| bsdutils |
CVE-2026-13595 |
中危 |
1:2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: heap use-after-free in libblkid nested partition probing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13595
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 09:16 修改: 2026-08-31 18:17
|
| bsdutils |
CVE-2026-27456 |
中危 |
1:2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: TOCTOU in the mount program when setting up loop devices
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 22:16 修改: 2026-07-24 22:10
|
| bsdutils |
CVE-2026-3184 |
中危 |
1:2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: Access control bypass due to improper hostname canonicalization
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3184
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 19:17 修改: 2026-08-31 12:17
|
| bsdutils |
CVE-2026-53612 |
中危 |
1:2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program when applying post-mount ownership/mode changes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53612
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| bsdutils |
CVE-2026-53613 |
中危 |
1:2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program via ancestor directory swap on target path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53613
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| bsdutils |
CVE-2026-53614 |
中危 |
1:2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: SUID mount(8) allows nosuid/noexec bypass via LIBMOUNT_FORCE_MOUNT2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53614
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| bsdutils |
CVE-2026-53615 |
中危 |
1:2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53615
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| diffutils |
CVE-2026-53910 |
中危 |
1:3.12-1 |
1:3.12-1ubuntu0.1 |
diffutils: heap‑based buffer overflow due to multiple signed integer overflows in line‑mapping calculations
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53910
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-07-22 14:17 修改: 2026-07-27 12:16
|
| gnu-coreutils |
CVE-2026-56391 |
中危 |
9.7-3ubuntu2 |
9.7-3ubuntu2.1 |
coreutils: GNU coreutils uniq: Denial of Service and information disclosure via out-of-bounds read with multibyte input
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56391
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-07-24 09:16 修改: 2026-08-26 13:52
|
| jq |
CVE-2026-41256 |
中危 |
1.8.1-4ubuntu2 |
|
jq: embedded NUL truncates top-level jq programs loaded with -f
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41256
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:46
|
| jq |
CVE-2026-41257 |
中危 |
1.8.1-4ubuntu2 |
|
jq: signed-int overflow in stack_reallocate
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41257
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:46
|
| jq |
CVE-2026-43895 |
中危 |
1.8.1-4ubuntu2 |
|
jq: embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-43895
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:50
|
| jq |
CVE-2026-43896 |
中危 |
1.8.1-4ubuntu2 |
|
jq: stack overflow in recursive object merge
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-43896
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:50
|
| jq |
CVE-2026-44777 |
中危 |
1.8.1-4ubuntu2 |
|
jq: stack overflow in module loading on mutual include
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-44777
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:51
|
| libattr1 |
CVE-2026-54371 |
中危 |
1:2.5.2-4 |
1:2.5.2-4ubuntu0.1 |
attr: attr: Symlink Traversal Privilege Escalation via getfattr and setfattr
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-54371
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 14:16 修改: 2026-09-02 13:18
|
| libblkid1 |
CVE-2026-13595 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: heap use-after-free in libblkid nested partition probing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13595
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 09:16 修改: 2026-08-31 18:17
|
| libblkid1 |
CVE-2026-27456 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: TOCTOU in the mount program when setting up loop devices
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 22:16 修改: 2026-07-24 22:10
|
| libblkid1 |
CVE-2026-3184 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: Access control bypass due to improper hostname canonicalization
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3184
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 19:17 修改: 2026-08-31 12:17
|
| libblkid1 |
CVE-2026-53612 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program when applying post-mount ownership/mode changes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53612
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libblkid1 |
CVE-2026-53613 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program via ancestor directory swap on target path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53613
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libblkid1 |
CVE-2026-53614 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: SUID mount(8) allows nosuid/noexec bypass via LIBMOUNT_FORCE_MOUNT2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53614
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libblkid1 |
CVE-2026-53615 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53615
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libc-bin |
CVE-2026-18374 |
