docker.io/zeek/zeek:lts linux/amd64

docker.io/zeek/zeek:lts - Trivy安全扫描结果 扫描时间: 2026-01-22 22:12
全部漏洞信息
低危漏洞:91 中危漏洞:52 高危漏洞:14 严重漏洞:5

系统OS: debian 13.1 扫描引擎: Trivy 扫描时间: 2026-01-22 22:12

docker.io/zeek/zeek:lts (debian 13.1) (debian)
低危漏洞:91 中危漏洞:52 高危漏洞:14 严重漏洞:5
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libpython3.13 CVE-2025-13836 严重 3.13.5-2 cpython: Excessive read buffering DoS in http.client

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13836

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2025-12-30 15:08

libpython3.13-minimal CVE-2025-13836 严重 3.13.5-2 cpython: Excessive read buffering DoS in http.client

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13836

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2025-12-30 15:08

libpython3.13-stdlib CVE-2025-13836 严重 3.13.5-2 cpython: Excessive read buffering DoS in http.client

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13836

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2025-12-30 15:08

python3.13 CVE-2025-13836 严重 3.13.5-2 cpython: Excessive read buffering DoS in http.client

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13836

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2025-12-30 15:08

python3.13-minimal CVE-2025-13836 严重 3.13.5-2 cpython: Excessive read buffering DoS in http.client

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13836

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2025-12-30 15:08

libc-bin CVE-2026-0861 高危 2.41-12 glibc: Integer overflow in memalign leads to heap corruption

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-0861

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2026-01-14 21:15 修改: 2026-01-16 18:16

libpython3.13 CVE-2025-8194 高危 3.13.5-2 cpython: Cpython infinite loop when parsing a tarfile

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8194

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-07-28 19:15 修改: 2025-11-04 22:16

libc6 CVE-2026-0861 高危 2.41-12 glibc: Integer overflow in memalign leads to heap corruption

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-0861

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2026-01-14 21:15 修改: 2026-01-16 18:16

libpython3.13-minimal CVE-2025-8194 高危 3.13.5-2 cpython: Cpython infinite loop when parsing a tarfile

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8194

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-07-28 19:15 修改: 2025-11-04 22:16

libnode115 CVE-2025-55130 高危 20.19.2+dfsg-1 nodejs: Nodejs file permissions bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-55130

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

libpython3.13-stdlib CVE-2025-8194 高危 3.13.5-2 cpython: Cpython infinite loop when parsing a tarfile

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8194

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-07-28 19:15 修改: 2025-11-04 22:16

node-undici CVE-2026-22036 高危 7.3.0+dfsg1+~cs24.12.11-1 undici: Undici: Denial of Service via excessive decompression steps

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-22036

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-14 19:16 修改: 2026-01-21 14:56

nodejs CVE-2025-55130 高危 20.19.2+dfsg-1 nodejs: Nodejs file permissions bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-55130

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

nodejs CVE-2025-55131 高危 20.19.2+dfsg-1 nodejs: Nodejs uninitialized memory exposure

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-55131

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

nodejs CVE-2025-59465 高危 20.19.2+dfsg-1 nodejs: Nodejs denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59465

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

libnode115 CVE-2025-55131 高危 20.19.2+dfsg-1 nodejs: Nodejs uninitialized memory exposure

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-55131

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

python3.13 CVE-2025-8194 高危 3.13.5-2 cpython: Cpython infinite loop when parsing a tarfile

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8194

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-07-28 19:15 修改: 2025-11-04 22:16

libnode115 CVE-2025-59465 高危 20.19.2+dfsg-1 nodejs: Nodejs denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59465

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

python3.13-minimal CVE-2025-8194 高危 3.13.5-2 cpython: Cpython infinite loop when parsing a tarfile

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8194

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-07-28 19:15 修改: 2025-11-04 22:16

libnode115 CVE-2025-59466 中危 20.19.2+dfsg-1 nodejs: Nodejs denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59466

