{"grype_matches":[{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1d-0+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3711","versionConstraint":"< 1.1.1d-0+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3711","fix":{"state":"fixed","versions":["1.1.1d-0+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1d-0+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3711","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3711","date":"2026-10-08","epss":0.87816,"percentile":0.9976}],"risk":82.54704000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4963-1","link":"https://security-tracker.debian.org/tracker/DSA-4963-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3711","description":"In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an application will call this function twice. The first time, on entry, the \"out\" parameter can be NULL and, on exit, the \"outlen\" parameter is populated with the buffer size required to hold the decrypted plaintext. The application can then allocate a sufficiently sized buffer and call EVP_PKEY_decrypt() again, but this time passing a non-NULL value for the \"out\" parameter. A bug in the implementation of the SM2 decryption code means that the calculation of the buffer size required to hold the plaintext returned by the first call to EVP_PKEY_decrypt() can be smaller than the actual size required by the second call. This can lead to a buffer overflow when EVP_PKEY_decrypt() is called by the application a second time with a buffer that is too small. A malicious attacker who is able present SM2 content for decryption to an application could cause attacker chosen data to overflow the buffer by up to a maximum of 62 bytes altering the contents of other data held after the buffer, possibly changing application behaviour or causing the application to crash. The location of the buffer is application dependent but is typically heap allocated. Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k)."},"relatedVulnerabilities":[{"id":"CVE-2021-3711","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3711","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3711","date":"2026-10-08","epss":0.87816,"percentile":0.9976}],"urls":["http://www.openwall.com/lists/oss-security/2021/08/26/2","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=59f5e75f3bced8fc0e130d72a3f582cf7b480b46","https://lists.apache.org/thread.html/r18995de860f0e63635f3008fd2a6aca82394249476d21691e7c59c9e%40%3Cdev.tomcat.apache.org%3E","https://lists.apache.org/thread.html/rad5d9f83f0d11fb3f8bb148d179b8a9ad7c6a17f18d70e5805a713d1%40%3Cdev.tomcat.apache.org%3E","https://security.gentoo.org/glsa/202209-02","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20210827-0010/","https://security.netapp.com/advisory/ntap-20211022-0003/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-4963","https://www.openssl.org/news/secadv/20210824.txt","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html","https://www.tenable.com/security/tns-2021-16","https://www.tenable.com/security/tns-2022-02"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3711","description":"In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an application will call this function twice. The first time, on entry, the \"out\" parameter can be NULL and, on exit, the \"outlen\" parameter is populated with the buffer size required to hold the decrypted plaintext. The application can then allocate a sufficiently sized buffer and call EVP_PKEY_decrypt() again, but this time passing a non-NULL value for the \"out\" parameter. A bug in the implementation of the SM2 decryption code means that the calculation of the buffer size required to hold the plaintext returned by the first call to EVP_PKEY_decrypt() can be smaller than the actual size required by the second call. This can lead to a buffer overflow when EVP_PKEY_decrypt() is called by the application a second time with a buffer that is too small. A malicious attacker who is able present SM2 content for decryption to an application could cause attacker chosen data to overflow the buffer by up to a maximum of 62 bytes altering the contents of other data held after the buffer, possibly changing application behaviour or causing the application to crash. The location of the buffer is application dependent but is typically heap allocated. Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k)."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1d-0+deb10u7"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-3711","versionConstraint":"< 1.1.1d-0+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3711","fix":{"state":"fixed","versions":["1.1.1d-0+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1d-0+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3711","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3711","date":"2026-10-08","epss":0.87816,"percentile":0.9976}],"risk":82.54704000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4963-1","link":"https://security-tracker.debian.org/tracker/DSA-4963-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3711","description":"In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an application will call this function twice. The first time, on entry, the \"out\" parameter can be NULL and, on exit, the \"outlen\" parameter is populated with the buffer size required to hold the decrypted plaintext. The application can then allocate a sufficiently sized buffer and call EVP_PKEY_decrypt() again, but this time passing a non-NULL value for the \"out\" parameter. A bug in the implementation of the SM2 decryption code means that the calculation of the buffer size required to hold the plaintext returned by the first call to EVP_PKEY_decrypt() can be smaller than the actual size required by the second call. This can lead to a buffer overflow when EVP_PKEY_decrypt() is called by the application a second time with a buffer that is too small. A malicious attacker who is able present SM2 content for decryption to an application could cause attacker chosen data to overflow the buffer by up to a maximum of 62 bytes altering the contents of other data held after the buffer, possibly changing application behaviour or causing the application to crash. The location of the buffer is application dependent but is typically heap allocated. Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k)."},"relatedVulnerabilities":[{"id":"CVE-2021-3711","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3711","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3711","date":"2026-10-08","epss":0.87816,"percentile":0.9976}],"urls":["http://www.openwall.com/lists/oss-security/2021/08/26/2","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=59f5e75f3bced8fc0e130d72a3f582cf7b480b46","https://lists.apache.org/thread.html/r18995de860f0e63635f3008fd2a6aca82394249476d21691e7c59c9e%40%3Cdev.tomcat.apache.org%3E","https://lists.apache.org/thread.html/rad5d9f83f0d11fb3f8bb148d179b8a9ad7c6a17f18d70e5805a713d1%40%3Cdev.tomcat.apache.org%3E","https://security.gentoo.org/glsa/202209-02","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20210827-0010/","https://security.netapp.com/advisory/ntap-20211022-0003/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-4963","https://www.openssl.org/news/secadv/20210824.txt","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html","https://www.tenable.com/security/tns-2021-16","https://www.tenable.com/security/tns-2022-02"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3711","description":"In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an application will call this function twice. The first time, on entry, the \"out\" parameter can be NULL and, on exit, the \"outlen\" parameter is populated with the buffer size required to hold the decrypted plaintext. The application can then allocate a sufficiently sized buffer and call EVP_PKEY_decrypt() again, but this time passing a non-NULL value for the \"out\" parameter. A bug in the implementation of the SM2 decryption code means that the calculation of the buffer size required to hold the plaintext returned by the first call to EVP_PKEY_decrypt() can be smaller than the actual size required by the second call. This can lead to a buffer overflow when EVP_PKEY_decrypt() is called by the application a second time with a buffer that is too small. A malicious attacker who is able present SM2 content for decryption to an application could cause attacker chosen data to overflow the buffer by up to a maximum of 62 bytes altering the contents of other data held after the buffer, possibly changing application behaviour or causing the application to crash. The location of the buffer is application dependent but is typically heap allocated. Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k)."}]},{"artifact":{"id":"0ee3c902a7004593","cpes":["cpe:2.3:a:libnghttp2-14:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2-14:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2_14:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2_14:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libnghttp2-14","purl":"pkg:deb/debian/libnghttp2-14@1.36.0-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=nghttp2","type":"deb","version":"1.36.0-2+deb10u1","language":"","licenses":["BSD-2-clause","Expat","GPL-3","GPL-3+","MIT","SIL-OFL-1.1","all-permissive"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libnghttp2-14/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libnghttp2-14/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libnghttp2-14:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libnghttp2-14:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"nghttp2"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.36.0-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-44487","versionConstraint":"< 1.36.0-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"nghttp2","version":"1.36.0-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-44487","fix":{"state":"fixed","versions":["1.36.0-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.36.0-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-44487","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-44487","date":"2026-10-08","epss":0.99999,"percentile":0.99998}],"risk":78.75000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-44487","description":"The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.","knownExploited":[{"cve":"CVE-2023-44487","cwes":["CWE-400"],"urls":["https://blog.cloudflare.com/technical-breakdown-http2-rapid-reset-ddos-attack/","https://nvd.nist.gov/vuln/detail/CVE-2023-44487"],"notes":"This vulnerability affects a common open-source component, third-party library, or protocol used by different products. For more information, please see: HTTP/2 Rapid Reset Vulnerability, CVE-2023-44487 | CISA: https://www.cisa.gov/news-events/alerts/2023/10/10/http2-rapid-reset-vulnerability-cve-2023-44487","dueDate":"2023-10-31","product":"HTTP/2","dateAdded":"2023-10-10","vendorProject":"IETF","requiredAction":"Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.","knownRansomwareCampaignUse":"unknown"}]},"relatedVulnerabilities":[{"id":"CVE-2023-44487","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-44487","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-44487","date":"2026-10-08","epss":0.99999,"percentile":0.99998}],"urls":["http://www.openwall.com/lists/oss-security/2023/10/10/6","http://www.openwall.com/lists/oss-security/2023/10/10/7","http://www.openwall.com/lists/oss-security/2023/10/13/4","http://www.openwall.com/lists/oss-security/2023/10/13/9","http://www.openwall.com/lists/oss-security/2023/10/18/4","http://www.openwall.com/lists/oss-security/2023/10/18/8","http://www.openwall.com/lists/oss-security/2023/10/19/6","http://www.openwall.com/lists/oss-security/2023/10/20/8","https://access.redhat.com/security/cve/cve-2023-44487","https://arstechnica.com/security/2023/10/how-ddosers-used-the-http-2-protocol-to-deliver-attacks-of-unprecedented-size/","https://aws.amazon.com/security/security-bulletins/AWS-2023-011/","https://blog.cloudflare.com/technical-breakdown-http2-rapid-reset-ddos-attack/","https://blog.cloudflare.com/zero-day-rapid-reset-http2-record-breaking-ddos-attack/","https://blog.litespeedtech.com/2023/10/11/rapid-reset-http-2-vulnerablilty/","https://blog.qualys.com/vulnerabilities-threat-research/2023/10/10/cve-2023-44487-http-2-rapid-reset-attack","https://blog.vespa.ai/cve-2023-44487/","https://bugzilla.proxmox.com/show_bug.cgi?id=4988","https://bugzilla.redhat.com/show_bug.cgi?id=2242803","https://bugzilla.suse.com/show_bug.cgi?id=1216123","https://cgit.freebsd.org/ports/commit/?id=c64c329c2c1752f46b73e3e6ce9f4329be6629f9","https://cloud.google.com/blog/products/identity-security/google-cloud-mitigated-largest-ddos-attack-peaking-above-398-million-rps/","https://cloud.google.com/blog/products/identity-security/how-it-works-the-novel-http2-rapid-reset-ddos-attack","https://community.traefik.io/t/is-traefik-vulnerable-to-cve-2023-44487/20125","https://discuss.hashicorp.com/t/hcsec-2023-32-vault-consul-and-boundary-affected-by-http-2-rapid-reset-denial-of-service-vulnerability-cve-2023-44487/59715","https://edg.io/lp/blog/resets-leaks-ddos-and-the-tale-of-a-hidden-cve","https://forums.swift.org/t/swift-nio-http2-security-update-cve-2023-44487-http-2-dos/67764","https://gist.github.com/adulau/7c2bfb8e9cdbe4b35a5e131c66a0c088","https://github.com/Azure/AKS/issues/3947","https://github.com/Kong/kong/discussions/11741","https://github.com/advisories/GHSA-qppj-fm5r-hxr3","https://github.com/advisories/GHSA-vx74-f528-fxqg","https://github.com/advisories/GHSA-xpw8-rcwv-8f8p","https://github.com/akka/akka-http/issues/4323","https://github.com/alibaba/tengine/issues/1872","https://github.com/apache/apisix/issues/10320","https://github.com/apache/httpd-site/pull/10","https://github.com/apache/httpd/blob/afcdbeebbff4b0c50ea26cdd16e178c0d1f24152/modules/http2/h2_mplx.c#L1101-L1113","https://github.com/apache/tomcat/tree/main/java/org/apache/coyote/http2","https://github.com/apache/trafficserver/pull/10564","https://github.com/arkrwn/PoC/tree/main/CVE-2023-44487","https://github.com/bcdannyboy/CVE-2023-44487","https://github.com/caddyserver/caddy/issues/5877","https://github.com/caddyserver/caddy/releases/tag/v2.7.5","https://github.com/dotnet/announcements/issues/277","https://github.com/dotnet/core/blob/e4613450ea0da7fd2fc6b61dfb2c1c1dec1ce9ec/release-notes/6.0/6.0.23/6.0.23.md?plain=1#L73","https://github.com/eclipse/jetty.project/issues/10679","https://github.com/envoyproxy/envoy/pull/30055","https://github.com/etcd-io/etcd/issues/16740","https://github.com/facebook/proxygen/pull/466","https://github.com/golang/go/issues/63417","https://github.com/grpc/grpc-go/pull/6703","https://github.com/grpc/grpc/releases/tag/v1.59.2","https://github.com/h2o/h2o/pull/3291","https://github.com/h2o/h2o/security/advisories/GHSA-2m7v-gc89-fjqf","https://github.com/haproxy/haproxy/issues/2312","https://github.com/icing/mod_h2/blob/0a864782af0a942aa2ad4ed960a6b32cd35bcf0a/mod_http2/README.md?plain=1#L239-L244","https://github.com/junkurihara/rust-rpxy/issues/97","https://github.com/kazu-yamamoto/http2/commit/f61d41a502bd0f60eb24e1ce14edc7b6df6722a1","https://github.com/kazu-yamamoto/http2/issues/93","https://github.com/kubernetes/kubernetes/pull/121120","https://github.com/line/armeria/pull/5232","https://github.com/linkerd/website/pull/1695/commits/4b9c6836471bc8270ab48aae6fd2181bc73fd632","https://github.com/micrictor/http2-rst-stream","https://github.com/microsoft/CBL-Mariner/pull/6381","https://github.com/netty/netty/commit/58f75f665aa81a8cbcf6ffa74820042a285c5e61","https://github.com/nghttp2/nghttp2/pull/1961","https://github.com/nghttp2/nghttp2/releases/tag/v1.57.0","https://github.com/ninenines/cowboy/issues/1615","https://github.com/nodejs/node/pull/50121","https://github.com/openresty/openresty/issues/930","https://github.com/opensearch-project/data-prepper/issues/3474","https://github.com/oqtane/oqtane.framework/discussions/3367","https://github.com/projectcontour/contour/pull/5826","https://github.com/tempesta-tech/tempesta/issues/1986","https://github.com/varnishcache/varnish-cache/issues/3996","https://groups.google.com/g/golang-announce/c/iNNxDTCjZvo","https://istio.io/latest/news/security/istio-security-2023-004/","https://linkerd.io/2023/10/12/linkerd-cve-2023-44487/","https://lists.apache.org/thread/5py8h42mxfsn8l1wy6o41xwhsjlsd87q","https://lists.debian.org/debian-lts-announce/2023/10/msg00020.html","https://lists.debian.org/debian-lts-announce/2023/10/msg00023.html","https://lists.debian.org/debian-lts-announce/2023/10/msg00024.html","https://lists.debian.org/debian-lts-announce/2023/10/msg00045.html","https://lists.debian.org/debian-lts-announce/2023/10/msg00047.html","https://lists.debian.org/debian-lts-announce/2023/11/msg00001.html","https://lists.debian.org/debian-lts-announce/2023/11/msg00012.