Vulnerability index

Browse CVEs

21 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Reachable AssertionCWE-617 × clear
Enterprise Linux MEDIUM 5.5
CVE-2024-8354

A flaw was found in QEMU. An assertion failure was present in the usb_ep_get() function in hw/net/core.c when trying to get the USB endpoint from a U…

Mitigation only
Fix from $1,600 2024-09-19
Enterprise Linux MEDIUM 5.5
CVE-2024-3567

A flaw was found in QEMU. An assertion failure was present in the update_sctp_checksum() function in hw/net/net_tx_pkt.c when trying to calculate the…

Fix: 8.2.3+
Fix from $1,600 2024-04-10
Libnbd MEDIUM 5.3
CVE-2023-5871

A flaw was found in libnbd, due to a malicious Network Block Device (NBD), a protocol for accessing Block Devices such as hard disks over a Network. …

Fix: 1.18.2+
Fix from $1,600 2023-11-27
Enterprise Linux MEDIUM 5.5
CVE-2023-38473

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_alternative_host_name() function.

Fix: 0.9+
Fix from $1,600 2023-11-02
Enterprise Linux MEDIUM 5.5
CVE-2023-38469

A vulnerability was found in Avahi, where a reachable assertion exists in avahi_dns_packet_append_record.

Fix: 0.9+
Fix from $1,600 2023-11-02
Enterprise Linux MEDIUM 5.5
CVE-2023-38470

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_escape_label() function.

Fix: 0.9+
Fix from $1,600 2023-11-02
Enterprise Linux MEDIUM 5.5
CVE-2023-38471

A vulnerability was found in Avahi. A reachable assertion exists in the dbus_set_host_name function.

Fix: 0.9+
Fix from $1,600 2023-11-02
Enterprise Linux MEDIUM 5.5
CVE-2023-38472

A vulnerability was found in Avahi. A reachable assertion exists in the avahi_rdata_parse() function.

Fix: 0.9+
Fix from $1,600 2023-11-02
Enterprise Linux MEDIUM 5.6
CVE-2023-3301

A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci fr…

Fix: after 8.0.3
Fix from $1,600 2023-09-13
Jboss Core Services HIGH 7.5
CVE-2020-25710

A flaw was found in OpenLDAP in versions before 2.4.56. This flaw allows an attacker who sends a malicious packet processed by OpenLDAP to force a fa…

Fix: 2.4.56+
Fix from $1,950 2021-05-28
Enterprise Linux MEDIUM 5.5
CVE-2021-30501

An assertion abort was found in upx MemBuffer::alloc() in mem.cpp, in version UPX 4.0.0. The flow allows attackers to cause a denial of service (abor…

Patch available
Fix from $1,600 2021-05-27
Ceph MEDIUM 5.3
CVE-2021-3531

A flaw was found in the Red Hat Ceph Storage RGW in versions before 14.2.21. When processing a GET Request for a swift URL that ends with two slashes…

Fix: 14.2.21+
Fix from $1,600 2021-05-18
Enterprise Linux MEDIUM 5.0
CVE-2020-10761

An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-cli…

Fix: 5.0.1+
Fix from $1,600 2020-06-09
Enterprise Linux Server Aus HIGH 7.5
CVE-2017-3139

A denial of service flaw was found in the way BIND handled DNSSEC validation. A remote attacker could use this flaw to make named exit unexpectedly w…

Mitigation only
Fix from $1,950 2019-04-09
Enterprise Linux Desktop HIGH 7.5
CVE-2018-5740EPSS 60%

"deny-answer-aliases" is a little-used feature intended to help recursive server operators protect end users against DNS rebinding attacks, a potenti…

Fix: 9.8.8 / 9.9.13+
Fix from $1,950 2019-01-16
Enterprise Linux Desktop HIGH 7.5
CVE-2017-3137EPSS 9%

Mistaken assumptions about the ordering of records in the answer section of a response containing CNAME or DNAME resource records could lead to a sit…

Mitigation only
Fix from $1,950 2019-01-16
Enterprise Linux Desktop MEDIUM 5.9
CVE-2017-3136EPSS 11%

A query with a specific set of characteristics could cause a server using DNS64 to encounter an assertion failure and terminate. An attacker could de…

Fix: after 9.10.4
Fix from $1,600 2019-01-16
Openstack HIGH 7.5
CVE-2018-17205

An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, affecting ofproto_rule_insert__ in ofproto/ofproto.c. During bundle commit, flows …

Fix: after 2.7.6
Fix from $1,950 2018-09-19
Openstack HIGH 7.5
CVE-2017-7539EPSS 6%

An assertion-failure flaw was found in Qemu before 2.10.1, in the Network Block Device (NBD) server's initial connection negotiation, where the I/O c…

Fix: 2.10.1+
Fix from $1,950 2018-07-26
Ceph MEDIUM 6.5
CVE-2017-16818

RADOS Gateway in Ceph 12.1.0 through 12.2.1 allows remote authenticated users to cause a denial of service (assertion failure and application exit) b…

Fix: after 12.2.1
Fix from $1,600 2017-12-20
Enterprise Linux Desktop HIGH 7.5
CVE-2016-8864EPSS 39%

named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of service (ass…

Fix: 9.9.9 / 9.10.4+
Fix from $1,950 2016-11-02