docker.io/rommapp/romm:latest linux/amd64

docker.io/rommapp/romm:latest - Trivy安全扫描结果 扫描时间: 2024-10-27 02:26
全部漏洞信息
低危漏洞:6 中危漏洞:16 高危漏洞:11 严重漏洞:2

系统OS: alpine 3.20.2 扫描引擎: Trivy 扫描时间: 2024-10-27 02:26

docker.io/rommapp/romm:latest (alpine 3.20.2) (alpine)
低危漏洞:6 中危漏洞:16 高危漏洞:10 严重漏洞:2
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libexpat CVE-2024-45491 严重 2.6.2-r0 2.6.3-r0 libexpat: Integer Overflow or Wraparound

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45491

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-30 03:15 修改: 2024-09-04 14:28

libexpat CVE-2024-45492 严重 2.6.2-r0 2.6.3-r0 libexpat: integer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45492

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-30 03:15 修改: 2024-09-04 14:28

libexpat CVE-2024-45490 高危 2.6.2-r0 2.6.3-r0 libexpat: Negative Length Parsing Vulnerability in libexpat

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45490

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-30 03:15 修改: 2024-10-18 12:24

pyc CVE-2024-6232 高危 3.12.3-r2 3.12.6-r0 python: cpython: tarfile: ReDos via excessive backtracking while parsing header values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6232

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-09-03 13:15 修改: 2024-09-04 21:15

pyc CVE-2024-7592 高危 3.12.3-r2 3.12.6-r0 cpython: python: Uncontrolled CPU resource consumption when in http.cookies module

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7592

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-19 19:15 修改: 2024-09-04 21:15

python3 CVE-2024-6232 高危 3.12.3-r2 3.12.6-r0 python: cpython: tarfile: ReDos via excessive backtracking while parsing header values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6232

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-09-03 13:15 修改: 2024-09-04 21:15

python3 CVE-2024-7592 高危 3.12.3-r2 3.12.6-r0 cpython: python: Uncontrolled CPU resource consumption when in http.cookies module

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7592

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-19 19:15 修改: 2024-09-04 21:15

python3-pyc CVE-2024-6232 高危 3.12.3-r2 3.12.6-r0 python: cpython: tarfile: ReDos via excessive backtracking while parsing header values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6232

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-09-03 13:15 修改: 2024-09-04 21:15

python3-pyc CVE-2024-7592 高危 3.12.3-r2 3.12.6-r0 cpython: python: Uncontrolled CPU resource consumption when in http.cookies module

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7592

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-19 19:15 修改: 2024-09-04 21:15

python3-pycache-pyc0 CVE-2024-6232 高危 3.12.3-r2 3.12.6-r0 python: cpython: tarfile: ReDos via excessive backtracking while parsing header values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6232

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-09-03 13:15 修改: 2024-09-04 21:15

python3-pycache-pyc0 CVE-2024-7592 高危 3.12.3-r2 3.12.6-r0 cpython: python: Uncontrolled CPU resource consumption when in http.cookies module

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7592

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-19 19:15 修改: 2024-09-04 21:15

redis CVE-2024-31449 高危 7.2.5-r0 7.2.5-r1 redis: Lua library commands may lead to stack overflow and RCE in Redis

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-31449

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-10-07 20:15 修改: 2024-10-10 12:57

pyc CVE-2024-6923 中危 3.12.3-r2 3.12.6-r0 cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6923

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-01 14:15 修改: 2024-09-04 21:15

curl CVE-2024-7264 中危 8.9.0-r0 8.9.1-r0 curl: libcurl: ASN.1 date parser overread

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7264

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-07-31 08:15 修改: 2024-08-12 17:30

curl CVE-2024-8096 中危 8.9.0-r0 8.10.0-r0 curl: OCSP stapling bypass with GnuTLS

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8096

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-09-11 10:15 修改: 2024-09-11 16:26

python3 CVE-2023-27043 中危 3.12.3-r2 3.12.6-r0 python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27043

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2023-04-19 00:15 修改: 2024-02-26 16:27

python3 CVE-2024-6923 中危 3.12.3-r2 3.12.6-r0 cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6923

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-01 14:15 修改: 2024-09-04 21:15

libcrypto3 CVE-2024-6119 中危 3.3.1-r3 3.3.2-r0 openssl: Possible denial of service in X.509 name checks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6119

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-09-03 16:15 修改: 2024-09-03 21:35

libssl3 CVE-2024-6119 中危 3.3.1-r3 3.3.2-r0 openssl: Possible denial of service in X.509 name checks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6119