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

libnode115 CVE-2026-21637 中危 20.19.2+dfsg-1 nodejs: Nodejs denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21637

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

libblkid1 CVE-2025-14104 中危 2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

libc6 CVE-2025-15281 中危 2.41-12 glibc: wordexp with WRDE_REUSE and WRDE_APPEND may return uninitialized memory

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15281

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2026-01-20 14:16 修改: 2026-01-20 18:16

libpython3.13 CVE-2025-12084 中危 3.13.5-2 cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12084

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-03 19:15 修改: 2026-01-14 19:16

libpython3.13 CVE-2025-13837 中危 3.13.5-2 cpython: Out-of-memory when loading Plist

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13837

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2026-01-15 19:08

libpython3.13 CVE-2025-6069 中危 3.13.5-2 cpython: Python HTMLParser quadratic complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6069

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-06-17 14:15 修改: 2025-07-07 18:15

libpython3.13 CVE-2025-6075 中危 3.13.5-2 python: Quadratic complexity in os.path.expandvars() with user-controlled template

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6075

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-31 17:15 修改: 2025-12-01 19:15

libpython3.13 CVE-2025-8291 中危 3.13.5-2 cpython: python: Python zipfile End of Central Directory (EOCD) Locator record offset not checked

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8291

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-07 18:16 修改: 2025-10-29 16:15

libc6 CVE-2026-0915 中危 2.41-12 glibc: glibc: Information disclosure via zero-valued network query

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-0915

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2026-01-15 22:16 修改: 2026-01-20 16:16

libcares2 CVE-2025-62408 中危 1.34.5-1 1.34.5-1+deb13u1 c-ares: c-ares: Denial of Service due to query termination after maximum attempts

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-62408

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-08 22:15 修改: 2025-12-09 18:37

libpython3.13-minimal CVE-2025-12084 中危 3.13.5-2 cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12084

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-03 19:15 修改: 2026-01-14 19:16

libpython3.13-minimal CVE-2025-13837 中危 3.13.5-2 cpython: Out-of-memory when loading Plist

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13837

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2026-01-15 19:08

libpython3.13-minimal CVE-2025-6069 中危 3.13.5-2 cpython: Python HTMLParser quadratic complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6069

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-06-17 14:15 修改: 2025-07-07 18:15

libpython3.13-minimal CVE-2025-6075 中危 3.13.5-2 python: Quadratic complexity in os.path.expandvars() with user-controlled template

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6075

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-31 17:15 修改: 2025-12-01 19:15

libpython3.13-minimal CVE-2025-8291 中危 3.13.5-2 cpython: python: Python zipfile End of Central Directory (EOCD) Locator record offset not checked

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8291

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-07 18:16 修改: 2025-10-29 16:15

libcurl3t64-gnutls CVE-2025-10148 中危 8.14.1-2 8.14.1-2+deb13u1 curl: predictable WebSocket mask

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-10148

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-09-12 06:15 修改: 2026-01-20 14:55

libcurl3t64-gnutls CVE-2025-11563 中危 8.14.1-2 8.14.1-2+deb13u2

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-11563

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libpython3.13-stdlib CVE-2025-12084 中危 3.13.5-2 cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12084

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-03 19:15 修改: 2026-01-14 19:16

libpython3.13-stdlib CVE-2025-13837 中危 3.13.5-2 cpython: Out-of-memory when loading Plist

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13837

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2026-01-15 19:08

libpython3.13-stdlib CVE-2025-6069 中危 3.13.5-2 cpython: Python HTMLParser quadratic complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6069

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-06-17 14:15 修改: 2025-07-07 18:15

libpython3.13-stdlib CVE-2025-6075 中危 3.13.5-2 python: Quadratic complexity in os.path.expandvars() with user-controlled template

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6075

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-31 17:15 修改: 2025-12-01 19:15

libpython3.13-stdlib CVE-2025-8291 中危 3.13.5-2 cpython: python: Python zipfile End of Central Directory (EOCD) Locator record offset not checked

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8291

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-07 18:16 修改: 2025-10-29 16:15

libsmartcols1 CVE-2025-14104 中危 2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

libsodium23 CVE-2025-69277 中危 1.0.18-1+b2 1.0.18-1+deb13u1 libsodium: pynacl: libsodium: Improper validation of elliptic curve points could lead to data integrity or information disclosure.

