gcr.io/k8s-minikube/kicbase:v0.0.39 linux/amd64

gcr.io/k8s-minikube/kicbase:v0.0.39 - Trivy安全扫描结果 扫描时间: 2024-11-02 18:58
全部漏洞信息
低危漏洞:247 中危漏洞:503 高危漏洞:92 严重漏洞:24

系统OS: ubuntu 20.04 扫描引擎: Trivy 扫描时间: 2024-11-02 18:58

gcr.io/k8s-minikube/kicbase:v0.0.39 (ubuntu 20.04) (ubuntu)
低危漏洞:239 中危漏洞:362 高危漏洞:1 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
libnghttp2-14 CVE-2023-44487 高危 1.40.0-1build1 1.40.0-1ubuntu0.2 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

bind9-dnsutils CVE-2023-2911 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.15 bind: Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2911

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-06-21 17:15 修改: 2023-07-03 19:09

bind9-dnsutils CVE-2023-3341 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.16 bind: stack exhaustion in control channel code may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3341

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-20 13:15 修改: 2024-02-16 18:39

bind9-dnsutils CVE-2023-4408 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Parsing large DNS messages may cause excessive CPU load

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4408

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-21 21:02

bind9-dnsutils CVE-2023-50387 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50387

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

bind9-dnsutils CVE-2023-50868 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50868

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

bind9-dnsutils CVE-2023-5517 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Querying RFC 1918 reverse zones may cause an assertion failure when “nxdomain-redirect” is enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5517

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-22 14:09

bind9-dnsutils CVE-2023-6516 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Specific recursive query patterns may lead to an out-of-memory condition

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6516

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-22 18:14

bind9-dnsutils CVE-2024-0760 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: A flood of DNS messages over TCP may make the server unstable

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0760

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:45

bind9-dnsutils CVE-2024-1737 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: BIND's database will be slow if a very large number of RRs exist at the same nam

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1737

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:46

bind9-dnsutils CVE-2024-1975 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind9: bind: SIG(0) can be used to exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1975

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:46

bind9-dnsutils CVE-2024-4076 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: Assertion failure when serving both stale cache data and authoritative zone content

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4076

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:59

bind9-host CVE-2023-2828 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.15 bind: named's configured cache size limit can be significantly exceeded

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2828

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-06-21 17:15 修改: 2023-07-21 19:19

bind9-host CVE-2023-2911 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.15 bind: Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2911

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-06-21 17:15 修改: 2023-07-03 19:09

bind9-host CVE-2023-3341 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.16 bind: stack exhaustion in control channel code may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3341

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-20 13:15 修改: 2024-02-16 18:39

bind9-host CVE-2023-4408 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Parsing large DNS messages may cause excessive CPU load

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4408

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-21 21:02

bind9-host CVE-2023-50387 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50387

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

bind9-host CVE-2023-50868 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50868

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

bind9-host CVE-2023-5517 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Querying RFC 1918 reverse zones may cause an assertion failure when “nxdomain-redirect” is enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5517

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-22 14:09

bind9-host CVE-2023-6516 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Specific recursive query patterns may lead to an out-of-memory condition

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6516

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-22 18:14

bind9-host CVE-2024-0760 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: A flood of DNS messages over TCP may make the server unstable

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0760

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:45

bind9-host CVE-2024-1737 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: BIND's database will be slow if a very large number of RRs exist at the same nam

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1737

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:46

bind9-host CVE-2024-1975 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind9: bind: SIG(0) can be used to exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1975

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:46

bind9-host CVE-2024-4076 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: Assertion failure when serving both stale cache data and authoritative zone content

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4076

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:59

bind9-libs CVE-2023-2828 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.15 bind: named's configured cache size limit can be significantly exceeded

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2828

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-06-21 17:15 修改: 2023-07-21 19:19

bind9-libs CVE-2023-2911 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.15 bind: Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2911

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-06-21 17:15 修改: 2023-07-03 19:09

bind9-libs CVE-2023-3341 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.16 bind: stack exhaustion in control channel code may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3341

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-20 13:15 修改: 2024-02-16 18:39

bind9-libs CVE-2023-4408 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Parsing large DNS messages may cause excessive CPU load

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4408

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-21 21:02

bind9-libs CVE-2023-50387 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50387

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

bind9-libs CVE-2023-50868 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50868

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

bind9-libs CVE-2023-5517 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Querying RFC 1918 reverse zones may cause an assertion failure when “nxdomain-redirect” is enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5517

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-22 14:09

bind9-libs CVE-2023-6516 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Specific recursive query patterns may lead to an out-of-memory condition

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6516

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-22 18:14

bind9-libs CVE-2024-0760 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: A flood of DNS messages over TCP may make the server unstable

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0760

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:45

bind9-libs CVE-2024-1737 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: BIND's database will be slow if a very large number of RRs exist at the same nam

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1737

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:46

bind9-libs CVE-2024-1975 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind9: bind: SIG(0) can be used to exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1975

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:46

bind9-libs CVE-2024-4076 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: Assertion failure when serving both stale cache data and authoritative zone content

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4076

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:59

bsdutils CVE-2024-28085 中危 1:2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

curl CVE-2023-46218 中危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.21 curl: information disclosure by exploiting a mixed case flaw

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46218

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-12-07 01:15 修改: 2024-01-25 14:15

curl CVE-2024-2398 中危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.22 curl: HTTP/2 push headers memory-leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2398

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-03-27 08:15 修改: 2024-07-30 02:15

curl CVE-2024-7264 中危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.23 curl: libcurl: ASN.1 date parser overread

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7264

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-07-31 08:15 修改: 2024-10-30 20:35

curl CVE-2024-8096 中危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.24 curl: OCSP stapling bypass with GnuTLS

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8096

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-09-11 10:15 修改: 2024-09-11 16:26

dnsmasq-base CVE-2023-50387 中危 2.80-1.1ubuntu1.6 2.90-0ubuntu0.20.04.1 bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50387

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

dnsmasq-base CVE-2023-50868 中危 2.80-1.1ubuntu1.6 2.90-0ubuntu0.20.04.1 bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50868

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

dnsutils CVE-2023-2828 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.15 bind: named's configured cache size limit can be significantly exceeded

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2828

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-06-21 17:15 修改: 2023-07-21 19:19

dnsutils CVE-2023-2911 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.15 bind: Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2911

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-06-21 17:15 修改: 2023-07-03 19:09

dnsutils CVE-2023-3341 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.16 bind: stack exhaustion in control channel code may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3341

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-20 13:15 修改: 2024-02-16 18:39

dnsutils CVE-2023-4408 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Parsing large DNS messages may cause excessive CPU load

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4408

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-21 21:02

dnsutils CVE-2023-50387 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: KeyTrap - Extreme CPU consumption in DNSSEC validator

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50387

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

dnsutils CVE-2023-50868 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Preparing an NSEC3 closest encloser proof can exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50868

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-14 16:15 修改: 2024-06-10 17:16

dnsutils CVE-2023-5517 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Querying RFC 1918 reverse zones may cause an assertion failure when “nxdomain-redirect” is enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5517

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-22 14:09

dnsutils CVE-2023-6516 中危 1:9.16.1-0ubuntu2.14 1:9.16.48-0ubuntu0.20.04.1 bind9: Specific recursive query patterns may lead to an out-of-memory condition

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6516

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-13 14:15 修改: 2024-10-22 18:14

dnsutils CVE-2024-0760 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: A flood of DNS messages over TCP may make the server unstable

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0760

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:45

dnsutils CVE-2024-1737 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: BIND's database will be slow if a very large number of RRs exist at the same nam

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1737

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:46

dnsutils CVE-2024-1975 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind9: bind: SIG(0) can be used to exhaust CPU resources

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1975

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:46

dnsutils CVE-2024-4076 中危 1:9.16.1-0ubuntu2.14 1:9.18.28-0ubuntu0.20.04.1 bind: bind9: Assertion failure when serving both stale cache data and authoritative zone content

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4076

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-07-23 15:15 修改: 2024-08-01 13:59

fdisk CVE-2024-28085 中危 2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

libapparmor1 CVE-2016-1585 中危 2.13.3-7ubuntu5.2 2.13.3-7ubuntu5.4 In all versions of AppArmor mount rules are accidentally widened when ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-1585

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2019-04-22 16:29 修改: 2023-11-07 02:29

libblkid1 CVE-2024-28085 中危 2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

libc-bin CVE-2024-2961 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.15 glibc: Out of bounds write in iconv may lead to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2961

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-04-17 18:15 修改: 2024-07-22 18:15

libc-bin CVE-2024-33599 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.16 glibc: stack-based buffer overflow in netgroup cache

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-33599

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-05-06 20:15 修改: 2024-07-22 18:15

libc-bin CVE-2024-33600 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.16 glibc: null pointer dereferences after failed netgroup cache insertion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-33600

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-05-06 20:15 修改: 2024-07-22 18:15

libc-bin CVE-2024-33601 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.16 glibc: netgroup cache may terminate daemon on memory allocation failure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-33601

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-05-06 20:15 修改: 2024-07-22 18:15

libc-bin CVE-2024-33602 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.16 glibc: netgroup cache assumes NSS callback uses in-buffer strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-33602

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-05-06 20:15 修改: 2024-07-22 18:15

libc6 CVE-2024-2961 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.15 glibc: Out of bounds write in iconv may lead to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2961

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-04-17 18:15 修改: 2024-07-22 18:15

libc6 CVE-2024-33599 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.16 glibc: stack-based buffer overflow in netgroup cache

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-33599

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-05-06 20:15 修改: 2024-07-22 18:15

libc6 CVE-2024-33600 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.16 glibc: null pointer dereferences after failed netgroup cache insertion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-33600

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-05-06 20:15 修改: 2024-07-22 18:15

libc6 CVE-2024-33601 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.16 glibc: netgroup cache may terminate daemon on memory allocation failure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-33601

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-05-06 20:15 修改: 2024-07-22 18:15

libc6 CVE-2024-33602 中危 2.31-0ubuntu9.9 2.31-0ubuntu9.16 glibc: netgroup cache assumes NSS callback uses in-buffer strings

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-33602

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-05-06 20:15 修改: 2024-07-22 18:15

libcap2 CVE-2023-2603 中危 1:2.32-1 1:2.32-1ubuntu0.1 libcap: Integer Overflow in _libcap_strdup()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2603

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-06-06 20:15 修改: 2024-10-10 16:32

libcap2-bin CVE-2023-2603 中危 1:2.32-1 1:2.32-1ubuntu0.1 libcap: Integer Overflow in _libcap_strdup()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2603

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-06-06 20:15 修改: 2024-10-10 16:32

libcurl4 CVE-2023-46218 中危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.21 curl: information disclosure by exploiting a mixed case flaw

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46218

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-12-07 01:15 修改: 2024-01-25 14:15

libcurl4 CVE-2024-2398 中危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.22 curl: HTTP/2 push headers memory-leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2398

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-03-27 08:15 修改: 2024-07-30 02:15

libcurl4 CVE-2024-7264 中危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.23 curl: libcurl: ASN.1 date parser overread

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7264

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-07-31 08:15 修改: 2024-10-30 20:35

libcurl4 CVE-2024-8096 中危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.24 curl: OCSP stapling bypass with GnuTLS

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8096

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-09-11 10:15 修改: 2024-09-11 16:26

libelf1 CVE-2020-21047 中危 0.176-1.1build1 0.176-1.1ubuntu0.1 The libcpu component which is used by libasm of elfutils version 0.177 ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-21047

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-08-22 19:16 修改: 2023-11-07 03:19

libexpat1 CVE-2024-45490 中危 2.2.9-1ubuntu0.6 2.2.9-1ubuntu0.7 libexpat: Negative Length Parsing Vulnerability in libexpat

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45490

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-30 03:15 修改: 2024-10-18 12:24

libexpat1 CVE-2024-45491 中危 2.2.9-1ubuntu0.6 2.2.9-1ubuntu0.7 libexpat: Integer Overflow or Wraparound

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45491

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-30 03:15 修改: 2024-09-04 14:28

libexpat1 CVE-2024-45492 中危 2.2.9-1ubuntu0.6 2.2.9-1ubuntu0.7 libexpat: integer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45492

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-30 03:15 修改: 2024-09-04 14:28

libfdisk1 CVE-2024-28085 中危 2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

libgcrypt20 CVE-2024-2236 中危 1.8.5-5ubuntu1.1 libgcrypt: vulnerable to Marvin Attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2236

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-06 22:15 修改: 2024-09-14 04:15

libglib2.0-0 CVE-2023-29499 中危 2.64.6-1~ubuntu20.04.4 2.64.6-1~ubuntu20.04.6 glib: GVariant offset table entry size is not checked in is_normal()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29499

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-14 20:15 修改: 2023-11-27 14:15

libglib2.0-0 CVE-2023-32611 中危 2.64.6-1~ubuntu20.04.4 2.64.6-1~ubuntu20.04.6 glib: g_variant_byteswap() can take a long time with some non-normal inputs

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-32611

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-14 20:15 修改: 2023-11-27 14:15

libglib2.0-0 CVE-2023-32636 中危 2.64.6-1~ubuntu20.04.4 2.64.6-1~ubuntu20.04.6 glib: Timeout in fuzz_variant_text

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-32636

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-14 20:15 修改: 2024-01-12 22:09

libglib2.0-0 CVE-2023-32643 中危 2.64.6-1~ubuntu20.04.4 2.64.6-1~ubuntu20.04.6 glib: Heap-buffer-overflow in g_variant_serialised_get_child

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-32643

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-14 20:15 修改: 2024-04-26 09:15

libglib2.0-0 CVE-2023-32665 中危 2.64.6-1~ubuntu20.04.4 2.64.6-1~ubuntu20.04.6 glib: GVariant deserialisation does not match spec for non-normal data

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-32665

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-09-14 20:15 修改: 2024-04-26 09:15

libglib2.0-0 CVE-2024-34397 中危 2.64.6-1~ubuntu20.04.4 2.64.6-1~ubuntu20.04.7 glib2: Signal subscription vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34397

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-05-07 18:15 修改: 2024-06-10 18:15

libgnutls30 CVE-2023-5981 中危 3.6.13-2ubuntu1.8 3.6.13-2ubuntu1.9 gnutls: timing side-channel in the RSA-PSK authentication

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5981

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-11-28 12:15 修改: 2024-09-16 13:15

libgnutls30 CVE-2024-0553 中危 3.6.13-2ubuntu1.8 3.6.13-2ubuntu1.10 gnutls: incomplete fix for CVE-2023-5981

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0553

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-01-16 12:15 修改: 2024-09-16 13:15

libgnutls30 CVE-2024-28834 中危 3.6.13-2ubuntu1.8 3.6.13-2ubuntu1.11 gnutls: vulnerable to Minerva side-channel information leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28834

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-21 14:15 修改: 2024-09-12 20:15

libgssapi-krb5-2 CVE-2023-36054 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.4 krb5: Denial of service through freeing uninitialized pointer

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-36054

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-08-07 19:15 修改: 2023-11-15 03:23

libgssapi-krb5-2 CVE-2024-26462 中危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/kdc/ndr.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26462

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libgssapi-krb5-2 CVE-2024-37370 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.6 krb5: GSS message token handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-37370

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-28 22:15 修改: 2024-08-27 17:48

libgssapi-krb5-2 CVE-2024-37371 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.6 krb5: GSS message token handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-37371

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-28 23:15 修改: 2024-09-18 12:39

libk5crypto3 CVE-2023-36054 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.4 krb5: Denial of service through freeing uninitialized pointer

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-36054

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-08-07 19:15 修改: 2023-11-15 03:23

libk5crypto3 CVE-2024-26462 中危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/kdc/ndr.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26462

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libk5crypto3 CVE-2024-37370 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.6 krb5: GSS message token handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-37370

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-28 22:15 修改: 2024-08-27 17:48

libk5crypto3 CVE-2024-37371 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.6 krb5: GSS message token handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-37371

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-28 23:15 修改: 2024-09-18 12:39

libkrb5-3 CVE-2023-36054 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.4 krb5: Denial of service through freeing uninitialized pointer

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-36054

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-08-07 19:15 修改: 2023-11-15 03:23

libkrb5-3 CVE-2024-26462 中危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/kdc/ndr.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26462

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libkrb5-3 CVE-2024-37370 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.6 krb5: GSS message token handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-37370

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-28 22:15 修改: 2024-08-27 17:48

libkrb5-3 CVE-2024-37371 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.6 krb5: GSS message token handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-37371

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-28 23:15 修改: 2024-09-18 12:39

libkrb5support0 CVE-2023-36054 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.4 krb5: Denial of service through freeing uninitialized pointer

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-36054

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-08-07 19:15 修改: 2023-11-15 03:23

libkrb5support0 CVE-2024-26462 中危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/kdc/ndr.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26462

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libkrb5support0 CVE-2024-37370 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.6 krb5: GSS message token handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-37370

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-28 22:15 修改: 2024-08-27 17:48

libkrb5support0 CVE-2024-37371 中危 1.17-6ubuntu4.3 1.17-6ubuntu4.6 krb5: GSS message token handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-37371

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-28 23:15 修改: 2024-09-18 12:39

libmount1 CVE-2024-28085 中危 2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

libncurses6 CVE-2023-29491 中危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: Local users can trigger security-relevant memory corruption via malformed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29491

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-04-14 01:15 修改: 2024-01-31 03:15

libncursesw6 CVE-2023-29491 中危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: Local users can trigger security-relevant memory corruption via malformed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29491

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-04-14 01:15 修改: 2024-01-31 03:15

bind9-dnsutils CVE-2023-2828 中危 1:9.16.1-0ubuntu2.14 1:9.16.1-0ubuntu2.15 bind: named's configured cache size limit can be significantly exceeded