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-09-03 16:15 修改: 2024-09-03 21:35

python3-pyc CVE-2023-27043 中危 3.12.3-r2 3.12.6-r0 python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27043

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2023-04-19 00:15 修改: 2024-02-26 16:27

python3-pyc CVE-2024-6923 中危 3.12.3-r2 3.12.6-r0 cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6923

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-01 14:15 修改: 2024-09-04 21:15

libcurl CVE-2024-7264 中危 8.9.0-r0 8.9.1-r0 curl: libcurl: ASN.1 date parser overread

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7264

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-07-31 08:15 修改: 2024-08-12 17:30

libcurl CVE-2024-8096 中危 8.9.0-r0 8.10.0-r0 curl: OCSP stapling bypass with GnuTLS

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8096

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-09-11 10:15 修改: 2024-09-11 16:26

python3-pycache-pyc0 CVE-2023-27043 中危 3.12.3-r2 3.12.6-r0 python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27043

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2023-04-19 00:15 修改: 2024-02-26 16:27

python3-pycache-pyc0 CVE-2024-6923 中危 3.12.3-r2 3.12.6-r0 cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6923

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-08-01 14:15 修改: 2024-09-04 21:15

pyc CVE-2023-27043 中危 3.12.3-r2 3.12.6-r0 python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27043

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2023-04-19 00:15 修改: 2024-02-26 16:27

redis CVE-2024-31227 中危 7.2.5-r0 7.2.5-r1 redis: Denial-of-service due to malformed ACL selectors in Redis

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-31227

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-10-07 20:15 修改: 2024-10-10 12:57

redis CVE-2024-31228 中危 7.2.5-r0 7.2.5-r1 redis: Denial-of-service due to unbounded pattern matching in Redis

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-31228

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-10-07 20:15 修改: 2024-10-10 12:57

libcrypto3 CVE-2024-9143 低危 3.3.1-r3 3.3.2-r1 openssl: Low-level invalid GF(2^m) parameters lead to OOB memory access

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-9143

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-10-16 17:15 修改: 2024-10-18 12:53

python3 CVE-2024-4032 低危 3.12.3-r2 3.12.6-r0 python: incorrect IPv4 and IPv6 private ranges

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4032

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-06-17 15:15 修改: 2024-08-29 21:35

python3-pycache-pyc0 CVE-2024-4032 低危 3.12.3-r2 3.12.6-r0 python: incorrect IPv4 and IPv6 private ranges

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4032

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-06-17 15:15 修改: 2024-08-29 21:35

python3-pyc CVE-2024-4032 低危 3.12.3-r2 3.12.6-r0 python: incorrect IPv4 and IPv6 private ranges

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4032

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-06-17 15:15 修改: 2024-08-29 21:35

libssl3 CVE-2024-9143 低危 3.3.1-r3 3.3.2-r1 openssl: Low-level invalid GF(2^m) parameters lead to OOB memory access

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-9143

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-10-16 17:15 修改: 2024-10-18 12:53

pyc CVE-2024-4032 低危 3.12.3-r2 3.12.6-r0 python: incorrect IPv4 and IPv6 private ranges

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4032

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2024-06-17 15:15 修改: 2024-08-29 21:35

python3-pycache-pyc0 CVE-2015-2104 未知 3.12.3-r2 3.12.6-r0

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2104

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2020-02-19 14:15 修改: 2023-11-07 02:25

python3-pyc CVE-2015-2104 未知 3.12.3-r2 3.12.6-r0

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2104

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2020-02-19 14:15 修改: 2023-11-07 02:25

python3 CVE-2015-2104 未知 3.12.3-r2 3.12.6-r0

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2104

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2020-02-19 14:15 修改: 2023-11-07 02:25

pyc CVE-2015-2104 未知 3.12.3-r2 3.12.6-r0

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2104

镜像层: sha256:af08a7afd1919ce6397ead5f60dac8d94df107b13c2a5e391732555422fb4085

发布日期: 2020-02-19 14:15 修改: 2023-11-07 02:25

Node.js (node-pkg)
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
Python (python-pkg)
低危漏洞:0 中危漏洞:0 高危漏洞:1 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
starlette CVE-2024-47874 高危 0.36.3 0.40.0 starlette: Starlette Denial of service (DoS) via multipart/form-data

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47874

镜像层: sha256:4030972afd7bee4a124ecba6ffec1a3b9e08e6cc1fc80ad2ee3a0f9d9495dc96

发布日期: 2024-10-15 16:15 修改: 2024-10-16 16:38