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-69277

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-31 06:15 修改: 2026-01-07 17:16

libsqlite3-0 CVE-2025-7709 中危 3.46.1-7 An integer overflow exists in the FTS5 https://sqlite.org/fts5.html e ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-7709

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-09-08 15:15 修改: 2025-11-18 23:15

libtasn1-6 CVE-2025-13151 中危 4.20.0-2 libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13151

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-07 22:15 修改: 2026-01-20 18:16

libuuid1 CVE-2025-14104 中危 2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

login CVE-2025-14104 中危 1:4.16.0-2+really2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

mount CVE-2025-14104 中危 2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

libcurl3t64-gnutls CVE-2025-9086 中危 8.14.1-2 8.14.1-2+deb13u1 curl: libcurl: Curl out of bounds read for cookie path

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-9086

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-09-12 06:15 修改: 2026-01-20 14:58

node-undici CVE-2025-23167 中危 7.3.0+dfsg1+~cs24.12.11-1 nodejs: Improper HTTP Header Termination in Node.js 20 Enables Request Smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-23167

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-05-19 02:15 修改: 2025-05-19 16:15

libexpat1 CVE-2025-59375 中危 2.7.1-2 expat: libexpat in Expat allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59375

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-09-15 03:15 修改: 2025-11-04 22:16

libexpat1 CVE-2025-66382 中危 2.7.1-2 libexpat: libexpat: Denial of service via crafted file processing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66382

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-11-28 07:15 修改: 2025-12-19 16:05

liblastlog2-2 CVE-2025-14104 中危 2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

nodejs CVE-2025-59466 中危 20.19.2+dfsg-1 nodejs: Nodejs denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59466

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

nodejs CVE-2026-21637 中危 20.19.2+dfsg-1 nodejs: Nodejs denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-21637

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

libmount1 CVE-2025-14104 中危 2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

bsdutils CVE-2025-14104 中危 1:2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

python3.13 CVE-2025-12084 中危 3.13.5-2 cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12084

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-03 19:15 修改: 2026-01-14 19:16

python3.13 CVE-2025-13837 中危 3.13.5-2 cpython: Out-of-memory when loading Plist

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13837

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2026-01-15 19:08

python3.13 CVE-2025-6069 中危 3.13.5-2 cpython: Python HTMLParser quadratic complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6069

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-06-17 14:15 修改: 2025-07-07 18:15

python3.13 CVE-2025-6075 中危 3.13.5-2 python: Quadratic complexity in os.path.expandvars() with user-controlled template

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6075

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-31 17:15 修改: 2025-12-01 19:15

python3.13 CVE-2025-8291 中危 3.13.5-2 cpython: python: Python zipfile End of Central Directory (EOCD) Locator record offset not checked

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8291

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-07 18:16 修改: 2025-10-29 16:15

libc-bin CVE-2025-15281 中危 2.41-12 glibc: wordexp with WRDE_REUSE and WRDE_APPEND may return uninitialized memory

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15281

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2026-01-20 14:16 修改: 2026-01-20 18:16

libc-bin CVE-2026-0915 中危 2.41-12 glibc: glibc: Information disclosure via zero-valued network query

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-0915

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2026-01-15 22:16 修改: 2026-01-20 16:16

python3.13-minimal CVE-2025-12084 中危 3.13.5-2 cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12084

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-03 19:15 修改: 2026-01-14 19:16

python3.13-minimal CVE-2025-13837 中危 3.13.5-2 cpython: Out-of-memory when loading Plist