中危 |
2.43-2ubuntu2.3 |
|
glibc: glibc: Heap buffer overflow via attacker-controlled fopen mode string
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18374
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-08-27 20:17 修改: 2026-09-03 16:43
|
| libc-gconv-modules-extra |
CVE-2026-18374 |
中危 |
2.43-2ubuntu2.3 |
|
glibc: glibc: Heap buffer overflow via attacker-controlled fopen mode string
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18374
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-08-27 20:17 修改: 2026-09-03 16:43
|
| libc6 |
CVE-2026-18374 |
中危 |
2.43-2ubuntu2.3 |
|
glibc: glibc: Heap buffer overflow via attacker-controlled fopen mode string
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18374
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-08-27 20:17 修改: 2026-09-03 16:43
|
| libexpat1 |
CVE-2025-66382 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Denial of service via crafted file processing
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66382
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2025-11-28 07:15 修改: 2026-06-17 09:56
|
| libexpat1 |
CVE-2026-32776 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Denial of Service due to NULL pointer dereference
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-32776
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-03-16 14:19 修改: 2026-07-14 13:18
|
| libexpat1 |
CVE-2026-32777 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Denial of Service via infinite loop in DTD content parsing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-32777
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-03-16 14:19 修改: 2026-07-14 13:18
|
| libexpat1 |
CVE-2026-32778 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Denial of Service via NULL pointer dereference after out-of-memory condition
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-32778
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-03-16 14:19 修改: 2026-07-14 13:18
|
| libexpat1 |
CVE-2026-41080 |
中危 |
2.7.4-1 |
|
libexpat: expat: libexpat: Denial of Service via hash flooding with crafted XML
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41080
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-04-16 17:16 修改: 2026-07-14 13:18
|
| libexpat1 |
CVE-2026-45186 |
中危 |
2.7.4-1 |
|
libexpat: denial of service via crafted XML input
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45186
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-10 07:16 修改: 2026-08-25 13:19
|
| libexpat1 |
CVE-2026-50219 |
中危 |
2.7.4-1 |
|
expat: libexpat: Use-after-free vulnerability due to improper handler call depth tracking
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-50219
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-04 06:16 修改: 2026-07-22 20:10
|
| libexpat1 |
CVE-2026-56131 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Use-after-free vulnerability due to insufficient handler call depth tracking
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56131
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-19 06:17 修改: 2026-06-23 20:15
|
| libexpat1 |
CVE-2026-56132 |
中危 |
2.7.4-1 |
|
expat: libexpat: Arbitrary Code Execution via Heap-based Buffer Overflow
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56132
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-19 06:17 修改: 2026-06-23 20:15
|
| libexpat1 |
CVE-2026-56403 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Arbitrary code execution due to integer overflow in storeAtts
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56403
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 16:16 修改: 2026-06-23 20:15
|
| libexpat1 |
CVE-2026-56404 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Arbitrary Code Execution via integer overflow in addBinding
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56404
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 16:16 修改: 2026-06-23 20:15
|
| libexpat1 |
CVE-2026-56405 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Information disclosure and arbitrary code execution via integer overflow
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56405
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 16:16 修改: 2026-06-23 20:14
|
| libexpat1 |
CVE-2026-56406 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Arbitrary code execution via integer overflow in XML_ParseBuffer
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56406
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 16:16 修改: 2026-06-23 16:29
|
| libexpat1 |
CVE-2026-56407 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Arbitrary code execution due to integer overflow
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56407
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 16:16 修改: 2026-06-23 16:28
|
| libexpat1 |
CVE-2026-56408 |
中危 |
2.7.4-1 |
|
libexpat before 2.8.2 has an integer overflow in copyString.
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56408
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 16:16 修改: 2026-06-23 16:27
|
| libexpat1 |
CVE-2026-56409 |
中危 |
2.7.4-1 |
|
xmlwf in libexpat before 2.8.2 has an integer overflow for the output ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56409
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 16:16 修改: 2026-06-23 16:21
|
| libexpat1 |
CVE-2026-56410 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Integer overflow in xmlwf can lead to information disclosure and arbitrary code execution.