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2828

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-06-21 17:15 修改: 2023-07-21 19:19

libnghttp2-14 CVE-2020-11080 中危 1.40.0-1build1 1.40.0-1ubuntu0.1 nghttp2: overly large SETTINGS frames can lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11080

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2020-06-03 23:15 修改: 2023-11-07 03:14

libnghttp2-14 CVE-2024-28182 中危 1.40.0-1build1 1.40.0-1ubuntu0.3 nghttp2: CONTINUATION frames DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28182

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-04-04 15:15 修改: 2024-05-01 18:15

libpam-modules CVE-2024-22365 中危 1.3.1-5ubuntu4.6 1.3.1-5ubuntu4.7 pam: allowing unprivileged user to block another user namespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-22365

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-06 08:15 修改: 2024-02-14 00:27

libpam-modules-bin CVE-2024-22365 中危 1.3.1-5ubuntu4.6 1.3.1-5ubuntu4.7 pam: allowing unprivileged user to block another user namespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-22365

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-06 08:15 修改: 2024-02-14 00:27

libpam-runtime CVE-2024-22365 中危 1.3.1-5ubuntu4.6 1.3.1-5ubuntu4.7 pam: allowing unprivileged user to block another user namespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-22365

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-06 08:15 修改: 2024-02-14 00:27

libpam0g CVE-2024-22365 中危 1.3.1-5ubuntu4.6 1.3.1-5ubuntu4.7 pam: allowing unprivileged user to block another user namespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-22365

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-06 08:15 修改: 2024-02-14 00:27

libpython3.8-minimal CVE-2023-24329 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.8 python: urllib.parse url blocklisting bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24329

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-02-17 15:15 修改: 2023-11-07 04:08

libpython3.8-minimal CVE-2023-27043 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27043

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-04-19 00:15 修改: 2024-02-26 16:27

libpython3.8-minimal CVE-2023-40217 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.9 python: TLS handshake bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40217

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-08-25 01:15 修改: 2023-11-07 04:20

libpython3.8-minimal CVE-2023-6597 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.10 python: Path traversal on tempfile.TemporaryDirectory

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6597

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-03-19 16:15 修改: 2024-06-10 18:15

libpython3.8-minimal CVE-2024-0397 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.11 cpython: python: Memory race condition in ssl.SSLContext certificate store methods

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0397

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-17 16:15 修改: 2024-07-03 01:44

libpython3.8-minimal CVE-2024-0450 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.10 python: The zipfile module is vulnerable to zip-bombs leading to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0450

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-03-19 16:15 修改: 2024-06-10 18:15

libpython3.8-minimal CVE-2024-6232 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: cpython: tarfile: ReDos via excessive backtracking while parsing header values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6232

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-09-03 13:15 修改: 2024-09-04 21:15

libpython3.8-minimal CVE-2024-6923 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6923

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-01 14:15 修改: 2024-09-04 21:15

libpython3.8-minimal CVE-2024-8088 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: cpython: Iterating over a malicious ZIP file may lead to Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8088

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-22 19:15 修改: 2024-09-04 23:15

libpython3.8-stdlib CVE-2023-24329 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.8 python: urllib.parse url blocklisting bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24329

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-02-17 15:15 修改: 2023-11-07 04:08

libpython3.8-stdlib CVE-2023-27043 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27043

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-04-19 00:15 修改: 2024-02-26 16:27

libpython3.8-stdlib CVE-2023-40217 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.9 python: TLS handshake bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40217

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-08-25 01:15 修改: 2023-11-07 04:20

libpython3.8-stdlib CVE-2023-6597 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.10 python: Path traversal on tempfile.TemporaryDirectory

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6597

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-03-19 16:15 修改: 2024-06-10 18:15

libpython3.8-stdlib CVE-2024-0397 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.11 cpython: python: Memory race condition in ssl.SSLContext certificate store methods

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0397

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-17 16:15 修改: 2024-07-03 01:44

libpython3.8-stdlib CVE-2024-0450 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.10 python: The zipfile module is vulnerable to zip-bombs leading to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0450

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-03-19 16:15 修改: 2024-06-10 18:15

libpython3.8-stdlib CVE-2024-6232 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: cpython: tarfile: ReDos via excessive backtracking while parsing header values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6232

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-09-03 13:15 修改: 2024-09-04 21:15

libpython3.8-stdlib CVE-2024-6923 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6923

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-01 14:15 修改: 2024-09-04 21:15

libpython3.8-stdlib CVE-2024-8088 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: cpython: Iterating over a malicious ZIP file may lead to Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8088

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-22 19:15 修改: 2024-09-04 23:15

libsmartcols1 CVE-2024-28085 中危 2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

libsqlite3-0 CVE-2023-7104 中危 3.31.1-4ubuntu0.5 3.31.1-4ubuntu0.6 sqlite: heap-buffer-overflow at sessionfuzz

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7104

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-12-29 10:15 修改: 2024-05-17 02:34

libssh-4 CVE-2023-1667 中危 0.9.3-2ubuntu2.2 0.9.3-2ubuntu2.3 libssh: NULL pointer dereference during rekeying with algorithm guessing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1667

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-26 18:15 修改: 2023-12-22 10:15

libssh-4 CVE-2023-2283 中危 0.9.3-2ubuntu2.2 0.9.3-2ubuntu2.3 libssh: authorization bypass in pki_verify_data_signature

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2283

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-26 18:15 修改: 2024-02-01 17:15

libssh-4 CVE-2023-48795 中危 0.9.3-2ubuntu2.2 0.9.3-2ubuntu2.4 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48795

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-12-18 16:15 修改: 2024-05-01 18:15

libssh-4 CVE-2023-6004 中危 0.9.3-2ubuntu2.2 0.9.3-2ubuntu2.5 libssh: ProxyCommand/ProxyJump features allow injection of malicious code through hostname

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6004

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-01-03 17:15 修改: 2024-09-16 18:15

libssh-4 CVE-2023-6918 中危 0.9.3-2ubuntu2.2 0.9.3-2ubuntu2.5 libssh: Missing checks for return values for digests

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6918

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-12-19 00:15 修改: 2024-09-16 18:15

libssl1.1 CVE-2023-2650 中危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.19 openssl: Possible DoS translating ASN.1 object identifiers

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2650

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-30 14:15 修改: 2024-02-04 09:15

libtinfo6 CVE-2023-29491 中危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: Local users can trigger security-relevant memory corruption via malformed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29491

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-04-14 01:15 修改: 2024-01-31 03:15

libuuid1 CVE-2024-28085 中危 2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

libuv1 CVE-2024-24806 中危 1.34.2-1ubuntu1.3 1.34.2-1ubuntu1.5 libuv: Improper Domain Lookup that potentially leads to SSRF attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24806

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-07 22:15 修改: 2024-07-18 01:15

libxml2 CVE-2023-28484 中危 2.9.10+dfsg-5ubuntu0.20.04.5 2.9.10+dfsg-5ubuntu0.20.04.6 libxml2: NULL dereference in xmlSchemaFixupComplexType

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28484

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-04-24 21:15 修改: 2024-02-01 17:15

libxml2 CVE-2023-29469 中危 2.9.10+dfsg-5ubuntu0.20.04.5 2.9.10+dfsg-5ubuntu0.20.04.6 libxml2: Hashing of empty dict strings isn't deterministic

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29469

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-04-24 21:15 修改: 2023-06-01 14:15

libxml2 CVE-2024-25062 中危 2.9.10+dfsg-5ubuntu0.20.04.5 2.9.10+dfsg-5ubuntu0.20.04.7 libxml2: use-after-free in XMLReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25062

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2024-02-04 16:15 修改: 2024-02-13 00:40

libyajl2 CVE-2022-24795 中危 2.1.0-3 2.1.0-3ubuntu0.20.04.1 yajl: heap-based buffer overflow when handling large inputs due to an integer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-24795

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2022-04-05 16:15 修改: 2023-11-07 03:44

mount CVE-2024-28085 中危 2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

ncurses-base CVE-2023-29491 中危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: Local users can trigger security-relevant memory corruption via malformed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29491

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-04-14 01:15 修改: 2024-01-31 03:15

ncurses-bin CVE-2023-29491 中危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: Local users can trigger security-relevant memory corruption via malformed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29491

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-04-14 01:15 修改: 2024-01-31 03:15

openssh-client CVE-2023-38408 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.8 openssh: Remote code execution in ssh-agent PKCS#11 support

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-38408

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-07-20 03:15 修改: 2024-10-15 19:35

openssh-client CVE-2023-48795 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.10 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48795

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-12-18 16:15 修改: 2024-05-01 18:15

openssh-client CVE-2023-51385 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.11 openssh: potential command injection via shell metacharacters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-51385

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-12-18 19:15 修改: 2024-03-13 21:15

openssh-server CVE-2023-38408 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.8 openssh: Remote code execution in ssh-agent PKCS#11 support

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-38408

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-07-20 03:15 修改: 2024-10-15 19:35

openssh-server CVE-2023-48795 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.10 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48795

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-12-18 16:15 修改: 2024-05-01 18:15

openssh-server CVE-2023-51385 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.11 openssh: potential command injection via shell metacharacters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-51385

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-12-18 19:15 修改: 2024-03-13 21:15

openssh-sftp-server CVE-2023-38408 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.8 openssh: Remote code execution in ssh-agent PKCS#11 support

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-38408

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-07-20 03:15 修改: 2024-10-15 19:35

openssh-sftp-server CVE-2023-48795 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.10 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48795

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-12-18 16:15 修改: 2024-05-01 18:15

openssh-sftp-server CVE-2023-51385 中危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.11 openssh: potential command injection via shell metacharacters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-51385

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-12-18 19:15 修改: 2024-03-13 21:15

openssl CVE-2023-2650 中危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.19 openssl: Possible DoS translating ASN.1 object identifiers

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2650

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-30 14:15 修改: 2024-02-04 09:15

perl-base CVE-2023-31484 中危 5.30.0-9ubuntu0.3 5.30.0-9ubuntu0.4 perl: CPAN.pm does not verify TLS certificates when downloading distributions over HTTPS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31484

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-04-29 00:15 修改: 2024-08-01 13:43

perl-base CVE-2023-47038 中危 5.30.0-9ubuntu0.3 5.30.0-9ubuntu0.5 perl: Write past buffer end via illegal user-defined Unicode property

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-47038

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-18 14:15 修改: 2024-09-16 16:15

python3-pkg-resources CVE-2024-6345 中危 45.2.0-1ubuntu0.1 45.2.0-1ubuntu0.2 pypa/setuptools: Remote code execution via download functions in the package_index module in pypa/setuptools

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6345

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-07-15 01:15 修改: 2024-07-15 13:00

python3.8 CVE-2023-24329 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.8 python: urllib.parse url blocklisting bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24329

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-02-17 15:15 修改: 2023-11-07 04:08

python3.8 CVE-2023-27043 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27043

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-04-19 00:15 修改: 2024-02-26 16:27

python3.8 CVE-2023-40217 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.9 python: TLS handshake bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40217

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-08-25 01:15 修改: 2023-11-07 04:20

python3.8 CVE-2023-6597 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.10 python: Path traversal on tempfile.TemporaryDirectory

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6597

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-03-19 16:15 修改: 2024-06-10 18:15

python3.8 CVE-2024-0397 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.11 cpython: python: Memory race condition in ssl.SSLContext certificate store methods

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0397

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-17 16:15 修改: 2024-07-03 01:44

python3.8 CVE-2024-0450 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.10 python: The zipfile module is vulnerable to zip-bombs leading to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0450

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-03-19 16:15 修改: 2024-06-10 18:15

python3.8 CVE-2024-6232 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: cpython: tarfile: ReDos via excessive backtracking while parsing header values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6232

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-09-03 13:15 修改: 2024-09-04 21:15

python3.8 CVE-2024-6923 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6923

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-01 14:15 修改: 2024-09-04 21:15

python3.8 CVE-2024-8088 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: cpython: Iterating over a malicious ZIP file may lead to Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8088

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-22 19:15 修改: 2024-09-04 23:15

python3.8-minimal CVE-2023-24329 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.8 python: urllib.parse url blocklisting bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24329

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-02-17 15:15 修改: 2023-11-07 04:08

python3.8-minimal CVE-2023-27043 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27043

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-04-19 00:15 修改: 2024-02-26 16:27

python3.8-minimal CVE-2023-40217 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.9 python: TLS handshake bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40217

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-08-25 01:15 修改: 2023-11-07 04:20

python3.8-minimal CVE-2023-6597 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.10 python: Path traversal on tempfile.TemporaryDirectory

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-6597

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-03-19 16:15 修改: 2024-06-10 18:15

python3.8-minimal CVE-2024-0397 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.11 cpython: python: Memory race condition in ssl.SSLContext certificate store methods

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0397

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-17 16:15 修改: 2024-07-03 01:44

python3.8-minimal CVE-2024-0450 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.10 python: The zipfile module is vulnerable to zip-bombs leading to denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0450

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-03-19 16:15 修改: 2024-06-10 18:15

python3.8-minimal CVE-2024-6232 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: cpython: tarfile: ReDos via excessive backtracking while parsing header values

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6232

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-09-03 13:15 修改: 2024-09-04 21:15

python3.8-minimal CVE-2024-6923 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6923

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-01 14:15 修改: 2024-09-04 21:15

python3.8-minimal CVE-2024-8088 中危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 python: cpython: Iterating over a malicious ZIP file may lead to Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8088

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-22 19:15 修改: 2024-09-04 23:15

sudo CVE-2023-28486 中危 1.8.31-1ubuntu1.4 1.8.31-1ubuntu1.5 sudo: Sudo does not escape control characters in log messages

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28486

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-03-16 01:15 修改: 2024-02-03 11:15

sudo CVE-2023-28487 中危 1.8.31-1ubuntu1.4 1.8.31-1ubuntu1.5 sudo: Sudo does not escape control characters in sudoreplay output

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28487

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-03-16 01:15 修改: 2024-02-03 11:15

tar CVE-2023-39804 中危 1.30+dfsg-7ubuntu0.20.04.3 1.30+dfsg-7ubuntu0.20.04.4 tar: Incorrectly handled extension attributes in PAX archives can lead to a crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39804

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 04:15 修改: 2024-03-27 12:29

util-linux CVE-2024-28085 中危 2.34-0.1ubuntu9.3 2.34-0.1ubuntu9.5 util-linux: CVE-2024-28085: wall: escape sequence injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28085

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-03-27 19:15 修改: 2024-08-26 21:35

vim-common CVE-2021-4166 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: out-of-bounds read in do_arg_all() in src/arglist.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4166

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-25 19:15 修改: 2023-11-07 03:40

vim-common CVE-2021-4192 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: use-after-free in win_linetabsize()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4192

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-31 15:15 修改: 2023-11-07 03:40

vim-common CVE-2022-0213 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: vim is vulnerable to out of bounds read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0213

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-14 13:15 修改: 2022-11-09 03:32

vim-common CVE-2022-0261 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in block_insert() in src/ops.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0261

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-18 16:15 修改: 2023-11-07 03:41

vim-common CVE-2022-0318 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in utf_head_off() in mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0318

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-21 12:15 修改: 2022-11-29 22:12

vim-common CVE-2022-0319 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-based out-of-bounds read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0319

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-21 14:15 修改: 2022-11-09 03:32

vim-common CVE-2022-0351 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: access of memory location before start of buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0351

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-25 18:15 修改: 2022-11-09 19:20

vim-common CVE-2022-0359 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in init_ccline() in ex_getln.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0359

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 12:15 修改: 2022-11-09 18:58

vim-common CVE-2022-0361 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Illegal memory access when copying lines in visual mode leads to heap buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0361

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 13:15 修改: 2022-11-09 18:57

vim-common CVE-2022-0368 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Out-of-bounds Read in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0368

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 18:15 修改: 2022-11-09 03:52

vim-common CVE-2022-0408 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Stack-based Buffer Overflow in spellsuggest.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0408

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-30 15:15 修改: 2023-11-07 03:41

vim-common CVE-2022-0413 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Use after free in src/ex_cmds.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0413

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-30 15:15 修改: 2023-11-07 03:41

vim-common CVE-2022-0554 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0554

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-10 22:15 修改: 2023-11-07 03:41

vim-common CVE-2022-0572 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap overflow in ex_retab() may lead to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0572

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-14 12:15 修改: 2023-11-07 03:41

vim-common CVE-2022-0629 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Stack-based Buffer Overflow in vim prior to 8.2.