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13837

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-01 18:16 修改: 2026-01-15 19:08

python3.13-minimal CVE-2025-6069 中危 3.13.5-2 cpython: Python HTMLParser quadratic complexity

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6069

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-06-17 14:15 修改: 2025-07-07 18:15

python3.13-minimal CVE-2025-6075 中危 3.13.5-2 python: Quadratic complexity in os.path.expandvars() with user-controlled template

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6075

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-31 17:15 修改: 2025-12-01 19:15

python3.13-minimal CVE-2025-8291 中危 3.13.5-2 cpython: python: Python zipfile End of Central Directory (EOCD) Locator record offset not checked

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8291

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-10-07 18:16 修改: 2025-10-29 16:15

util-linux CVE-2025-14104 中危 2.41-5 util-linux: util-linux: Heap buffer overread in setpwnam() when processing 256-byte usernames

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14104

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-12-05 17:16 修改: 2025-12-08 18:26

libncursesw6 CVE-2025-6141 低危 6.5+20250216-2 gnu-ncurses: ncurses Stack Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6141

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-06-16 22:16 修改: 2025-06-17 20:50

apt CVE-2011-3374 低危 3.0.3 It was found that apt-key in apt, all versions, do not correctly valid ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-3374

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-11-26 00:15 修改: 2024-11-21 01:30

bsdutils CVE-2022-0563 低危 1:2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

coreutils CVE-2017-18018 低危 9.7-3 coreutils: race condition vulnerability in chown and chgrp

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-18018

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2018-01-04 04:29 修改: 2025-06-09 16:15

libc-bin CVE-2010-4756 低危 2.41-12 glibc: glob implementation can cause excessive CPU and memory consumption due to crafted glob expressions

漏洞详情: https://avd.aquasec.com/nvd/cve-2010-4756

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2011-03-02 20:00 修改: 2025-11-03 22:15

libc-bin CVE-2018-20796 低危 2.41-12 glibc: uncontrolled recursion in function check_dst_limits_calc_pos_1 in posix/regexec.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-20796

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-02-26 02:29 修改: 2024-11-21 04:02

libnode115 CVE-2025-55132 低危 20.19.2+dfsg-1 nodejs: Nodejs filesystem permissions bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-55132

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

libpcap0.8t64 CVE-2025-11961 低危 1.10.5-2 libpcap: libpcap: Memory corruption via malformed MAC-48 address input

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-11961

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-12-31 01:15 修改: 2025-12-31 20:42

libperl5.40 CVE-2011-4116 低危 5.40.1-6 perl: File:: Temp insecure temporary file handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-4116

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2020-01-31 18:15 修改: 2025-08-04 19:04

libc-bin CVE-2019-1010022 低危 2.41-12 glibc: stack guard protection bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1010022

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-07-15 04:15 修改: 2024-11-21 04:17

libc-bin CVE-2019-1010023 低危 2.41-12 glibc: running ldd on malicious ELF leads to code execution because of wrong size computation

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1010023

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-07-15 04:15 修改: 2024-11-21 04:17

libc-bin CVE-2019-1010024 低危 2.41-12 glibc: ASLR bypass using cache of thread stack and heap

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1010024

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-07-15 04:15 修改: 2024-11-21 04:17

libc-bin CVE-2019-1010025 低危 2.41-12 glibc: information disclosure of heap addresses of pthread_created thread

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1010025

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-07-15 04:15 修改: 2024-11-21 04:17

libc-bin CVE-2019-9192 低危 2.41-12 glibc: uncontrolled recursion in function check_dst_limits_calc_pos_1 in posix/regexec.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-9192

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-02-26 18:29 修改: 2024-11-21 04:51

coreutils CVE-2025-5278 低危 9.7-3 coreutils: Heap Buffer Under-Read in GNU Coreutils sort via Key Specification