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56410
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 16:16 修改: 2026-06-23 16:18
|
| libexpat1 |
CVE-2026-56411 |
中危 |
2.7.4-1 |
|
expat: libexpat: Integer Overflow Vulnerability Leading to Information Disclosure or Code Execution
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56411
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 17:16 修改: 2026-06-23 16:16
|
| libexpat1 |
CVE-2026-56412 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Use-after-free vulnerability due to improper handling of XML CDATA sections
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-56412
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-21 17:16 修改: 2026-06-23 15:31
|
| libexpat1 |
CVE-2026-66046 |
中危 |
2.7.4-1 |
|
Expat through 2.8.3 contains a denial of service vulnerability caused ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-66046
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-08-18 15:16 修改: 2026-08-20 16:17
|
| libexpat1 |
CVE-2026-72522 |
中危 |
2.7.4-1 |
|
expat: libexpat: Denial of Service due to incorrect Unicode surrogate handling
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-72522
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-08-10 04:16 修改: 2026-08-31 19:33
|
| libexpat1 |
CVE-2026-76641 |
中危 |
2.7.4-1 |
|
CVE-2026-76641 affecting package expat for versions less than 2.8.3-2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-76641
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-08-20 18:16 修改: 2026-08-20 19:17
|
| libexpat1 |
CVE-2026-76957 |
中危 |
2.7.4-1 |
|
libexpat: libexpat: Memory corruption vulnerability allows arbitrary code execution or denial of service
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-76957
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-08-20 05:16 修改: 2026-09-03 17:37
|
| libjq1 |
CVE-2026-41256 |
中危 |
1.8.1-4ubuntu2 |
|
jq: embedded NUL truncates top-level jq programs loaded with -f
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41256
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:46
|
| libjq1 |
CVE-2026-41257 |
中危 |
1.8.1-4ubuntu2 |
|
jq: signed-int overflow in stack_reallocate
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41257
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:46
|
| libjq1 |
CVE-2026-43895 |
中危 |
1.8.1-4ubuntu2 |
|
jq: embedded NUL in jq import paths causes local redaction-policy bypass and preserves sensitive fields in published artifacts
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-43895
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:50
|
| libjq1 |
CVE-2026-43896 |
中危 |
1.8.1-4ubuntu2 |
|
jq: stack overflow in recursive object merge
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-43896
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:50
|
| libjq1 |
CVE-2026-44777 |
中危 |
1.8.1-4ubuntu2 |
|
jq: stack overflow in module loading on mutual include
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-44777
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-05-11 18:16 修改: 2026-06-17 10:51
|
| libmount1 |
CVE-2026-13595 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: heap use-after-free in libblkid nested partition probing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13595
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 09:16 修改: 2026-08-31 18:17
|
| libmount1 |
CVE-2026-27456 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: TOCTOU in the mount program when setting up loop devices
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 22:16 修改: 2026-07-24 22:10
|
| libmount1 |
CVE-2026-3184 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: Access control bypass due to improper hostname canonicalization
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3184
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 19:17 修改: 2026-08-31 12:17
|
| libmount1 |
CVE-2026-53612 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program when applying post-mount ownership/mode changes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53612
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libmount1 |
CVE-2026-53613 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program via ancestor directory swap on target path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53613
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libmount1 |
CVE-2026-53614 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: SUID mount(8) allows nosuid/noexec bypass via LIBMOUNT_FORCE_MOUNT2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53614
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libmount1 |
CVE-2026-53615 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53615
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libp11-kit0 |
CVE-2026-13757 |
中危 |
0.26.2-2 |
|
p11-kit: Stack exhaustion via unbounded recursion in RPC attribute parsing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13757
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-06-29 19:16 修改: 2026-09-01 13:18
|
| libsmartcols1 |
CVE-2026-13595 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: heap use-after-free in libblkid nested partition probing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13595
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 09:16 修改: 2026-08-31 18:17
|
| libsmartcols1 |
CVE-2026-27456 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: TOCTOU in the mount program when setting up loop devices
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 22:16 修改: 2026-07-24 22:10
|
| libsmartcols1 |
CVE-2026-3184 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: Access control bypass due to improper hostname canonicalization
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3184
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 19:17 修改: 2026-08-31 12:17
|
| libsmartcols1 |
CVE-2026-53612 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program when applying post-mount ownership/mode changes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53612