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2MBEPPC36UBVOZZNAXFHKLFGSLCMN5LI/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3N4NJ7FR4X4FPZUGNTQAPSTVB2HB2Y4A/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BFQD3KUEMFBHPAPBGLWQC34L4OWL5HAZ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CLB4TW7KALB3EEQWNWCN7OUIWWVWWCG2/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/E72T67UPDRXHIDLO3OROR25YAMN4GGW5/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FNA62Q767CFAFHBCDKYNPBMZWB7TWYVU/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HT7T2R4MQKLIF4ODV4BDLPARWFPCJ5CZ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JIZSEFC3YKCGABA2BZW6ZJRMDZJMB7PJ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JMEXY22BFG5Q64HQCM5CK2Q7KDKVV4TY/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KSEGD2IWKNUO3DWY4KQGUQM5BISRWHQE/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LKYHSZQFDNR7RSA7LHVLLIAQMVYCUGBG/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LNMZJCDHGLJJLXO4OXWJMTVQRNWOC7UL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VHUHTSXLXGXS7JYKBXTA3VINUPHTNGVU/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VSRDIV77HNKUSM7SJC5BKE5JSHLHU2NK/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WE2I52RHNNU42PX6NZ2RBUHSFFJ2LVZX/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WLPRQ5TWUQQXYWBJM7ECYDAIL2YVKIUH/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/X6QXN4ORIVF6XBW4WWFE7VNPVC74S45Y/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XFOIBB4YFICHDM7IBOP7PWXW3FX4HLL2/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZB43REMKRQR62NJEI7I5NQ4FSXNLBKRT/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZKQSIKIAT5TJ3WSLU3RDBQ35YX4GY4V3/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZLU6U2R2IC2K64NDPNMV55AUAO65MAF4/","https://lists.w3.org/Archives/Public/ietf-http-wg/2023OctDec/0025.html","https://mailman.nginx.org/pipermail/nginx-devel/2023-October/S36Q5HBXR7CAIMPLLPRSSSYR4PCMWILK.html","https://martinthomson.github.io/h2-stream-limits/draft-thomson-httpbis-h2-stream-limits.html","https://msrc.microsoft.com/blog/2023/10/microsoft-response-to-distributed-denial-of-service-ddos-attacks-against-http/2/","https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-44487","https://my.f5.com/manage/s/article/K000137106","https://netty.io/news/2023/10/10/4-1-100-Final.html","https://news.ycombinator.com/item?id=37830987","https://news.ycombinator.com/item?id=37830998","https://news.ycombinator.com/item?id=37831062","https://news.ycombinator.com/item?id=37837043","https://openssf.org/blog/2023/10/10/http-2-rapid-reset-vulnerability-highlights-need-for-rapid-response/","https://seanmonstar.com/post/730794151136935936/hyper-http2-rapid-reset-unaffected","https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-http2-reset-d8Kf32vZ","https://security.gentoo.org/glsa/202311-09","https://security.netapp.com/advisory/ntap-20231016-0001/","https://security.netapp.com/advisory/ntap-20240426-0007/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://security.netapp.com/advisory/ntap-20240621-0007/","https://security.paloaltonetworks.com/CVE-2023-44487","https://tomcat.apache.org/security-10.html#Fixed_in_Apache_Tomcat_10.1.14","https://ubuntu.com/security/CVE-2023-44487","https://www.bleepingcomputer.com/news/security/new-http-2-rapid-reset-zero-day-attack-breaks-ddos-records/","https://www.cisa.gov/news-events/alerts/2023/10/10/http2-rapid-reset-vulnerability-cve-2023-44487","https://www.darkreading.com/cloud/internet-wide-zero-day-bug-fuels-largest-ever-ddos-event","https://www.debian.org/security/2023/dsa-5521","https://www.debian.org/security/2023/dsa-5522","https://www.debian.org/security/2023/dsa-5540","https://www.debian.org/security/2023/dsa-5549","https://www.debian.org/security/2023/dsa-5558","https://www.debian.org/security/2023/dsa-5570","https://www.haproxy.com/blog/haproxy-is-not-affected-by-the-http-2-rapid-reset-attack-cve-2023-44487","https://www.netlify.com/blog/netlify-successfully-mitigates-cve-2023-44487/","https://www.nginx.com/blog/http-2-rapid-reset-attack-impacting-f5-nginx-products/","https://www.openwall.com/lists/oss-security/2023/10/10/6","https://www.phoronix.com/news/HTTP2-Rapid-Reset-Attack","https://www.theregister.com/2023/10/10/http2_rapid_reset_zeroday/","http://www.openwall.com/lists/oss-security/2025/08/13/6","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2MBEPPC36UBVOZZNAXFHKLFGSLCMN5LI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3N4NJ7FR4X4FPZUGNTQAPSTVB2HB2Y4A/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BFQD3KUEMFBHPAPBGLWQC34L4OWL5HAZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CLB4TW7KALB3EEQWNWCN7OUIWWVWWCG2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/E72T67UPDRXHIDLO3OROR25YAMN4GGW5/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FNA62Q767CFAFHBCDKYNPBMZWB7TWYVU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HT7T2R4MQKLIF4ODV4BDLPARWFPCJ5CZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JIZSEFC3YKCGABA2BZW6ZJRMDZJMB7PJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JMEXY22BFG5Q64HQCM5CK2Q7KDKVV4TY/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KSEGD2IWKNUO3DWY4KQGUQM5BISRWHQE/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LKYHSZQFDNR7RSA7LHVLLIAQMVYCUGBG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LNMZJCDHGLJJLXO4OXWJMTVQRNWOC7UL/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VHUHTSXLXGXS7JYKBXTA3VINUPHTNGVU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VSRDIV77HNKUSM7SJC5BKE5JSHLHU2NK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WE2I52RHNNU42PX6NZ2RBUHSFFJ2LVZX/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WLPRQ5TWUQQXYWBJM7ECYDAIL2YVKIUH/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X6QXN4ORIVF6XBW4WWFE7VNPVC74S45Y/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XFOIBB4YFICHDM7IBOP7PWXW3FX4HLL2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZB43REMKRQR62NJEI7I5NQ4FSXNLBKRT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZKQSIKIAT5TJ3WSLU3RDBQ35YX4GY4V3/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZLU6U2R2IC2K64NDPNMV55AUAO65MAF4/","https://www.vicarius.io/vsociety/posts/rapid-reset-cve-2023-44487-dos-in-http2-understanding-the-root-cause","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-341067.html","https://cert-portal.siemens.com/productcert/html/ssa-784301.html","https://cert-portal.siemens.com/productcert/html/ssa-832273.html","https://cert-portal.siemens.com/productcert/html/ssa-915275.html","https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-44487","https://github.com/envoyproxy/envoy/security/advisories/GHSA-jhv4-f7mr-xx76","https://github.com/kubernetes/ingress-nginx/blob/4b5c5efe2508dc915a48c54de7f23912ff2ec695/changelog/controller-1.9.3.md?plain=1#L15","https://varnish-cache.org/releases/rel6.0.12.html#rel6-0-12","https://varnish-cache.org/releases/rel7.3.1.html#rel7-3-1","https://varnish-cache.org/releases/rel7.4.2.html#rel7-4-2"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-44487","description":"The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.","knownExploited":[{"cve":"CVE-2023-44487","cwes":["CWE-400"],"urls":["https://blog.cloudflare.com/technical-breakdown-http2-rapid-reset-ddos-attack/","https://nvd.nist.gov/vuln/detail/CVE-2023-44487"],"notes":"This vulnerability affects a common open-source component, third-party library, or protocol used by different products. For more information, please see: HTTP/2 Rapid Reset Vulnerability, CVE-2023-44487 | CISA: https://www.cisa.gov/news-events/alerts/2023/10/10/http2-rapid-reset-vulnerability-cve-2023-44487","dueDate":"2023-10-31","product":"HTTP/2","dateAdded":"2023-10-10","vendorProject":"IETF","requiredAction":"Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.","knownRansomwareCampaignUse":"unknown"}]}]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-50387","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-50387","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-50387","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-50387","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-50387","date":"2026-10-08","epss":0.99988,"percentile":0.99984}],"risk":74.991,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-50387","description":"Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the \"KeyTrap\" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records."},"relatedVulnerabilities":[{"id":"CVE-2023-50387","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-50387","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-50387","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-50387","date":"2026-10-08","epss":0.99988,"percentile":0.99984}],"urls":["http://www.openwall.com/lists/oss-security/2024/02/16/2","http://www.openwall.com/lists/oss-security/2024/02/16/3","https://access.redhat.com/security/cve/CVE-2023-50387","https://bugzilla.suse.com/show_bug.cgi?id=1219823","https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html","https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1","https://kb.isc.org/docs/cve-2023-50387","https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html","https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/","https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html","https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-50387","https://news.ycombinator.com/item?id=39367411","https://news.ycombinator.com/item?id=39372384","https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/","https://security.netapp.com/advisory/ntap-20240307-0007/","https://www.athene-center.de/aktuelles/key-trap","https://www.athene-center.de/fileadmin/content/PDF/Technical_Report_KeyTrap.pdf","https://www.isc.org/blogs/2024-bind-security-release/","https://www.securityweek.com/keytrap-dns-attack-could-disable-large-parts-of-internet-researchers/","https://www.theregister.com/2024/02/13/dnssec_vulnerability_internet/","https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-50387","description":"Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the \"KeyTrap\" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-50387","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-50387","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-50387","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-50387","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-50387","date":"2026-10-08","epss":0.99988,"percentile":0.99984}],"risk":74.991,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-50387","description":"Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the \"KeyTrap\" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records."},"relatedVulnerabilities":[{"id":"CVE-2023-50387","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-50387","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-50387","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-50387","date":"2026-10-08","epss":0.99988,"percentile":0.99984}],"urls":["http://www.openwall.com/lists/oss-security/2024/02/16/2","http://www.openwall.com/lists/oss-security/2024/02/16/3","https://access.redhat.com/security/cve/CVE-2023-50387","https://bugzilla.suse.com/show_bug.cgi?id=1219823","https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html","https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1","https://kb.isc.org/docs/cve-2023-50387","https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html","https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/","https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html","https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-50387","https://news.ycombinator.com/item?id=39367411","https://news.ycombinator.com/item?id=39372384","https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/","https://security.netapp.com/advisory/ntap-20240307-0007/","https://www.athene-center.de/aktuelles/key-trap","https://www.athene-center.de/fileadmin/content/PDF/Technical_Report_KeyTrap.pdf","https://www.isc.org/blogs/2024-bind-security-release/","https://www.securityweek.com/keytrap-dns-attack-could-disable-large-parts-of-internet-researchers/","https://www.theregister.com/2024/02/13/dnssec_vulnerability_internet/","https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-50387","description":"Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the \"KeyTrap\" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records."}]},{"artifact":{"id":"dfdab1b7031e1625","cpes":["cpe:2.3:a:openssh-client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh-client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*"],"name":"openssh-client","purl":"pkg:deb/debian/openssh-client@1%3A7.9p1-10%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=openssh","type":"deb","version":"1:7.9p1-10+deb10u2","language":"","licenses":["BSD-2-clause","BSD-3-clause","Beer-ware","Expat-with-advertising-restriction","Mazieres-BSD-style","OpenSSH","Powell-BSD-style","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssh-client/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/openssh-client/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.list"},{"path":"/var/lib/dpkg/info/openssh-client.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postinst"},{"path":"/var/lib/dpkg/info/openssh-client.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postrm"},{"path":"/var/lib/dpkg/info/openssh-client.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.preinst"},{"path":"/var/lib/dpkg/info/openssh-client.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.prerm"}],"upstreams":[{"name":"openssh"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:7.9p1-10+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-38408","versionConstraint":"< 1:7.9p1-10+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssh","version":"1:7.9p1-10+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-38408","fix":{"state":"fixed","versions":["1:7.9p1-10+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:7.9p1-10+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-38408","cwe":"CWE-428","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-38408","cwe":"CWE-428","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-38408","date":"2026-10-08","epss":0.797,"percentile":0.99601}],"risk":74.918,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-38408","description":"The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009."},"relatedVulnerabilities":[{"id":"CVE-2023-38408","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-38408","cwe":"CWE-428","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-38408","cwe":"CWE-428","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-38408","date":"2026-10-08","epss":0.797,"percentile":0.99601}],"urls":["http://packetstormsecurity.com/files/173661/OpenSSH-Forwarded-SSH-Agent-Remote-Code-Execution.html","http://www.openwall.com/lists/oss-security/2023/07/20/1","http://www.openwall.com/lists/oss-security/2023/07/20/2","http://www.openwall.com/lists/oss-security/2023/09/22/11","http://www.openwall.com/lists/oss-security/2023/09/22/9","https://blog.qualys.com/vulnerabilities-threat-research/2023/07/19/cve-2023-38408-remote-code-execution-in-opensshs-forwarded-ssh-agent","https://github.com/openbsd/src/commit/7bc29a9d5cd697290aa056e94ecee6253d3425f8","https://github.com/openbsd/src/commit/f03a4faa55c4ce0818324701dadbf91988d7351d","https://github.com/openbsd/src/commit/f8f5a6b003981bb824329dc987d101977beda7ca","https://lists.debian.org/debian-lts-announce/2023/08/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CEBTJJINE2I3FHAUKKNQWMFGYMLSMWKQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RAXVQS6ZYTULFAK3TEJHRLKZALJS3AOU/","https://news.ycombinator.com/item?id=36790196","https://security.gentoo.org/glsa/202307-01","https://security.netapp.com/advisory/ntap-20230803-0010/","https://support.apple.com/kb/HT213940","https://www.openssh.com/security.html","https://www.openssh.com/txt/release-9.3p2","https://www.qualys.com/2023/07/19/cve-2023-38408/rce-openssh-forwarded-ssh-agent.txt","https://www.vicarius.io/vsociety/posts/exploring-opensshs-agent-forwarding-rce-cve-2023-38408"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-38408","description":"The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarded to an attacker-controlled system. (Code in /usr/lib is not necessarily safe for loading into ssh-agent.) NOTE: this issue exists because of an incomplete fix for CVE-2016-10009."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-2068","versionConstraint":"< 1.1.1n-0+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-2068","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":5.9,"exploitabilityScore":1.4},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2068","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-2068","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-2068","date":"2026-10-08","epss":0.95404,"percentile":0.99869}],"risk":70.59896,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5169-1","link":"https://security-tracker.debian.org/tracker/DSA-5169-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-2068","description":"In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by code review. When the CVE-2022-1292 was fixed it was not discovered that there are other places in the script where the file names of certificates being hashed were possibly passed to a command executed through the shell. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.4 (Affected 3.0.0,3.0.1,3.0.2,3.0.3). Fixed in OpenSSL 1.1.1p (Affected 1.1.1-1.1.1o). Fixed in OpenSSL 1.0.2zf (Affected 1.0.2-1.0.2ze)."},"relatedVulnerabilities":[{"id":"CVE-2022-2068","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":5.9,"exploitabilityScore":1.4},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","metrics":{"baseScore":10,"impactScore":10.1,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2068","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-2068","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-2068","date":"2026-10-08","epss":0.95404,"percentile":0.99869}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-332410.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=2c9c35870601b4a44d86ddbf512b38df38285cfa","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=7a9c027159fe9e1bbc2cd38a8a2914bff0d5abd9","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=9639817dac8bbbaa64d09efad7464ccc405527c7","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6WZZBKUHQFGSKGNXXKICSRPL7AMVW5M5/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VCMNWKERPBKOEBNL7CLTTX3ZZCZLH7XA/","https://security.netapp.com/advisory/ntap-20220707-0008/","https://www.debian.org/security/2022/dsa-5169","https://www.openssl.org/news/secadv/20220621.txt","http://seclists.org/fulldisclosure/2024/Nov/0","https://gitlab.com/fraf0/cve-2022-1292-re_score-analysis"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-2068","description":"In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by code review. When the CVE-2022-1292 was fixed it was not discovered that there are other places in the script where the file names of certificates being hashed were possibly passed to a command executed through the shell. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.4 (Affected 3.0.0,3.0.1,3.0.2,3.0.3). Fixed in OpenSSL 1.1.1p (Affected 1.1.1-1.1.1o). Fixed in OpenSSL 1.0.2zf (Affected 1.0.2-1.0.2ze)."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-2068","versionConstraint":"< 1.1.1n-0+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-2068","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":5.9,"exploitabilityScore":1.4},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2068","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-2068","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-2068","date":"2026-10-08","epss":0.95404,"percentile":0.99869}],"risk":70.59896,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5169-1","link":"https://security-tracker.debian.org/tracker/DSA-5169-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-2068","description":"In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by code review. When the CVE-2022-1292 was fixed it was not discovered that there are other places in the script where the file names of certificates being hashed were possibly passed to a command executed through the shell. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.4 (Affected 3.0.0,3.0.1,3.0.2,3.0.3). Fixed in OpenSSL 1.1.1p (Affected 1.1.1-1.1.1o). Fixed in OpenSSL 1.0.2zf (Affected 1.0.2-1.0.2ze)."},"relatedVulnerabilities":[{"id":"CVE-2022-2068","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":5.9,"exploitabilityScore":1.4},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","metrics":{"baseScore":10,"impactScore":10.1,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2068","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-2068","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-2068","date":"2026-10-08","epss":0.95404,"percentile":0.99869}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-332410.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=2c9c35870601b4a44d86ddbf512b38df38285cfa","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=7a9c027159fe9e1bbc2cd38a8a2914bff0d5abd9","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=9639817dac8bbbaa64d09efad7464ccc405527c7","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6WZZBKUHQFGSKGNXXKICSRPL7AMVW5M5/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VCMNWKERPBKOEBNL7CLTTX3ZZCZLH7XA/","https://security.netapp.com/advisory/ntap-20220707-0008/","https://www.debian.org/security/2022/dsa-5169","https://www.openssl.org/news/secadv/20220621.txt","http://seclists.org/fulldisclosure/2024/Nov/0","https://gitlab.com/fraf0/cve-2022-1292-re_score-analysis"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-2068","description":"In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by code review. When the CVE-2022-1292 was fixed it was not discovered that there are other places in the script where the file names of certificates being hashed were possibly passed to a command executed through the shell. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.4 (Affected 3.0.0,3.0.1,3.0.2,3.0.3). Fixed in OpenSSL 1.1.1p (Affected 1.1.1-1.1.1o). Fixed in OpenSSL 1.0.2zf (Affected 1.0.2-1.0.2ze)."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-21300","versionConstraint":"< 1:2.20.1-2+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-21300","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.5,"impactScore":5.9,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-21300","cwe":"CWE-59","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2021-21300","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-21300","date":"2026-10-08","epss":0.88533,"percentile":0.99772}],"risk":66.39975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-21300","description":"Git is an open-source distributed revision control system. In affected versions of Git a specially crafted repository that contains symbolic links as well as files using a clean/smudge filter such as Git LFS, may cause just-checked out script to be executed while cloning onto a case-insensitive file system such as NTFS, HFS+ or APFS (i.e. the default file systems on Windows and macOS). Note that clean/smudge filters have to be configured for that. Git for Windows configures Git LFS by default, and is therefore vulnerable. The problem has been patched in the versions published on Tuesday, March 9th, 2021. As a workaound, if symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. Likewise, if no clean/smudge filters such as Git LFS are configured globally (i.e. _before_ cloning), the attack is foiled. As always, it is best to avoid cloning repositories from untrusted sources. The earliest impacted version is 2.14.2. The fix versions are: 2.30.1, 2.29.3, 2.28.1, 2.27.1, 2.26.3, 2.25.5, 2.24.4, 2.23.4, 2.22.5, 2.21.4, 2.20.5, 2.19.6, 2.18.5, 2.17.62.17.6."},"relatedVulnerabilities":[{"id":"CVE-2021-21300","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.5,"impactScore":5.9,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:P/I:P/A:P","metrics":{"baseScore":5.1,"impactScore":6.5,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N","metrics":{"baseScore":8,"impactScore":5.8,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-21300","cwe":"CWE-59","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2021-21300","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-21300","date":"2026-10-08","epss":0.88533,"percentile":0.99772}],"urls":["http://packetstormsecurity.com/files/163978/Git-LFS-Clone-Command-Execution.html","http://seclists.org/fulldisclosure/2021/Apr/60","http://www.openwall.com/lists/oss-security/2021/03/09/3","https://git-scm.com/docs/git-config#Documentation/git-config.txt-coresymlinks","https://git-scm.com/docs/gitattributes#_filter","https://github.com/git/git/commit/684dd4c2b414bcf648505e74498a608f28de4592","https://github.com/git/git/security/advisories/GHSA-8prw-h3cq-mghm","https://lists.debian.org/debian-lts-announce/2022/10/msg00014.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BBPNGLQSYJHLZZ37BO42YY6S5OTIF4L4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LCLJJLKKMS5WRFO6C475AOUZTWQLIARX/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LMXX2POK5X576BSDWSXGU7EIK6I72ERU/","https://lore.kernel.org/git/xmqqim6019yd.fsf%40gitster.c.googlers.com/","https://security.gentoo.org/glsa/202104-01","https://support.apple.com/kb/HT212320"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-21300","description":"Git is an open-source distributed revision control system. In affected versions of Git a specially crafted repository that contains symbolic links as well as files using a clean/smudge filter such as Git LFS, may cause just-checked out script to be executed while cloning onto a case-insensitive file system such as NTFS, HFS+ or APFS (i.e. the default file systems on Windows and macOS). Note that clean/smudge filters have to be configured for that. Git for Windows configures Git LFS by default, and is therefore vulnerable. The problem has been patched in the versions published on Tuesday, March 9th, 2021. As a workaound, if symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. Likewise, if no clean/smudge filters such as Git LFS are configured globally (i.e. _before_ cloning), the attack is foiled. As always, it is best to avoid cloning repositories from untrusted sources. The earliest impacted version is 2.14.2. The fix versions are: 2.30.1, 2.29.3, 2.28.1, 2.27.1, 2.26.3, 2.25.5, 2.24.4, 2.23.4, 2.22.5, 2.21.4, 2.20.5, 2.19.6, 2.18.5, 2.17.62.17.6."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-21300","versionConstraint":"< 1:2.20.1-2+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-21300","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.5,"impactScore":5.9,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-21300","cwe":"CWE-59","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2021-21300","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-21300","date":"2026-10-08","epss":0.88533,"percentile":0.99772}],"risk":66.39975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-21300","description":"Git is an open-source distributed revision control system. In affected versions of Git a specially crafted repository that contains symbolic links as well as files using a clean/smudge filter such as Git LFS, may cause just-checked out script to be executed while cloning onto a case-insensitive file system such as NTFS, HFS+ or APFS (i.e. the default file systems on Windows and macOS). Note that clean/smudge filters have to be configured for that. Git for Windows configures Git LFS by default, and is therefore vulnerable. The problem has been patched in the versions published on Tuesday, March 9th, 2021. As a workaound, if symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. Likewise, if no clean/smudge filters such as Git LFS are configured globally (i.e. _before_ cloning), the attack is foiled. As always, it is best to avoid cloning repositories from untrusted sources. The earliest impacted version is 2.14.2. The fix versions are: 2.30.1, 2.29.3, 2.28.1, 2.27.1, 2.26.3, 2.25.5, 2.24.4, 2.23.4, 2.22.5, 2.21.4, 2.20.5, 2.19.6, 2.18.5, 2.17.62.17.6."},"relatedVulnerabilities":[{"id":"CVE-2021-21300","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.5,"impactScore":5.9,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:P/I:P/A:P","metrics":{"baseScore":5.1,"impactScore":6.5,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N","metrics":{"baseScore":8,"impactScore":5.8,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-21300","cwe":"CWE-59","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2021-21300","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-21300","date":"2026-10-08","epss":0.88533,"percentile":0.99772}],"urls":["http://packetstormsecurity.com/files/163978/Git-LFS-Clone-Command-Execution.html","http://seclists.org/fulldisclosure/2021/Apr/60","http://www.openwall.com/lists/oss-security/2021/03/09/3","https://git-scm.com/docs/git-config#Documentation/git-config.txt-coresymlinks","https://git-scm.com/docs/gitattributes#_filter","https://github.com/git/git/commit/684dd4c2b414bcf648505e74498a608f28de4592","https://github.com/git/git/security/advisories/GHSA-8prw-h3cq-mghm","https://lists.debian.org/debian-lts-announce/2022/10/msg00014.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BBPNGLQSYJHLZZ37BO42YY6S5OTIF4L4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LCLJJLKKMS5WRFO6C475AOUZTWQLIARX/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LMXX2POK5X576BSDWSXGU7EIK6I72ERU/","https://lore.kernel.org/git/xmqqim6019yd.fsf%40gitster.c.googlers.com/","https://security.gentoo.org/glsa/202104-01","https://support.apple.com/kb/HT212320"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-21300","description":"Git is an open-source distributed revision control system. In affected versions of Git a specially crafted repository that contains symbolic links as well as files using a clean/smudge filter such as Git LFS, may cause just-checked out script to be executed while cloning onto a case-insensitive file system such as NTFS, HFS+ or APFS (i.e. the default file systems on Windows and macOS). Note that clean/smudge filters have to be configured for that. Git for Windows configures Git LFS by default, and is therefore vulnerable. The problem has been patched in the versions published on Tuesday, March 9th, 2021. As a workaound, if symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. Likewise, if no clean/smudge filters such as Git LFS are configured globally (i.e. _before_ cloning), the attack is foiled. As always, it is best to avoid cloning repositories from untrusted sources. The earliest impacted version is 2.14.2. The fix versions are: 2.30.1, 2.29.3, 2.28.1, 2.27.1, 2.26.3, 2.25.5, 2.24.4, 2.23.4, 2.22.5, 2.21.4, 2.20.5, 2.19.6, 2.18.5, 2.17.62.17.6."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-2961","versionConstraint":"< 2.28-10+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2961","fix":{"state":"fixed","versions":["2.28-10+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u3"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H","metrics":{"baseScore":7.3,"impactScore":4.8,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2961","cwe":"CWE-787","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-2961","date":"2026-10-08","epss":0.8833,"percentile":0.99769}],"risk":65.3642,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2961","description":"The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable."},"relatedVulnerabilities":[{"id":"CVE-2024-2961","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H","metrics":{"baseScore":7.3,"impactScore":4.8,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2961","cwe":"CWE-787","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-2961","date":"2026-10-08","epss":0.8833,"percentile":0.99769}],"urls":["http://www.openwall.com/lists/oss-security/2024/04/17/9","http://www.openwall.com/lists/oss-security/2024/04/18/4","http://www.openwall.com/lists/oss-security/2024/04/24/2","http://www.openwall.com/lists/oss-security/2024/05/27/1","http://www.openwall.com/lists/oss-security/2024/05/27/2","http://www.openwall.com/lists/oss-security/2024/05/27/3","http://www.openwall.com/lists/oss-security/2024/05/27/4","http://www.openwall.com/lists/oss-security/2024/05/27/5","http://www.openwall.com/lists/oss-security/2024/05/27/6","http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/05/msg00001.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BTJFBGHDYG5PEIFD5WSSSKSFZ2AZWC5N/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/P3I4KYS6EU6S7QZ47WFNTPVAHFIUQNEL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YAMJQI3Y6BHWV3CUTYBXOZONCUJNOB2Z/","https://security.netapp.com/advisory/ntap-20240531-0002/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0004","https://www.ambionics.io/blog/iconv-cve-2024-2961-p1","https://www.ambionics.io/blog/iconv-cve-2024-2961-p2","https://www.ambionics.io/blog/iconv-cve-2024-2961-p3","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2961","description":"The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-2961","versionConstraint":"< 2.28-10+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2961","fix":{"state":"fixed","versions":["2.28-10+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u3"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H","metrics":{"baseScore":7.3,"impactScore":4.8,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2961","cwe":"CWE-787","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-2961","date":"2026-10-08","epss":0.8833,"percentile":0.99769}],"risk":65.3642,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2961","description":"The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable."},"relatedVulnerabilities":[{"id":"CVE-2024-2961","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H","metrics":{"baseScore":7.3,"impactScore":4.8,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2961","cwe":"CWE-787","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-2961","date":"2026-10-08","epss":0.8833,"percentile":0.99769}],"urls":["http://www.openwall.com/lists/oss-security/2024/04/17/9","http://www.openwall.com/lists/oss-security/2024/04/18/4","http://www.openwall.com/lists/oss-security/2024/04/24/2","http://www.openwall.com/lists/oss-security/2024/05/27/1","http://www.openwall.com/lists/oss-security/2024/05/27/2","http://www.openwall.com/lists/oss-security/2024/05/27/3","http://www.openwall.com/lists/oss-security/2024/05/27/4","http://www.openwall.com/lists/oss-security/2024/05/27/5","http://www.openwall.com/lists/oss-security/2024/05/27/6","http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/05/msg00001.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BTJFBGHDYG5PEIFD5WSSSKSFZ2AZWC5N/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/P3I4KYS6EU6S7QZ47WFNTPVAHFIUQNEL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YAMJQI3Y6BHWV3CUTYBXOZONCUJNOB2Z/","https://security.netapp.com/advisory/ntap-20240531-0002/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0004","https://www.ambionics.io/blog/iconv-cve-2024-2961-p1","https://www.ambionics.io/blog/iconv-cve-2024-2961-p2","https://www.ambionics.io/blog/iconv-cve-2024-2961-p3","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2961","description":"The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-2961","versionConstraint":"< 2.28-10+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2961","fix":{"state":"fixed","versions":["2.28-10+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u3"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H","metrics":{"baseScore":7.3,"impactScore":4.8,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2961","cwe":"CWE-787","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-2961","date":"2026-10-08","epss":0.8833,"percentile":0.99769}],"risk":65.3642,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2961","description":"The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable."},"relatedVulnerabilities":[{"id":"CVE-2024-2961","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H","metrics":{"baseScore":7.3,"impactScore":4.8,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2961","cwe":"CWE-787","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-2961","date":"2026-10-08","epss":0.8833,"percentile":0.99769}],"urls":["http://www.openwall.com/lists/oss-security/2024/04/17/9","http://www.openwall.com/lists/oss-security/2024/04/18/4","http://www.openwall.com/lists/oss-security/2024/04/24/2","http://www.openwall.com/lists/oss-security/2024/05/27/1","http://www.openwall.com/lists/oss-security/2024/05/27/2","http://www.openwall.com/lists/oss-security/2024/05/27/3","http://www.openwall.com/lists/oss-security/2024/05/27/4","http://www.openwall.com/lists/oss-security/2024/05/27/5","http://www.openwall.com/lists/oss-security/2024/05/27/6","http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/05/msg00001.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BTJFBGHDYG5PEIFD5WSSSKSFZ2AZWC5N/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/P3I4KYS6EU6S7QZ47WFNTPVAHFIUQNEL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YAMJQI3Y6BHWV3CUTYBXOZONCUJNOB2Z/","https://security.netapp.com/advisory/ntap-20240531-0002/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0004","https://www.ambionics.io/blog/iconv-cve-2024-2961-p1","https://www.ambionics.io/blog/iconv-cve-2024-2961-p2","https://www.ambionics.io/blog/iconv-cve-2024-2961-p3","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2961","description":"The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-2961","versionConstraint":"< 2.28-10+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2961","fix":{"state":"fixed","versions":["2.28-10+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u3"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H","metrics":{"baseScore":7.3,"impactScore":4.8,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2961","cwe":"CWE-787","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-2961","date":"2026-10-08","epss":0.8833,"percentile":0.99769}],"risk":65.3642,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2961","description":"The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable."},"relatedVulnerabilities":[{"id":"CVE-2024-2961","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H","metrics":{"baseScore":7.3,"impactScore":4.8,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2961","cwe":"CWE-787","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-2961","date":"2026-10-08","epss":0.8833,"percentile":0.99769}],"urls":["http://www.openwall.com/lists/oss-security/2024/04/17/9","http://www.openwall.com/lists/oss-security/2024/04/18/4","http://www.openwall.com/lists/oss-security/2024/04/24/2","http://www.openwall.com/lists/oss-security/2024/05/27/1","http://www.openwall.com/lists/oss-security/2024/05/27/2","http://www.openwall.com/lists/oss-security/2024/05/27/3","http://www.openwall.com/lists/oss-security/2024/05/27/4","http://www.openwall.com/lists/oss-security/2024/05/27/5","http://www.openwall.com/lists/oss-security/2024/05/27/6","http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/05/msg00001.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BTJFBGHDYG5PEIFD5WSSSKSFZ2AZWC5N/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/P3I4KYS6EU6S7QZ47WFNTPVAHFIUQNEL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YAMJQI3Y6BHWV3CUTYBXOZONCUJNOB2Z/","https://security.netapp.com/advisory/ntap-20240531-0002/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0004","https://www.ambionics.io/blog/iconv-cve-2024-2961-p1","https://www.ambionics.io/blog/iconv-cve-2024-2961-p2","https://www.ambionics.io/blog/iconv-cve-2024-2961-p3","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2961","description":"The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-1292","versionConstraint":"< 1.1.1n-0+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1292","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":5.9,"exploitabilityScore":1.4},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1292","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1292","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-1292","date":"2026-10-08","epss":0.82612,"percentile":0.99661}],"risk":61.13288,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5139-1","link":"https://security-tracker.debian.org/tracker/DSA-5139-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1292","description":"The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.3 (Affected 3.0.0,3.0.1,3.0.2). Fixed in OpenSSL 1.1.1o (Affected 1.1.1-1.1.1n). Fixed in OpenSSL 1.0.2ze (Affected 1.0.2-1.0.2zd)."},"relatedVulnerabilities":[{"id":"CVE-2022-1292","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":5.9,"exploitabilityScore":1.4},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","metrics":{"baseScore":10,"impactScore":10.1,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1292","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1292","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-1292","date":"2026-10-08","epss":0.82612,"percentile":0.99661}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-953464.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=1ad73b4d27bd8c1b369a3cd453681d3a4f1bb9b2","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=548d3f280a6e737673f5b61fce24bb100108dfeb","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=e5fd1728ef4c7a5bf7c7a7163ca60370460a6e23","https://lists.debian.org/debian-lts-announce/2022/05/msg00019.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VX4KWHPMKYJL6ZLW4M5IU7E5UV5ZWJQU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZNU5M7BXMML26G3GPYKFGQYPQDRSNKDD/","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0011","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20220602-0009/","https://security.netapp.com/advisory/ntap-20220729-0004/","https://www.debian.org/security/2022/dsa-5139","https://www.openssl.org/news/secadv/20220503.txt","https://www.oracle.com/security-alerts/cpujul2022.html","https://gitlab.com/fraf0/cve-2022-1292-re_score-analysis"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1292","description":"The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.3 (Affected 3.0.0,3.0.1,3.0.2). Fixed in OpenSSL 1.1.1o (Affected 1.1.1-1.1.1n). Fixed in OpenSSL 1.0.2ze (Affected 1.0.2-1.0.2zd)."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u2"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-1292","versionConstraint":"< 1.1.1n-0+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1292","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":5.9,"exploitabilityScore":1.4},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1292","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1292","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-1292","date":"2026-10-08","epss":0.82612,"percentile":0.99661}],"risk":61.13288,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5139-1","link":"https://security-tracker.debian.org/tracker/DSA-5139-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1292","description":"The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.3 (Affected 3.0.0,3.0.1,3.0.2). Fixed in OpenSSL 1.1.1o (Affected 1.1.1-1.1.1n). Fixed in OpenSSL 1.0.2ze (Affected 1.0.2-1.0.2zd)."},"relatedVulnerabilities":[{"id":"CVE-2022-1292","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":5.9,"exploitabilityScore":1.4},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","metrics":{"baseScore":10,"impactScore":10.1,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1292","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1292","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-1292","date":"2026-10-08","epss":0.82612,"percentile":0.99661}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-953464.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=1ad73b4d27bd8c1b369a3cd453681d3a4f1bb9b2","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=548d3f280a6e737673f5b61fce24bb100108dfeb","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=e5fd1728ef4c7a5bf7c7a7163ca60370460a6e23","https://lists.debian.org/debian-lts-announce/2022/05/msg00019.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VX4KWHPMKYJL6ZLW4M5IU7E5UV5ZWJQU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZNU5M7BXMML26G3GPYKFGQYPQDRSNKDD/","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0011","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20220602-0009/","https://security.netapp.com/advisory/ntap-20220729-0004/","https://www.debian.org/security/2022/dsa-5139","https://www.openssl.org/news/secadv/20220503.txt","https://www.oracle.com/security-alerts/cpujul2022.html","https://gitlab.com/fraf0/cve-2022-1292-re_score-analysis"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1292","description":"The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.3 (Affected 3.0.0,3.0.1,3.0.2). Fixed in OpenSSL 1.1.1o (Affected 1.1.1-1.1.1n). Fixed in OpenSSL 1.0.2ze (Affected 1.0.2-1.0.2zd)."}]},{"artifact":{"id":"1cfe6e2be5a9442c","cpes":["cpe:2.3:a:libldap-2.4-2:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4-2:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4_2:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4_2:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*"],"name":"libldap-2.4-2","purl":"pkg:deb/debian/libldap-2.4-2@2.4.47%2Bdfsg-3%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openldap","type":"deb","version":"2.4.47+dfsg-3+deb10u6","language":"","licenses":["sha256:0690f1ee382f98e95b446743db55395641d5e258de65939e9cb1c660d67a43a8"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libldap-2.4-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libldap-2.4-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-2.4-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-2.4-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openldap"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.4.47+dfsg-3+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-29155","versionConstraint":"< 2.4.47+dfsg-3+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openldap","version":"2.4.47+dfsg-3+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-29155","fix":{"state":"fixed","versions":["2.4.47+dfsg-3+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.4.47+dfsg-3+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29155","cwe":"CWE-89","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-29155","date":"2026-10-08","epss":0.64487,"percentile":0.99221}],"risk":60.61778000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5140-1","link":"https://security-tracker.debian.org/tracker/DSA-5140-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-29155","description":"In OpenLDAP 2.x before 2.5.12 and 2.6.x before 2.6.2, a SQL injection vulnerability exists in the experimental back-sql backend to slapd, via a SQL statement within an LDAP query. This can occur during an LDAP search operation when the search filter is processed, due to a lack of proper escaping."},"relatedVulnerabilities":[{"id":"CVE-2022-29155","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29155","cwe":"CWE-89","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-29155","date":"2026-10-08","epss":0.64487,"percentile":0.99221}],"urls":["https://bugs.openldap.org/show_bug.cgi?id=9815","https://lists.debian.org/debian-lts-announce/2022/05/msg00032.html","https://security.netapp.com/advisory/ntap-20220609-0007/","https://www.debian.org/security/2022/dsa-5140"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-29155","description":"In OpenLDAP 2.x before 2.5.12 and 2.6.x before 2.6.2, a SQL injection vulnerability exists in the experimental back-sql backend to slapd, via a SQL statement within an LDAP query. This can occur during an LDAP search operation when the search filter is processed, due to a lack of proper escaping."}]},{"artifact":{"id":"e69f561869ff04f0","cpes":["cpe:2.3:a:libldap-common:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-common:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_common:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_common:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*"],"name":"libldap-common","purl":"pkg:deb/debian/libldap-common@2.4.47%2Bdfsg-3%2Bdeb10u6?arch=all&distro=debian-10.10&upstream=openldap","type":"deb","version":"2.4.47+dfsg-3+deb10u6","language":"","licenses":["sha256:0690f1ee382f98e95b446743db55395641d5e258de65939e9cb1c660d67a43a8"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libldap-common/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libldap-common/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.list"}],"upstreams":[{"name":"openldap"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.4.47+dfsg-3+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-29155","versionConstraint":"< 2.4.47+dfsg-3+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openldap","version":"2.4.47+dfsg-3+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-29155","fix":{"state":"fixed","versions":["2.4.47+dfsg-3+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.4.47+dfsg-3+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29155","cwe":"CWE-89","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-29155","date":"2026-10-08","epss":0.64487,"percentile":0.99221}],"risk":60.61778000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5140-1","link":"https://security-tracker.debian.org/tracker/DSA-5140-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-29155","description":"In OpenLDAP 2.x before 2.5.12 and 2.6.x before 2.6.2, a SQL injection vulnerability exists in the experimental back-sql backend to slapd, via a SQL statement within an LDAP query. This can occur during an LDAP search operation when the search filter is processed, due to a lack of proper escaping."},"relatedVulnerabilities":[{"id":"CVE-2022-29155","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29155","cwe":"CWE-89","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-29155","date":"2026-10-08","epss":0.64487,"percentile":0.99221}],"urls":["https://bugs.openldap.org/show_bug.cgi?id=9815","https://lists.debian.org/debian-lts-announce/2022/05/msg00032.html","https://security.netapp.com/advisory/ntap-20220609-0007/","https://www.debian.org/security/2022/dsa-5140"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-29155","description":"In OpenLDAP 2.x before 2.5.12 and 2.6.x before 2.6.2, a SQL injection vulnerability exists in the experimental back-sql backend to slapd, via a SQL statement within an LDAP query. This can occur during an LDAP search operation when the search filter is processed, due to a lack of proper escaping."}]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-50868","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-50868","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-50868","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-50868","date":"2026-10-08","epss":0.73725,"percentile":0.99466}],"risk":55.293749999999996,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-50868","description":"The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the \"NSEC3\" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations."},"relatedVulnerabilities":[{"id":"CVE-2023-50868","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-50868","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-50868","date":"2026-10-08","epss":0.73725,"percentile":0.99466}],"urls":["http://www.openwall.com/lists/oss-security/2024/02/16/2","http://www.openwall.com/lists/oss-security/2024/02/16/3","https://access.redhat.com/security/cve/CVE-2023-50868","https://bugzilla.suse.com/show_bug.cgi?id=1219826","https://datatracker.ietf.org/doc/html/rfc5155","https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html","https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1","https://kb.isc.org/docs/cve-2023-50868","https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html","https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/","https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html","https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/","https://security.netapp.com/advisory/ntap-20240307-0008/","https://www.isc.org/blogs/2024-bind-security-release/","https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/","https://www.nlnetlabs.nl/downloads/unbound/CVE-2024-1931.txt"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-50868","description":"The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the \"NSEC3\" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-50868","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-50868","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-50868","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-50868","date":"2026-10-08","epss":0.73725,"percentile":0.99466}],"risk":55.293749999999996,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-50868","description":"The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the \"NSEC3\" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations."},"relatedVulnerabilities":[{"id":"CVE-2023-50868","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-50868","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-50868","date":"2026-10-08","epss":0.73725,"percentile":0.99466}],"urls":["http://www.openwall.com/lists/oss-security/2024/02/16/2","http://www.openwall.com/lists/oss-security/2024/02/16/3","https://access.redhat.com/security/cve/CVE-2023-50868","https://bugzilla.suse.com/show_bug.cgi?id=1219826","https://datatracker.ietf.org/doc/html/rfc5155","https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2024-01.html","https://gitlab.nic.cz/knot/knot-resolver/-/releases/v5.7.1","https://kb.isc.org/docs/cve-2023-50868","https://lists.debian.org/debian-lts-announce/2024/02/msg00006.html","https://lists.debian.org/debian-lts-announce/2024/05/msg00011.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FV5O347JTX7P5OZA6NGO4MKTXRXMKOZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IGSLGKUAQTW5JPPZCMF5YPEYALLRUZZ6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNNHZSZPG2E7NBMBNYPGHCFI4V4XRWNQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGS7JN6FZXUSTC2XKQHH27574XOULYYJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SVYA42BLXUCIDLD35YIJPJSHDIADNYMP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TEXGOYGW7DBS3N2QSSQONZ4ENIRQEAPG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UQESRWMJCF4JEYJEAKLRM6CT55GLJAB7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/","https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2024q1/017430.html","https://nlnetlabs.nl/news/2024/Feb/13/unbound-1.19.1-released/","https://security.netapp.com/advisory/ntap-20240307-0008/","https://www.isc.org/blogs/2024-bind-security-release/","https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00035.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BUIP7T7Z4T3UHLXFWG6XIVDP4GYPD3AI/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HVRDSJVZKMCXKKPP6PNR62T7RWZ3YSDZ/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZDZFMEKQTZ4L7RY46FCENWFB5MDT263R/","https://www.nlnetlabs.nl/downloads/unbound/CVE-2024-1931.txt"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-50868","description":"The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the \"NSEC3\" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1d-0+deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-0778","versionConstraint":"< 1.1.1d-0+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-0778","fix":{"state":"fixed","versions":["1.1.1d-0+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1d-0+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-0778","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-0778","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-0778","date":"2026-10-08","epss":0.73188,"percentile":0.99448}],"risk":54.891,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5103-1","link":"https://security-tracker.debian.org/tracker/DSA-5103-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-0778","description":"The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when parsing certificates that contain elliptic curve public keys in compressed form or explicit elliptic curve parameters with a base point encoded in compressed form. It is possible to trigger the infinite loop by crafting a certificate that has invalid explicit curve parameters. Since certificate parsing happens prior to verification of the certificate signature, any process that parses an externally supplied certificate may thus be subject to a denial of service attack. The infinite loop can also be reached when parsing crafted private keys as they can contain explicit elliptic curve parameters. Thus vulnerable situations include: - TLS clients consuming server certificates - TLS servers consuming client certificates - Hosting providers taking certificates or private keys from customers - Certificate authorities parsing certification requests from subscribers - Anything else which parses ASN.1 elliptic curve parameters Also any other applications that use the BN_mod_sqrt() where the attacker can control the parameter values are vulnerable to this DoS issue. In the OpenSSL 1.0.2 version the public key is not parsed during initial parsing of the certificate which makes it slightly harder to trigger the infinite loop. However any operation which requires the public key from the certificate will trigger the infinite loop. In particular the attacker can use a self-signed certificate to trigger the loop during verification of the certificate signature. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0. It was addressed in the releases of 1.1.1n and 3.0.2 on the 15th March 2022. Fixed in OpenSSL 3.0.2 (Affected 3.0.0,3.0.1). Fixed in OpenSSL 1.1.1n (Affected 1.1.1-1.1.1m). Fixed in OpenSSL 1.0.2zd (Affected 1.0.2-1.0.2zc)."},"relatedVulnerabilities":[{"id":"CVE-2022-0778","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-0778","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-0778","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-0778","date":"2026-10-08","epss":0.73188,"percentile":0.99448}],"urls":["http://packetstormsecurity.com/files/167344/OpenSSL-1.0.2-1.1.1-3.0-BN_mod_sqrt-Infinite-Loop.html","http://seclists.org/fulldisclosure/2022/May/33","http://seclists.org/fulldisclosure/2022/May/35","http://seclists.org/fulldisclosure/2022/May/38","https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=3118eb64934499d93db3230748a452351d1d9a65","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=380085481c64de749a6dd25cdf0bcf4360b30f83","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=a466912611aa6cbdf550cd10601390e587451246","https://lists.debian.org/debian-lts-announce/2022/03/msg00023.html","https://lists.debian.org/debian-lts-announce/2022/03/msg00024.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/323SNN6ZX7PRJJWP2BUAFLPUAE42XWLZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GDB3GQVJPXJE7X5C5JN6JAA4XUDWD6E6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W6K3PR542DXWLEFFMFIDMME4CWMHJRMG/","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0002","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20220321-0002/","https://security.netapp.com/advisory/ntap-20220429-0005/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://support.apple.com/kb/HT213255","https://support.apple.com/kb/HT213256","https://support.apple.com/kb/HT213257","https://www.debian.org/security/2022/dsa-5103","https://www.openssl.org/news/secadv/20220315.txt","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.tenable.com/security/tns-2022-06","https://www.tenable.com/security/tns-2022-07","https://www.tenable.com/security/tns-2022-08","https://www.tenable.com/security/tns-2022-09","https://cert-portal.siemens.com/productcert/html/ssa-019200.html","https://cert-portal.siemens.com/productcert/html/ssa-028723.html","https://cert-portal.siemens.com/productcert/html/ssa-108696.html","https://cert-portal.siemens.com/productcert/html/ssa-398330.html","https://cert-portal.siemens.com/productcert/html/ssa-712929.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-0778","description":"The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when parsing certificates that contain elliptic curve public keys in compressed form or explicit elliptic curve parameters with a base point encoded in compressed form. It is possible to trigger the infinite loop by crafting a certificate that has invalid explicit curve parameters. Since certificate parsing happens prior to verification of the certificate signature, any process that parses an externally supplied certificate may thus be subject to a denial of service attack. The infinite loop can also be reached when parsing crafted private keys as they can contain explicit elliptic curve parameters. Thus vulnerable situations include: - TLS clients consuming server certificates - TLS servers consuming client certificates - Hosting providers taking certificates or private keys from customers - Certificate authorities parsing certification requests from subscribers - Anything else which parses ASN.1 elliptic curve parameters Also any other applications that use the BN_mod_sqrt() where the attacker can control the parameter values are vulnerable to this DoS issue. In the OpenSSL 1.0.2 version the public key is not parsed during initial parsing of the certificate which makes it slightly harder to trigger the infinite loop. However any operation which requires the public key from the certificate will trigger the infinite loop. In particular the attacker can use a self-signed certificate to trigger the loop during verification of the certificate signature. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0. It was addressed in the releases of 1.1.1n and 3.0.2 on the 15th March 2022. Fixed in OpenSSL 3.0.2 (Affected 3.0.0,3.0.1). Fixed in OpenSSL 1.1.1n (Affected 1.1.1-1.1.1m). Fixed in OpenSSL 1.0.2zd (Affected 1.0.2-1.0.2zc)."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1d-0+deb10u8"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-0778","versionConstraint":"< 1.1.1d-0+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-0778","fix":{"state":"fixed","versions":["1.1.1d-0+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1d-0+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-0778","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-0778","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-0778","date":"2026-10-08","epss":0.73188,"percentile":0.99448}],"risk":54.891,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5103-1","link":"https://security-tracker.debian.org/tracker/DSA-5103-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-0778","description":"The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when parsing certificates that contain elliptic curve public keys in compressed form or explicit elliptic curve parameters with a base point encoded in compressed form. It is possible to trigger the infinite loop by crafting a certificate that has invalid explicit curve parameters. Since certificate parsing happens prior to verification of the certificate signature, any process that parses an externally supplied certificate may thus be subject to a denial of service attack. The infinite loop can also be reached when parsing crafted private keys as they can contain explicit elliptic curve parameters. Thus vulnerable situations include: - TLS clients consuming server certificates - TLS servers consuming client certificates - Hosting providers taking certificates or private keys from customers - Certificate authorities parsing certification requests from subscribers - Anything else which parses ASN.1 elliptic curve parameters Also any other applications that use the BN_mod_sqrt() where the attacker can control the parameter values are vulnerable to this DoS issue. In the OpenSSL 1.0.2 version the public key is not parsed during initial parsing of the certificate which makes it slightly harder to trigger the infinite loop. However any operation which requires the public key from the certificate will trigger the infinite loop. In particular the attacker can use a self-signed certificate to trigger the loop during verification of the certificate signature. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0. It was addressed in the releases of 1.1.1n and 3.0.2 on the 15th March 2022. Fixed in OpenSSL 3.0.2 (Affected 3.0.0,3.0.1). Fixed in OpenSSL 1.1.1n (Affected 1.1.1-1.1.1m). Fixed in OpenSSL 1.0.2zd (Affected 1.0.2-1.0.2zc)."},"relatedVulnerabilities":[{"id":"CVE-2022-0778","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-0778","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-0778","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-0778","date":"2026-10-08","epss":0.73188,"percentile":0.99448}],"urls":["http://packetstormsecurity.com/files/167344/OpenSSL-1.0.2-1.1.1-3.0-BN_mod_sqrt-Infinite-Loop.html","http://seclists.org/fulldisclosure/2022/May/33","http://seclists.org/fulldisclosure/2022/May/35","http://seclists.org/fulldisclosure/2022/May/38","https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=3118eb64934499d93db3230748a452351d1d9a65","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=380085481c64de749a6dd25cdf0bcf4360b30f83","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=a466912611aa6cbdf550cd10601390e587451246","https://lists.debian.org/debian-lts-announce/2022/03/msg00023.html","https://lists.debian.org/debian-lts-announce/2022/03/msg00024.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/323SNN6ZX7PRJJWP2BUAFLPUAE42XWLZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GDB3GQVJPXJE7X5C5JN6JAA4XUDWD6E6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W6K3PR542DXWLEFFMFIDMME4CWMHJRMG/","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0002","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20220321-0002/","https://security.netapp.com/advisory/ntap-20220429-0005/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://support.apple.com/kb/HT213255","https://support.apple.com/kb/HT213256","https://support.apple.com/kb/HT213257","https://www.debian.org/security/2022/dsa-5103","https://www.openssl.org/news/secadv/20220315.txt","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.tenable.com/security/tns-2022-06","https://www.tenable.com/security/tns-2022-07","https://www.tenable.com/security/tns-2022-08","https://www.tenable.com/security/tns-2022-09","https://cert-portal.siemens.com/productcert/html/ssa-019200.html","https://cert-portal.siemens.com/productcert/html/ssa-028723.html","https://cert-portal.siemens.com/productcert/html/ssa-108696.html","https://cert-portal.siemens.com/productcert/html/ssa-398330.html","https://cert-portal.siemens.com/productcert/html/ssa-712929.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-0778","description":"The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when parsing certificates that contain elliptic curve public keys in compressed form or explicit elliptic curve parameters with a base point encoded in compressed form. It is possible to trigger the infinite loop by crafting a certificate that has invalid explicit curve parameters. Since certificate parsing happens prior to verification of the certificate signature, any process that parses an externally supplied certificate may thus be subject to a denial of service attack. The infinite loop can also be reached when parsing crafted private keys as they can contain explicit elliptic curve parameters. Thus vulnerable situations include: - TLS clients consuming server certificates - TLS servers consuming client certificates - Hosting providers taking certificates or private keys from customers - Certificate authorities parsing certification requests from subscribers - Anything else which parses ASN.1 elliptic curve parameters Also any other applications that use the BN_mod_sqrt() where the attacker can control the parameter values are vulnerable to this DoS issue. In the OpenSSL 1.0.2 version the public key is not parsed during initial parsing of the certificate which makes it slightly harder to trigger the infinite loop. However any operation which requires the public key from the certificate will trigger the infinite loop. In particular the attacker can use a self-signed certificate to trigger the loop during verification of the certificate signature. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0. It was addressed in the releases of 1.1.1n and 3.0.2 on the 15th March 2022. Fixed in OpenSSL 3.0.2 (Affected 3.0.0,3.0.1). Fixed in OpenSSL 1.1.1n (Affected 1.1.1-1.1.1m). Fixed in OpenSSL 1.0.2zd (Affected 1.0.2-1.0.2zc)."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u7"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-23521","versionConstraint":"< 1:2.20.1-2+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23521","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23521","cwe":"CWE-190","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-23521","date":"2026-10-08","epss":0.56334,"percentile":0.99034}],"risk":52.95396,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23521","description":"Git is distributed revision control system. gitattributes are a mechanism to allow defining attributes for paths. These attributes can be defined by adding a `.gitattributes` file to the repository, which contains a set of file patterns and the attributes that should be set for paths matching this pattern. When parsing gitattributes, multiple integer overflows can occur when there is a huge number of path patterns, a huge number of attributes for a single pattern, or when the declared attribute names are huge. These overflows can be triggered via a crafted `.gitattributes` file that may be part of the commit history. Git silently splits lines longer than 2KB when parsing gitattributes from a file, but not when parsing them from the index. Consequentially, the failure mode depends on whether the file exists in the working tree, the index or both. This integer overflow can result in arbitrary heap reads and writes, which may result in remote code execution. The problem has been patched in the versions published on 2023-01-17, going back to v2.30.7. Users are advised to upgrade. There are no known workarounds for this issue."},"relatedVulnerabilities":[{"id":"CVE-2022-23521","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23521","cwe":"CWE-190","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-23521","date":"2026-10-08","epss":0.56334,"percentile":0.99034}],"urls":["https://github.com/git/git/commit/508386c6c5857b4faa2c3e491f422c98cc69ae76","https://github.com/git/git/security/advisories/GHSA-c738-c5qq-xg89","https://security.gentoo.org/glsa/202312-15"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23521","description":"Git is distributed revision control system. gitattributes are a mechanism to allow defining attributes for paths. These attributes can be defined by adding a `.gitattributes` file to the repository, which contains a set of file patterns and the attributes that should be set for paths matching this pattern. When parsing gitattributes, multiple integer overflows can occur when there is a huge number of path patterns, a huge number of attributes for a single pattern, or when the declared attribute names are huge. These overflows can be triggered via a crafted `.gitattributes` file that may be part of the commit history. Git silently splits lines longer than 2KB when parsing gitattributes from a file, but not when parsing them from the index. Consequentially, the failure mode depends on whether the file exists in the working tree, the index or both. This integer overflow can result in arbitrary heap reads and writes, which may result in remote code execution. The problem has been patched in the versions published on 2023-01-17, going back to v2.30.7. Users are advised to upgrade. There are no known workarounds for this issue."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23521","versionConstraint":"< 1:2.20.1-2+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23521","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23521","cwe":"CWE-190","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-23521","date":"2026-10-08","epss":0.56334,"percentile":0.99034}],"risk":52.95396,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23521","description":"Git is distributed revision control system. gitattributes are a mechanism to allow defining attributes for paths. These attributes can be defined by adding a `.gitattributes` file to the repository, which contains a set of file patterns and the attributes that should be set for paths matching this pattern. When parsing gitattributes, multiple integer overflows can occur when there is a huge number of path patterns, a huge number of attributes for a single pattern, or when the declared attribute names are huge. These overflows can be triggered via a crafted `.gitattributes` file that may be part of the commit history. Git silently splits lines longer than 2KB when parsing gitattributes from a file, but not when parsing them from the index. Consequentially, the failure mode depends on whether the file exists in the working tree, the index or both. This integer overflow can result in arbitrary heap reads and writes, which may result in remote code execution. The problem has been patched in the versions published on 2023-01-17, going back to v2.30.7. Users are advised to upgrade. There are no known workarounds for this issue."},"relatedVulnerabilities":[{"id":"CVE-2022-23521","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23521","cwe":"CWE-190","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-23521","date":"2026-10-08","epss":0.56334,"percentile":0.99034}],"urls":["https://github.com/git/git/commit/508386c6c5857b4faa2c3e491f422c98cc69ae76","https://github.com/git/git/security/advisories/GHSA-c738-c5qq-xg89","https://security.gentoo.org/glsa/202312-15"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23521","description":"Git is distributed revision control system. gitattributes are a mechanism to allow defining attributes for paths. These attributes can be defined by adding a `.gitattributes` file to the repository, which contains a set of file patterns and the attributes that should be set for paths matching this pattern. When parsing gitattributes, multiple integer overflows can occur when there is a huge number of path patterns, a huge number of attributes for a single pattern, or when the declared attribute names are huge. These overflows can be triggered via a crafted `.gitattributes` file that may be part of the commit history. Git silently splits lines longer than 2KB when parsing gitattributes from a file, but not when parsing them from the index. Consequentially, the failure mode depends on whether the file exists in the working tree, the index or both. This integer overflow can result in arbitrary heap reads and writes, which may result in remote code execution. The problem has been patched in the versions published on 2023-01-17, going back to v2.30.7. Users are advised to upgrade. There are no known workarounds for this issue."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-0286","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0286","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0286","cwe":"CWE-843","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0286","cwe":"CWE-843","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0286","date":"2026-10-08","epss":0.59501,"percentile":0.99104}],"risk":44.328245,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0286","description":"There is a type confusion vulnerability relating to X.400 address processing inside an X.509 GeneralName. X.400 addresses were parsed as an ASN1_STRING but the public structure definition for GENERAL_NAME incorrectly specified the type of the x400Address field as ASN1_TYPE. This field is subsequently interpreted by the OpenSSL function GENERAL_NAME_cmp as an ASN1_TYPE rather than an ASN1_STRING.  When CRL checking is enabled (i.e. the application sets the X509_V_FLAG_CRL_CHECK flag), this vulnerability may allow an attacker to pass arbitrary pointers to a memcmp call, enabling them to read memory contents or enact a denial of service. In most cases, the attack requires the attacker to provide both the certificate chain and CRL, neither of which need to have a valid signature. If the attacker only controls one of these inputs, the other input must already contain an X.400 address as a CRL distribution point, which is uncommon. As such, this vulnerability is most likely to only affect applications which have implemented their own functionality for retrieving CRLs over a network."},"relatedVulnerabilities":[{"id":"CVE-2023-0286","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0286","cwe":"CWE-843","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0286","cwe":"CWE-843","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0286","date":"2026-10-08","epss":0.59501,"percentile":0.99104}],"urls":["https://ftp.openbsd.org/pub/OpenBSD/LibreSSL/libressl-3.6.2-relnotes.txt","https://ftp.openbsd.org/pub/OpenBSD/patches/7.2/common/018_x509.patch.sig","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2c6c9d439b484e1ba9830d8454a34fa4f80fdfe9","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2f7530077e0ef79d98718138716bc51ca0cad658","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fd2af07dc083a350c959147097003a14a5e8ac4d","https://security.gentoo.org/glsa/202402-08","https://www.openssl.org/news/secadv/20230207.txt","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0286","description":"There is a type confusion vulnerability relating to X.400 address processing\ninside an X.509 GeneralName. X.400 addresses were parsed as an ASN1_STRING but\nthe public structure definition for GENERAL_NAME incorrectly specified the type\nof the x400Address field as ASN1_TYPE. This field is subsequently interpreted by\nthe OpenSSL function GENERAL_NAME_cmp as an ASN1_TYPE rather than an\nASN1_STRING.\n\nWhen CRL checking is enabled (i.e. the application sets the\nX509_V_FLAG_CRL_CHECK flag), this vulnerability may allow an attacker to pass\narbitrary pointers to a memcmp call, enabling them to read memory contents or\nenact a denial of service. In most cases, the attack requires the attacker to\nprovide both the certificate chain and CRL, neither of which need to have a\nvalid signature. If the attacker only controls one of these inputs, the other\ninput must already contain an X.400 address as a CRL distribution point, which\nis uncommon. As such, this vulnerability is most likely to only affect\napplications which have implemented their own functionality for retrieving CRLs\nover a network."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-0286","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0286","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0286","cwe":"CWE-843","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0286","cwe":"CWE-843","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0286","date":"2026-10-08","epss":0.59501,"percentile":0.99104}],"risk":44.328245,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0286","description":"There is a type confusion vulnerability relating to X.400 address processing inside an X.509 GeneralName. X.400 addresses were parsed as an ASN1_STRING but the public structure definition for GENERAL_NAME incorrectly specified the type of the x400Address field as ASN1_TYPE. This field is subsequently interpreted by the OpenSSL function GENERAL_NAME_cmp as an ASN1_TYPE rather than an ASN1_STRING.  When CRL checking is enabled (i.e. the application sets the X509_V_FLAG_CRL_CHECK flag), this vulnerability may allow an attacker to pass arbitrary pointers to a memcmp call, enabling them to read memory contents or enact a denial of service. In most cases, the attack requires the attacker to provide both the certificate chain and CRL, neither of which need to have a valid signature. If the attacker only controls one of these inputs, the other input must already contain an X.400 address as a CRL distribution point, which is uncommon. As such, this vulnerability is most likely to only affect applications which have implemented their own functionality for retrieving CRLs over a network."},"relatedVulnerabilities":[{"id":"CVE-2023-0286","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0286","cwe":"CWE-843","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0286","cwe":"CWE-843","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0286","date":"2026-10-08","epss":0.59501,"percentile":0.99104}],"urls":["https://ftp.openbsd.org/pub/OpenBSD/LibreSSL/libressl-3.6.2-relnotes.txt","https://ftp.openbsd.org/pub/OpenBSD/patches/7.2/common/018_x509.patch.sig","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2c6c9d439b484e1ba9830d8454a34fa4f80fdfe9","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2f7530077e0ef79d98718138716bc51ca0cad658","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fd2af07dc083a350c959147097003a14a5e8ac4d","https://security.gentoo.org/glsa/202402-08","https://www.openssl.org/news/secadv/20230207.txt","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0286","description":"There is a type confusion vulnerability relating to X.400 address processing\ninside an X.509 GeneralName. X.400 addresses were parsed as an ASN1_STRING but\nthe public structure definition for GENERAL_NAME incorrectly specified the type\nof the x400Address field as ASN1_TYPE. This field is subsequently interpreted by\nthe OpenSSL function GENERAL_NAME_cmp as an ASN1_TYPE rather than an\nASN1_STRING.\n\nWhen CRL checking is enabled (i.e. the application sets the\nX509_V_FLAG_CRL_CHECK flag), this vulnerability may allow an attacker to pass\narbitrary pointers to a memcmp call, enabling them to read memory contents or\nenact a denial of service. In most cases, the attack requires the attacker to\nprovide both the certificate chain and CRL, neither of which need to have a\nvalid signature. If the attacker only controls one of these inputs, the other\ninput must already contain an X.400 address as a CRL distribution point, which\nis uncommon. As such, this vulnerability is most likely to only affect\napplications which have implemented their own functionality for retrieving CRLs\nover a network."}]},{"artifact":{"id":"0ee3c902a7004593","cpes":["cpe:2.3:a:libnghttp2-14:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2-14:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2_14:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2_14:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libnghttp2-14","purl":"pkg:deb/debian/libnghttp2-14@1.36.0-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=nghttp2","type":"deb","version":"1.36.0-2+deb10u1","language":"","licenses":["BSD-2-clause","Expat","GPL-3","GPL-3+","MIT","SIL-OFL-1.1","all-permissive"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libnghttp2-14/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libnghttp2-14/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libnghttp2-14:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libnghttp2-14:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"nghttp2"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.36.0-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28182","versionConstraint":"< 1.36.0-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"nghttp2","version":"1.36.0-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28182","fix":{"state":"fixed","versions":["1.36.0-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.36.0-2+deb10u3"}]},"cvss":[{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28182","cwe":"CWE-770","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-28182","date":"2026-10-08","epss":0.8496,"percentile":0.99708}],"risk":43.754400000000004,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28182","description":"nghttp2 is an implementation of the Hypertext Transfer Protocol version 2 in C. The nghttp2 library prior to version 1.61.0 keeps reading the unbounded number of HTTP/2 CONTINUATION frames even after a stream is reset to keep HPACK context in sync.  This causes excessive CPU usage to decode HPACK stream. nghttp2 v1.61.0 mitigates this vulnerability by limiting the number of CONTINUATION frames it accepts per stream. There is no workaround for this vulnerability."},"relatedVulnerabilities":[{"id":"CVE-2024-28182","cvss":[{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28182","cwe":"CWE-770","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-28182","date":"2026-10-08","epss":0.8496,"percentile":0.99708}],"urls":["http://www.openwall.com/lists/oss-security/2024/04/03/16","https://github.com/nghttp2/nghttp2/commit/00201ecd8f982da3b67d4f6868af72a1b03b14e0","https://github.com/nghttp2/nghttp2/commit/d71a4668c6bead55805d18810d633fbb98315af9","https://github.com/nghttp2/nghttp2/security/advisories/GHSA-x6x3-gv8h-m57q","https://lists.debian.org/debian-lts-announce/2024/04/msg00026.