Open Source Vulnerabilities

    Dashboard / Open Source Vulnerabilities

    RLSA-2021:1989
    Fix available
    Packages

    bind

    Summary

    Important: bind security update

    Published
    18 May 2021
    ALBA-2021:1985
    Fix available
    Packages

    java-1.8.0-openjdk-accessibility-fastdebug, java-1.8.0-openjdk-accessibility-slowdebug, java-1.8.0-openjdk-demo-fastdebug, java-1.8.0-openjdk-demo-slowdebug, java-1.8.0-openjdk-devel-fastdebug, java-1.8.0-openjdk-devel-slowdebug, java-1.8.0-openjdk-fastdebug, java-1.8.0-openjdk-headless-fastdebug, java-1.8.0-openjdk-src-fastdebug, java-1.8.0-openjdk-src-slowdebug

    Summary

    java-1.8.0-openjdk bug fix and enhancement update

    Published
    18 May 2021
    ALBA-2021:1984
    Fix available
    Packages

    java-11-openjdk-demo-fastdebug, java-11-openjdk-demo-slowdebug, java-11-openjdk-devel-fastdebug, java-11-openjdk-devel-slowdebug, java-11-openjdk-fastdebug, java-11-openjdk-headless-fastdebug, java-11-openjdk-headless-slowdebug, java-11-openjdk-jmods-fastdebug, java-11-openjdk-jmods-slowdebug, java-11-openjdk-slowdebug, java-11-openjdk-src-fastdebug, java-11-openjdk-src-slowdebug, java-11-openjdk-static-libs-fastdebug, java-11-openjdk-static-libs-slowdebug

    Summary

    java-11-openjdk bug fix and enhancement update

    Published
    18 May 2021
    ALSA-2021:1983
    Fix available
    Packages

    bind-dyndb-ldap, custodia, custodia, opendnssec, opendnssec, python3-custodia, python3-custodia, python3-jwcrypto, python3-jwcrypto, python3-jwcrypto, python3-kdcproxy, python3-kdcproxy, python3-pyusb, python3-pyusb, python3-pyusb, python3-qrcode, python3-qrcode, python3-qrcode, python3-qrcode-core, python3-qrcode-core, python3-qrcode-core, python3-yubico, python3-yubico, python3-yubico, softhsm, softhsm, softhsm-devel, softhsm-devel

    Summary

    Important: idm:DL1 security update

    Published
    18 May 2021
    RLSA-2021:1983
    Fix available
    Packages

    bind-dyndb-ldap, custodia, ipa, ipa-healthcheck, opendnssec, python-jwcrypto, python-jwcrypto, python-kdcproxy, python-qrcode, python-yubico, python-yubico, pyusb, pyusb, slapi-nis, softhsm

    Summary

    Important: idm:DL1 security update

    Published
    18 May 2021
    ALSA-2021:1979
    Fix available
    Packages

    libecap, libecap-devel

    Summary

    Important: squid:4 security update

    Published
    18 May 2021
    RLSA-2021:1979
    Fix available
    Packages

    libecap, squid

    Summary

    Important: squid:4 security update

    Published
    18 May 2021
    CVE-2020-24740
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    CVE-2020-23861
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    CVE-2020-20951
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    GHSA-58v3-j75h-xr49
    Fix available
    Packages

    github.com/seccomp/libseccomp-golang

    Summary

    Improper Input Validation in libseccomp-golang

    Published
    18 May 2021
    GHSA-xhg2-rvm8-w2jh
    Fix available
    Packages

    github.com/rancher/rancher, github.com/rancher/rancher, github.com/rancher/rancher

    Summary

    Rancher Vulnerable to Cross-site Request Forgery (CSRF)