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libsmartcols1 |
CVE-2026-53613 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program via ancestor directory swap on target path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53613
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libsmartcols1 |
CVE-2026-53614 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: SUID mount(8) allows nosuid/noexec bypass via LIBMOUNT_FORCE_MOUNT2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53614
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libsmartcols1 |
CVE-2026-53615 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53615
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libuuid1 |
CVE-2026-13595 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: heap use-after-free in libblkid nested partition probing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13595
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 09:16 修改: 2026-08-31 18:17
|
| libuuid1 |
CVE-2026-27456 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: TOCTOU in the mount program when setting up loop devices
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 22:16 修改: 2026-07-24 22:10
|
| libuuid1 |
CVE-2026-3184 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: Access control bypass due to improper hostname canonicalization
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3184
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 19:17 修改: 2026-08-31 12:17
|
| libuuid1 |
CVE-2026-53612 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program when applying post-mount ownership/mode changes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53612
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libuuid1 |
CVE-2026-53613 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program via ancestor directory swap on target path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53613
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libuuid1 |
CVE-2026-53614 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: SUID mount(8) allows nosuid/noexec bypass via LIBMOUNT_FORCE_MOUNT2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53614
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libuuid1 |
CVE-2026-53615 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53615
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| libxslt1.1 |
CVE-2025-7425 |
中危 |
1.1.45-0.1 |
|
libxslt: libxml2: Heap Use-After-Free in libxslt caused by atype corruption in xmlAttrPtr
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-7425
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2025-07-10 14:15 修改: 2026-09-07 20:16
|
| locales |
CVE-2026-18374 |
中危 |
2.43-2ubuntu2.3 |
|
glibc: glibc: Heap buffer overflow via attacker-controlled fopen mode string
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18374
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-08-27 20:17 修改: 2026-09-03 16:43
|
| login |
CVE-2026-13595 |
中危 |
1:4.16.0-2+really2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: heap use-after-free in libblkid nested partition probing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13595
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 09:16 修改: 2026-08-31 18:17
|
| login |
CVE-2026-27456 |
中危 |
1:4.16.0-2+really2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: TOCTOU in the mount program when setting up loop devices
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 22:16 修改: 2026-07-24 22:10
|
| login |
CVE-2026-3184 |
中危 |
1:4.16.0-2+really2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: Access control bypass due to improper hostname canonicalization
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3184
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 19:17 修改: 2026-08-31 12:17
|
| login |
CVE-2026-53612 |
中危 |
1:4.16.0-2+really2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program when applying post-mount ownership/mode changes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53612
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| login |
CVE-2026-53613 |
中危 |
1:4.16.0-2+really2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program via ancestor directory swap on target path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53613
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| login |
CVE-2026-53614 |
中危 |
1:4.16.0-2+really2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: SUID mount(8) allows nosuid/noexec bypass via LIBMOUNT_FORCE_MOUNT2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53614
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| login |
CVE-2026-53615 |
中危 |
1:4.16.0-2+really2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53615
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| mount |
CVE-2026-13595 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: heap use-after-free in libblkid nested partition probing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13595
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 09:16 修改: 2026-08-31 18:17
|
| mount |
CVE-2026-27456 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: TOCTOU in the mount program when setting up loop devices
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 22:16 修改: 2026-07-24 22:10
|
| mount |
CVE-2026-3184 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: Access control bypass due to improper hostname canonicalization
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3184
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 19:17 修改: 2026-08-31 12:17
|
| mount |
CVE-2026-53612 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program when applying post-mount ownership/mode changes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53612
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| mount |
CVE-2026-53613 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program via ancestor directory swap on target path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53613
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| mount |