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/AGOME6ZXJG7664IPQNVE3DL67E3YP3HY/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/J6ZMXUGB66VAXDW5J6QSTHM5ET25FGSA/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PXJO2EASHM2OQQLGVDY5ZSO7UVDVHTDK/","https://lists.debian.org/debian-lts-announce/2024/09/msg00041.html","https://www.kb.cert.org/vuls/id/421644"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28182","description":"nghttp2 is an implementation of the Hypertext Transfer Protocol version 2 in C. The nghttp2 library prior to version 1.61.0 keeps reading the unbounded number of HTTP/2 CONTINUATION frames even after a stream is reset to keep HPACK context in sync.  This causes excessive CPU usage to decode HPACK stream. nghttp2 v1.61.0 mitigates this vulnerability by limiting the number of CONTINUATION frames it accepts per stream. There is no workaround for this vulnerability."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-2650","versionConstraint":"< 1.1.1n-0+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-2650","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-2650","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-2650","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-2650","date":"2026-10-08","epss":0.75116,"percentile":0.995}],"risk":43.1917,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-2650","description":"Issue summary: Processing some specially crafted ASN.1 object identifiers or data containing them may be very slow.  Impact summary: Applications that use OBJ_obj2txt() directly, or use any of the OpenSSL subsystems OCSP, PKCS7/SMIME, CMS, CMP/CRMF or TS with no message size limit may experience notable to very long delays when processing those messages, which may lead to a Denial of Service.  An OBJECT IDENTIFIER is composed of a series of numbers - sub-identifiers - most of which have no size limit.  OBJ_obj2txt() may be used to translate an ASN.1 OBJECT IDENTIFIER given in DER encoding form (using the OpenSSL type ASN1_OBJECT) to its canonical numeric text form, which are the sub-identifiers of the OBJECT IDENTIFIER in decimal form, separated by periods.  When one of the sub-identifiers in the OBJECT IDENTIFIER is very large (these are sizes that are seen as absurdly large, taking up tens or hundreds of KiBs), the translation to a decimal number in text may take a very long time.  The time complexity is O(n^2) with 'n' being the size of the sub-identifiers in bytes (*).  With OpenSSL 3.0, support to fetch cryptographic algorithms using names / identifiers in string form was introduced.  This includes using OBJECT IDENTIFIERs in canonical numeric text form as identifiers for fetching algorithms.  Such OBJECT IDENTIFIERs may be received through the ASN.1 structure AlgorithmIdentifier, which is commonly used in multiple protocols to specify what cryptographic algorithm should be used to sign or verify, encrypt or decrypt, or digest passed data.  Applications that call OBJ_obj2txt() directly with untrusted data are affected, with any version of OpenSSL.  If the use is for the mere purpose of display, the severity is considered low.  In OpenSSL 3.0 and newer, this affects the subsystems OCSP, PKCS7/SMIME, CMS, CMP/CRMF or TS.  It also impacts anything that processes X.509 certificates, including simple things like verifying its signature.  The impact on TLS is relatively low, because all versions of OpenSSL have a 100KiB limit on the peer's certificate chain.  Additionally, this only impacts clients, or servers that have explicitly enabled client authentication.  In OpenSSL 1.1.1 and 1.0.2, this only affects displaying diverse objects, such as X.509 certificates.  This is assumed to not happen in such a way that it would cause a Denial of Service, so these versions are considered not affected by this issue in such a way that it would be cause for concern, and the severity is therefore considered low."},"relatedVulnerabilities":[{"id":"CVE-2023-2650","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-2650","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-2650","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-2650","date":"2026-10-08","epss":0.75116,"percentile":0.995}],"urls":["http://www.openwall.com/lists/oss-security/2023/05/30/1","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=423a2bc737a908ad0c77bda470b2b59dc879936b","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=853c5e56ee0b8650c73140816bb8b91d6163422c","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9e209944b35cf82368071f160a744b6178f9b098","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=db779b0e10b047f2585615e0b8f2acdf21f8544a","https://lists.debian.org/debian-lts-announce/2023/06/msg00011.html","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0009","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230703-0001/","https://security.netapp.com/advisory/ntap-20231027-0009/","https://www.debian.org/security/2023/dsa-5417","https://www.openssl.org/news/secadv/20230530.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-2650","description":"Issue summary: Processing some specially crafted ASN.1 object identifiers or\ndata containing them may be very slow.\n\nImpact summary: Applications that use OBJ_obj2txt() directly, or use any of\nthe OpenSSL subsystems OCSP, PKCS7/SMIME, CMS, CMP/CRMF or TS with no message\nsize limit may experience notable to very long delays when processing those\nmessages, which may lead to a Denial of Service.\n\nAn OBJECT IDENTIFIER is composed of a series of numbers - sub-identifiers -\nmost of which have no size limit.  OBJ_obj2txt() may be used to translate\nan ASN.1 OBJECT IDENTIFIER given in DER encoding form (using the OpenSSL\ntype ASN1_OBJECT) to its canonical numeric text form, which are the\nsub-identifiers of the OBJECT IDENTIFIER in decimal form, separated by\nperiods.\n\nWhen one of the sub-identifiers in the OBJECT IDENTIFIER is very large\n(these are sizes that are seen as absurdly large, taking up tens or hundreds\nof KiBs), the translation to a decimal number in text may take a very long\ntime.  The time complexity is O(n^2) with 'n' being the size of the\nsub-identifiers in bytes (*).\n\nWith OpenSSL 3.0, support to fetch cryptographic algorithms using names /\nidentifiers in string form was introduced.  This includes using OBJECT\nIDENTIFIERs in canonical numeric text form as identifiers for fetching\nalgorithms.\n\nSuch OBJECT IDENTIFIERs may be received through the ASN.1 structure\nAlgorithmIdentifier, which is commonly used in multiple protocols to specify\nwhat cryptographic algorithm should be used to sign or verify, encrypt or\ndecrypt, or digest passed data.\n\nApplications that call OBJ_obj2txt() directly with untrusted data are\naffected, with any version of OpenSSL.  If the use is for the mere purpose\nof display, the severity is considered low.\n\nIn OpenSSL 3.0 and newer, this affects the subsystems OCSP, PKCS7/SMIME,\nCMS, CMP/CRMF or TS.  It also impacts anything that processes X.509\ncertificates, including simple things like verifying its signature.\n\nThe impact on TLS is relatively low, because all versions of OpenSSL have a\n100KiB limit on the peer's certificate chain.  Additionally, this only\nimpacts clients, or servers that have explicitly enabled client\nauthentication.\n\nIn OpenSSL 1.1.1 and 1.0.2, this only affects displaying diverse objects,\nsuch as X.509 certificates.  This is assumed to not happen in such a way\nthat it would cause a Denial of Service, so these versions are considered\nnot affected by this issue in such a way that it would be cause for concern,\nand the severity is therefore considered low."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-2650","versionConstraint":"< 1.1.1n-0+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-2650","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-2650","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-2650","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-2650","date":"2026-10-08","epss":0.75116,"percentile":0.995}],"risk":43.1917,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-2650","description":"Issue summary: Processing some specially crafted ASN.1 object identifiers or data containing them may be very slow.  Impact summary: Applications that use OBJ_obj2txt() directly, or use any of the OpenSSL subsystems OCSP, PKCS7/SMIME, CMS, CMP/CRMF or TS with no message size limit may experience notable to very long delays when processing those messages, which may lead to a Denial of Service.  An OBJECT IDENTIFIER is composed of a series of numbers - sub-identifiers - most of which have no size limit.  OBJ_obj2txt() may be used to translate an ASN.1 OBJECT IDENTIFIER given in DER encoding form (using the OpenSSL type ASN1_OBJECT) to its canonical numeric text form, which are the sub-identifiers of the OBJECT IDENTIFIER in decimal form, separated by periods.  When one of the sub-identifiers in the OBJECT IDENTIFIER is very large (these are sizes that are seen as absurdly large, taking up tens or hundreds of KiBs), the translation to a decimal number in text may take a very long time.  The time complexity is O(n^2) with 'n' being the size of the sub-identifiers in bytes (*).  With OpenSSL 3.0, support to fetch cryptographic algorithms using names / identifiers in string form was introduced.  This includes using OBJECT IDENTIFIERs in canonical numeric text form as identifiers for fetching algorithms.  Such OBJECT IDENTIFIERs may be received through the ASN.1 structure AlgorithmIdentifier, which is commonly used in multiple protocols to specify what cryptographic algorithm should be used to sign or verify, encrypt or decrypt, or digest passed data.  Applications that call OBJ_obj2txt() directly with untrusted data are affected, with any version of OpenSSL.  If the use is for the mere purpose of display, the severity is considered low.  In OpenSSL 3.0 and newer, this affects the subsystems OCSP, PKCS7/SMIME, CMS, CMP/CRMF or TS.  It also impacts anything that processes X.509 certificates, including simple things like verifying its signature.  The impact on TLS is relatively low, because all versions of OpenSSL have a 100KiB limit on the peer's certificate chain.  Additionally, this only impacts clients, or servers that have explicitly enabled client authentication.  In OpenSSL 1.1.1 and 1.0.2, this only affects displaying diverse objects, such as X.509 certificates.  This is assumed to not happen in such a way that it would cause a Denial of Service, so these versions are considered not affected by this issue in such a way that it would be cause for concern, and the severity is therefore considered low."},"relatedVulnerabilities":[{"id":"CVE-2023-2650","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-2650","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-2650","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-2650","date":"2026-10-08","epss":0.75116,"percentile":0.995}],"urls":["http://www.openwall.com/lists/oss-security/2023/05/30/1","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=423a2bc737a908ad0c77bda470b2b59dc879936b","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=853c5e56ee0b8650c73140816bb8b91d6163422c","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9e209944b35cf82368071f160a744b6178f9b098","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=db779b0e10b047f2585615e0b8f2acdf21f8544a","https://lists.debian.org/debian-lts-announce/2023/06/msg00011.html","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0009","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230703-0001/","https://security.netapp.com/advisory/ntap-20231027-0009/","https://www.debian.org/security/2023/dsa-5417","https://www.openssl.org/news/secadv/20230530.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-2650","description":"Issue summary: Processing some specially crafted ASN.1 object identifiers or\ndata containing them may be very slow.\n\nImpact summary: Applications that use OBJ_obj2txt() directly, or use any of\nthe OpenSSL subsystems OCSP, PKCS7/SMIME, CMS, CMP/CRMF or TS with no message\nsize limit may experience notable to very long delays when processing those\nmessages, which may lead to a Denial of Service.\n\nAn OBJECT IDENTIFIER is composed of a series of numbers - sub-identifiers -\nmost of which have no size limit.  OBJ_obj2txt() may be used to translate\nan ASN.1 OBJECT IDENTIFIER given in DER encoding form (using the OpenSSL\ntype ASN1_OBJECT) to its canonical numeric text form, which are the\nsub-identifiers of the OBJECT IDENTIFIER in decimal form, separated by\nperiods.\n\nWhen one of the sub-identifiers in the OBJECT IDENTIFIER is very large\n(these are sizes that are seen as absurdly large, taking up tens or hundreds\nof KiBs), the translation to a decimal number in text may take a very long\ntime.  The time complexity is O(n^2) with 'n' being the size of the\nsub-identifiers in bytes (*).\n\nWith OpenSSL 3.0, support to fetch cryptographic algorithms using names /\nidentifiers in string form was introduced.  This includes using OBJECT\nIDENTIFIERs in canonical numeric text form as identifiers for fetching\nalgorithms.\n\nSuch OBJECT IDENTIFIERs may be received through the ASN.1 structure\nAlgorithmIdentifier, which is commonly used in multiple protocols to specify\nwhat cryptographic algorithm should be used to sign or verify, encrypt or\ndecrypt, or digest passed data.\n\nApplications that call OBJ_obj2txt() directly with untrusted data are\naffected, with any version of OpenSSL.  If the use is for the mere purpose\nof display, the severity is considered low.\n\nIn OpenSSL 3.0 and newer, this affects the subsystems OCSP, PKCS7/SMIME,\nCMS, CMP/CRMF or TS.  It also impacts anything that processes X.509\ncertificates, including simple things like verifying its signature.\n\nThe impact on TLS is relatively low, because all versions of OpenSSL have a\n100KiB limit on the peer's certificate chain.  Additionally, this only\nimpacts clients, or servers that have explicitly enabled client\nauthentication.\n\nIn OpenSSL 1.1.1 and 1.0.2, this only affects displaying diverse objects,\nsuch as X.509 certificates.  This is assumed to not happen in such a way\nthat it would cause a Denial of Service, so these versions are considered\nnot affected by this issue in such a way that it would be cause for concern,\nand the severity is therefore considered low."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u7"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-41903","versionConstraint":"< 1:2.20.1-2+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-41903","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-41903","cwe":"CWE-190","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-41903","date":"2026-10-08","epss":0.44268,"percentile":0.98728}],"risk":41.611920000000005,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-41903","description":"Git is distributed revision control system. `git log` can display commits in an arbitrary format using its `--format` specifiers. This functionality is also exposed to `git archive` via the `export-subst` gitattribute. When processing the padding operators, there is a integer overflow in `pretty.c::format_and_pad_commit()` where a `size_t` is stored improperly as an `int`, and then added as an offset to a `memcpy()`. This overflow can be triggered directly by a user running a command which invokes the commit formatting machinery (e.g., `git log --format=...`). It may also be triggered indirectly through git archive via the export-subst mechanism, which expands format specifiers inside of files within the repository during a git archive. This integer overflow can result in arbitrary heap writes, which may result in arbitrary code execution. The problem has been patched in the versions published on 2023-01-17, going back to v2.30.7. Users are advised to upgrade. Users who are unable to upgrade should disable `git archive` in untrusted repositories. If you expose git archive via `git daemon`, disable it by running `git config --global daemon.uploadArch false`."},"relatedVulnerabilities":[{"id":"CVE-2022-41903","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-41903","cwe":"CWE-190","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-41903","date":"2026-10-08","epss":0.44268,"percentile":0.98728}],"urls":["https://git-scm.com/book/en/v2/Customizing-Git-Git-Attributes#_export_subst","https://git-scm.com/docs/pretty-formats#Documentation/pretty-formats.txt-emltltNgttruncltruncmtruncem","https://github.com/git/git/commit/508386c6c5857b4faa2c3e491f422c98cc69ae76","https://github.com/git/git/security/advisories/GHSA-475x-2q3q-hvwq","https://security.gentoo.org/glsa/202312-15"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-41903","description":"Git is distributed revision control system. `git log` can display commits in an arbitrary format using its `--format` specifiers. This functionality is also exposed to `git archive` via the `export-subst` gitattribute. When processing the padding operators, there is a integer overflow in `pretty.c::format_and_pad_commit()` where a `size_t` is stored improperly as an `int`, and then added as an offset to a `memcpy()`. This overflow can be triggered directly by a user running a command which invokes the commit formatting machinery (e.g., `git log --format=...