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0629

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-17 12:15 修改: 2023-11-07 03:41

vim-common CVE-2022-0685 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0685

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-20 11:15 修改: 2023-11-07 03:41

vim-common CVE-2022-0714 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0714

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-22 20:15 修改: 2023-11-07 03:41

vim-common CVE-2022-1629 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in function find_next_quote

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1629

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-10 14:15 修改: 2023-11-07 03:42

vim-common CVE-2022-1674 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: NULL pointer dereference in vim_regexec_string() of regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1674

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-12 11:15 修改: 2023-11-07 03:42

vim-common CVE-2022-1720 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in grab_file_name() in findfile.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1720

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-20 15:15 修改: 2023-11-07 03:42

vim-common CVE-2022-1851 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bounds read in gchar_cursor() in misc1.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1851

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-25 13:15 修改: 2023-11-07 03:42

vim-common CVE-2022-1927 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in utf_ptr2char() in mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1927

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-29 14:15 修改: 2023-11-07 03:42

vim-common CVE-2022-1942 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds write in vim_regsub_both()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1942

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-31 14:15 修改: 2023-11-07 03:42

vim-common CVE-2022-1968 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in function utf_ptr2char at mbyte.c:1794

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1968

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-02 14:15 修改: 2023-05-03 12:15

vim-common CVE-2022-2000 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: out-of-bounds write in function append_command

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2000

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-09 16:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2042 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: use after free in skipwhite may lead to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2042

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-10 19:15 修改: 2023-05-03 12:15

vim-common CVE-2022-2175 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in put_on_cmdline() at ex_getln.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2175

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-23 13:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2183 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bounds read through get_lisp_indent() in function get_lisp_indent

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2183

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-23 19:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2207 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-based buffer overflow in function ins_bs

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2207

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 12:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2304 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: stack buffer overflow in spell_dump_compl() at spell.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2304

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-05 13:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2344 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: heap-based buffer overflow in ins_compl_add() in insexpand.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2344

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-08 19:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2345 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in skipwhite() in charset.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2345

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-08 22:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2571 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2571

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2022-08-04 23:31

vim-common CVE-2022-2923 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: null pointer dereference in function sug_filltree

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2923

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-22 21:15 修改: 2023-11-07 03:47

vim-common CVE-2022-2946 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use after free in function vim_vsnprintf_typval

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2946

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-23 17:15 修改: 2023-11-07 03:47

vim-common CVE-2022-2980 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: null pointer dereference in do_mouse() at src/mouse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2980

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-25 20:15 修改: 2023-11-07 03:47

vim-common CVE-2022-3016 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: use-after-free in get_next_valid_entry() at src/quickfix.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3016

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-28 12:15 修改: 2023-11-07 03:50

vim-common CVE-2022-3037 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: use after free in function qf_buf_add_line( )

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3037

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-30 21:15 修改: 2023-11-07 03:50

vim-common CVE-2022-3099 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: Use After Free in do_cmdline() in ex_docmd.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3099

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-03 16:15 修改: 2023-11-07 03:50

vim-common CVE-2022-3234 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Heap-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3234

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-17 22:15 修改: 2023-11-07 03:50

vim-common CVE-2022-3256 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use-after-free in movemark() at mark.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3256

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-22 13:15 修改: 2023-11-07 03:51

vim-common CVE-2022-3324 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: stack buffer overflow in win_redr_ruler() at drawscreen.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3324

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-27 23:15 修改: 2023-11-07 03:51

vim-common CVE-2022-3705 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: a use after free in the function qf_update_buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3705

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-10-26 20:15 修改: 2023-11-07 03:51

vim-common CVE-2023-2609 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.15 vim: NULL Pointer Dereference in get_register() at register.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2609

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-09 18:15 修改: 2023-12-23 07:15

vim-common CVE-2023-2610 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.15 vim: integer overflow vulnerability in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2610

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-09 22:15 修改: 2023-12-23 07:15

vim-common CVE-2023-46246 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: Integer Overflow in :history command

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46246

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-27 19:15 修改: 2023-12-17 03:15

vim-common CVE-2023-4733 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function buflist_altfpos

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4733

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 17:56

vim-common CVE-2023-4735 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: OOB Write ops.c in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4735

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-02 18:15 修改: 2023-12-22 17:54

vim-common CVE-2023-4750 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function bt_quickfix

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4750

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 18:01

vim-common CVE-2023-4751 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: heap-buffer-overflow in function utfc_ptr2len in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4751

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-03 19:15 修改: 2023-12-22 18:09

vim-common CVE-2023-4752 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function ins_compl_get_exp in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4752

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 17:59

vim-common CVE-2023-4781 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: heap-buffer-overflow in function vim_regsub_both in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4781

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-05 19:15 修改: 2024-02-01 17:57

vim-common CVE-2023-48231 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: use after free in win_close()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48231

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2023-12-28 17:39

vim-common CVE-2023-5344 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: Heap-based Buffer Overflow in trunc_string()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5344

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-02 20:15 修改: 2023-12-13 01:15

vim-common CVE-2023-5441 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: NULL pointer dereference in screen_line() in src/screen.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5441

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-05 21:15 修改: 2023-11-15 02:33

vim-common CVE-2023-5535 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use after free

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5535

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-11 20:15 修改: 2023-11-15 02:31

vim-common CVE-2024-41957 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.24 vim: Double-free/use-after-free vulnerability with Vim editor

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41957

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-01 22:15 修改: 2024-08-09 14:14

vim-common CVE-2024-43374 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.24 vim: use-after-free in alist_add() in src/arglist.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-43374

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-16 02:15 修改: 2024-08-19 13:00

vim-common CVE-2024-43802 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.25 vim: Heap Buffer Overflow in Vim's Typeahead Buffer Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-43802

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-26 19:15 修改: 2024-08-27 13:02

vim-tiny CVE-2021-4166 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: out-of-bounds read in do_arg_all() in src/arglist.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4166

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-25 19:15 修改: 2023-11-07 03:40

vim-tiny CVE-2021-4192 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: use-after-free in win_linetabsize()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4192

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-31 15:15 修改: 2023-11-07 03:40

vim-tiny CVE-2022-0213 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: vim is vulnerable to out of bounds read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0213

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-14 13:15 修改: 2022-11-09 03:32

vim-tiny CVE-2022-0261 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in block_insert() in src/ops.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0261

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-18 16:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-0318 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in utf_head_off() in mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0318

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-21 12:15 修改: 2022-11-29 22:12

vim-tiny CVE-2022-0319 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-based out-of-bounds read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0319

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-21 14:15 修改: 2022-11-09 03:32

vim-tiny CVE-2022-0351 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: access of memory location before start of buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0351

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-25 18:15 修改: 2022-11-09 19:20

vim-tiny CVE-2022-0359 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in init_ccline() in ex_getln.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0359

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 12:15 修改: 2022-11-09 18:58

vim-tiny CVE-2022-0361 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Illegal memory access when copying lines in visual mode leads to heap buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0361

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 13:15 修改: 2022-11-09 18:57

vim-tiny CVE-2022-0368 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Out-of-bounds Read in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0368

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 18:15 修改: 2022-11-09 03:52

vim-tiny CVE-2022-0408 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Stack-based Buffer Overflow in spellsuggest.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0408

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-30 15:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-0413 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Use after free in src/ex_cmds.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0413

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-30 15:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-0554 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0554

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-10 22:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-0572 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap overflow in ex_retab() may lead to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0572

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-14 12:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-0629 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Stack-based Buffer Overflow in vim prior to 8.2.

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0629

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-17 12:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-0685 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0685

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-20 11:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-0714 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0714

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-22 20:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-1629 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in function find_next_quote

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1629

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-10 14:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-1674 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: NULL pointer dereference in vim_regexec_string() of regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1674

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-12 11:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-1720 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in grab_file_name() in findfile.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1720

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-20 15:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-1851 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bounds read in gchar_cursor() in misc1.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1851

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-25 13:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-1927 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in utf_ptr2char() in mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1927

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-29 14:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-1942 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds write in vim_regsub_both()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1942

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-31 14:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-1968 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in function utf_ptr2char at mbyte.c:1794

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1968

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-02 14:15 修改: 2023-05-03 12:15

vim-tiny CVE-2022-2000 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: out-of-bounds write in function append_command

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2000

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-09 16:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2042 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: use after free in skipwhite may lead to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2042

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-10 19:15 修改: 2023-05-03 12:15

vim-tiny CVE-2022-2175 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in put_on_cmdline() at ex_getln.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2175

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-23 13:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2183 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bounds read through get_lisp_indent() in function get_lisp_indent

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2183

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-23 19:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2207 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-based buffer overflow in function ins_bs

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2207

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 12:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2304 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: stack buffer overflow in spell_dump_compl() at spell.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2304

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-05 13:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2344 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: heap-based buffer overflow in ins_compl_add() in insexpand.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2344

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-08 19:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2345 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in skipwhite() in charset.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2345

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-08 22:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2571 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2571

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2022-08-04 23:31

vim-tiny CVE-2022-2923 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: null pointer dereference in function sug_filltree

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2923

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-22 21:15 修改: 2023-11-07 03:47

vim-tiny CVE-2022-2946 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use after free in function vim_vsnprintf_typval

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2946

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-23 17:15 修改: 2023-11-07 03:47

vim-tiny CVE-2022-2980 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: null pointer dereference in do_mouse() at src/mouse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2980

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-25 20:15 修改: 2023-11-07 03:47

vim-tiny CVE-2022-3016 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: use-after-free in get_next_valid_entry() at src/quickfix.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3016

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-28 12:15 修改: 2023-11-07 03:50

vim-tiny CVE-2022-3037 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: use after free in function qf_buf_add_line( )

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3037

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-30 21:15 修改: 2023-11-07 03:50

vim-tiny CVE-2022-3099 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: Use After Free in do_cmdline() in ex_docmd.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3099

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-03 16:15 修改: 2023-11-07 03:50

vim-tiny CVE-2022-3234 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Heap-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3234

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-17 22:15 修改: 2023-11-07 03:50

vim-tiny CVE-2022-3256 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use-after-free in movemark() at mark.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3256

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-22 13:15 修改: 2023-11-07 03:51

vim-tiny CVE-2022-3324 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: stack buffer overflow in win_redr_ruler() at drawscreen.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3324

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-27 23:15 修改: 2023-11-07 03:51

vim-tiny CVE-2022-3705 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: a use after free in the function qf_update_buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3705

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-10-26 20:15 修改: 2023-11-07 03:51

vim-tiny CVE-2023-2609 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.15 vim: NULL Pointer Dereference in get_register() at register.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2609

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-09 18:15 修改: 2023-12-23 07:15

vim-tiny CVE-2023-2610 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.15 vim: integer overflow vulnerability in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2610

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-09 22:15 修改: 2023-12-23 07:15

vim-tiny CVE-2023-46246 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: Integer Overflow in :history command

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46246

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-27 19:15 修改: 2023-12-17 03:15

vim-tiny CVE-2023-4733 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function buflist_altfpos

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4733

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 17:56

vim-tiny CVE-2023-4735 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: OOB Write ops.c in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4735

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-02 18:15 修改: 2023-12-22 17:54

vim-tiny CVE-2023-4750 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function bt_quickfix

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4750

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 18:01

vim-tiny CVE-2023-4751 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: heap-buffer-overflow in function utfc_ptr2len in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4751

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-03 19:15 修改: 2023-12-22 18:09

vim-tiny CVE-2023-4752 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function ins_compl_get_exp in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4752

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 17:59

vim-tiny CVE-2023-4781 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: heap-buffer-overflow in function vim_regsub_both in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4781

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-05 19:15 修改: 2024-02-01 17:57

vim-tiny CVE-2023-48231 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: use after free in win_close()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48231

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2023-12-28 17:39

vim-tiny CVE-2023-5344 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: Heap-based Buffer Overflow in trunc_string()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5344

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-02 20:15 修改: 2023-12-13 01:15

vim-tiny CVE-2023-5441 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: NULL pointer dereference in screen_line() in src/screen.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5441

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-05 21:15 修改: 2023-11-15 02:33

vim-tiny CVE-2023-5535 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use after free

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5535

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-11 20:15 修改: 2023-11-15 02:31

vim-tiny CVE-2024-41957 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.24 vim: Double-free/use-after-free vulnerability with Vim editor

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41957

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-01 22:15 修改: 2024-08-09 14:14

vim-tiny CVE-2024-43374 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.24 vim: use-after-free in alist_add() in src/arglist.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-43374

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-16 02:15 修改: 2024-08-19 13:00

vim-tiny CVE-2024-43802 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.25 vim: Heap Buffer Overflow in Vim's Typeahead Buffer Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-43802

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-26 19:15 修改: 2024-08-27 13:02

xxd CVE-2021-4166 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: out-of-bounds read in do_arg_all() in src/arglist.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4166

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-25 19:15 修改: 2023-11-07 03:40

xxd CVE-2021-4192 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: use-after-free in win_linetabsize()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4192

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-31 15:15 修改: 2023-11-07 03:40

xxd CVE-2022-0213 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: vim is vulnerable to out of bounds read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0213

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-14 13:15 修改: 2022-11-09 03:32

xxd CVE-2022-0261 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in block_insert() in src/ops.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0261

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-18 16:15 修改: 2023-11-07 03:41

xxd CVE-2022-0318 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in utf_head_off() in mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0318

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-21 12:15 修改: 2022-11-29 22:12

xxd CVE-2022-0319 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-based out-of-bounds read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0319

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-21 14:15 修改: 2022-11-09 03:32

xxd CVE-2022-0351 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: access of memory location before start of buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0351

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-25 18:15 修改: 2022-11-09 19:20

xxd CVE-2022-0359 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Heap-based buffer overflow in init_ccline() in ex_getln.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0359

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 12:15 修改: 2022-11-09 18:58

xxd CVE-2022-0361 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Illegal memory access when copying lines in visual mode leads to heap buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0361

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 13:15 修改: 2022-11-09 18:57

xxd CVE-2022-0368 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Out-of-bounds Read in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0368

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-26 18:15 修改: 2022-11-09 03:52

xxd CVE-2022-0408 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Stack-based Buffer Overflow in spellsuggest.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0408

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-30 15:15 修改: 2023-11-07 03:41

xxd CVE-2022-0413 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Use after free in src/ex_cmds.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0413

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-01-30 15:15 修改: 2023-11-07 03:41

xxd CVE-2022-0554 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0554

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-10 22:15 修改: 2023-11-07 03:41

xxd CVE-2022-0572 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap overflow in ex_retab() may lead to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0572

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-14 12:15 修改: 2023-11-07 03:41

xxd CVE-2022-0629 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Stack-based Buffer Overflow in vim prior to 8.2.

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0629

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-17 12:15 修改: 2023-11-07 03:41

xxd CVE-2022-0685 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0685

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-20 11:15 修改: 2023-11-07 03:41

xxd CVE-2022-0714 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0714

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-22 20:15 修改: 2023-11-07 03:41

xxd CVE-2022-1629 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in function find_next_quote

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1629

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-10 14:15 修改: 2023-11-07 03:42

xxd CVE-2022-1674 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: NULL pointer dereference in vim_regexec_string() of regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1674

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-12 11:15 修改: 2023-11-07 03:42

xxd CVE-2022-1720 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in grab_file_name() in findfile.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1720

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-20 15:15 修改: 2023-11-07 03:42

xxd CVE-2022-1851 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bounds read in gchar_cursor() in misc1.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1851

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-25 13:15 修改: 2023-11-07 03:42

xxd CVE-2022-1927 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in utf_ptr2char() in mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1927

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-29 14:15 修改: 2023-11-07 03:42

xxd CVE-2022-1942 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds write in vim_regsub_both()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1942

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-31 14:15 修改: 2023-11-07 03:42

xxd CVE-2022-1968 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in function utf_ptr2char at mbyte.c:1794

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1968

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-02 14:15 修改: 2023-05-03 12:15

xxd CVE-2022-2000 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: out-of-bounds write in function append_command

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2000

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-09 16:15 修改: 2023-11-07 03:46

xxd CVE-2022-2042 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: use after free in skipwhite may lead to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2042

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-10 19:15 修改: 2023-05-03 12:15

xxd CVE-2022-2175 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: buffer over-read in put_on_cmdline() at ex_getln.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2175

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-23 13:15 修改: 2023-11-07 03:46

xxd CVE-2022-2183 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bounds read through get_lisp_indent() in function get_lisp_indent

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2183

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-23 19:15 修改: 2023-11-07 03:46

xxd CVE-2022-2207 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-based buffer overflow in function ins_bs

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2207

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 12:15 修改: 2023-11-07 03:46

xxd CVE-2022-2304 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: stack buffer overflow in spell_dump_compl() at spell.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2304

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-05 13:15 修改: 2023-11-07 03:46

xxd CVE-2022-2344 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: heap-based buffer overflow in ins_compl_add() in insexpand.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2344

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-08 19:15 修改: 2023-11-07 03:46

xxd CVE-2022-2345 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in skipwhite() in charset.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2345

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-08 22:15 修改: 2023-11-07 03:46

xxd CVE-2022-2571 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2571

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2022-08-04 23:31

xxd CVE-2022-2923 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: null pointer dereference in function sug_filltree

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2923

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-22 21:15 修改: 2023-11-07 03:47

xxd CVE-2022-2946 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use after free in function vim_vsnprintf_typval

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2946

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-23 17:15 修改: 2023-11-07 03:47

xxd CVE-2022-2980 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: null pointer dereference in do_mouse() at src/mouse.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2980

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-25 20:15 修改: 2023-11-07 03:47

xxd CVE-2022-3016 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: use-after-free in get_next_valid_entry() at src/quickfix.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3016

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-28 12:15 修改: 2023-11-07 03:50

xxd CVE-2022-3037 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: use after free in function qf_buf_add_line( )

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3037

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-30 21:15 修改: 2023-11-07 03:50

xxd CVE-2022-3099 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: Use After Free in do_cmdline() in ex_docmd.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3099

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-03 16:15 修改: 2023-11-07 03:50

xxd CVE-2022-3234 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Heap-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3234

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-17 22:15 修改: 2023-11-07 03:50

xxd CVE-2022-3256 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use-after-free in movemark() at mark.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3256

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-22 13:15 修改: 2023-11-07 03:51

xxd CVE-2022-3324 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: stack buffer overflow in win_redr_ruler() at drawscreen.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3324

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-27 23:15 修改: 2023-11-07 03:51

xxd CVE-2022-3705 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: a use after free in the function qf_update_buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3705

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-10-26 20:15 修改: 2023-11-07 03:51

xxd CVE-2023-2609 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.15 vim: NULL Pointer Dereference in get_register() at register.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2609

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-09 18:15 修改: 2023-12-23 07:15

xxd CVE-2023-2610 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.15 vim: integer overflow vulnerability in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2610

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-09 22:15 修改: 2023-12-23 07:15

xxd CVE-2023-46246 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: Integer Overflow in :history command

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46246

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-27 19:15 修改: 2023-12-17 03:15

xxd CVE-2023-4733 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function buflist_altfpos