    Published
    18 May 2021
    GO-2022-0755
    Fix available
    Packages

    github.com/rancher/rancher

    Summary

    Cross-site request forgery in github.com/rancher/rancher

    Published
    18 May 2021
    GHSA-3f8r-4qwm-r7jf
    Fix available
    Packages

    github.com/apache/trafficcontrol

    Summary

    Improper Authentication in Apache Traffic Control

    Published
    18 May 2021
    GHSA-2v6x-frw8-7r7f
    Fix available
    Packages

    github.com/kubernetes/kube-state-metrics, k8s.io/kube-state-metrics

    Summary

    Duplicate Advisory: k8s.io/kube-state-metrics Exposure of Sensitive Information

    Published
    18 May 2021
    GO-2022-0621
    Fix available
    Packages

    k8s.io/kube-state-metrics

    Summary

    Exposure of sensitive information in k8s.io/kube-state-metrics

    Published
    18 May 2021
    GHSA-pmqp-h87c-mr78
    Fix available
    Packages

    k8s.io/kubernetes, k8s.io/kubernetes, k8s.io/kubernetes, k8s.io/kubernetes

    Summary

    XML Entity Expansion and Improper Input Validation in Kubernetes API server

    Published
    18 May 2021
    GHSA-jq7p-26h5-w78r
    Fix available
    Packages

    github.com/apache/thrift

    Summary

    Out-of-bounds read in Apache Thrift

    Published
    18 May 2021
    GHSA-h74j-692g-48mq
    Fix available
    Packages

    github.com/mholt/archiver

    Summary

    Path Traversal in MHolt Archiver

    Published
    18 May 2021
    GHSA-5796-p3m6-9qj4
    Fix available
    Packages

    code.cloudfoundry.org/gorouter

    Summary

    Cloud Foundry Routing Improper Input Validation vulnerability

    Published
    18 May 2021
    GHSA-wmwp-pggc-h4mj
    Fix available
    Packages

    github.com/documize/community

    Summary

    Cross-site Scripting in Documize

    Published
    18 May 2021
    GHSA-78hj-86cr-6j2v
    Fix available
    Packages

    github.com/lightningnetwork/lnd

    Summary

    Improper Access Control in Lightning Network Daemon

    Published
    18 May 2021
    GHSA-6qfg-8799-r575
    Fix available
    Packages

    k8s.io/kubernetes, k8s.io/kubernetes, k8s.io/kubernetes

    Summary

    Kubernetes kubectl cp Vulnerable to Symlink Attack

    Published
    18 May 2021
    GHSA-m6wg-2mwg-4rfq
    Fix available
    Packages

    github.com/proglottis/gpgme

    Summary

    GPGME Go wrapper contains Use After Free

    Published
    18 May 2021
    GHSA-ffhg-7mh4-33c4
    Fix available
    Packages

    golang.org/x/crypto

    Summary

    Improper Verification of Cryptographic Signature in golang.org/x/crypto

    Published
    18 May 2021
    USN-4959-1
    Fix available
    Packages

    gst-plugins-base1.0, gst-plugins-base1.0, gst-plugins-base1.0

    Summary

    gst-plugins-base1.0 vulnerability

    Published
    18 May 2021
    CVE-2021-32238
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    CVE-2020-24026
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    Packages

    cflow, cflow, cflow

    Summary

    Published
    18 May 2021
    CVE-2020-23856
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    CVE-2020-23852
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    CVE-2020-23851
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    UBUNTU-CVE-2020-23856
    No fix available
    Packages

    cflow, cflow, cflow, cflow, cflow, cflow, cflow

    Summary

    Published
    18 May 2021
    USN-4957-2
    Fix available
    Packages

    djvulibre

    Summary

    djvulibre vulnerabilities

    Published
    18 May 2021
    Packages

    mpv, mpv, mpv

    Summary

    Published
    18 May 2021
    CVE-2021-30145
    Fix available
    Packages

    Summary

    Published
    18 May 2021
    CVE-2020-20254
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    CVE-2020-20253
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    UBUNTU-CVE-2021-30145
    No fix available
    Packages

    mpv, mpv, mpv, mpv

    Summary

    Published
    18 May 2021
    CVE-2021-22117
    Fix available
    Packages

    Summary

    Published
    18 May 2021
    SUSE-SU-2021:1625-1
    Fix available
    Packages

    kernel-rt

    Summary

    Security update for the Linux Kernel

    Published
    18 May 2021
    CVE-2021-3531
    Fix available
    Packages

    Summary

    Published
    18 May 2021
    Packages

    ceph, ceph, ceph

    Summary

    Published
    18 May 2021
    Packages

    libxml2, libxml2, libxml2

    Summary

    Published
    18 May 2021
    CVE-2021-3518
    Fix available
    Packages

    ,

    Summary

    Published
    18 May 2021
    Packages

    libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2, libxml2

    Summary

    Published
    18 May 2021
    CVE-2021-31827
    No fix available
    Packages

    Summary

    Published
    18 May 2021
    Packages

    openldap, openldap, openldap

    Summary

    Published
    18 May 2021
    Packages

    openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap, openldap

    Summary

    Published
    18 May 2021
    CVE-2020-25709
    Fix available
    Packages

    Summary

    Published
    18 May 2021