CVE-2026-53614 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: SUID mount(8) allows nosuid/noexec bypass via LIBMOUNT_FORCE_MOUNT2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53614
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| mount |
CVE-2026-53615 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53615
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| nginx |
CVE-2026-42533 |
中危 |
1.28.3-2ubuntu1.10 |
|
nginx: NGINX: Arbitrary code execution via crafted HTTP requests
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42533
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-15 15:16 修改: 2026-08-10 15:28
|
| nginx-common |
CVE-2026-42533 |
中危 |
1.28.3-2ubuntu1.10 |
|
nginx: NGINX: Arbitrary code execution via crafted HTTP requests
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42533
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-15 15:16 修改: 2026-08-10 15:28
|
| php8.5-bcmath |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-cli |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-common |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-curl |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-fpm |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-gd |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-ldap |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-mbstring |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-mysql |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-readline |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| php8.5-xml |
CVE-2026-17544 |
中危 |
8.5.4-0ubuntu1.2 |
|
php: PHP: Arbitrary code execution via out-of-bounds write in bccomp()
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-17544
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-07-30 12:17 修改: 2026-08-05 19:40
|
| rust-coreutils |
CVE-2026-35341 |
中危 |
0.8.0-0ubuntu3 |
|
A vulnerability in uutils coreutils mkfifo allows for the unauthorized ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35341
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35344 |
中危 |
0.8.0-0ubuntu3 |
|
The dd utility in uutils coreutils suppresses errors during file trunc ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35344
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35345 |
中危 |
0.8.0-0ubuntu3 |
|
A vulnerability in the tail utility of uutils coreutils allows for the ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35345
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35348 |
中危 |
0.8.0-0ubuntu3 |
|
The sort utility in uutils coreutils is vulnerable to a process panic ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35348
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35350 |
中危 |
0.8.0-0ubuntu3 |
|
The cp utility in uutils coreutils fails to properly handle setuid and ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35350
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35351 |
中危 |
0.8.0-0ubuntu3 |
|
The mv utility in uutils coreutils fails to preserve file ownership du ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35351
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35352 |
中危 |
0.8.0-0ubuntu3 |
|
A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the m ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35352
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35354 |
中危 |
0.8.0-0ubuntu3 |
|
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the mv ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35354
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35357 |
中危 |
0.8.0-0ubuntu3 |
|
The cp utility in uutils coreutils is vulnerable to an information dis ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35357
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35359 |
中危 |
0.8.0-0ubuntu3 |
|
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability in the cp utilit ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35359
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35360 |
中危 |
0.8.0-0ubuntu3 |
|
The touch utility in uutils coreutils is vulnerable to a Time-of-Check ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35360
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35363 |
中危 |
0.8.0-0ubuntu3 |
|
A vulnerability in the rm utility of uutils coreutils allows the bypas ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35363
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35364 |
中危 |
0.8.0-0ubuntu3 |
|
A Time-of-Check to Time-of-Use (TOCTOU) race condition exists in the m ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35364
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35367 |
中危 |
0.8.0-0ubuntu3 |
|
The nohup utility in uutils coreutils creates its default output file, ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35367
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35368 |
中危 |
0.8.0-0ubuntu3 |
|
A vulnerability exists in the chroot utility of uutils coreutils when ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35368
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35370 |
中危 |
0.8.0-0ubuntu3 |
|
The id utility in uutils coreutils miscalculates the groups= section o ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35370
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35371 |
中危 |
0.8.0-0ubuntu3 |
|
The id utility in uutils coreutils exhibits incorrect behavior in its ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35371
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35373 |
中危 |
0.8.0-0ubuntu3 |
|
A logic error in the ln utility of uutils coreutils causes the program ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35373
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35374 |
中危 |
0.8.0-0ubuntu3 |
|
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the sp ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35374
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| rust-coreutils |
CVE-2026-35377 |
中危 |
0.8.0-0ubuntu3 |
|
A logic error in the env utility of uutils coreutils causes a failure ...