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4733

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 17:56

xxd CVE-2023-4735 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: OOB Write ops.c in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4735

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-02 18:15 修改: 2023-12-22 17:54

xxd CVE-2023-4750 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function bt_quickfix

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4750

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 18:01

xxd CVE-2023-4751 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: heap-buffer-overflow in function utfc_ptr2len in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4751

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-03 19:15 修改: 2023-12-22 18:09

xxd CVE-2023-4752 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use-after-free in function ins_compl_get_exp in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4752

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-04 14:15 修改: 2024-02-01 17:59

xxd CVE-2023-4781 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: heap-buffer-overflow in function vim_regsub_both in vim/vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4781

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-09-05 19:15 修改: 2024-02-01 17:57

xxd CVE-2023-48231 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: use after free in win_close()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48231

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2023-12-28 17:39

xxd CVE-2023-5344 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: Heap-based Buffer Overflow in trunc_string()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5344

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-02 20:15 修改: 2023-12-13 01:15

xxd CVE-2023-5441 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: NULL pointer dereference in screen_line() in src/screen.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5441

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-05 21:15 修改: 2023-11-15 02:33

xxd CVE-2023-5535 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.20 vim: use after free

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5535

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-11 20:15 修改: 2023-11-15 02:31

xxd CVE-2024-41957 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.24 vim: Double-free/use-after-free vulnerability with Vim editor

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41957

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-01 22:15 修改: 2024-08-09 14:14

xxd CVE-2024-43374 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.24 vim: use-after-free in alist_add() in src/arglist.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-43374

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-16 02:15 修改: 2024-08-19 13:00

xxd CVE-2024-43802 中危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.25 vim: Heap Buffer Overflow in Vim's Typeahead Buffer Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-43802

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-08-26 19:15 修改: 2024-08-27 13:02

openssh-client CVE-2021-41617 低危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.11 openssh: privilege escalation when AuthorizedKeysCommand or AuthorizedPrincipalsCommand are configured

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-41617

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2021-09-26 19:15 修改: 2023-12-26 04:15

vim-common CVE-2021-4193 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: out-of-bound read in getvcol()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4193

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-31 16:15 修改: 2023-11-07 03:40

vim-common CVE-2022-0443 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-use-after-free in enter_buffer() of src/buffer.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0443

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-02 21:15 修改: 2023-11-07 03:41

vim-common CVE-2022-0729 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0729

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-23 14:15 修改: 2023-11-07 03:41

vim-common CVE-2022-1725 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: null pointer dereference in vim_regexec_string() at regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1725

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-29 03:15 修改: 2024-01-25 21:05

vim-common CVE-2022-1733 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in cindent.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1733

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-17 17:15 修改: 2023-11-07 03:42

vim-common CVE-2022-1735 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: changing text in visual mode may cause invalid memory access that lead to a heap buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1735

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-17 19:15 修改: 2023-05-03 12:15

vim-common CVE-2022-1771 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: recursive command line loop may cause a Stack-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1771

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-18 20:15 修改: 2023-05-03 12:15

vim-common CVE-2022-1785 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Out-of-bounds Write

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1785

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-19 13:15 修改: 2023-05-03 12:15

vim-common CVE-2022-1796 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Use After Free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1796

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-19 16:15 修改: 2024-02-15 21:28

vim-common CVE-2022-1897 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: out-of-bounds write in vim_regsub_both() in regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1897

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-27 15:15 修改: 2023-11-07 03:42

vim-common CVE-2022-1898 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in find_pattern_in_path() in search.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1898

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-27 09:15 修改: 2023-11-07 03:42

vim-common CVE-2022-2124 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds read in current_quote()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2124

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 10:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2125 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in get_lisp_indent()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2125

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 12:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2126 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds read in suggest_trie_walk()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2126

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 13:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2129 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds write in vim_regsub_both()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2129

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 19:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2206 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bound read in function msg_outtrans_attr

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2206

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-26 19:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2208 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: null pointer dereference in function diff_check

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2208

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 13:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2210 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out-of-bound write in function ml_append_int

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2210

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 16:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2257 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: an out-of-bound read in function msg_outtrans_special

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2257

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-30 21:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2264 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in inc() at misc2.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2264

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-01 11:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2284 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in utfc_ptr2len() at mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2284

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 15:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2285 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: integer overflow in del_typebuf() at getchar.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2285

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 16:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2286 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in ins_bytes() at change.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2286

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 19:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2287 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in suggest_trie_walk() at spellsuggest.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2287

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 22:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2289 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: use after free in ex_diffgetput() at diff.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2289

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-03 15:15 修改: 2023-11-07 03:46

vim-common CVE-2022-2581 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Out-of-bounds Read in vim src/regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2581

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2022-08-04 23:30

vim-common CVE-2022-2598 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: Undefined Behavior for Input to API in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2598

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2023-07-11 08:15

vim-common CVE-2022-2845 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Buffer Under-read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2845

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-17 15:15 修改: 2023-07-10 16:15

vim-common CVE-2022-2849 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: heap-based buffer overflow in latin_ptr2len() at src/mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2849

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-17 18:15 修改: 2023-11-07 03:46

vim-common CVE-2022-3352 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use after free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3352

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-29 12:15 修改: 2023-11-07 03:51

vim-common CVE-2022-3520 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Heap-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3520

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-02 19:15 修改: 2023-05-03 12:16

vim-common CVE-2022-3591 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Use After Free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3591

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-02 17:15 修改: 2023-05-03 12:16

vim-common CVE-2022-4292 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use-after-free in did_set_spelllang() in src/spell.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4292

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-05 19:15 修改: 2023-11-07 03:57

vim-common CVE-2022-4293 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: floating point exception in num_divide() in src/eval.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4293

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-05 19:15 修改: 2023-05-03 12:16

vim-common CVE-2023-48233 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow with count for :s command

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48233

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:38

vim-common CVE-2023-48234 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in nv_z_get_count

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48234

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

vim-common CVE-2023-48235 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in ex address parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48235

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

vim-common CVE-2023-48236 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in get_number

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48236

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:38

vim-common CVE-2023-48237 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: buffer overflow in shift_line

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48237

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

vim-common CVE-2024-22667 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.22 vim: Stack buffer over flow in did_set_langmap function in map.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-22667

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-05 08:15 修改: 2024-02-23 16:15

libncursesw6 CVE-2021-39537 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: heap-based buffer overflow in _nc_captoinfo() in captoinfo.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-39537

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2021-09-20 16:15 修改: 2023-12-03 20:15

libncursesw6 CVE-2022-29458 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: segfaulting OOB read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-29458

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2022-04-18 21:15 修改: 2023-11-07 03:46

libncursesw6 CVE-2023-45918 低危 6.2-0ubuntu2 ncurses: NULL pointer dereference in tgetstr in tinfo/lib_termcap.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45918

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-16 22:15 修改: 2024-10-31 18:35

openssh-server CVE-2021-41617 低危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.11 openssh: privilege escalation when AuthorizedKeysCommand or AuthorizedPrincipalsCommand are configured

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-41617

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2021-09-26 19:15 修改: 2023-12-26 04:15

libncursesw6 CVE-2023-50495 低危 6.2-0ubuntu2 ncurses: segmentation fault via _nc_wrap_entry()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50495

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-12 15:15 修改: 2024-01-31 03:15

coreutils CVE-2016-2781 低危 8.30-3ubuntu2 coreutils: Non-privileged session can escape to the parent session in chroot

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-2781

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2017-02-07 15:59 修改: 2023-11-07 02:32

curl CVE-2023-28321 低危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.19 curl: IDN wildcard match may lead to Improper Cerificate Validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28321

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-26 21:15 修改: 2023-11-07 04:10

openssh-sftp-server CVE-2021-41617 低危 1:8.2p1-4ubuntu0.5 1:8.2p1-4ubuntu0.11 openssh: privilege escalation when AuthorizedKeysCommand or AuthorizedPrincipalsCommand are configured

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-41617

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2021-09-26 19:15 修改: 2023-12-26 04:15

dnsmasq-base CVE-2023-28450 低危 2.80-1.1ubuntu1.6 2.80-1.1ubuntu1.7 dnsmasq: default maximum EDNS.0 UDP packet size was set to 4096 but should be 1232

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28450

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-03-15 21:15 修改: 2023-11-07 04:10

openssl CVE-2023-0464 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.18 openssl: Denial of service by excessive resource usage in verifying X509 policy constraints

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0464

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-22 17:15 修改: 2024-06-21 19:15

openssl CVE-2023-0465 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.18 openssl: Invalid certificate policies in leaf certificates are silently ignored

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0465

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

openssl CVE-2023-0466 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.18 openssl: Certificate policy check not enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0466

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

openssl CVE-2023-3446 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.20 openssl: Excessive time spent checking DH keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3446

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-07-19 12:15 修改: 2024-10-14 15:15

openssl CVE-2023-3817 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.20 OpenSSL: Excessive time spent checking DH q parameter value

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3817

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-07-31 16:15 修改: 2024-10-14 15:15

openssl CVE-2023-5678 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.21 openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5678

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-06 16:15 修改: 2024-10-14 15:15

openssl CVE-2024-0727 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.21 openssl: denial of service via null dereference

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0727

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-01-26 09:15 修改: 2024-10-14 15:15

openssl CVE-2024-2511 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.23 openssl: Unbounded memory growth with session handling in TLSv1.3

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2511

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-04-08 14:15 修改: 2024-10-14 15:15

openssl CVE-2024-4741 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.23 openssl: Use After Free with SSL_free_buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4741

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

openssl CVE-2024-5535 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.23 openssl: SSL_select_next_proto buffer overread

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-5535

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-27 11:15 修改: 2024-07-12 14:15

passwd CVE-2013-4235 低危 1:4.8.1-1ubuntu5.20.04.4 shadow-utils: TOCTOU race conditions by copying and removing directory trees

漏洞详情: https://avd.aquasec.com/nvd/cve-2013-4235

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2019-12-03 15:15 修改: 2023-02-13 00:28

passwd CVE-2023-29383 低危 1:4.8.1-1ubuntu5.20.04.4 shadow: Improper input validation in shadow-utils package utility chfn

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29383

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-04-14 22:15 修改: 2023-04-24 18:05

passwd CVE-2023-4641 低危 1:4.8.1-1ubuntu5.20.04.4 1:4.8.1-1ubuntu5.20.04.5 shadow-utils: possible password leak during passwd(1) change

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4641

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-27 16:15 修改: 2024-05-03 16:15

dnsmasq-base CVE-2023-49441 低危 2.80-1.1ubuntu1.6 2.90-0ubuntu0.20.04.1 dnsmasq: vulnerable to Integer Overflow via forward_query

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-49441

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-06 22:15 修改: 2024-10-10 20:00

curl CVE-2023-28322 低危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.19 curl: more POST-after-PUT confusion

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28322

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-26 21:15 修改: 2023-12-22 16:15

procps CVE-2023-4016 低危 2:3.3.16-1ubuntu2.3 2:3.3.16-1ubuntu2.4 procps: ps buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4016

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-08-02 05:15 修改: 2023-12-15 18:19

curl CVE-2023-38546 低危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.20 curl: cookie injection with none file

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-38546

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-18 04:15 修改: 2024-07-09 14:15

libpam-systemd CVE-2023-26604 低危 245.4-4ubuntu3.20 systemd: privilege escalation via the less pager

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26604

镜像层: sha256:bf544dcc1f4abd7085e392cadf2632a189a0ffe5e0d14137e3d84b37adde8932

发布日期: 2023-03-03 16:15 修改: 2023-11-07 04:09

libpam-systemd CVE-2023-7008 低危 245.4-4ubuntu3.20 systemd-resolved: Unsigned name response in signed zone is not refused when DNSSEC=yes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7008

镜像层: sha256:bf544dcc1f4abd7085e392cadf2632a189a0ffe5e0d14137e3d84b37adde8932

发布日期: 2023-12-23 13:15 修改: 2024-09-16 17:16

libc-bin CVE-2016-20013 低危 2.31-0ubuntu9.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-20013

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2022-02-19 05:15 修改: 2022-03-03 16:43

libpcre2-8-0 CVE-2022-41409 低危 10.34-7ubuntu0.1 pcre2: negative repeat value in a pcre2test subject line leads to inifinite loop

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41409

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-07-18 14:15 修改: 2023-07-27 03:46

libpcre3 CVE-2017-11164 低危 2:8.39-12ubuntu0.1 pcre: OP_KETRMAX feature in the match function in pcre_exec.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-11164

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2017-07-11 03:29 修改: 2023-11-07 02:38

libprocps8 CVE-2023-4016 低危 2:3.3.16-1ubuntu2.3 2:3.3.16-1ubuntu2.4 procps: ps buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4016

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-08-02 05:15 修改: 2023-12-15 18:19

libc-bin CVE-2023-4806 低危 2.31-0ubuntu9.9 2.31-0ubuntu9.14 glibc: potential use-after-free in getaddrinfo()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4806

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-09-18 17:15 修改: 2024-09-16 14:15

libc-bin CVE-2023-4813 低危 2.31-0ubuntu9.9 2.31-0ubuntu9.14 glibc: potential use-after-free in gaih_inet()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4813

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-09-12 22:15 修改: 2024-09-16 14:15

dbus CVE-2023-34969 低危 1.12.16-2ubuntu2.3 dbus: dbus-daemon: assertion failure when a monitor is active and a message from the driver cannot be delivered

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34969

镜像层: sha256:bf544dcc1f4abd7085e392cadf2632a189a0ffe5e0d14137e3d84b37adde8932

发布日期: 2023-06-08 03:15 修改: 2023-12-27 16:36

python3.8 CVE-2024-4032 低危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.11 python: incorrect IPv4 and IPv6 private ranges

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4032

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-17 15:15 修改: 2024-08-29 21:35

python3.8 CVE-2024-7592 低危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 cpython: python: Uncontrolled CPU resource consumption when in http.cookies module

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7592

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-19 19:15 修改: 2024-09-04 21:15

dbus-user-session CVE-2023-34969 低危 1.12.16-2ubuntu2.3 dbus: dbus-daemon: assertion failure when a monitor is active and a message from the driver cannot be delivered

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34969

镜像层: sha256:bf544dcc1f4abd7085e392cadf2632a189a0ffe5e0d14137e3d84b37adde8932

发布日期: 2023-06-08 03:15 修改: 2023-12-27 16:36

gnupg CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gnupg-l10n CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gnupg-utils CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

libc6 CVE-2016-20013 低危 2.31-0ubuntu9.9

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-20013

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2022-02-19 05:15 修改: 2022-03-03 16:43

libc6 CVE-2023-4806 低危 2.31-0ubuntu9.9 2.31-0ubuntu9.14 glibc: potential use-after-free in getaddrinfo()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4806

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-09-18 17:15 修改: 2024-09-16 14:15

libpython3.8-minimal CVE-2024-4032 低危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.11 python: incorrect IPv4 and IPv6 private ranges

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4032

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-17 15:15 修改: 2024-08-29 21:35

libpython3.8-minimal CVE-2024-7592 低危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 cpython: python: Uncontrolled CPU resource consumption when in http.cookies module

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7592

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-19 19:15 修改: 2024-09-04 21:15

libc6 CVE-2023-4813 低危 2.31-0ubuntu9.9 2.31-0ubuntu9.14 glibc: potential use-after-free in gaih_inet()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4813

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-09-12 22:15 修改: 2024-09-16 14:15

python3.8-minimal CVE-2024-4032 低危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.11 python: incorrect IPv4 and IPv6 private ranges

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4032

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-17 15:15 修改: 2024-08-29 21:35

python3.8-minimal CVE-2024-7592 低危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 cpython: python: Uncontrolled CPU resource consumption when in http.cookies module

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7592

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-19 19:15 修改: 2024-09-04 21:15

libgssapi-krb5-2 CVE-2024-26458 低危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libgssapi-krb5-2 CVE-2024-26461 低危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-08-14 16:35

systemd CVE-2023-26604 低危 245.4-4ubuntu3.20 systemd: privilege escalation via the less pager

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26604

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-03 16:15 修改: 2023-11-07 04:09

systemd CVE-2023-7008 低危 245.4-4ubuntu3.20 systemd-resolved: Unsigned name response in signed zone is not refused when DNSSEC=yes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7008

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-12-23 13:15 修改: 2024-09-16 17:16

systemd-sysv CVE-2023-26604 低危 245.4-4ubuntu3.20 systemd: privilege escalation via the less pager

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26604

镜像层: sha256:bf544dcc1f4abd7085e392cadf2632a189a0ffe5e0d14137e3d84b37adde8932

发布日期: 2023-03-03 16:15 修改: 2023-11-07 04:09

systemd-sysv CVE-2023-7008 低危 245.4-4ubuntu3.20 systemd-resolved: Unsigned name response in signed zone is not refused when DNSSEC=yes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7008

镜像层: sha256:bf544dcc1f4abd7085e392cadf2632a189a0ffe5e0d14137e3d84b37adde8932

发布日期: 2023-12-23 13:15 修改: 2024-09-16 17:16

systemd-timesyncd CVE-2023-26604 低危 245.4-4ubuntu3.20 systemd: privilege escalation via the less pager

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26604

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-03 16:15 修改: 2023-11-07 04:09

systemd-timesyncd CVE-2023-7008 低危 245.4-4ubuntu3.20 systemd-resolved: Unsigned name response in signed zone is not refused when DNSSEC=yes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7008

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-12-23 13:15 修改: 2024-09-16 17:16

gpg CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

udev CVE-2023-26604 低危 245.4-4ubuntu3.20 systemd: privilege escalation via the less pager

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26604

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-03 16:15 修改: 2023-11-07 04:09

udev CVE-2023-7008 低危 245.4-4ubuntu3.20 systemd-resolved: Unsigned name response in signed zone is not refused when DNSSEC=yes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7008

