 19:08

expat CVE-2021-46143 高危 2.2.9-r1 2.2.10-r0 expat: Integer overflow in doProlog in xmlparse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-46143

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-06 04:15 修改: 2022-10-06 19:11

expat CVE-2022-22825 高危 2.2.9-r1 2.2.10-r0 expat: Integer overflow in lookup in xmlparse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22825

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-10 14:12 修改: 2022-10-06 14:47

expat CVE-2022-22826 高危 2.2.9-r1 2.2.10-r0 expat: Integer overflow in nextScaffoldPart in xmlparse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22826

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-10 14:12 修改: 2022-10-06 12:44

expat CVE-2022-22827 高危 2.2.9-r1 2.2.10-r0 expat: Integer overflow in storeAtts in xmlparse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22827

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-10 14:12 修改: 2022-10-06 12:52

expat CVE-2022-23990 高危 2.2.9-r1 2.2.10-r1 expat: integer overflow in the doProlog function

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23990

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-01-26 19:15 修改: 2023-11-07 03:44

expat CVE-2022-25314 高危 2.2.9-r1 2.2.10-r2 expat: Integer overflow in copyString()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25314

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-18 05:15 修改: 2023-11-07 03:44

busybox CVE-2021-42384 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the handle_special()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42384

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

freetype CVE-2022-27405 高危 2.10.4-r0 2.10.4-r2 FreeType: Segmentation violation via FNT_Size_Request

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27405

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-04-22 14:15 修改: 2024-02-29 01:34

freetype CVE-2022-27406 高危 2.10.4-r0 2.10.4-r2 Freetype: Segmentation violation via FT_Request_Size

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27406

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-04-22 14:15 修改: 2024-02-29 01:34

gmp CVE-2021-43618 高危 6.2.0-r0 6.2.1-r1 gmp: Integer overflow and resultant buffer overflow via crafted input

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43618

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-11-15 04:15 修改: 2023-09-29 15:15

busybox CVE-2021-42385 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42385

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

libcrypto1.1 CVE-2021-3712 高危 1.1.1k-r0 1.1.1l-r0 openssl: Read buffer overruns processing ASN.1 strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3712

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

libcrypto1.1 CVE-2022-0778 高危 1.1.1k-r0 1.1.1n-r0 openssl: Infinite loop in BN_mod_sqrt() reachable when parsing certificates

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0778

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2022-03-15 17:15 修改: 2024-06-21 19:15

libcurl CVE-2022-22576 高危 7.79.1-r0 7.79.1-r1 curl: OAUTH2 bearer bypass in connection re-use

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-22576

镜像层: sha256:e92b5bb7cda85f72e07fc4d3b10243182a46b372fc6142ee9e8cf80657841623

发布日期: 2022-05-26 17:15 修改: 2024-03-27 15:02

libcurl CVE-2022-27775 高危 7.79.1-r0 7.79.1-r1 curl: bad local IPv6 connection reuse

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27775

镜像层: sha256:e92b5bb7cda85f72e07fc4d3b10243182a46b372fc6142ee9e8cf80657841623

发布日期: 2022-06-02 14:15 修改: 2024-03-27 15:02

busybox CVE-2021-42386 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42386

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

libssl1.1 CVE-2021-3712 高危 1.1.1k-r0 1.1.1l-r0 openssl: Read buffer overruns processing ASN.1 strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3712

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2022-0778 高危 1.1.1k-r0 1.1.1n-r0 openssl: Infinite loop in BN_mod_sqrt() reachable when parsing certificates

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0778

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2022-03-15 17:15 修改: 2024-06-21 19:15

busybox CVE-2022-28391 高危 1.31.1-r20 1.31.1-r22 busybox: remote attackers may execute arbitrary code if netstat is used

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-28391

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2022-04-03 21:15 修改: 2022-08-11 18:44

libxml2 CVE-2021-3517 高危 2.9.10-r5 2.9.10-r6 libxml2: Heap-based buffer overflow in xmlEncodeEntitiesInternal() in entities.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3517

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-05-19 14:15 修改: 2023-11-07 03:38

libxml2 CVE-2021-3518 高危 2.9.10-r5 2.9.10-r6 libxml2: Use-after-free in xmlXIncludeDoProcess() in xinclude.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3518

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-05-18 12:15 修改: 2023-11-07 03:38

libxml2 CVE-2022-23308 高危 2.9.10-r5 2.9.13-r0 libxml2: Use-after-free of ID and IDREF attributes

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23308

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-26 05:15 修改: 2023-11-07 03:44

ncurses-libs CVE-2021-39537 高危 6.2_p20200523-r0 6.2_p20200523-r1 ncurses: heap-based buffer overflow in _nc_captoinfo() in captoinfo.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-39537