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-5278

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-05-27 21:15 修改: 2025-10-22 20:15

git CVE-2018-1000021 低危 1:2.47.3-0+deb13u1 git: client prints server-sent ANSI escape codes to the terminal, allowing for unverified messages to potentially execute arbitrary commands

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-1000021

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2018-02-09 23:29 修改: 2024-11-21 03:39

git CVE-2022-24975 低危 1:2.47.3-0+deb13u1 git: The --mirror option for git leaks secret for deleted content, aka the "GitBleed"

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-24975

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2022-02-11 20:15 修改: 2024-11-21 06:51

libc6 CVE-2010-4756 低危 2.41-12 glibc: glob implementation can cause excessive CPU and memory consumption due to crafted glob expressions

漏洞详情: https://avd.aquasec.com/nvd/cve-2010-4756

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2011-03-02 20:00 修改: 2025-11-03 22:15

libc6 CVE-2018-20796 低危 2.41-12 glibc: uncontrolled recursion in function check_dst_limits_calc_pos_1 in posix/regexec.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-20796

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-02-26 02:29 修改: 2024-11-21 04:02

libc6 CVE-2019-1010022 低危 2.41-12 glibc: stack guard protection bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1010022

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-07-15 04:15 修改: 2024-11-21 04:17

libc6 CVE-2019-1010023 低危 2.41-12 glibc: running ldd on malicious ELF leads to code execution because of wrong size computation

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1010023

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-07-15 04:15 修改: 2024-11-21 04:17

libc6 CVE-2019-1010024 低危 2.41-12 glibc: ASLR bypass using cache of thread stack and heap

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1010024

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-07-15 04:15 修改: 2024-11-21 04:17

libc6 CVE-2019-1010025 低危 2.41-12 glibc: information disclosure of heap addresses of pthread_created thread

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-1010025

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-07-15 04:15 修改: 2024-11-21 04:17

libc6 CVE-2019-9192 低危 2.41-12 glibc: uncontrolled recursion in function check_dst_limits_calc_pos_1 in posix/regexec.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-9192

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-02-26 18:29 修改: 2024-11-21 04:51

git CVE-2024-52005 低危 1:2.47.3-0+deb13u1 git: The sideband payload is passed unfiltered to the terminal in git

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52005

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-01-15 18:15 修改: 2025-12-18 16:00

git-man CVE-2018-1000021 低危 1:2.47.3-0+deb13u1 git: client prints server-sent ANSI escape codes to the terminal, allowing for unverified messages to potentially execute arbitrary commands

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-1000021

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2018-02-09 23:29 修改: 2024-11-21 03:39

git-man CVE-2022-24975 低危 1:2.47.3-0+deb13u1 git: The --mirror option for git leaks secret for deleted content, aka the "GitBleed"

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-24975

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2022-02-11 20:15 修改: 2024-11-21 06:51

git-man CVE-2024-52005 低危 1:2.47.3-0+deb13u1 git: The sideband payload is passed unfiltered to the terminal in git

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52005

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-01-15 18:15 修改: 2025-12-18 16:00

libcurl3t64-gnutls CVE-2025-10966 低危 8.14.1-2 curl: Curl missing SFTP host verification with wolfSSH backend

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-10966

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-11-07 08:15 修改: 2026-01-20 14:57

libcurl3t64-gnutls CVE-2025-14017 低危 8.14.1-2 curl: curl: Security bypass due to global TLS option changes in multi-threaded LDAPS transfers

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14017

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-08 10:15 修改: 2026-01-16 16:15

libcurl3t64-gnutls CVE-2025-14524 低危 8.14.1-2 When an OAuth2 bearer token is used for an HTTP(S) transfer, and that ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14524

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:53

libsmartcols1 CVE-2022-0563 低危 2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

libcurl3t64-gnutls CVE-2025-14819 低危 8.14.1-2 When doing TLS related transfers with reused easy or multi handles and ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-14819