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-12-23 13:15 修改: 2024-09-16 17:16

vim-tiny CVE-2021-4193 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: out-of-bound read in getvcol()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4193

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-31 16:15 修改: 2023-11-07 03:40

vim-tiny CVE-2022-0443 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-use-after-free in enter_buffer() of src/buffer.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0443

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-02 21:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-0729 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0729

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-23 14:15 修改: 2023-11-07 03:41

vim-tiny CVE-2022-1725 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: null pointer dereference in vim_regexec_string() at regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1725

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-29 03:15 修改: 2024-01-25 21:05

vim-tiny CVE-2022-1733 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in cindent.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1733

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-17 17:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-1735 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: changing text in visual mode may cause invalid memory access that lead to a heap buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1735

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-17 19:15 修改: 2023-05-03 12:15

vim-tiny CVE-2022-1771 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: recursive command line loop may cause a Stack-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1771

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-18 20:15 修改: 2023-05-03 12:15

vim-tiny CVE-2022-1785 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Out-of-bounds Write

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1785

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-19 13:15 修改: 2023-05-03 12:15

vim-tiny CVE-2022-1796 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Use After Free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1796

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-19 16:15 修改: 2024-02-15 21:28

vim-tiny CVE-2022-1897 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: out-of-bounds write in vim_regsub_both() in regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1897

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-27 15:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-1898 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in find_pattern_in_path() in search.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1898

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-27 09:15 修改: 2023-11-07 03:42

vim-tiny CVE-2022-2124 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds read in current_quote()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2124

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 10:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2125 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in get_lisp_indent()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2125

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 12:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2126 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds read in suggest_trie_walk()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2126

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 13:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2129 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds write in vim_regsub_both()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2129

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 19:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2206 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bound read in function msg_outtrans_attr

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2206

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-26 19:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2208 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: null pointer dereference in function diff_check

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2208

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 13:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2210 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out-of-bound write in function ml_append_int

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2210

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 16:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2257 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: an out-of-bound read in function msg_outtrans_special

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2257

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-30 21:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2264 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in inc() at misc2.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2264

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-01 11:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2284 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in utfc_ptr2len() at mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2284

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 15:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2285 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: integer overflow in del_typebuf() at getchar.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2285

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 16:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2286 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in ins_bytes() at change.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2286

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 19:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2287 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in suggest_trie_walk() at spellsuggest.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2287

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 22:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2289 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: use after free in ex_diffgetput() at diff.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2289

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-03 15:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-2581 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Out-of-bounds Read in vim src/regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2581

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2022-08-04 23:30

vim-tiny CVE-2022-2598 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: Undefined Behavior for Input to API in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2598

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2023-07-11 08:15

vim-tiny CVE-2022-2845 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Buffer Under-read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2845

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-17 15:15 修改: 2023-07-10 16:15

vim-tiny CVE-2022-2849 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: heap-based buffer overflow in latin_ptr2len() at src/mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2849

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-17 18:15 修改: 2023-11-07 03:46

vim-tiny CVE-2022-3352 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use after free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3352

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-29 12:15 修改: 2023-11-07 03:51

vim-tiny CVE-2022-3520 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Heap-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3520

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-02 19:15 修改: 2023-05-03 12:16

vim-tiny CVE-2022-3591 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Use After Free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3591

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-02 17:15 修改: 2023-05-03 12:16

vim-tiny CVE-2022-4292 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use-after-free in did_set_spelllang() in src/spell.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4292

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-05 19:15 修改: 2023-11-07 03:57

vim-tiny CVE-2022-4293 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: floating point exception in num_divide() in src/eval.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4293

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-05 19:15 修改: 2023-05-03 12:16

vim-tiny CVE-2023-48233 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow with count for :s command

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48233

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:38

vim-tiny CVE-2023-48234 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in nv_z_get_count

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48234

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

vim-tiny CVE-2023-48235 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in ex address parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48235

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

vim-tiny CVE-2023-48236 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in get_number

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48236

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:38

vim-tiny CVE-2023-48237 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: buffer overflow in shift_line

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48237

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

vim-tiny CVE-2024-22667 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.22 vim: Stack buffer over flow in did_set_langmap function in map.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-22667

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-05 08:15 修改: 2024-02-23 16:15

libcap2 CVE-2023-2602 低危 1:2.32-1 1:2.32-1ubuntu0.1 libcap: Memory Leak on pthread_create() Error

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2602

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-06-06 20:15 修改: 2023-11-30 05:15

gpg-agent CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

libcap2-bin CVE-2023-2602 低危 1:2.32-1 1:2.32-1ubuntu0.1 libcap: Memory Leak on pthread_create() Error

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2602

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-06-06 20:15 修改: 2023-11-30 05:15

libk5crypto3 CVE-2024-26458 低危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libk5crypto3 CVE-2024-26461 低危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-08-14 16:35

libpython3.8-stdlib CVE-2024-4032 低危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.11 python: incorrect IPv4 and IPv6 private ranges

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4032

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-06-17 15:15 修改: 2024-08-29 21:35

libpython3.8-stdlib CVE-2024-7592 低危 3.8.10-0ubuntu1~20.04.7 3.8.10-0ubuntu1~20.04.12 cpython: python: Uncontrolled CPU resource consumption when in http.cookies module

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7592

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2024-08-19 19:15 修改: 2024-09-04 21:15

gpg-wks-client CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gpg-wks-server CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gpgconf CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

gpgsm CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

libkrb5-3 CVE-2024-26458 低危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libkrb5-3 CVE-2024-26461 低危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-08-14 16:35

libcurl4 CVE-2023-28321 低危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.19 curl: IDN wildcard match may lead to Improper Cerificate Validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28321

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-26 21:15 修改: 2023-11-07 04:10

libcurl4 CVE-2023-28322 低危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.19 curl: more POST-after-PUT confusion

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28322

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-26 21:15 修改: 2023-12-22 16:15

libssl1.1 CVE-2023-0464 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.18 openssl: Denial of service by excessive resource usage in verifying X509 policy constraints

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0464

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-22 17:15 修改: 2024-06-21 19:15

libssl1.1 CVE-2023-0465 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.18 openssl: Invalid certificate policies in leaf certificates are silently ignored

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0465

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-0466 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.18 openssl: Certificate policy check not enabled

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-0466

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-03-28 15:15 修改: 2024-02-04 09:15

libssl1.1 CVE-2023-3446 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.20 openssl: Excessive time spent checking DH keys and parameters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3446

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-07-19 12:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-3817 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.20 OpenSSL: Excessive time spent checking DH q parameter value

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3817

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-07-31 16:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2023-5678 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.21 openssl: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5678

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-06 16:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2024-0727 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.21 openssl: denial of service via null dereference

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-0727

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-01-26 09:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2024-2511 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.23 openssl: Unbounded memory growth with session handling in TLSv1.3

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-2511

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-04-08 14:15 修改: 2024-10-14 15:15

libssl1.1 CVE-2024-4741 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.23 openssl: Use After Free with SSL_free_buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-4741

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

libssl1.1 CVE-2024-5535 低危 1.1.1f-1ubuntu2.17 1.1.1f-1ubuntu2.23 openssl: SSL_select_next_proto buffer overread

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-5535

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-06-27 11:15 修改: 2024-07-12 14:15

libsystemd0 CVE-2023-26604 低危 245.4-4ubuntu3.20 systemd: privilege escalation via the less pager

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26604

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-03-03 16:15 修改: 2023-11-07 04:09

libsystemd0 CVE-2023-7008 低危 245.4-4ubuntu3.20 systemd-resolved: Unsigned name response in signed zone is not refused when DNSSEC=yes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7008

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-23 13:15 修改: 2024-09-16 17:16

libcurl4 CVE-2023-38546 低危 7.68.0-1ubuntu2.18 7.68.0-1ubuntu2.20 curl: cookie injection with none file

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-38546

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-10-18 04:15 修改: 2024-07-09 14:15

libtinfo6 CVE-2021-39537 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: heap-based buffer overflow in _nc_captoinfo() in captoinfo.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-39537

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2021-09-20 16:15 修改: 2023-12-03 20:15

libtinfo6 CVE-2022-29458 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: segfaulting OOB read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-29458

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2022-04-18 21:15 修改: 2023-11-07 03:46

libtinfo6 CVE-2023-45918 低危 6.2-0ubuntu2 ncurses: NULL pointer dereference in tgetstr in tinfo/lib_termcap.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45918

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-16 22:15 修改: 2024-10-31 18:35

libtinfo6 CVE-2023-50495 低危 6.2-0ubuntu2 ncurses: segmentation fault via _nc_wrap_entry()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50495

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-12 15:15 修改: 2024-01-31 03:15

libudev1 CVE-2023-26604 低危 245.4-4ubuntu3.20 systemd: privilege escalation via the less pager

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26604

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-03-03 16:15 修改: 2023-11-07 04:09

libudev1 CVE-2023-7008 低危 245.4-4ubuntu3.20 systemd-resolved: Unsigned name response in signed zone is not refused when DNSSEC=yes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-7008

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-23 13:15 修改: 2024-09-16 17:16

libdbus-1-3 CVE-2023-34969 低危 1.12.16-2ubuntu2.3 dbus: dbus-daemon: assertion failure when a monitor is active and a message from the driver cannot be delivered

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34969

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-06-08 03:15 修改: 2023-12-27 16:36

libkrb5support0 CVE-2024-26458 低危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26458

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-05-14 15:09

libkrb5support0 CVE-2024-26461 低危 1.17-6ubuntu4.3 krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-26461

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-29 01:44 修改: 2024-08-14 16:35

libldap-2.4-2 CVE-2023-2953 低危 2.4.49+dfsg-2ubuntu1.9 2.4.49+dfsg-2ubuntu1.10 openldap: null pointer dereference in ber_memalloc_x function

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2953

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-30 22:15 修改: 2023-08-02 16:46

libldap-common CVE-2023-2953 低危 2.4.49+dfsg-2ubuntu1.9 2.4.49+dfsg-2ubuntu1.10 openldap: null pointer dereference in ber_memalloc_x function

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2953

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-05-30 22:15 修改: 2023-08-02 16:46

gpgv CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

libyajl2 CVE-2017-16516 低危 2.1.0-3 2.1.0-3ubuntu0.20.04.1 rubygem-yajl-ruby: Yajl:: Parser.new.parse incorrect parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-16516

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2017-11-03 15:29 修改: 2023-08-05 19:15

libyajl2 CVE-2023-33460 低危 2.1.0-3 2.1.0-3ubuntu0.20.04.1 yajl: Memory leak in yajl_tree_parse function

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-33460

镜像层: sha256:c8d47fb5cfc1a7ffb8d5fb84f168965edcf2c07c452a7a8b0846566f2a172fd2

发布日期: 2023-06-06 12:15 修改: 2023-11-07 04:14

login CVE-2013-4235 低危 1:4.8.1-1ubuntu5.20.04.4 shadow-utils: TOCTOU race conditions by copying and removing directory trees

漏洞详情: https://avd.aquasec.com/nvd/cve-2013-4235

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2019-12-03 15:15 修改: 2023-02-13 00:28

login CVE-2023-29383 低危 1:4.8.1-1ubuntu5.20.04.4 shadow: Improper input validation in shadow-utils package utility chfn

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29383

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-04-14 22:15 修改: 2023-04-24 18:05

login CVE-2023-4641 低危 1:4.8.1-1ubuntu5.20.04.4 1:4.8.1-1ubuntu5.20.04.5 shadow-utils: possible password leak during passwd(1) change

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-4641

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-27 16:15 修改: 2024-05-03 16:15

libelf1 CVE-2021-33294 低危 0.176-1.1build1 0.176-1.1ubuntu0.1 elfutils: an infinite loop was found in the function handle_symtab in readelf.c which causes denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-33294

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-07-18 14:15 修改: 2023-07-27 15:19

libncurses6 CVE-2021-39537 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: heap-based buffer overflow in _nc_captoinfo() in captoinfo.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-39537

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2021-09-20 16:15 修改: 2023-12-03 20:15

ncurses-base CVE-2021-39537 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: heap-based buffer overflow in _nc_captoinfo() in captoinfo.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-39537

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2021-09-20 16:15 修改: 2023-12-03 20:15

ncurses-base CVE-2022-29458 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: segfaulting OOB read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-29458

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2022-04-18 21:15 修改: 2023-11-07 03:46

ncurses-base CVE-2023-45918 低危 6.2-0ubuntu2 ncurses: NULL pointer dereference in tgetstr in tinfo/lib_termcap.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45918

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-16 22:15 修改: 2024-10-31 18:35

ncurses-base CVE-2023-50495 低危 6.2-0ubuntu2 ncurses: segmentation fault via _nc_wrap_entry()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50495

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-12 15:15 修改: 2024-01-31 03:15

libncurses6 CVE-2022-29458 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: segfaulting OOB read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-29458

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2022-04-18 21:15 修改: 2023-11-07 03:46

ncurses-bin CVE-2021-39537 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: heap-based buffer overflow in _nc_captoinfo() in captoinfo.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-39537

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2021-09-20 16:15 修改: 2023-12-03 20:15

ncurses-bin CVE-2022-29458 低危 6.2-0ubuntu2 6.2-0ubuntu2.1 ncurses: segfaulting OOB read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-29458

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2022-04-18 21:15 修改: 2023-11-07 03:46

ncurses-bin CVE-2023-45918 低危 6.2-0ubuntu2 ncurses: NULL pointer dereference in tgetstr in tinfo/lib_termcap.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45918

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-16 22:15 修改: 2024-10-31 18:35

ncurses-bin CVE-2023-50495 低危 6.2-0ubuntu2 ncurses: segmentation fault via _nc_wrap_entry()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50495

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-12 15:15 修改: 2024-01-31 03:15

libncurses6 CVE-2023-45918 低危 6.2-0ubuntu2 ncurses: NULL pointer dereference in tgetstr in tinfo/lib_termcap.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45918

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2024-02-16 22:15 修改: 2024-10-31 18:35

libncurses6 CVE-2023-50495 低危 6.2-0ubuntu2 ncurses: segmentation fault via _nc_wrap_entry()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50495

镜像层: sha256:62789ffcd78ce0eae545b2743541d5c063270fe9f45477acacf2031b93cea70f

发布日期: 2023-12-12 15:15 修改: 2024-01-31 03:15

dirmngr CVE-2022-3219 低危 2.2.19-3ubuntu2.2 gnupg: denial of service issue (resource consumption) using compressed packets

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3219

镜像层: sha256:206d332d341a4276de443220970a32337a4d00a513fdf8e02f34c85f0787d501

发布日期: 2023-02-23 20:15 修改: 2023-05-26 16:31

xxd CVE-2021-4193 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: out-of-bound read in getvcol()

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4193

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2021-12-31 16:15 修改: 2023-11-07 03:40

xxd CVE-2022-0443 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: heap-use-after-free in enter_buffer() of src/buffer.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0443

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-02 21:15 修改: 2023-11-07 03:41

xxd CVE-2022-0729 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.14 vim: Use of Out-of-range Pointer Offset

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-0729

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-02-23 14:15 修改: 2023-11-07 03:41

xxd CVE-2022-1725 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: null pointer dereference in vim_regexec_string() at regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1725

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-29 03:15 修改: 2024-01-25 21:05

xxd CVE-2022-1733 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in cindent.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1733

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-17 17:15 修改: 2023-11-07 03:42

xxd CVE-2022-1735 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: changing text in visual mode may cause invalid memory access that lead to a heap buffer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1735

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-17 19:15 修改: 2023-05-03 12:15

xxd CVE-2022-1771 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: recursive command line loop may cause a Stack-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1771

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-18 20:15 修改: 2023-05-03 12:15

xxd CVE-2022-1785 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Out-of-bounds Write

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1785

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-19 13:15 修改: 2023-05-03 12:15

xxd CVE-2022-1796 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Use After Free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1796

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-19 16:15 修改: 2024-02-15 21:28

xxd CVE-2022-1897 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: out-of-bounds write in vim_regsub_both() in regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1897

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-27 15:15 修改: 2023-11-07 03:42

xxd CVE-2022-1898 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: use-after-free in find_pattern_in_path() in search.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1898

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-05-27 09:15 修改: 2023-11-07 03:42

xxd CVE-2022-2124 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds read in current_quote()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2124

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 10:15 修改: 2023-11-07 03:46

xxd CVE-2022-2125 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Heap-based Buffer Overflow in get_lisp_indent()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2125

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 12:15 修改: 2023-11-07 03:46

xxd CVE-2022-2126 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds read in suggest_trie_walk()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2126

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 13:15 修改: 2023-11-07 03:46

xxd CVE-2022-2129 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out of bounds write in vim_regsub_both()

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2129

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-19 19:15 修改: 2023-11-07 03:46

xxd CVE-2022-2206 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: out-of-bound read in function msg_outtrans_attr

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2206

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-26 19:15 修改: 2023-11-07 03:46

xxd CVE-2022-2208 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: null pointer dereference in function diff_check

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2208

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 13:15 修改: 2023-11-07 03:46

xxd CVE-2022-2210 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out-of-bound write in function ml_append_int

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2210

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-27 16:15 修改: 2023-11-07 03:46

xxd CVE-2022-2257 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: an out-of-bound read in function msg_outtrans_special

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2257

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-06-30 21:15 修改: 2023-11-07 03:46

xxd CVE-2022-2264 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in inc() at misc2.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2264

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-01 11:15 修改: 2023-11-07 03:46

xxd CVE-2022-2284 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in utfc_ptr2len() at mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2284

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 15:15 修改: 2023-11-07 03:46

xxd CVE-2022-2285 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: integer overflow in del_typebuf() at getchar.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2285

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 16:15 修改: 2023-11-07 03:46

xxd CVE-2022-2286 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in ins_bytes() at change.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2286