镜像层: sha256:e92b5bb7cda85f72e07fc4d3b10243182a46b372fc6142ee9e8cf80657841623

发布日期: 2021-09-20 16:15 修改: 2023-12-03 20:15

ncurses-terminfo-base CVE-2021-39537 高危 6.2_p20200523-r0 6.2_p20200523-r1 ncurses: heap-based buffer overflow in _nc_captoinfo() in captoinfo.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-39537

镜像层: sha256:e92b5bb7cda85f72e07fc4d3b10243182a46b372fc6142ee9e8cf80657841623

发布日期: 2021-09-20 16:15 修改: 2023-12-03 20:15

nettle CVE-2021-3580 高危 3.5.1-r1 3.5.1-r2 nettle: Remote crash in RSA decryption via manipulated ciphertext

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3580

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-08-05 21:15 修改: 2024-01-16 15:15

nginx CVE-2021-23017 高危 1.18.0-r1 1.18.0-r2 nginx: Off-by-one in ngx_resolver_copy() when labels are followed by a pointer to a root domain name

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-23017

镜像层: sha256:098c9a10c0bc196be5de55eb392b5e4f9df74ff8f4e5ea1abb48572b7ede165f

发布日期: 2021-06-01 13:15 修改: 2023-11-07 03:30

cairo CVE-2020-35492 高危 1.16.0-r2 1.16.0-r3 cairo: libreoffice slideshow aborts with stack smashing in cairo's composite_boxes

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35492

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-03-18 19:15 修改: 2023-05-03 12:15

openssl CVE-2021-3712 高危 1.1.1k-r0 1.1.1l-r0 openssl: Read buffer overruns processing ASN.1 strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3712

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-08-24 15:15 修改: 2024-06-21 19:15

openssl CVE-2022-0778 高危 1.1.1k-r0 1.1.1n-r0 openssl: Infinite loop in BN_mod_sqrt() reachable when parsing certificates

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0778

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-03-15 17:15 修改: 2024-06-21 19:15

ssl_client CVE-2021-42378 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_i()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42378

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42379 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the next_input_file()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42379

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42380 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the clrvar()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42380

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42381 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the hash_init()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42381

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42382 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the getvar_s()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42382

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42383 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42383

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42384 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the handle_special()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42384

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42385 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42385

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2021-42386 高危 1.31.1-r20 1.31.1-r21 busybox: use-after-free in awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the nvalloc()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42386

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

ssl_client CVE-2022-28391 高危 1.31.1-r20 1.31.1-r22 busybox: remote attackers may execute arbitrary code if netstat is used

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-28391

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2022-04-03 21:15 修改: 2022-08-11 18:44

xvfb CVE-2021-3472 高危 1.20.10-r0 1.20.10-r1 xorg-x11-server: XChangeFeedbackControl integer underflow leads to privilege escalation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3472

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-04-26 15:15 修改: 2023-11-07 03:38

xz-libs CVE-2022-1271 高危 5.2.5-r0 5.2.5-r1 gzip: arbitrary-file-write vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1271

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-31 16:15 修改: 2024-08-26 10:47

cairo-gobject CVE-2020-35492 高危 1.16.0-r2 1.16.0-r3 cairo: libreoffice slideshow aborts with stack smashing in cairo's composite_boxes

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35492

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-03-18 19:15 修改: 2023-05-03 12:15

zlib CVE-2018-25032 高危 1.2.11-r3 1.2.12-r0 zlib: A flaw found in zlib when compressing (not decompressing) certain inputs

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-25032

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2022-03-25 09:15 修改: 2023-11-07 02:56

mcookie CVE-2021-3996 中危 2.35.2-r0 2.37.3-r0 util-linux: Unauthorized unmount of filesystems in libmount

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3996

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-23 20:15 修改: 2024-10-15 16:35

mcookie CVE-2022-0563 中危 2.35.2-r0 2.37.4-r0 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-21 19:15 修改: 2024-01-07 09:15

expat CVE-2022-25313 中危 2.2.9-r1 2.2.10-r2 expat: Stack exhaustion in doctype parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25313

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-18 05:15 修改: 2023-11-07 03:44

libcurl CVE-2022-27774 中危 7.79.1-r0 7.79.1-r1 curl: credential leak on redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27774

镜像层: sha256:e92b5bb7cda85f72e07fc4d3b10243182a46b372fc6142ee9e8cf80657841623

发布日期: 2022-06-02 14:15 修改: 2024-03-27 15:02

libcurl CVE-2022-27776 中危 7.79.1-r0 7.79.1-r1 curl: auth/cookie leak on redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27776