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:51

libcurl3t64-gnutls CVE-2025-15079 低危 8.14.1-2 When doing SSH-based transfers using either SCP or SFTP, and setting t ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15079

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:50

libsqlite3-0 CVE-2021-45346 低危 3.46.1-7 sqlite: crafted SQL query allows a malicious user to obtain sensitive information

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-45346

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-14 19:15 修改: 2024-11-21 06:32

libsystemd0 CVE-2013-4392 低危 257.8-1~deb13u2 systemd: TOCTOU race condition when updating file permissions and SELinux security contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2013-4392

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2013-10-28 22:55 修改: 2025-06-09 16:15

libsystemd0 CVE-2023-31437 低危 257.8-1~deb13u2 An issue was discovered in systemd 253. An attacker can modify a seale ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31437

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2023-06-13 17:15 修改: 2025-01-03 20:15

libsystemd0 CVE-2023-31438 低危 257.8-1~deb13u2 An issue was discovered in systemd 253. An attacker can truncate a sea ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31438

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2023-06-13 17:15 修改: 2024-11-21 08:01

libsystemd0 CVE-2023-31439 低危 257.8-1~deb13u2 An issue was discovered in systemd 253. An attacker can modify the con ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31439

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2023-06-13 17:15 修改: 2024-11-21 08:01

libcurl3t64-gnutls CVE-2025-15224 低危 8.14.1-2 When doing SSH-based transfers using either SCP or SFTP, and asked to ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-15224

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:47

libtinfo6 CVE-2025-6141 低危 6.5+20250216-2 gnu-ncurses: ncurses Stack Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6141

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-06-16 22:16 修改: 2025-06-17 20:50

libudev1 CVE-2013-4392 低危 257.8-1~deb13u2 systemd: TOCTOU race condition when updating file permissions and SELinux security contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2013-4392

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2013-10-28 22:55 修改: 2025-06-09 16:15

libudev1 CVE-2023-31437 低危 257.8-1~deb13u2 An issue was discovered in systemd 253. An attacker can modify a seale ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31437

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2023-06-13 17:15 修改: 2025-01-03 20:15

libudev1 CVE-2023-31438 低危 257.8-1~deb13u2 An issue was discovered in systemd 253. An attacker can truncate a sea ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31438

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2023-06-13 17:15 修改: 2024-11-21 08:01

libudev1 CVE-2023-31439 低危 257.8-1~deb13u2 An issue was discovered in systemd 253. An attacker can modify the con ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31439

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2023-06-13 17:15 修改: 2024-11-21 08:01

jq CVE-2025-9403 低危 1.7.1-6+deb13u1 jq: assertion failure in run_jq_tests() of the file jq_test.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-9403

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-08-25 03:15 修改: 2025-09-12 20:11

libuuid1 CVE-2022-0563 低危 2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

libapt-pkg7.0 CVE-2011-3374 低危 3.0.3 It was found that apt-key in apt, all versions, do not correctly valid ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-3374

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2019-11-26 00:15 修改: 2024-11-21 01:30

login CVE-2022-0563 低危 1:4.16.0-2+really2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

login.defs CVE-2007-5686 低危 1:4.17.4-2 initscripts in rPath Linux 1 sets insecure permissions for the /var/lo ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2007-5686

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2007-10-28 17:08 修改: 2025-04-09 00:30

login.defs CVE-2024-56433 低危 1:4.17.4-2 shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56433

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2024-12-26 09:15 修改: 2024-12-26 09:15

login.defs TEMP-0628843-DBAD28 低危 1:4.17.4-2 [more related to CVE-2005-4890]

漏洞详情: https://security-tracker.debian.org/tracker/TEMP-0628843-DBAD28

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libgnutls30t64 CVE-2011-3389 低危 3.8.9-3 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-3389

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2011-09-06 19:55 修改: 2025-04-11 00:51

mount CVE-2022-0563 低危 2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

ncurses-base CVE-2025-6141 低危 6.5+20250216-2 gnu-ncurses: ncurses Stack Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6141