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 19:15 修改: 2023-11-07 03:46

xxd CVE-2022-2287 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: out of bounds read in suggest_trie_walk() at spellsuggest.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2287

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-02 22:15 修改: 2023-11-07 03:46

xxd CVE-2022-2289 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.16 vim: use after free in ex_diffgetput() at diff.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2289

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-07-03 15:15 修改: 2023-11-07 03:46

xxd CVE-2022-2581 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Out-of-bounds Read in vim src/regexp.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2581

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2022-08-04 23:30

xxd CVE-2022-2598 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.17 vim: Undefined Behavior for Input to API in vim

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2598

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-01 15:15 修改: 2023-07-11 08:15

xxd CVE-2022-2845 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: Buffer Under-read

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2845

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-17 15:15 修改: 2023-07-10 16:15

xxd CVE-2022-2849 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.13 vim: heap-based buffer overflow in latin_ptr2len() at src/mbyte.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2849

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-08-17 18:15 修改: 2023-11-07 03:46

xxd CVE-2022-3352 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use after free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3352

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-09-29 12:15 修改: 2023-11-07 03:51

xxd CVE-2022-3520 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Heap-based Buffer Overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3520

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-02 19:15 修改: 2023-05-03 12:16

xxd CVE-2022-3591 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: Use After Free

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3591

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-02 17:15 修改: 2023-05-03 12:16

xxd CVE-2022-4292 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: use-after-free in did_set_spelllang() in src/spell.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4292

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-05 19:15 修改: 2023-11-07 03:57

xxd CVE-2022-4293 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.18 vim: floating point exception in num_divide() in src/eval.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4293

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2022-12-05 19:15 修改: 2023-05-03 12:16

xxd CVE-2023-48233 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow with count for :s command

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48233

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:38

xxd CVE-2023-48234 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in nv_z_get_count

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48234

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

xxd CVE-2023-48235 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in ex address parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48235

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

xxd CVE-2023-48236 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: overflow in get_number

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48236

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:38

xxd CVE-2023-48237 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.21 vim: buffer overflow in shift_line

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48237

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2023-11-16 23:15 修改: 2024-01-25 21:33

xxd CVE-2024-22667 低危 2:8.1.2269-1ubuntu5.12 2:8.1.2269-1ubuntu5.22 vim: Stack buffer over flow in did_set_langmap function in map.c

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-22667

镜像层: sha256:2bc3af956736228c26f3d3aecf778e4ab1c2cc3ac6abfee0737dfef11cfa7d2d

发布日期: 2024-02-05 08:15 修改: 2024-02-23 16:15

usr/bin/auto-pause (gobinary)
低危漏洞:1 中危漏洞:28 高危漏洞:16 严重漏洞:5
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
github.com/docker/docker CVE-2024-41110 严重 v20.10.23+incompatible 23.0.15, 26.1.5, 27.1.1, 25.0.6 moby: Authz zero length regression

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41110

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-07-24 17:15 修改: 2024-07-30 20:15

github.com/hashicorp/go-getter CVE-2024-3817 严重 v1.7.1 1.7.4 HashiCorp\u2019s go-getter library is vulnerable to argument injection ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-3817

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-04-17 20:15 修改: 2024-04-18 13:04

stdlib CVE-2023-24538 严重 1.20.2 1.19.8, 1.20.3 golang: html/template: backticks not treated as string delimiters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24538

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24540 严重 1.20.2 1.19.9, 1.20.4 golang: html/template: improper handling of JavaScript whitespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24540

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2024-24790 严重 1.20.2 1.21.11, 1.22.4 golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24790

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-06-05 16:15 修改: 2024-09-03 18:35

github.com/opencontainers/runc CVE-2024-21626 高危 v1.1.5 1.1.12 runc: file descriptor leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-21626

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-01-31 22:15 修改: 2024-02-19 03:15

golang.org/x/net CVE-2023-39325 高危 v0.8.0 0.17.0 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

google.golang.org/grpc GHSA-m425-mq94-257g 高危 v1.53.0 1.56.3, 1.57.1, 1.58.3 gRPC-Go HTTP/2 Rapid Reset vulnerability

漏洞详情: https://github.com/advisories/GHSA-m425-mq94-257g

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/docker/docker CVE-2023-28840 高危 v20.10.23+incompatible 20.10.24, 23.0.3 moby: Encrypted overlay network may be unauthenticated

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28840

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-04-04 22:15 修改: 2023-09-15 21:15

github.com/docker/distribution CVE-2023-2253 高危 v2.8.1+incompatible 2.8.2-beta.1 distribution/distribution: DoS from malicious API request

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2253

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-06-06 20:15 修改: 2023-06-29 16:15

github.com/hashicorp/go-getter CVE-2024-6257 高危 v1.7.1 1.7.5 hashicorp/go-getter: Arbitrary command execution through local git config file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6257

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-06-25 17:15 修改: 2024-06-25 18:50

stdlib CVE-2023-24534 高危 1.20.2 1.19.8, 1.20.3 golang: net/http, net/textproto: denial of service from excessive memory allocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24534

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24536 高危 1.20.2 1.19.8, 1.20.3 golang: net/http, net/textproto, mime/multipart: denial of service from excessive resource consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24536

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24537 高危 1.20.2 1.19.8, 1.20.3 golang: go/parser: Infinite loop in parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24537

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24539 高危 1.20.2 1.19.9, 1.20.4 golang: html/template: improper sanitization of CSS values

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24539

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2023-29400 高危 1.20.2 1.19.9, 1.20.4 golang: html/template: improper handling of empty HTML attributes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29400

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:11

stdlib CVE-2023-29403 高危 1.20.2 1.19.10, 1.20.5 golang: runtime: unexpected behavior of setuid/setgid binaries

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29403

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-06-08 21:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39325 高危 1.20.2 1.20.10, 1.21.3 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

stdlib CVE-2023-45283 高危 1.20.2 1.20.11, 1.21.4, 1.20.12, 1.21.5 The filepath package does not recognize paths with a \??\ prefix as sp ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45283

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-11-09 17:15 修改: 2023-12-14 10:15

stdlib CVE-2023-45288 高危 1.20.2 1.21.9, 1.22.2 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

stdlib CVE-2024-34156 高危 1.20.2 1.22.7, 1.23.1 encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34156

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-09-06 21:15 修改: 2024-09-09 15:35

github.com/docker/docker CVE-2024-29018 中危 v20.10.23+incompatible 26.0.0-rc3, 25.0.5, 23.0.11 moby: external DNS requests from 'internal' networks could lead to data exfiltration

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29018

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-03-20 21:15 修改: 2024-03-21 12:58

github.com/docker/docker GHSA-jq35-85cj-fj4p 中危 v20.10.23+incompatible 24.0.7, 23.0.8, 20.10.27 /sys/devices/virtual/powercap accessible by default to containers

漏洞详情: https://github.com/advisories/GHSA-jq35-85cj-fj4p

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/cyphar/filepath-securejoin GHSA-6xv5-86q9-7xr8 中危 v0.2.3 0.2.4 SecureJoin: on windows, paths outside of the rootfs could be inadvertently produced

漏洞详情: https://github.com/advisories/GHSA-6xv5-86q9-7xr8

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/cloudevents/sdk-go/v2 CVE-2024-28110 中危 v2.13.0 2.15.2 cloudevents/sdk-go: usage of WithRoundTripper to create a Client leaks credentials

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-28110

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-03-06 22:15 修改: 2024-03-07 13:52

github.com/docker/docker CVE-2023-28841 中危 v20.10.23+incompatible 20.10.24, 23.0.3 moby: Encrypted overlay network traffic may be unencrypted

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28841

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-04-04 22:15 修改: 2023-09-15 21:15

golang.org/x/crypto CVE-2023-48795 中危 v0.7.0 0.17.0 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48795

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-12-18 16:15 修改: 2024-05-01 18:15

github.com/docker/docker CVE-2023-28842 中危 v20.10.23+incompatible 20.10.24, 23.0.3 moby: Encrypted overlay network with a single endpoint is unauthenticated

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28842

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-04-04 22:15 修改: 2023-09-15 21:15

golang.org/x/net CVE-2023-3978 中危 v0.8.0 0.13.0 golang.org/x/net/html: Cross site scripting

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3978

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-08-02 20:15 修改: 2023-11-07 04:20

golang.org/x/net CVE-2023-44487 中危 v0.8.0 0.17.0 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

golang.org/x/net CVE-2023-45288 中危 v0.8.0 0.23.0 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

github.com/docker/docker CVE-2024-24557 中危 v20.10.23+incompatible 24.0.9, 25.0.2 moby: classic builder cache poisoning

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24557

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-02-01 17:15 修改: 2024-02-09 20:21

google.golang.org/grpc CVE-2023-44487 中危 v1.53.0 1.58.3, 1.57.1, 1.56.3 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

google.golang.org/protobuf CVE-2024-24786 中危 v1.29.1 1.33.0 golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24786

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-03-05 23:15 修改: 2024-06-10 18:15

stdlib CVE-2023-29406 中危 1.20.2 1.19.11, 1.20.6 golang: net/http: insufficient sanitization of Host header

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29406

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-07-11 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-29409 中危 1.20.2 1.19.12, 1.20.7, 1.21.0-rc.4 golang: crypto/tls: slow verification of certificate chains containing large RSA keys

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29409

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-08-02 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39318 中危 1.20.2 1.20.8, 1.21.1 golang: html/template: improper handling of HTML-like comments within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39318

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39319 中危 1.20.2 1.20.8, 1.21.1 golang: html/template: improper handling of special tags within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39319

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39326 中危 1.20.2 1.20.12, 1.21.5 golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39326

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-12-06 17:15 修改: 2024-01-20 04:15

stdlib CVE-2023-45284 中危 1.20.2 1.20.11, 1.21.4 On Windows, The IsLocal function does not correctly detect reserved de ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45284

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2023-11-09 17:15 修改: 2024-09-03 19:35

stdlib CVE-2023-45289 中危 1.20.2 1.21.8, 1.22.1 golang: net/http/cookiejar: incorrect forwarding of sensitive headers and cookies on HTTP redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45289

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2023-45290 中危 1.20.2 1.21.8, 1.22.1 golang: net/http: golang: mime/multipart: golang: net/textproto: memory exhaustion in Request.ParseMultipartForm

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45290

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24783 中危 1.20.2 1.21.8, 1.22.1 golang: crypto/x509: Verify panics on certificates with an unknown public key algorithm

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24783

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24784 中危 1.20.2 1.21.8, 1.22.1 golang: net/mail: comments in display names are incorrectly handled

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24784

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-03-05 23:15 修改: 2024-08-05 21:35

stdlib CVE-2024-24785 中危 1.20.2 1.21.8, 1.22.1 golang: html/template: errors returned from MarshalJSON methods may break template escaping

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24785

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24789 中危 1.20.2 1.21.11, 1.22.4 golang: archive/zip: Incorrect handling of certain ZIP files

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24789

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-06-05 16:15 修改: 2024-07-03 01:48

stdlib CVE-2024-24791 中危 1.20.2 1.21.12, 1.22.5 net/http: Denial of service due to improper 100-continue handling in net/http

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24791

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-07-02 22:15 修改: 2024-07-08 14:17

stdlib CVE-2024-34155 中危 1.20.2 1.22.7, 1.23.1 go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34155

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-09-06 21:15 修改: 2024-09-09 13:03

stdlib CVE-2024-34158 中危 1.20.2 1.22.7, 1.23.1 go/build/constraint: golang: Calling Parse on a "// +build" build tag line with deeply nested expressions can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34158

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-09-06 21:15 修改: 2024-09-09 14:35

github.com/opencontainers/runc CVE-2024-45310 低危 v1.1.5 1.1.14, 1.2.0-rc.3 runc: runc can be tricked into creating empty files/directories on host

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45310

镜像层: sha256:730da36257b01b4e14752876a722b037883f308a35a2393d92f66461bdcb909d

发布日期: 2024-09-03 19:15 修改: 2024-09-03 19:40

usr/bin/cri-dockerd (gobinary)
低危漏洞:5 中危漏洞:32 高危漏洞:22 严重漏洞:4
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
github.com/docker/docker CVE-2024-41110 严重 v20.10.17+incompatible 23.0.15, 26.1.5, 27.1.1, 25.0.6 moby: Authz zero length regression

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41110

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-07-24 17:15 修改: 2024-07-30 20:15

stdlib CVE-2023-24538 严重 1.20.2 1.19.8, 1.20.3 golang: html/template: backticks not treated as string delimiters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24538

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24540 严重 1.20.2 1.19.9, 1.20.4 golang: html/template: improper handling of JavaScript whitespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24540

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2024-24790 严重 1.20.2 1.21.11, 1.22.4 golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24790

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-06-05 16:15 修改: 2024-09-03 18:35

github.com/opencontainers/runc CVE-2024-21626 高危 v1.1.4 1.1.12 runc: file descriptor leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-21626

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-01-31 22:15 修改: 2024-02-19 03:15

go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc CVE-2023-47108 高危 v0.20.0 0.46.0 opentelemetry-go-contrib: DoS vulnerability in otelgrpc due to unbound cardinality metrics

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-47108

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-11-10 19:15 修改: 2023-11-20 19:34

go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp CVE-2023-45142 高危 v0.20.0 0.44.0 opentelemetry: DoS vulnerability in otelhttp

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45142

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-10-12 17:15 修改: 2024-02-19 03:15

golang.org/x/net CVE-2022-41723 高危 v0.5.0 0.7.0 golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41723

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-02-28 18:15 修改: 2023-11-25 11:15

golang.org/x/net CVE-2023-39325 高危 v0.5.0 0.17.0 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

google.golang.org/grpc GHSA-m425-mq94-257g 高危 v1.51.0 1.56.3, 1.57.1, 1.58.3 gRPC-Go HTTP/2 Rapid Reset vulnerability

漏洞详情: https://github.com/advisories/GHSA-m425-mq94-257g

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

k8s.io/kubernetes CVE-2023-3676 高危 v1.22.8 1.28.1, 1.27.5, 1.26.8, 1.25.13, 1.24.17 kubernetes: Insufficient input sanitization on Windows nodes leads to privilege escalation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3676

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-10-31 21:15 修改: 2023-11-30 22:15

k8s.io/kubernetes CVE-2023-3955 高危 v1.22.8 1.28.1, 1.27.5, 1.26.8, 1.25.13, 1.24.17 kubernetes: Insufficient input sanitization on Windows nodes leads to privilege escalation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3955

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-10-31 21:15 修改: 2023-12-21 22:15

k8s.io/kubernetes CVE-2023-5528 高危 v1.22.8 1.28.4, 1.27.8, 1.26.11, 1.25.16 kubernetes: Insufficient input sanitization in in-tree storage plugin leads to privilege escalation on Windows nodes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-5528

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-11-14 21:15 修改: 2024-09-06 15:15

github.com/docker/distribution CVE-2023-2253 高危 v2.8.1+incompatible 2.8.2-beta.1 distribution/distribution: DoS from malicious API request

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2253

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-06-06 20:15 修改: 2023-06-29 16:15

github.com/docker/docker CVE-2023-28840 高危 v20.10.17+incompatible 20.10.24, 23.0.3 moby: Encrypted overlay network may be unauthenticated

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28840

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-04-04 22:15 修改: 2023-09-15 21:15

github.com/opencontainers/runc CVE-2023-27561 高危 v1.1.4 1.1.5 runc: volume mount race condition (regression of CVE-2019-19921)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27561

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-03-03 19:15 修改: 2024-07-03 01:39

stdlib CVE-2023-24534 高危 1.20.2 1.19.8, 1.20.3 golang: net/http, net/textproto: denial of service from excessive memory allocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24534

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24536 高危 1.20.2 1.19.8, 1.20.3 golang: net/http, net/textproto, mime/multipart: denial of service from excessive resource consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24536

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24537 高危 1.20.2 1.19.8, 1.20.3 golang: go/parser: Infinite loop in parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24537

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24539 高危 1.20.2 1.19.9, 1.20.4 golang: html/template: improper sanitization of CSS values

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24539

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2023-29400 高危 1.20.2 1.19.9, 1.20.4 golang: html/template: improper handling of empty HTML attributes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29400

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:11

stdlib CVE-2023-29403 高危 1.20.2 1.19.10, 1.20.5 golang: runtime: unexpected behavior of setuid/setgid binaries

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29403

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-06-08 21:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39325 高危 1.20.2 1.20.10, 1.21.3 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

stdlib CVE-2023-45283 高危 1.20.2 1.20.11, 1.21.4, 1.20.12, 1.21.5 The filepath package does not recognize paths with a \??\ prefix as sp ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45283

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-11-09 17:15 修改: 2023-12-14 10:15

stdlib CVE-2023-45288 高危 1.20.2 1.21.9, 1.22.2 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

stdlib CVE-2024-34156 高危 1.20.2 1.22.7, 1.23.1 encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34156

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-09-06 21:15 修改: 2024-09-09 15:35

k8s.io/kubernetes CVE-2023-2431 中危 v1.22.8 1.24.14, 1.25.10, 1.26.5, 1.27.2 kubernetes: Bypass of seccomp profile enforcement

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2431

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-06-16 08:15 修改: 2023-07-01 06:15

k8s.io/kubernetes CVE-2023-2727 中危 v1.22.8 1.27.3, 1.26.6, 1.25.11, 1.24.15 kube-apiserver: Bypassing policies imposed by the ImagePolicyWebhook admission plugin

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2727

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-07-03 21:15 修改: 2023-08-03 15:15

k8s.io/kubernetes CVE-2023-2728 中危 v1.22.8 1.27.3, 1.26.6, 1.25.11, 1.24.15 kube-apiserver: Bypassing enforce mountable secrets policy imposed by the ServiceAccount admission plugin