镜像层: sha256:e92b5bb7cda85f72e07fc4d3b10243182a46b372fc6142ee9e8cf80657841623

发布日期: 2022-06-02 14:15 修改: 2024-03-27 15:02

libjpeg-turbo CVE-2021-20205 中危 2.0.5-r0 2.1.0-r0 libjpeg-turbo: DoS via open crafted GIF

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20205

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-03-10 17:15 修改: 2023-11-07 03:29

libmount CVE-2021-3995 中危 2.35.2-r0 2.37.3-r0 util-linux: Unauthorized unmount of FUSE filesystems belonging to users with similar uid

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3995

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-23 20:15 修改: 2024-01-07 09:15

libmount CVE-2021-3996 中危 2.35.2-r0 2.37.3-r0 util-linux: Unauthorized unmount of filesystems in libmount

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3996

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-23 20:15 修改: 2024-10-15 16:35

libmount CVE-2022-0563 中危 2.35.2-r0 2.37.4-r0 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-21 19:15 修改: 2024-01-07 09:15

libblkid CVE-2021-3995 中危 2.35.2-r0 2.37.3-r0 util-linux: Unauthorized unmount of FUSE filesystems belonging to users with similar uid

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3995

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-23 20:15 修改: 2024-01-07 09:15

libblkid CVE-2021-3996 中危 2.35.2-r0 2.37.3-r0 util-linux: Unauthorized unmount of filesystems in libmount

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3996

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-23 20:15 修改: 2024-10-15 16:35

libblkid CVE-2022-0563 中危 2.35.2-r0 2.37.4-r0 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-21 19:15 修改: 2024-01-07 09:15

libuuid CVE-2021-3995 中危 2.35.2-r0 2.37.3-r0 util-linux: Unauthorized unmount of FUSE filesystems belonging to users with similar uid

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3995

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-23 20:15 修改: 2024-01-07 09:15

libuuid CVE-2021-3996 中危 2.35.2-r0 2.37.3-r0 util-linux: Unauthorized unmount of filesystems in libmount

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3996

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-23 20:15 修改: 2024-10-15 16:35

libuuid CVE-2022-0563 中危 2.35.2-r0 2.37.4-r0 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-02-21 19:15 修改: 2024-01-07 09:15

cairo-gobject CVE-2019-6462 中危 1.16.0-r2 1.16.0-r5 cairo: infinite loop in the function _arc_error_normalized in the file cairo-arc.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-6462

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2019-01-16 18:29 修改: 2023-11-07 03:13

cairo CVE-2019-6462 中危 1.16.0-r2 1.16.0-r5 cairo: infinite loop in the function _arc_error_normalized in the file cairo-arc.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-6462

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2019-01-16 18:29 修改: 2023-11-07 03:13

busybox CVE-2021-42374 中危 1.31.1-r20 1.31.1-r21 busybox: out-of-bounds read in unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42374

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

gdk-pixbuf CVE-2020-29385 中危 2.40.0-r3 2.40.0-r4 gdk-pixbuf: DoS in lzw.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-29385

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2020-12-26 02:15 修改: 2023-11-07 03:21

ssl_client CVE-2021-42374 中危 1.31.1-r20 1.31.1-r21 busybox: out-of-bounds read in unlzma applet leads to information leak and denial of service when crafted LZMA-compressed input is decompressed

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-42374

镜像层: sha256:b0b9881431d721cee6e2a7f3465c2769e71a182699a519387460bca497262e69

发布日期: 2021-11-15 21:15 修改: 2023-11-07 03:39

libxml2 CVE-2021-3537 中危 2.9.10-r5 2.9.10-r6 libxml2: NULL pointer dereference when post-validating mixed content parsed in recovery mode

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3537

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-05-14 20:15 修改: 2023-11-07 03:38

libxml2 CVE-2021-3541 中危 2.9.10-r5 2.9.12-r0 libxml2: Exponential entity expansion attack bypasses all existing protection mechanisms

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3541

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2021-07-09 17:15 修改: 2022-03-01 18:25

libxml2 CVE-2022-29824 中危 2.9.10-r5 2.9.14-r0 libxml2: integer overflows in xmlBuf and xmlBuffer lead to out-of-bounds write

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-29824

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-05-03 03:15 修改: 2023-11-07 03:46

mcookie CVE-2021-3995 中危 2.35.2-r0 2.37.3-r0 util-linux: Unauthorized unmount of FUSE filesystems belonging to users with similar uid

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-3995

镜像层: sha256:7cf9faaa897faa571f610e9ca3947230b199497c7d0b43d497cff8747da7b6bb

发布日期: 2022-08-23 20:15 修改: 2024-01-07 09:15