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-06-16 22:16 修改: 2025-06-17 20:50

ncurses-bin CVE-2025-6141 低危 6.5+20250216-2 gnu-ncurses: ncurses Stack Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-6141

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2025-06-16 22:16 修改: 2025-06-17 20:50

net-tools CVE-2002-1976 低危 2.10-1.3 ifconfig, when used on the Linux kernel 2.2 and later, does not report ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2002-1976

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2002-12-31 05:00 修改: 2025-04-03 01:03

libgssapi-krb5-2 CVE-2018-5709 低危 1.21.3-5 krb5: integer overflow in dbentry->n_key_data in kadmin/dbutil/dump.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5709

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2018-01-16 09:29 修改: 2024-11-21 04:09

libgssapi-krb5-2 CVE-2024-26458 低危 1.21.3-5 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2024-02-29 01:44 修改: 2025-05-23 15:39

node-undici CVE-2025-47279 低危 7.3.0+dfsg1+~cs24.12.11-1 undici: Undici Memory Leak with Invalid Certificates

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-47279

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-05-15 18:15 修改: 2025-05-16 14:43

libgssapi-krb5-2 CVE-2024-26461 低危 1.21.3-5 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2024-02-29 01:44 修改: 2025-05-23 15:30

libjq1 CVE-2025-9403 低危 1.7.1-6+deb13u1 jq: assertion failure in run_jq_tests() of the file jq_test.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-9403

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2025-08-25 03:15 修改: 2025-09-12 20:11

libk5crypto3 CVE-2018-5709 低危 1.21.3-5 krb5: integer overflow in dbentry->n_key_data in kadmin/dbutil/dump.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5709

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2018-01-16 09:29 修改: 2024-11-21 04:09

libk5crypto3 CVE-2024-26458 低危 1.21.3-5 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2024-02-29 01:44 修改: 2025-05-23 15:39

libk5crypto3 CVE-2024-26461 低危 1.21.3-5 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2024-02-29 01:44 修改: 2025-05-23 15:30

nodejs CVE-2025-55132 低危 20.19.2+dfsg-1 nodejs: Nodejs filesystem permissions bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-55132

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-20 21:16 修改: 2026-01-20 21:16

passwd CVE-2007-5686 低危 1:4.17.4-2 initscripts in rPath Linux 1 sets insecure permissions for the /var/lo ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2007-5686

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2007-10-28 17:08 修改: 2025-04-09 00:30

passwd CVE-2024-56433 低危 1:4.17.4-2 shadow-utils: Default subordinate ID configuration in /etc/login.defs could lead to compromise

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-56433

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2024-12-26 09:15 修改: 2024-12-26 09:15

passwd TEMP-0628843-DBAD28 低危 1:4.17.4-2 [more related to CVE-2005-4890]

漏洞详情: https://security-tracker.debian.org/tracker/TEMP-0628843-DBAD28

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

perl CVE-2011-4116 低危 5.40.1-6 perl: File:: Temp insecure temporary file handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-4116

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2020-01-31 18:15 修改: 2025-08-04 19:04

perl-base CVE-2011-4116 低危 5.40.1-6 perl: File:: Temp insecure temporary file handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-4116

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2020-01-31 18:15 修改: 2025-08-04 19:04

perl-modules-5.40 CVE-2011-4116 低危 5.40.1-6 perl: File:: Temp insecure temporary file handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-4116

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2020-01-31 18:15 修改: 2025-08-04 19:04

libkrb5-3 CVE-2018-5709 低危 1.21.3-5 krb5: integer overflow in dbentry->n_key_data in kadmin/dbutil/dump.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5709