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2728

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-07-03 21:15 修改: 2023-08-03 15:15

k8s.io/kubernetes CVE-2024-5321 中危 v1.22.8 1.27.16, 1.28.12, 1.29.7, 1.30.3 kubelet: Incorrect permissions on Windows containers logs

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-5321

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-07-18 19:15 修改: 2024-07-19 13:01

github.com/docker/docker CVE-2023-28841 中危 v20.10.17+incompatible 20.10.24, 23.0.3 moby: Encrypted overlay network traffic may be unencrypted

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28841

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-04-04 22:15 修改: 2023-09-15 21:15

github.com/docker/docker CVE-2023-28842 中危 v20.10.17+incompatible 20.10.24, 23.0.3 moby: Encrypted overlay network with a single endpoint is unauthenticated

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28842

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-04-04 22:15 修改: 2023-09-15 21:15

github.com/docker/docker CVE-2024-24557 中危 v20.10.17+incompatible 24.0.9, 25.0.2 moby: classic builder cache poisoning

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24557

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-02-01 17:15 修改: 2024-02-09 20:21

github.com/docker/docker CVE-2024-29018 中危 v20.10.17+incompatible 26.0.0-rc3, 25.0.5, 23.0.11 moby: external DNS requests from 'internal' networks could lead to data exfiltration

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29018

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-03-20 21:15 修改: 2024-03-21 12:58

golang.org/x/net CVE-2023-3978 中危 v0.5.0 0.13.0 golang.org/x/net/html: Cross site scripting

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3978

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-08-02 20:15 修改: 2023-11-07 04:20

golang.org/x/net CVE-2023-44487 中危 v0.5.0 0.17.0 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

golang.org/x/net CVE-2023-45288 中危 v0.5.0 0.23.0 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

github.com/docker/docker GHSA-jq35-85cj-fj4p 中危 v20.10.17+incompatible 24.0.7, 23.0.8, 20.10.27 /sys/devices/virtual/powercap accessible by default to containers

漏洞详情: https://github.com/advisories/GHSA-jq35-85cj-fj4p

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

google.golang.org/grpc CVE-2023-44487 中危 v1.51.0 1.58.3, 1.57.1, 1.56.3 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

google.golang.org/protobuf CVE-2024-24786 中危 v1.28.1 1.33.0 golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24786

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-03-05 23:15 修改: 2024-06-10 18:15

github.com/cyphar/filepath-securejoin GHSA-6xv5-86q9-7xr8 中危 v0.2.3 0.2.4 SecureJoin: on windows, paths outside of the rootfs could be inadvertently produced

漏洞详情: https://github.com/advisories/GHSA-6xv5-86q9-7xr8

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/docker/docker CVE-2022-36109 中危 v20.10.17+incompatible 20.10.18 moby: supplementary groups mishandling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-36109

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2022-09-09 18:15 修改: 2023-11-07 03:49

github.com/opencontainers/runc CVE-2023-28642 中危 v1.1.4 1.1.5 runc: AppArmor can be bypassed when `/proc` inside the container is symlinked with a specific mount configuration

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28642

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-03-29 19:15 修改: 2023-11-07 04:10

stdlib CVE-2023-29406 中危 1.20.2 1.19.11, 1.20.6 golang: net/http: insufficient sanitization of Host header

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29406

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-07-11 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-29409 中危 1.20.2 1.19.12, 1.20.7, 1.21.0-rc.4 golang: crypto/tls: slow verification of certificate chains containing large RSA keys

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29409

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-08-02 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39318 中危 1.20.2 1.20.8, 1.21.1 golang: html/template: improper handling of HTML-like comments within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39318

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39319 中危 1.20.2 1.20.8, 1.21.1 golang: html/template: improper handling of special tags within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39319

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39326 中危 1.20.2 1.20.12, 1.21.5 golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39326

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-12-06 17:15 修改: 2024-01-20 04:15

stdlib CVE-2023-45284 中危 1.20.2 1.20.11, 1.21.4 On Windows, The IsLocal function does not correctly detect reserved de ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45284

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-11-09 17:15 修改: 2024-09-03 19:35

stdlib CVE-2023-45289 中危 1.20.2 1.21.8, 1.22.1 golang: net/http/cookiejar: incorrect forwarding of sensitive headers and cookies on HTTP redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45289

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2023-45290 中危 1.20.2 1.21.8, 1.22.1 golang: net/http: golang: mime/multipart: golang: net/textproto: memory exhaustion in Request.ParseMultipartForm

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45290

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24783 中危 1.20.2 1.21.8, 1.22.1 golang: crypto/x509: Verify panics on certificates with an unknown public key algorithm

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24783

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24784 中危 1.20.2 1.21.8, 1.22.1 golang: net/mail: comments in display names are incorrectly handled

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24784

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-03-05 23:15 修改: 2024-08-05 21:35

stdlib CVE-2024-24785 中危 1.20.2 1.21.8, 1.22.1 golang: html/template: errors returned from MarshalJSON methods may break template escaping

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24785

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24789 中危 1.20.2 1.21.11, 1.22.4 golang: archive/zip: Incorrect handling of certain ZIP files

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24789

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-06-05 16:15 修改: 2024-07-03 01:48

stdlib CVE-2024-24791 中危 1.20.2 1.21.12, 1.22.5 net/http: Denial of service due to improper 100-continue handling in net/http

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24791

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-07-02 22:15 修改: 2024-07-08 14:17

stdlib CVE-2024-34155 中危 1.20.2 1.22.7, 1.23.1 go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34155

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-09-06 21:15 修改: 2024-09-09 13:03

stdlib CVE-2024-34158 中危 1.20.2 1.22.7, 1.23.1 go/build/constraint: golang: Calling Parse on a "// +build" build tag line with deeply nested expressions can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34158

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-09-06 21:15 修改: 2024-09-09 14:35

k8s.io/kubernetes CVE-2021-25743 低危 v1.22.8 1.26.0-alpha.3 kubernetes: kubectl does not neutralize escape, meta or control sequences contained in the raw data it outputs to a terminal

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-25743

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2022-01-07 00:15 修改: 2022-02-28 15:22

k8s.io/kubernetes CVE-2024-3177 低危 v1.22.8 1.27.13, 1.29.4, 1.28.9 kubernetes: kube-apiserver: bypassing mountable secrets policy imposed by the ServiceAccount admission plugin

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-3177

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-04-22 23:15 修改: 2024-09-10 21:15

github.com/opencontainers/runc CVE-2024-45310 低危 v1.1.4 1.1.14, 1.2.0-rc.3 runc: runc can be tricked into creating empty files/directories on host

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45310

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2024-09-03 19:15 修改: 2024-09-03 19:40

github.com/docker/docker GHSA-vp35-85q5-9f25 低危 v20.10.17+incompatible 20.10.20 Container build can leak any path on the host into the container

漏洞详情: https://github.com/advisories/GHSA-vp35-85q5-9f25

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/opencontainers/runc CVE-2023-25809 低危 v1.1.4 1.1.5 runc: Rootless runc makes `/sys/fs/cgroup` writable

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-25809

镜像层: sha256:d548ebcf021f8e1463b13b9e28ac3fb80982115179e8443593ccff7c4ffe271f

发布日期: 2023-03-29 19:15 修改: 2023-11-07 04:09

usr/local/bin/buildctl (gobinary)
低危漏洞:0 中危漏洞:27 高危漏洞:17 严重漏洞:6
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
github.com/docker/docker CVE-2024-41110 严重 v23.0.0-rc.1+incompatible 23.0.15, 26.1.5, 27.1.1, 25.0.6 moby: Authz zero length regression

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41110

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-07-24 17:15 修改: 2024-07-30 20:15

github.com/moby/buildkit CVE-2024-23652 严重 v0.11.4 0.12.5 moby/buildkit: possible host system access from mount stub cleaner

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23652

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-09 01:44

github.com/moby/buildkit CVE-2024-23653 严重 v0.11.4 0.12.5 moby/buildkit: Buildkit's interactive containers API does not validate entitlements check

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23653

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-09 01:44

stdlib CVE-2023-24538 严重 1.19.6 1.19.8, 1.20.3 golang: html/template: backticks not treated as string delimiters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24538

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24540 严重 1.19.6 1.19.9, 1.20.4 golang: html/template: improper handling of JavaScript whitespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24540

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2024-24790 严重 1.19.6 1.21.11, 1.22.4 golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24790

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-06-05 16:15 修改: 2024-09-03 18:35

golang.org/x/net CVE-2022-41723 高危 v0.4.0 0.7.0 golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41723

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-02-28 18:15 修改: 2023-11-25 11:15

golang.org/x/net CVE-2023-39325 高危 v0.4.0 0.17.0 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

google.golang.org/grpc GHSA-m425-mq94-257g 高危 v1.50.1 1.56.3, 1.57.1, 1.58.3 gRPC-Go HTTP/2 Rapid Reset vulnerability

漏洞详情: https://github.com/advisories/GHSA-m425-mq94-257g

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/docker/distribution CVE-2023-2253 高危 v2.8.1+incompatible 2.8.2-beta.1 distribution/distribution: DoS from malicious API request

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2253

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-06-06 20:15 修改: 2023-06-29 16:15

github.com/moby/buildkit CVE-2024-23651 高危 v0.11.4 0.12.5 moby/buildkit: possible race condition with accessing subpaths from cache mounts

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23651

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-09 01:43

go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc CVE-2023-47108 高危 v0.29.0 0.46.0 opentelemetry-go-contrib: DoS vulnerability in otelgrpc due to unbound cardinality metrics

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-47108

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-11-10 19:15 修改: 2023-11-20 19:34

stdlib CVE-2023-24534 高危 1.19.6 1.19.8, 1.20.3 golang: net/http, net/textproto: denial of service from excessive memory allocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24534

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24536 高危 1.19.6 1.19.8, 1.20.3 golang: net/http, net/textproto, mime/multipart: denial of service from excessive resource consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24536

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24537 高危 1.19.6 1.19.8, 1.20.3 golang: go/parser: Infinite loop in parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24537

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24539 高危 1.19.6 1.19.9, 1.20.4 golang: html/template: improper sanitization of CSS values

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24539

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2023-29400 高危 1.19.6 1.19.9, 1.20.4 golang: html/template: improper handling of empty HTML attributes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29400

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:11

stdlib CVE-2023-29403 高危 1.19.6 1.19.10, 1.20.5 golang: runtime: unexpected behavior of setuid/setgid binaries

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29403

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-06-08 21:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39325 高危 1.19.6 1.20.10, 1.21.3 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

stdlib CVE-2023-45283 高危 1.19.6 1.20.11, 1.21.4, 1.20.12, 1.21.5 The filepath package does not recognize paths with a \??\ prefix as sp ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45283

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-11-09 17:15 修改: 2023-12-14 10:15

stdlib CVE-2023-45287 高危 1.19.6 1.20.0 golang: crypto/tls: Timing Side Channel attack in RSA based TLS key exchanges.

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45287

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-12-05 17:15 修改: 2024-01-12 14:15

stdlib CVE-2023-45288 高危 1.19.6 1.21.9, 1.22.2 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

stdlib CVE-2024-34156 高危 1.19.6 1.22.7, 1.23.1 encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34156

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 15:35

github.com/containerd/containerd GHSA-7ww5-4wqc-m92c 中危 v1.6.18 1.6.26, 1.7.11 containerd allows RAPL to be accessible to a container

漏洞详情: https://github.com/advisories/GHSA-7ww5-4wqc-m92c

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/docker/docker CVE-2024-24557 中危 v23.0.0-rc.1+incompatible 24.0.9, 25.0.2 moby: classic builder cache poisoning

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24557

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-02-01 17:15 修改: 2024-02-09 20:21

golang.org/x/net CVE-2023-3978 中危 v0.4.0 0.13.0 golang.org/x/net/html: Cross site scripting

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3978

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-08-02 20:15 修改: 2023-11-07 04:20

golang.org/x/net CVE-2023-44487 中危 v0.4.0 0.17.0 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

golang.org/x/net CVE-2023-45288 中危 v0.4.0 0.23.0 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

github.com/docker/docker CVE-2024-29018 中危 v23.0.0-rc.1+incompatible 26.0.0-rc3, 25.0.5, 23.0.11 moby: external DNS requests from 'internal' networks could lead to data exfiltration

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29018

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-20 21:15 修改: 2024-03-21 12:58

google.golang.org/grpc CVE-2023-44487 中危 v1.50.1 1.58.3, 1.57.1, 1.56.3 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

google.golang.org/protobuf CVE-2024-24786 中危 v1.28.1 1.33.0 golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24786

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-06-10 18:15

github.com/moby/buildkit CVE-2024-23650 中危 v0.11.4 0.12.5 moby/buildkit: Possible race condition with accessing subpaths from cache mounts

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23650

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-09 01:38

github.com/docker/docker GHSA-jq35-85cj-fj4p 中危 v23.0.0-rc.1+incompatible 24.0.7, 23.0.8, 20.10.27 /sys/devices/virtual/powercap accessible by default to containers

漏洞详情: https://github.com/advisories/GHSA-jq35-85cj-fj4p

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

golang.org/x/crypto CVE-2023-48795 中危 v0.2.0 0.17.0 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48795

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-12-18 16:15 修改: 2024-05-01 18:15

stdlib CVE-2023-24532 中危 1.19.6 1.19.7, 1.20.2 golang: crypto/internal/nistec: specific unreduced P-256 scalars produce incorrect results

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24532

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-03-08 20:15 修改: 2023-11-07 04:08

stdlib CVE-2023-29406 中危 1.19.6 1.19.11, 1.20.6 golang: net/http: insufficient sanitization of Host header

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29406

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-07-11 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-29409 中危 1.19.6 1.19.12, 1.20.7, 1.21.0-rc.4 golang: crypto/tls: slow verification of certificate chains containing large RSA keys

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29409

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-08-02 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39318 中危 1.19.6 1.20.8, 1.21.1 golang: html/template: improper handling of HTML-like comments within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39318

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39319 中危 1.19.6 1.20.8, 1.21.1 golang: html/template: improper handling of special tags within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39319

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39326 中危 1.19.6 1.20.12, 1.21.5 golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39326

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-12-06 17:15 修改: 2024-01-20 04:15

stdlib CVE-2023-45284 中危 1.19.6 1.20.11, 1.21.4 On Windows, The IsLocal function does not correctly detect reserved de ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45284

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-11-09 17:15 修改: 2024-09-03 19:35

stdlib CVE-2023-45289 中危 1.19.6 1.21.8, 1.22.1 golang: net/http/cookiejar: incorrect forwarding of sensitive headers and cookies on HTTP redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45289

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2023-45290 中危 1.19.6 1.21.8, 1.22.1 golang: net/http: golang: mime/multipart: golang: net/textproto: memory exhaustion in Request.ParseMultipartForm

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45290

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24783 中危 1.19.6 1.21.8, 1.22.1 golang: crypto/x509: Verify panics on certificates with an unknown public key algorithm

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24783

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24784 中危 1.19.6 1.21.8, 1.22.1 golang: net/mail: comments in display names are incorrectly handled

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24784

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-08-05 21:35

stdlib CVE-2024-24785 中危 1.19.6 1.21.8, 1.22.1 golang: html/template: errors returned from MarshalJSON methods may break template escaping

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24785

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24789 中危 1.19.6 1.21.11, 1.22.4 golang: archive/zip: Incorrect handling of certain ZIP files

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24789

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-06-05 16:15 修改: 2024-07-03 01:48

stdlib CVE-2024-24791 中危 1.19.6 1.21.12, 1.22.5 net/http: Denial of service due to improper 100-continue handling in net/http

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24791

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-07-02 22:15 修改: 2024-07-08 14:17

stdlib CVE-2024-34155 中危 1.19.6 1.22.7, 1.23.1 go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34155

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 13:03

stdlib CVE-2024-34158 中危 1.19.6 1.22.7, 1.23.1 go/build/constraint: golang: Calling Parse on a "// +build" build tag line with deeply nested expressions can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34158

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 14:35

usr/local/bin/buildkit-runc (gobinary)
低危漏洞:0 中危漏洞:24 高危漏洞:15 严重漏洞:3
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
stdlib CVE-2023-24538 严重 1.19.6 1.19.8, 1.20.3 golang: html/template: backticks not treated as string delimiters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24538

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24540 严重 1.19.6 1.19.9, 1.20.4 golang: html/template: improper handling of JavaScript whitespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24540

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2024-24790 严重 1.19.6 1.21.11, 1.22.4 golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24790

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-06-05 16:15 修改: 2024-09-03 18:35

golang.org/x/net CVE-2023-39325 高危 v0.0.0-20201224014010-6772e930b67b 0.17.0 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

golang.org/x/net CVE-2021-33194 高危 v0.0.0-20201224014010-6772e930b67b 0.0.0-20210520170846-37e1c6afe023 golang: x/net/html: infinite loop in ParseFragment

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-33194

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2021-05-26 15:15 修改: 2023-11-07 03:35

golang.org/x/net CVE-2022-27664 高危 v0.0.0-20201224014010-6772e930b67b 0.0.0-20220906165146-f3363e06e74c golang: net/http: handle server errors after sending GOAWAY

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-27664

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2022-09-06 18:15 修改: 2023-11-07 03:45

golang.org/x/net CVE-2022-41723 高危 v0.0.0-20201224014010-6772e930b67b 0.7.0 golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41723

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-02-28 18:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24534 高危 1.19.6 1.19.8, 1.20.3 golang: net/http, net/textproto: denial of service from excessive memory allocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24534

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24536 高危 1.19.6 1.19.8, 1.20.3 golang: net/http, net/textproto, mime/multipart: denial of service from excessive resource consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24536

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24537 高危 1.19.6 1.19.8, 1.20.3 golang: go/parser: Infinite loop in parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24537

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24539 高危 1.19.6 1.19.9, 1.20.4 golang: html/template: improper sanitization of CSS values

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24539

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2023-29400 高危 1.19.6 1.19.9, 1.20.4 golang: html/template: improper handling of empty HTML attributes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29400

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:11

stdlib CVE-2023-29403 高危 1.19.6 1.19.10, 1.20.5 golang: runtime: unexpected behavior of setuid/setgid binaries

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29403

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-06-08 21:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39325 高危 1.19.6 1.20.10, 1.21.3 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

stdlib CVE-2023-45283 高危 1.19.6 1.20.11, 1.21.4, 1.20.12, 1.21.5 The filepath package does not recognize paths with a \??\ prefix as sp ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45283

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-11-09 17:15 修改: 2023-12-14 10:15

stdlib CVE-2023-45287 高危 1.19.6 1.20.0 golang: crypto/tls: Timing Side Channel attack in RSA based TLS key exchanges.

