Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Lustre CRITICAL 9.8
CVE-2019-20427

In the Lustre file system before 2.12.3, the ptlrpc module has a buffer overflow and panic, and possibly remote code execution, due to the lack of va…

Fix: 2.12.3+
Fix from $2,300 2020-01-27
Lustre HIGH 7.5
CVE-2019-20428

In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic due to the lack of validation for specific fields of p…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre HIGH 7.5
CVE-2019-20429

In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic (via a modified lm_bufcount field) due to the lack of …

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre HIGH 7.5
CVE-2019-20430

In the Lustre file system before 2.12.3, the mdt module has an LBUG panic (via a large MDT Body eadatasize field) due to the lack of validation for s…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre HIGH 7.5
CVE-2019-20431

In the Lustre file system before 2.12.3, the ptlrpc module has an osd_map_remote_to_local out-of-bounds access and panic due to the lack of validatio…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre HIGH 7.5
CVE-2019-20432

In the Lustre file system before 2.12.3, the mdt module has an out-of-bounds access and panic due to the lack of validation for specific fields of pa…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre HIGH 7.5
CVE-2019-20423

In the Lustre file system before 2.12.3, the ptlrpc module has a buffer overflow and panic due to the lack of validation for specific fields of packe…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre HIGH 7.5
CVE-2019-20424

In the Lustre file system before 2.12.3, mdt_object_remote in the mdt module has a NULL pointer dereference and panic due to the lack of validation f…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre HIGH 7.5
CVE-2019-20425

In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds access and panic due to the lack of validation for specific fields of…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre HIGH 7.5
CVE-2019-20426

In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds access and panic due to the lack of validation for specific fields of…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Lustre Tests MEDIUM 6.9
CVE-2008-4970

runiozone in lustre 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/iozone.log temporary file.

No fix yet
Fix from $1,600 2008-11-06