Open Source Vulnerabilities

    Dashboard / Open Source Vulnerabilities

    CVE-2022-31264
    Fix available
    Packages

    Summary

    Published
    21 May 2022
    SUSE-SU-2022:1783-1
    Fix available
    Packages

    kgraft-patch-SLE12-SP5_Update_19, kgraft-patch-SLE12-SP5_Update_21, kgraft-patch-SLE12-SP5_Update_22, kgraft-patch-SLE12-SP5_Update_23, kgraft-patch-SLE12-SP5_Update_24, kgraft-patch-SLE12-SP5_Update_26, kgraft-patch-SLE12-SP5_Update_27, kgraft-patch-SLE12-SP5_Update_19, kgraft-patch-SLE12-SP5_Update_21, kgraft-patch-SLE12-SP5_Update_22, kgraft-patch-SLE12-SP5_Update_23, kgraft-patch-SLE12-SP5_Update_24, kgraft-patch-SLE12-SP5_Update_26, kgraft-patch-SLE12-SP5_Update_27, kgraft-patch-SLE12-SP5_Update_19, kgraft-patch-SLE12-SP5_Update_21, kgraft-patch-SLE12-SP5_Update_22, kgraft-patch-SLE12-SP5_Update_23, kgraft-patch-SLE12-SP5_Update_24, kgraft-patch-SLE12-SP5_Update_26, kgraft-patch-SLE12-SP5_Update_27, kgraft-patch-SLE12-SP5_Update_19, kgraft-patch-SLE12-SP5_Update_21, kgraft-patch-SLE12-SP5_Update_22, kgraft-patch-SLE12-SP5_Update_23, kgraft-patch-SLE12-SP5_Update_24, kgraft-patch-SLE12-SP5_Update_26, kgraft-patch-SLE12-SP5_Update_27, kgraft-patch-SLE12-SP5_Update_19, kgraft-patch-SLE12-SP5_Update_21, kgraft-patch-SLE12-SP5_Update_22, kgraft-patch-SLE12-SP5_Update_23, kgraft-patch-SLE12-SP5_Update_24, kgraft-patch-SLE12-SP5_Update_26, kgraft-patch-SLE12-SP5_Update_27, kgraft-patch-SLE12-SP5_Update_19, kgraft-patch-SLE12-SP5_Update_21, kgraft-patch-SLE12-SP5_Update_22, kgraft-patch-SLE12-SP5_Update_23, kgraft-patch-SLE12-SP5_Update_24, kgraft-patch-SLE12-SP5_Update_26, kgraft-patch-SLE12-SP5_Update_27, kgraft-patch-SLE12-SP5_Update_19, kgraft-patch-SLE12-SP5_Update_21, kgraft-patch-SLE12-SP5_Update_22, kgraft-patch-SLE12-SP5_Update_23, kgraft-patch-SLE12-SP5_Update_24, kgraft-patch-SLE12-SP5_Update_26, kgraft-patch-SLE12-SP5_Update_27, kernel-livepatch-SLE15-SP2_Update_15, kernel-livepatch-SLE15-SP2_Update_16, kernel-livepatch-SLE15-SP2_Update_17, kernel-livepatch-SLE15-SP2_Update_20, kernel-livepatch-SLE15-SP2_Update_18, kernel-livepatch-SLE15-SP2_Update_15, kernel-livepatch-SLE15-SP2_Update_16, kernel-livepatch-SLE15-SP2_Update_17, kernel-livepatch-SLE15-SP2_Update_20, kernel-livepatch-SLE15-SP2_Update_18, kernel-livepatch-SLE15-SP2_Update_15, kernel-livepatch-SLE15-SP2_Update_16, kernel-livepatch-SLE15-SP2_Update_17, kernel-livepatch-SLE15-SP2_Update_20, kernel-livepatch-SLE15-SP2_Update_18, kernel-livepatch-SLE15-SP2_Update_15, kernel-livepatch-SLE15-SP2_Update_16, kernel-livepatch-SLE15-SP2_Update_17, kernel-livepatch-SLE15-SP2_Update_20, kernel-livepatch-SLE15-SP2_Update_18, kernel-livepatch-SLE15-SP2_Update_15, kernel-livepatch-SLE15-SP2_Update_16, kernel-livepatch-SLE15-SP2_Update_17, kernel-livepatch-SLE15-SP2_Update_20, kernel-livepatch-SLE15-SP2_Update_18, kernel-livepatch-SLE15-SP3_Update_5, kernel-livepatch-SLE15-SP3_Update_10, kernel-livepatch-SLE15-SP3_Update_11, kernel-livepatch-SLE15-SP3_Update_5, kernel-livepatch-SLE15-SP3_Update_10, kernel-livepatch-SLE15-SP3_Update_11, kernel-livepatch-SLE15-SP3_Update_5, kernel-livepatch-SLE15-SP3_Update_10, kernel-livepatch-SLE15-SP3_Update_11