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45287

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-12-05 17:15 修改: 2024-01-12 14:15

stdlib CVE-2023-45288 高危 1.19.6 1.21.9, 1.22.2 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

stdlib CVE-2024-34156 高危 1.19.6 1.22.7, 1.23.1 encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34156

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 15:35

golang.org/x/sys CVE-2022-29526 中危 v0.0.0-20211116061358-0a5406a5449c 0.0.0-20220412211240-33da011f77ad golang: syscall: faccessat checks wrong group

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-29526

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2022-06-23 17:15 修改: 2023-11-07 03:46

google.golang.org/protobuf CVE-2024-24786 中危 v1.27.1 1.33.0 golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24786

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-06-10 18:15

github.com/cyphar/filepath-securejoin GHSA-6xv5-86q9-7xr8 中危 v0.2.3 0.2.4 SecureJoin: on windows, paths outside of the rootfs could be inadvertently produced

漏洞详情: https://github.com/advisories/GHSA-6xv5-86q9-7xr8

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

golang.org/x/net CVE-2021-31525 中危 v0.0.0-20201224014010-6772e930b67b 0.0.0-20210428140749-89ef3d95e781 golang: net/http: panic in ReadRequest and ReadResponse when reading a very large header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-31525

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2021-05-27 13:15 修改: 2023-11-07 03:34

golang.org/x/net CVE-2022-41717 中危 v0.0.0-20201224014010-6772e930b67b 0.4.0 golang: net/http: excessive memory growth in a Go server accepting HTTP/2 requests

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41717

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2022-12-08 20:15 修改: 2024-01-18 03:15

golang.org/x/net CVE-2023-3978 中危 v0.0.0-20201224014010-6772e930b67b 0.13.0 golang.org/x/net/html: Cross site scripting

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3978

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-08-02 20:15 修改: 2023-11-07 04:20

golang.org/x/net CVE-2023-44487 中危 v0.0.0-20201224014010-6772e930b67b 0.17.0 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

golang.org/x/net CVE-2023-45288 中危 v0.0.0-20201224014010-6772e930b67b 0.23.0 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

stdlib CVE-2023-24532 中危 1.19.6 1.19.7, 1.20.2 golang: crypto/internal/nistec: specific unreduced P-256 scalars produce incorrect results

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24532

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-03-08 20:15 修改: 2023-11-07 04:08

stdlib CVE-2023-29406 中危 1.19.6 1.19.11, 1.20.6 golang: net/http: insufficient sanitization of Host header

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29406

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-07-11 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-29409 中危 1.19.6 1.19.12, 1.20.7, 1.21.0-rc.4 golang: crypto/tls: slow verification of certificate chains containing large RSA keys

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29409

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-08-02 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39318 中危 1.19.6 1.20.8, 1.21.1 golang: html/template: improper handling of HTML-like comments within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39318

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39319 中危 1.19.6 1.20.8, 1.21.1 golang: html/template: improper handling of special tags within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39319

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39326 中危 1.19.6 1.20.12, 1.21.5 golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39326

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-12-06 17:15 修改: 2024-01-20 04:15

stdlib CVE-2023-45284 中危 1.19.6 1.20.11, 1.21.4 On Windows, The IsLocal function does not correctly detect reserved de ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45284

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-11-09 17:15 修改: 2024-09-03 19:35

stdlib CVE-2023-45289 中危 1.19.6 1.21.8, 1.22.1 golang: net/http/cookiejar: incorrect forwarding of sensitive headers and cookies on HTTP redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45289

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2023-45290 中危 1.19.6 1.21.8, 1.22.1 golang: net/http: golang: mime/multipart: golang: net/textproto: memory exhaustion in Request.ParseMultipartForm

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45290

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24783 中危 1.19.6 1.21.8, 1.22.1 golang: crypto/x509: Verify panics on certificates with an unknown public key algorithm

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24783

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24784 中危 1.19.6 1.21.8, 1.22.1 golang: net/mail: comments in display names are incorrectly handled

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24784

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-08-05 21:35

stdlib CVE-2024-24785 中危 1.19.6 1.21.8, 1.22.1 golang: html/template: errors returned from MarshalJSON methods may break template escaping

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24785

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24789 中危 1.19.6 1.21.11, 1.22.4 golang: archive/zip: Incorrect handling of certain ZIP files

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24789

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-06-05 16:15 修改: 2024-07-03 01:48

stdlib CVE-2024-24791 中危 1.19.6 1.21.12, 1.22.5 net/http: Denial of service due to improper 100-continue handling in net/http

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24791

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-07-02 22:15 修改: 2024-07-08 14:17

stdlib CVE-2024-34155 中危 1.19.6 1.22.7, 1.23.1 go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34155

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 13:03

stdlib CVE-2024-34158 中危 1.19.6 1.22.7, 1.23.1 go/build/constraint: golang: Calling Parse on a "// +build" build tag line with deeply nested expressions can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34158

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 14:35

usr/local/bin/buildkitd (gobinary)
低危漏洞:2 中危漏洞:30 高危漏洞:21 严重漏洞:6
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
github.com/docker/docker CVE-2024-41110 严重 v23.0.0-rc.1+incompatible 23.0.15, 26.1.5, 27.1.1, 25.0.6 moby: Authz zero length regression

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-41110

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-07-24 17:15 修改: 2024-07-30 20:15

github.com/moby/buildkit CVE-2024-23652 严重 v0.11.4 0.12.5 moby/buildkit: possible host system access from mount stub cleaner

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23652

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-09 01:44

github.com/moby/buildkit CVE-2024-23653 严重 v0.11.4 0.12.5 moby/buildkit: Buildkit's interactive containers API does not validate entitlements check

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23653

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-09 01:44

stdlib CVE-2023-24538 严重 1.19.6 1.19.8, 1.20.3 golang: html/template: backticks not treated as string delimiters

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24538

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24540 严重 1.19.6 1.19.9, 1.20.4 golang: html/template: improper handling of JavaScript whitespace

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24540

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2024-24790 严重 1.19.6 1.21.11, 1.22.4 golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24790

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-06-05 16:15 修改: 2024-09-03 18:35

github.com/opencontainers/runc CVE-2024-21626 高危 v1.1.3 1.1.12 runc: file descriptor leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-21626

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-19 03:15

go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc CVE-2023-47108 高危 v0.29.0 0.46.0 opentelemetry-go-contrib: DoS vulnerability in otelgrpc due to unbound cardinality metrics

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-47108

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-11-10 19:15 修改: 2023-11-20 19:34

go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace CVE-2023-45142 高危 v0.29.0 0.44.0 opentelemetry: DoS vulnerability in otelhttp

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45142

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-12 17:15 修改: 2024-02-19 03:15

go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp CVE-2023-45142 高危 v0.29.0 0.44.0 opentelemetry: DoS vulnerability in otelhttp

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45142

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-12 17:15 修改: 2024-02-19 03:15

golang.org/x/net CVE-2022-41723 高危 v0.4.0 0.7.0 golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41723

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-02-28 18:15 修改: 2023-11-25 11:15

golang.org/x/net CVE-2023-39325 高危 v0.4.0 0.17.0 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

google.golang.org/grpc GHSA-m425-mq94-257g 高危 v1.50.1 1.56.3, 1.57.1, 1.58.3 gRPC-Go HTTP/2 Rapid Reset vulnerability

漏洞详情: https://github.com/advisories/GHSA-m425-mq94-257g

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/docker/distribution CVE-2023-2253 高危 v2.8.1+incompatible 2.8.2-beta.1 distribution/distribution: DoS from malicious API request

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2253

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-06-06 20:15 修改: 2023-06-29 16:15

github.com/moby/buildkit CVE-2024-23651 高危 v0.11.4 0.12.5 moby/buildkit: possible race condition with accessing subpaths from cache mounts

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23651

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-09 01:43

github.com/opencontainers/runc CVE-2023-27561 高危 v1.1.3 1.1.5 runc: volume mount race condition (regression of CVE-2019-19921)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-27561

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-03-03 19:15 修改: 2024-07-03 01:39

stdlib CVE-2023-24534 高危 1.19.6 1.19.8, 1.20.3 golang: net/http, net/textproto: denial of service from excessive memory allocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24534

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24536 高危 1.19.6 1.19.8, 1.20.3 golang: net/http, net/textproto, mime/multipart: denial of service from excessive resource consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24536

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24537 高危 1.19.6 1.19.8, 1.20.3 golang: go/parser: Infinite loop in parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24537

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-04-06 16:15 修改: 2023-11-25 11:15

stdlib CVE-2023-24539 高危 1.19.6 1.19.9, 1.20.4 golang: html/template: improper sanitization of CSS values

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24539

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:08

stdlib CVE-2023-29400 高危 1.19.6 1.19.9, 1.20.4 golang: html/template: improper handling of empty HTML attributes

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29400

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-05-11 16:15 修改: 2023-11-07 04:11

stdlib CVE-2023-29403 高危 1.19.6 1.19.10, 1.20.5 golang: runtime: unexpected behavior of setuid/setgid binaries

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29403

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-06-08 21:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39325 高危 1.19.6 1.20.10, 1.21.3 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39325

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-11 22:15 修改: 2024-04-28 04:15

stdlib CVE-2023-45283 高危 1.19.6 1.20.11, 1.21.4, 1.20.12, 1.21.5 The filepath package does not recognize paths with a \??\ prefix as sp ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45283

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-11-09 17:15 修改: 2023-12-14 10:15

stdlib CVE-2023-45287 高危 1.19.6 1.20.0 golang: crypto/tls: Timing Side Channel attack in RSA based TLS key exchanges.

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45287

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-12-05 17:15 修改: 2024-01-12 14:15

stdlib CVE-2023-45288 高危 1.19.6 1.21.9, 1.22.2 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

stdlib CVE-2024-34156 高危 1.19.6 1.22.7, 1.23.1 encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34156

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 15:35

github.com/docker/docker GHSA-jq35-85cj-fj4p 中危 v23.0.0-rc.1+incompatible 24.0.7, 23.0.8, 20.10.27 /sys/devices/virtual/powercap accessible by default to containers

漏洞详情: https://github.com/advisories/GHSA-jq35-85cj-fj4p

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

github.com/opencontainers/runc CVE-2023-28642 中危 v1.1.3 1.1.5 runc: AppArmor can be bypassed when `/proc` inside the container is symlinked with a specific mount configuration

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-28642

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-03-29 19:15 修改: 2023-11-07 04:10

github.com/hashicorp/go-retryablehttp CVE-2024-6104 中危 v0.7.1 0.7.7 go-retryablehttp: url might write sensitive information to log file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6104

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-06-24 17:15 修改: 2024-06-26 17:19

github.com/Azure/azure-sdk-for-go/sdk/azidentity CVE-2024-35255 中危 v1.1.0 1.6.0 azure-identity: Azure Identity Libraries Elevation of Privilege Vulnerability in github.com/Azure/azure-sdk-for-go/sdk/azidentity

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-35255

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-06-11 17:16 修改: 2024-06-20 16:31

github.com/containerd/containerd GHSA-7ww5-4wqc-m92c 中危 v1.6.18 1.6.26, 1.7.11 containerd allows RAPL to be accessible to a container

漏洞详情: https://github.com/advisories/GHSA-7ww5-4wqc-m92c

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 0001-01-01 00:00 修改: 0001-01-01 00:00

golang.org/x/crypto CVE-2023-48795 中危 v0.2.0 0.17.0 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-48795

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-12-18 16:15 修改: 2024-05-01 18:15

github.com/docker/docker CVE-2024-24557 中危 v23.0.0-rc.1+incompatible 24.0.9, 25.0.2 moby: classic builder cache poisoning

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24557

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-02-01 17:15 修改: 2024-02-09 20:21

github.com/moby/buildkit CVE-2024-23650 中危 v0.11.4 0.12.5 moby/buildkit: Possible race condition with accessing subpaths from cache mounts

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23650

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-01-31 22:15 修改: 2024-02-09 01:38

golang.org/x/net CVE-2023-3978 中危 v0.4.0 0.13.0 golang.org/x/net/html: Cross site scripting

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3978

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-08-02 20:15 修改: 2023-11-07 04:20

golang.org/x/net CVE-2023-44487 中危 v0.4.0 0.17.0 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

golang.org/x/net CVE-2023-45288 中危 v0.4.0 0.23.0 golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45288

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-04-04 21:15 修改: 2024-08-26 21:35

github.com/docker/docker CVE-2024-29018 中危 v23.0.0-rc.1+incompatible 26.0.0-rc3, 25.0.5, 23.0.11 moby: external DNS requests from 'internal' networks could lead to data exfiltration

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29018

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-20 21:15 修改: 2024-03-21 12:58

google.golang.org/grpc CVE-2023-44487 中危 v1.50.1 1.58.3, 1.57.1, 1.56.3 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44487

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-10-10 14:15 修改: 2024-08-14 19:57

google.golang.org/protobuf CVE-2024-24786 中危 v1.28.1 1.33.0 golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24786

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-06-10 18:15

stdlib CVE-2023-24532 中危 1.19.6 1.19.7, 1.20.2 golang: crypto/internal/nistec: specific unreduced P-256 scalars produce incorrect results

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-24532

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-03-08 20:15 修改: 2023-11-07 04:08

stdlib CVE-2023-29406 中危 1.19.6 1.19.11, 1.20.6 golang: net/http: insufficient sanitization of Host header

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29406

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-07-11 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-29409 中危 1.19.6 1.19.12, 1.20.7, 1.21.0-rc.4 golang: crypto/tls: slow verification of certificate chains containing large RSA keys

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-29409

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-08-02 20:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39318 中危 1.19.6 1.20.8, 1.21.1 golang: html/template: improper handling of HTML-like comments within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39318

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39319 中危 1.19.6 1.20.8, 1.21.1 golang: html/template: improper handling of special tags within script contexts

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39319

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-09-08 17:15 修改: 2023-11-25 11:15

stdlib CVE-2023-39326 中危 1.19.6 1.20.12, 1.21.5 golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39326

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-12-06 17:15 修改: 2024-01-20 04:15

stdlib CVE-2023-45284 中危 1.19.6 1.20.11, 1.21.4 On Windows, The IsLocal function does not correctly detect reserved de ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45284

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-11-09 17:15 修改: 2024-09-03 19:35

stdlib CVE-2023-45289 中危 1.19.6 1.21.8, 1.22.1 golang: net/http/cookiejar: incorrect forwarding of sensitive headers and cookies on HTTP redirect

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45289

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2023-45290 中危 1.19.6 1.21.8, 1.22.1 golang: net/http: golang: mime/multipart: golang: net/textproto: memory exhaustion in Request.ParseMultipartForm

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-45290

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24783 中危 1.19.6 1.21.8, 1.22.1 golang: crypto/x509: Verify panics on certificates with an unknown public key algorithm

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24783

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24784 中危 1.19.6 1.21.8, 1.22.1 golang: net/mail: comments in display names are incorrectly handled

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24784

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-08-05 21:35

stdlib CVE-2024-24785 中危 1.19.6 1.21.8, 1.22.1 golang: html/template: errors returned from MarshalJSON methods may break template escaping

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24785

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-03-05 23:15 修改: 2024-05-01 17:15

stdlib CVE-2024-24789 中危 1.19.6 1.21.11, 1.22.4 golang: archive/zip: Incorrect handling of certain ZIP files

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24789

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-06-05 16:15 修改: 2024-07-03 01:48

stdlib CVE-2024-24791 中危 1.19.6 1.21.12, 1.22.5 net/http: Denial of service due to improper 100-continue handling in net/http

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-24791

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-07-02 22:15 修改: 2024-07-08 14:17

stdlib CVE-2024-34155 中危 1.19.6 1.22.7, 1.23.1 go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34155

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 13:03

stdlib CVE-2024-34158 中危 1.19.6 1.22.7, 1.23.1 go/build/constraint: golang: Calling Parse on a "// +build" build tag line with deeply nested expressions can cause a panic due to stack exhaustion

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-34158

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-06 21:15 修改: 2024-09-09 14:35

github.com/opencontainers/runc CVE-2023-25809 低危 v1.1.3 1.1.5 runc: Rootless runc makes `/sys/fs/cgroup` writable

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-25809

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2023-03-29 19:15 修改: 2023-11-07 04:09

github.com/opencontainers/runc CVE-2024-45310 低危 v1.1.3 1.1.14, 1.2.0-rc.3 runc: runc can be tricked into creating empty files/directories on host

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-45310

镜像层: sha256:78909161bbf5feb5e428841a7844aedc0a9e9660772c8c3a19f69fc312aa9431

发布日期: 2024-09-03 19:15 修改: 2024-09-03 19:40

/etc/ssh/ssh_host_ed25519_key ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/etc/ssh/ssh_host_rsa_key ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/etc/ssh/ssh_host_ecdsa_key ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息