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-35377
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-22 17:16 修改: 2026-06-17 10:40
|
| tar |
CVE-2026-18477 |
中危 |
1.35+dfsg-4ubuntu0.4 |
|
tar: tar: TOCTOU in incremental dumpdir 'X' rename handling allows restore path escape
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18477
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-08-03 17:16 修改: 2026-09-01 15:17
|
| tar |
CVE-2026-18508 |
中危 |
1.35+dfsg-4ubuntu0.4 |
|
tar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwrite
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-18508
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-08-03 16:16 修改: 2026-09-01 15:17
|
| util-linux |
CVE-2026-13595 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: heap use-after-free in libblkid nested partition probing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-13595
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-29 09:16 修改: 2026-08-31 18:17
|
| util-linux |
CVE-2026-27456 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: TOCTOU in the mount program when setting up loop devices
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27456
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 22:16 修改: 2026-07-24 22:10
|
| util-linux |
CVE-2026-3184 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: Access control bypass due to improper hostname canonicalization
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-3184
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-03 19:17 修改: 2026-08-31 12:17
|
| util-linux |
CVE-2026-53612 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program when applying post-mount ownership/mode changes
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53612
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| util-linux |
CVE-2026-53613 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: TOCTOU in the mount program via ancestor directory swap on target path
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53613
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| util-linux |
CVE-2026-53614 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
util-linux: util-linux: SUID mount(8) allows nosuid/noexec bypass via LIBMOUNT_FORCE_MOUNT2
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53614
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| util-linux |
CVE-2026-53615 |
中危 |
2.41.3-3ubuntu2 |
2.41.3-3ubuntu2.2 |
[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-53615
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00
|
| systemd |
CVE-2026-40228 |
低危 |
259.5-0ubuntu3.4 |
|
systemd: systemd-journald: Unintended output to user terminals via logger command
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40228
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:44
|
| libbz2-1.0 |
CVE-2026-42250 |
低危 |
1.0.8-6build2 |
1.0.8-6ubuntu0.1 |
bzip2: bzip2: Denial of Service in bzip2recover via a specially crafted file
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42250
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-05-28 14:16 修改: 2026-06-17 10:47
|
| gpgv |
CVE-2026-57062 |
低危 |
2.4.8-4ubuntu3 |
2.4.8-4ubuntu3.1 |
GnuPG: Incorrect cryptographic message parsing
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-57062
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-06-23 18:18 修改: 2026-06-25 20:16
|
| login.defs |
CVE-2024-56433 |
低危 |
1:4.17.4-2ubuntu3 |
|
shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56433
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2024-12-26 09:15 修改: 2026-06-17 08:12
|
| gnu-coreutils |
CVE-2025-5278 |
低危 |
9.7-3ubuntu2 |
9.7-3ubuntu2.1 |
coreutils: Heap Buffer Under-Read in GNU Coreutils sort via Key Specification
漏洞详情: https://avd.aquasec.com/nvd/cve-2025-5278
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2025-05-27 21:15 修改: 2026-09-07 23:16
|
| passwd |
CVE-2024-56433 |
低危 |
1:4.17.4-2ubuntu3 |
|
shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56433
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2024-12-26 09:15 修改: 2026-06-17 08:12
|
| libgcrypt20 |
CVE-2024-2236 |
低危 |
1.12.0-2ubuntu1 |
1.12.0-2ubuntu1.1 |
libgcrypt: vulnerable to Marvin Attack
漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2236
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2024-03-06 22:15 修改: 2026-06-17 07:24
|
| libsystemd-shared |
CVE-2026-40228 |
低危 |
259.5-0ubuntu3.4 |
|
systemd: systemd-journald: Unintended output to user terminals via logger command
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40228
镜像层: sha256:beda78a6d8f706f3ca54d9baf4152bc278789d3210bee8195240b74e905f5da6
发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:44
|
| libsystemd0 |
CVE-2026-40228 |
低危 |
259.5-0ubuntu3.4 |
|
systemd: systemd-journald: Unintended output to user terminals via logger command
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40228
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:44
|
| libudev1 |
CVE-2026-40228 |
低危 |
259.5-0ubuntu3.4 |
|
systemd: systemd-journald: Unintended output to user terminals via logger command
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40228
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:44
|
| zlib1g |
CVE-2026-27171 |
低危 |
1:1.3.dfsg+really1.3.1-1ubuntu3 |
1:1.3.dfsg+really1.3.1-1ubuntu3.1 |
zlib: zlib: Denial of Service via infinite loop in CRC32 combine functions
漏洞详情: https://avd.aquasec.com/nvd/cve-2026-27171
镜像层: sha256:feefe6a173bdb7374d50d062fc8edf1c351e153045a32db205b1e7af3d3df90f
发布日期: 2026-02-18 04:16 修改: 2026-06-17 10:26
|