Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2020-36475 An issue was discovered in Mbed TLS before 2.25.0 (and before 2.16.9 LTS and before 2.7.18 LTS). The calculations performed by mbedtls_mpi_exp_mod ar… Debian Linux 2.2 / 2.7.18+ Fix from $1,9502021-08-23 HIGH 7.5 CVE-2020-36476 An issue was discovered in Mbed TLS before 2.24.0 (and before 2.16.8 LTS and before 2.7.17 LTS). There is missing zeroization of plaintext buffers in… Debian Linux 2.7.17 / 2.16.8+ Fix from $1,9502021-08-23 HIGH 7.5 CVE-2021-39371 An XML external entity (XXE) injection in PyWPS before 4.4.5 allows an attacker to view files on the application server filesystem by assigning a pat… Debian Linux 4.4.5+ Fix from $1,9502021-08-23 MEDIUM 5.9 CVE-2021-39365 In GNOME grilo though 0.3.13, grl-net-wc.c does not enable TLS certificate verification on the SoupSessionAsync objects it creates, leaving users vul… Debian Linux after 0.3.13 Fix from $1,6002021-08-22 CRITICAL 9.8 CVE-2021-38171 adts_decode_extradata in libavformat/adtsenc.c in FFmpeg 4.4 does not check the init_get_bits return value, which is a necessary step because the sec… Debian Linux Patch available Fix from $2,3002021-08-21 HIGH 7.5 CVE-2021-37698 Icinga is a monitoring system which checks the availability of network resources, notifies users of outages, and generates performance data for repor… Debian Linux 2.11.10 / 2.12.6+ Fix from $1,9502021-08-19 HIGH 8.8 CVE-2021-21857 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21858 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21837 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21838 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21839 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21843 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21844 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21845 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21846 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21847 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21853 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21854 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 8.8 CVE-2021-21855 Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library … Debian Linux No fix yet Fix from $1,9502021-08-18 HIGH 7.5 CVE-2021-39240 An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It does not ensure that the scheme and path portions o… Debian Linux 2.2.16 / 2.3.13+ Fix from $1,9502021-08-17 HIGH 7.5 CVE-2021-39242 An issue was discovered in HAProxy 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. It can lead to a situation with an attacker-controlled… Debian Linux 2.2.16 / 2.3.13+ Fix from $1,9502021-08-17 MEDIUM 5.3 CVE-2021-39241 An issue was discovered in HAProxy 2.0 before 2.0.24, 2.2 before 2.2.16, 2.3 before 2.3.13, and 2.4 before 2.4.3. An HTTP method name may contain a s… Debian Linux 2.0.24 / 2.2.16+ Fix from $1,6002021-08-17 HIGH 8.8 CVE-2021-21859 An exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.… Debian Linux No fix yet Fix from $1,9502021-08-16 HIGH 8.8 CVE-2021-21860 An exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.… Debian Linux No fix yet Fix from $1,9502021-08-16 HIGH 8.8 CVE-2021-21861 An exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.… Debian Linux No fix yet Fix from $1,9502021-08-16 HIGH 7.5 CVE-2021-33193EPSS 46% A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. Th… Debian Linux 2.4.49 / 18.1.0.1.0+ Fix from $1,9502021-08-16 MEDIUM 5.4 CVE-2021-37695 ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered in CKEditor 4 [Fake Objects](… Debian Linux 4.16.2 / 21.1.4+ Fix from $1,6002021-08-13 HIGH 7.5 CVE-2021-38291 FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavutil/mathematics.c. Debian Linux 4.1.7 / 4.2.5+ Fix from $1,9502021-08-12 HIGH 8.8 CVE-2020-21688 A heap-use-after-free in the av_freep function in libavutil/mem.c of FFmpeg 4.2 allows attackers to execute arbitrary code. Debian Linux Patch available Fix from $1,9502021-08-10 MEDIUM 6.5 CVE-2020-21697 A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a cr… Debian Linux Patch available Fix from $1,6002021-08-10