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2018-01-16 09:29 修改: 2024-11-21 04:09

libkrb5-3 CVE-2024-26458 低危 1.21.3-5 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2024-02-29 01:44 修改: 2025-05-23 15:39

libkrb5-3 CVE-2024-26461 低危 1.21.3-5 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2024-02-29 01:44 修改: 2025-05-23 15:30

libkrb5support0 CVE-2018-5709 低危 1.21.3-5 krb5: integer overflow in dbentry->n_key_data in kadmin/dbutil/dump.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5709

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2018-01-16 09:29 修改: 2024-11-21 04:09

libkrb5support0 CVE-2024-26458 低危 1.21.3-5 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2024-02-29 01:44 修改: 2025-05-23 15:39

libkrb5support0 CVE-2024-26461 低危 1.21.3-5 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2024-02-29 01:44 修改: 2025-05-23 15:30

bash TEMP-0841856-B18BAF 低危 5.2.37-2+b5 [Privilege escalation possible to other user than root]

漏洞详情: https://security-tracker.debian.org/tracker/TEMP-0841856-B18BAF

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

liblastlog2-2 CVE-2022-0563 低危 2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

libldap2 CVE-2015-3276 低危 2.6.10+dfsg-1 openldap: incorrect multi-keyword mode cipherstring parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-3276

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2015-12-07 20:59 修改: 2025-04-12 10:46

libldap2 CVE-2017-14159 低危 2.6.10+dfsg-1 openldap: Privilege escalation via PID file manipulation

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-14159

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2017-09-05 18:29 修改: 2025-04-20 01:37

libldap2 CVE-2017-17740 低危 2.6.10+dfsg-1 openldap: contrib/slapd-modules/nops/nops.c attempts to free stack buffer allowing remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17740

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2017-12-18 06:29 修改: 2025-04-20 01:37

libldap2 CVE-2020-15719 低危 2.6.10+dfsg-1 openldap: Certificate validation incorrectly matches name against CN-ID

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-15719

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2020-07-14 14:15 修改: 2024-11-21 05:06

libldap2 CVE-2026-22185 低危 2.6.10+dfsg-1 OpenLDAP: OpenLDAP LMDB: Denial of Service and Information Disclosure via Heap Buffer Underflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-22185

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-07 21:16 修改: 2026-01-14 18:16

libblkid1 CVE-2022-0563 低危 2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

sysvinit-utils TEMP-0517018-A83CE6 低危 3.14-4 [sysvinit: no-root option in expert installer exposes locally exploitable security flaw]

漏洞详情: https://security-tracker.debian.org/tracker/TEMP-0517018-A83CE6

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

tar CVE-2005-2541 低危 1.35+dfsg-3.1 tar: does not properly warn the user when extracting setuid or setgid files

漏洞详情: https://avd.aquasec.com/nvd/cve-2005-2541

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2005-08-10 04:00 修改: 2025-04-03 01:03

tar TEMP-0290435-0B57B5 低危 1.35+dfsg-3.1 [tar's rmt command may have undesired side effects]

漏洞详情: https://security-tracker.debian.org/tracker/TEMP-0290435-0B57B5

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libmount1 CVE-2022-0563 低危 2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

util-linux CVE-2022-0563 低危 2.41-5 util-linux: partial disclosure of arbitrary files in chfn and chsh when compiled with libreadline

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0563

镜像层: sha256:36d06fe0cbc654e5f67d58c960ed33e53127e4a3288d8ce6f6a60a9c311794d4

发布日期: 2022-02-21 19:15 修改: 2025-06-09 16:15

libgnutls30t64 CVE-2025-9820 未知 3.8.9-3 3.8.9-3+deb13u1 [GNUTLS-SA-2025-11-18]

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-9820

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libcurl3t64-gnutls CVE-2025-13034 未知 8.14.1-2 When using `CURLOPT_PINNEDPUBLICKEY` option with libcurl or `--pinnedp ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-13034

镜像层: sha256:3247a7a97bf88f353a0a4c6f389cebee817c2c06f5daed6fde1982b689463081

发布日期: 2026-01-08 10:15 修改: 2026-01-20 14:54