    Summary

    Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP3)

    Published
    21 May 2022
    Packages

    libxls, libxls

    Summary

    Security update for libxls

    Published
    21 May 2022
    RUSTSEC-2022-0030
    Fix available
    Packages

    rulex

    Summary

    Stack overflow during recursive expression parsing

    Published
    21 May 2022
    RUSTSEC-2022-0031
    Fix available
    Packages

    rulex

    Summary

    Panic due to improper UTF-8 indexing

    Published
    21 May 2022
    MGASA-2022-0193
    Fix available
    Packages

    microcode

    Summary

    Updated microcode packages fix security vulnerabilities

    Published
    21 May 2022
    MGASA-2022-0192
    Fix available
    Packages

    opencontainers-runc

    Summary

    Updated opencontainers-runc packages fix security vulnerability

    Published
    21 May 2022
    MGASA-2022-0194
    Fix available
    Packages

    kernel, kmod-virtualbox, kmod-xtables-addons

    Summary

    Updated kernel packages fix security vulnerabilities

    Published
    21 May 2022
    MGASA-2022-0195
    Fix available
    Packages

    kernel-linus

    Summary

    Updated kernel-linus packages fix security vulnerabilities

    Published
    21 May 2022
    CVE-2022-1752
    Fix available
    Packages

    Summary

    Unrestricted Upload of File with Dangerous Type in polonel/trudesk

    Published
    21 May 2022
    Packages

    snowflake, snowflake, snowflake

    Summary

    Published
    21 May 2022
    Packages

    snowflake, snowflake, snowflake

    Summary

    Published
    21 May 2022
    Packages

    snowflake, snowflake, snowflake

    Summary

    Published
    21 May 2022
    Packages

    snowflake, telegraf

    Summary

    Published
    21 May 2022
    Packages

    snowflake, telegraf

    Summary

    Published
    21 May 2022
    Packages

    snowflake, telegraf

    Summary

    Published
    21 May 2022
    CVE-2022-29215
    Fix available
    Packages

    Summary

    Argument Injection in RegionProtect

    Published
    21 May 2022
    OSV-2022-425
    Fix available
    Packages

    json

    Summary

    Heap-use-after-free in std::__1::__tree_node_base<void*>*& std::__1::__tree<std::__1::__value_type<std:

    Published
    21 May 2022
    GHSA-77fq-4xf5-hph4
    No fix available
    Packages

    pywasm3

    Summary

    Buffer overflow in wasm3

    Published
    21 May 2022
    GHSA-hg3w-7hj9-m3f7
    No fix available
    Packages

    url-regex

    Summary

    Regular expression denial of service in url_regex

    Published
    21 May 2022
    GHSA-wm7h-9275-46v2
    No fix available
    Packages

    dicer, org.webjars.npm:dicer

    Summary

    Crash in HeaderParser in dicer

    Published
    21 May 2022
    CVE-2022-29222
    Fix available
    Packages

    Summary

    Improper Certificate Validation in Pion DTLS

    Published
    21 May 2022
    CVE-2022-31259
    Fix available
    Packages

    Summary

    Published
    21 May 2022
    CVE-2022-29189
    Fix available
    Packages

    Summary

    Buffer for inbound DTLS fragments has no limit

    Published
    20 May 2022
    CVE-2022-29190
    Fix available
    Packages

    Summary

    Header reconstruction method can be thrown into an infinite loop in Pion DTLS

    Published
    20 May 2022
    CVE-2022-29188
    Fix available
    Packages

    Summary

    Smokescreen SSRF via deny list bypass (square brackets) in Smokescreen

    Published
    20 May 2022
    CVE-2022-29214
    Fix available
    Packages

    Summary

    URL Redirection to Untrusted Site ('Open Redirect') in next-auth

    Published
    20 May 2022
    CVE-2022-29216
    Fix available
    Packages

    Summary

    Code injection in `saved_model_cli` in TensorFlow

    Published
    20 May 2022
    CVE-2022-29213
    Fix available
    Packages

    Summary

    Incomplete validation in signal ops leads to crashes in TensorFlow

    Published
    20 May 2022
    CVE-2022-29210
    Fix available
    Packages

    Summary

    Heap buffer overflow due to incorrect hash function in TensorFlow

    Published
    20 May 2022
    CVE-2022-29209
    Fix available
    Packages

    Summary

    Type confusion leading to `CHECK`-failure based denial of service in TensorFlow

    Published
    20 May 2022
    CVE-2022-29211
    Fix available
    Packages

    Summary

    Segfault in TensorFlow if `tf.histogram_fixed_width` is called with NaN values

    Published
    20 May 2022
    CVE-2022-29212
    Fix available
    Packages

    Summary

    Core dump when loading TFLite models with quantization in TensorFlow

    Published
    20 May 2022
    CVE-2022-29201
    Fix available
    Packages

    Summary

    Missing validation in `QuantizedConv2D` results in undefined behavior in TensorFlow

    Published
    20 May 2022
    CVE-2022-29202
    Fix available
    Packages

    Summary

    Denial of service in TensorFlow due to lack of validation in `tf.ragged.constant`

    Published
    20 May 2022
    CVE-2022-29203
    Fix available
    Packages

    Summary

    Integer overflow in `SpaceToBatchND` in TensorFlow

    Published
    20 May 2022
    CVE-2022-29204
    Fix available
    Packages

    Summary

    Missing validation causes denial of service in TensorFlow via `Conv3DBackpropFilterV2`

    Published
    20 May 2022
    CVE-2022-1775
    Fix available
    Packages

    Summary

    Weak Password Requirements in polonel/trudesk

    Published
    20 May 2022
    CVE-2022-29208
    Fix available
    Packages

    Summary

    Segfault and Out-of-bounds Write write due to incomplete validation in TensorFlow

    Published
    20 May 2022
    CVE-2022-29205
    Fix available
    Packages

    Summary

    Segfault due to missing support for quantized types in TensorFlow

    Published
    20 May 2022
    CVE-2022-29206
    Fix available
    Packages

    Summary

    Missing validation results in undefined behavior in `SparseTensorDenseAdd` in TensorFlow

    Published
    20 May 2022
    CVE-2022-29207
    Fix available
    Packages

    Summary

    Undefined behavior when users supply invalid resource handles in TensorFlow

    Published
    20 May 2022
    CVE-2022-31258
    Fix available
    Packages

    Summary

    Published
    20 May 2022
    CVE-2022-29195
    Fix available
    Packages

    Summary

    Missing validation causes denial of service in TensorFlow via `StagePeek`

    Published
    20 May 2022
    CVE-2022-29197
    Fix available
    Packages

    Summary

    Missing validation causes denial of service in TensorFlow via `UnsortedSegmentJoin`

    Published
    20 May 2022
    CVE-2022-29196
    Fix available
    Packages

    Summary

    Missing validation causes denial of service in TensorFlow via `Conv3DBackpropFilterV2`

    Published
    20 May 2022
    CVE-2022-29198
    Fix available
    Packages

    Summary

    Missing validation causes denial of service in TensorFlow via `SparseTensorToCSRSparseMatrix`

    Published
    20 May 2022
    CVE-2022-1803
    Fix available
    Packages

    Summary

    Improper Restriction of Rendered UI Layers or Frames in polonel/trudesk

    Published
    20 May 2022
    CVE-2022-29199
    Fix available
    Packages

    Summary

    Missing validation causes denial of service in TensorFlow via `LoadAndRemapMatrix`

    Published
    20 May 2022
    CVE-2022-29200
    Fix available
    Packages

    Summary

    Missing validation causes denial of service in TensorFlow via `LSTMBlockCell`

    Published
    20 May 2022