`). It may also be triggered indirectly through git archive via the export-subst mechanism, which expands format specifiers inside of files within the repository during a git archive. This integer overflow can result in arbitrary heap writes, which may result in arbitrary code execution. The problem has been patched in the versions published on 2023-01-17, going back to v2.30.7. Users are advised to upgrade. Users who are unable to upgrade should disable `git archive` in untrusted repositories. If you expose git archive via `git daemon`, disable it by running `git config --global daemon.uploadArch false`."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-41903","versionConstraint":"< 1:2.20.1-2+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-41903","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-41903","cwe":"CWE-190","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-41903","date":"2026-10-08","epss":0.44268,"percentile":0.98728}],"risk":41.611920000000005,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-41903","description":"Git is distributed revision control system. `git log` can display commits in an arbitrary format using its `--format` specifiers. This functionality is also exposed to `git archive` via the `export-subst` gitattribute. When processing the padding operators, there is a integer overflow in `pretty.c::format_and_pad_commit()` where a `size_t` is stored improperly as an `int`, and then added as an offset to a `memcpy()`. This overflow can be triggered directly by a user running a command which invokes the commit formatting machinery (e.g., `git log --format=...`). It may also be triggered indirectly through git archive via the export-subst mechanism, which expands format specifiers inside of files within the repository during a git archive. This integer overflow can result in arbitrary heap writes, which may result in arbitrary code execution. The problem has been patched in the versions published on 2023-01-17, going back to v2.30.7. Users are advised to upgrade. Users who are unable to upgrade should disable `git archive` in untrusted repositories. If you expose git archive via `git daemon`, disable it by running `git config --global daemon.uploadArch false`."},"relatedVulnerabilities":[{"id":"CVE-2022-41903","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-41903","cwe":"CWE-190","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-41903","date":"2026-10-08","epss":0.44268,"percentile":0.98728}],"urls":["https://git-scm.com/book/en/v2/Customizing-Git-Git-Attributes#_export_subst","https://git-scm.com/docs/pretty-formats#Documentation/pretty-formats.txt-emltltNgttruncltruncmtruncem","https://github.com/git/git/commit/508386c6c5857b4faa2c3e491f422c98cc69ae76","https://github.com/git/git/security/advisories/GHSA-475x-2q3q-hvwq","https://security.gentoo.org/glsa/202312-15"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-41903","description":"Git is distributed revision control system. `git log` can display commits in an arbitrary format using its `--format` specifiers. This functionality is also exposed to `git archive` via the `export-subst` gitattribute. When processing the padding operators, there is a integer overflow in `pretty.c::format_and_pad_commit()` where a `size_t` is stored improperly as an `int`, and then added as an offset to a `memcpy()`. This overflow can be triggered directly by a user running a command which invokes the commit formatting machinery (e.g., `git log --format=...`). It may also be triggered indirectly through git archive via the export-subst mechanism, which expands format specifiers inside of files within the repository during a git archive. This integer overflow can result in arbitrary heap writes, which may result in arbitrary code execution. The problem has been patched in the versions published on 2023-01-17, going back to v2.30.7. Users are advised to upgrade. Users who are unable to upgrade should disable `git archive` in untrusted repositories. If you expose git archive via `git daemon`, disable it by running `git config --global daemon.uploadArch false`."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-25652","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-25652","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-25652","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2023-25652","date":"2026-10-08","epss":0.51883,"percentile":0.98925}],"risk":38.91225,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-25652","description":"Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, by feeding specially crafted input to `git apply --reject`, a path outside the working tree can be overwritten with partially controlled contents (corresponding to the rejected hunk(s) from the given patch). A fix is available in versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1. As a workaround, avoid using `git apply` with `--reject` when applying patches from an untrusted source. Use `git apply --stat` to inspect a patch before applying; avoid applying one that create a conflict where a link corresponding to the `*.rej` file exists."},"relatedVulnerabilities":[{"id":"CVE-2023-25652","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-25652","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2023-25652","date":"2026-10-08","epss":0.51883,"percentile":0.98925}],"urls":["http://www.openwall.com/lists/oss-security/2023/04/25/2","https://github.com/git/git/commit/18e2b1cfc80990719275d7b08e6e50f3e8cbc902","https://github.com/git/git/commit/668f2d53613ac8fd373926ebe219f2c29112d93e","https://github.com/git/git/security/advisories/GHSA-2hvf-7c8p-28fx","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BSXOGVVBJLYX26IAYX6PJSYQB36BREWH/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PI7FZ4NNR5S5J5K6AMVQBH2JFP6NE4L7/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RKOXOAZ42HLXHXTW6JZI4L5DAIYDTYCU/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YFZWGQKB6MM5MNF2DLFTD7KS2KWPICKL/","https://security.gentoo.org/glsa/202312-15","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-25652","description":"Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, by feeding specially crafted input to `git apply --reject`, a path outside the working tree can be overwritten with partially controlled contents (corresponding to the rejected hunk(s) from the given patch). A fix is available in versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1. As a workaround, avoid using `git apply` with `--reject` when applying patches from an untrusted source. Use `git apply --stat` to inspect a patch before applying; avoid applying one that create a conflict where a link corresponding to the `*.rej` file exists."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-25652","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-25652","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-25652","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2023-25652","date":"2026-10-08","epss":0.51883,"percentile":0.98925}],"risk":38.91225,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-25652","description":"Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, by feeding specially crafted input to `git apply --reject`, a path outside the working tree can be overwritten with partially controlled contents (corresponding to the rejected hunk(s) from the given patch). A fix is available in versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1. As a workaround, avoid using `git apply` with `--reject` when applying patches from an untrusted source. Use `git apply --stat` to inspect a patch before applying; avoid applying one that create a conflict where a link corresponding to the `*.rej` file exists."},"relatedVulnerabilities":[{"id":"CVE-2023-25652","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-25652","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2023-25652","date":"2026-10-08","epss":0.51883,"percentile":0.98925}],"urls":["http://www.openwall.com/lists/oss-security/2023/04/25/2","https://github.com/git/git/commit/18e2b1cfc80990719275d7b08e6e50f3e8cbc902","https://github.com/git/git/commit/668f2d53613ac8fd373926ebe219f2c29112d93e","https://github.com/git/git/security/advisories/GHSA-2hvf-7c8p-28fx","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BSXOGVVBJLYX26IAYX6PJSYQB36BREWH/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PI7FZ4NNR5S5J5K6AMVQBH2JFP6NE4L7/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RKOXOAZ42HLXHXTW6JZI4L5DAIYDTYCU/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YFZWGQKB6MM5MNF2DLFTD7KS2KWPICKL/","https://security.gentoo.org/glsa/202312-15","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-25652","description":"Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, by feeding specially crafted input to `git apply --reject`, a path outside the working tree can be overwritten with partially controlled contents (corresponding to the rejected hunk(s) from the given patch). A fix is available in versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1. As a workaround, avoid using `git apply` with `--reject` when applying patches from an untrusted source. Use `git apply --stat` to inspect a patch before applying; avoid applying one that create a conflict where a link corresponding to the `*.rej` file exists."}]},{"artifact":{"id":"bcc78aeb924eb6b8","cpes":["cpe:2.3:a:zlib1g:zlib1g:1\\:1.2.11.dfsg-1:*:*:*:*:*:*:*"],"name":"zlib1g","purl":"pkg:deb/debian/zlib1g@1%3A1.2.11.dfsg-1?arch=amd64&distro=debian-10.10&upstream=zlib","type":"deb","version":"1:1.2.11.dfsg-1","language":"","licenses":["Zlib"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/zlib1g/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/zlib1g/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/zlib1g:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/zlib1g:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"zlib"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:1.2.11.dfsg-1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2018-25032","versionConstraint":"< 1:1.2.11.dfsg-1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"zlib","version":"1:1.2.11.dfsg-1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2018-25032","fix":{"state":"fixed","versions":["1:1.2.11.dfsg-1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:1.2.11.dfsg-1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-25032","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2018-25032","cwe":"CWE-787","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2018-25032","date":"2026-10-08","epss":0.51733,"percentile":0.98922}],"risk":38.79975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5111-1","link":"https://security-tracker.debian.org/tracker/DSA-5111-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2018-25032","description":"zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches."},"relatedVulnerabilities":[{"id":"CVE-2018-25032","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-25032","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2018-25032","cwe":"CWE-787","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2018-25032","date":"2026-10-08","epss":0.51733,"percentile":0.98922}],"urls":["http://seclists.org/fulldisclosure/2022/May/33","http://seclists.org/fulldisclosure/2022/May/35","http://seclists.org/fulldisclosure/2022/May/38","http://www.openwall.com/lists/oss-security/2022/03/25/2","http://www.openwall.com/lists/oss-security/2022/03/26/1","https://cert-portal.siemens.com/productcert/pdf/ssa-333517.pdf","https://github.com/madler/zlib/commit/5c44459c3b28a9bd3283aaceab7c615f8020c531","https://github.com/madler/zlib/compare/v1.2.11...v1.2.12","https://github.com/madler/zlib/issues/605","https://lists.debian.org/debian-lts-announce/2022/04/msg00000.html","https://lists.debian.org/debian-lts-announce/2022/05/msg00008.html","https://lists.debian.org/debian-lts-announce/2022/09/msg00023.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DCZFIJBJTZ7CL5QXBFKTQ22Q26VINRUF/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DF62MVMH3QUGMBDCB3DY2ERQ6EBHTADB/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JZZPTWRYQULAOL3AW7RZJNVZ2UONXCV4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NS2D2GFPFGOJUL4WQ3DUAY7HF4VWQ77F/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VOKNP2L734AEL47NRYGVZIKEFOUBQY5Y/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XOKFMSNQ5D5WGMALBNBXU3GE442V74WU/","https://security.gentoo.org/glsa/202210-42","https://security.netapp.com/advisory/ntap-20220526-0009/","https://security.netapp.com/advisory/ntap-20220729-0004/","https://support.apple.com/kb/HT213255","https://support.apple.com/kb/HT213256","https://support.apple.com/kb/HT213257","https://www.debian.org/security/2022/dsa-5111","https://www.openwall.com/lists/oss-security/2022/03/24/1","https://www.openwall.com/lists/oss-security/2022/03/28/1","https://www.openwall.com/lists/oss-security/2022/03/28/3","https://www.oracle.com/security-alerts/cpujul2022.html","https://cert-portal.siemens.com/productcert/html/ssa-333517.html","https://cert-portal.siemens.com/productcert/html/ssa-398330.html","https://cert-portal.siemens.com/productcert/html/ssa-419740.html","https://cert-portal.siemens.com/productcert/html/ssa-470355.html","https://cert-portal.siemens.com/productcert/html/ssa-565386.html","https://cert-portal.siemens.com/productcert/html/ssa-942865.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2018-25032","description":"zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1d-0+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3712","versionConstraint":"< 1.1.1d-0+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3712","fix":{"state":"fixed","versions":["1.1.1d-0+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1d-0+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3712","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3712","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3712","date":"2026-10-08","epss":0.50445,"percentile":0.98887}],"risk":37.581525,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4963-1","link":"https://security-tracker.debian.org/tracker/DSA-4963-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3712","description":"ASN.1 strings are represented internally within OpenSSL as an ASN1_STRING structure which contains a buffer holding the string data and a field holding the buffer length. This contrasts with normal C strings which are repesented as a buffer for the string data which is terminated with a NUL (0) byte. Although not a strict requirement, ASN.1 strings that are parsed using OpenSSL's own \"d2i\" functions (and other similar parsing functions) as well as any string whose value has been set with the ASN1_STRING_set() function will additionally NUL terminate the byte array in the ASN1_STRING structure. However, it is possible for applications to directly construct valid ASN1_STRING structures which do not NUL terminate the byte array by directly setting the \"data\" and \"length\" fields in the ASN1_STRING array. This can also happen by using the ASN1_STRING_set0() function. Numerous OpenSSL functions that print ASN.1 data have been found to assume that the ASN1_STRING byte array will be NUL terminated, even though this is not guaranteed for strings that have been directly constructed. Where an application requests an ASN.1 structure to be printed, and where that ASN.1 structure contains ASN1_STRINGs that have been directly constructed by the application without NUL terminating the \"data\" field, then a read buffer overrun can occur. The same thing can also occur during name constraints processing of certificates (for example if a certificate has been directly constructed by the application instead of loading it via the OpenSSL parsing functions, and the certificate contains non NUL terminated ASN1_STRING structures). It can also occur in the X509_get1_email(), X509_REQ_get1_email() and X509_get1_ocsp() functions. If a malicious actor can cause an application to directly construct an ASN1_STRING and then process it through one of the affected OpenSSL functions then this issue could be hit. This might result in a crash (causing a Denial of Service attack). It could also result in the disclosure of private memory contents (such as private keys, or sensitive plaintext). Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k). Fixed in OpenSSL 1.0.2za (Affected 1.0.2-1.0.2y)."},"relatedVulnerabilities":[{"id":"CVE-2021-3712","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:P","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3712","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3712","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3712","date":"2026-10-08","epss":0.50445,"percentile":0.98887}],"urls":["http://www.openwall.com/lists/oss-security/2021/08/26/2","https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=94d23fcff9b2a7a8368dfe52214d5c2569882c11","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=ccb0a11145ee72b042d10593a64eaf9e8a55ec12","https://kc.mcafee.com/corporate/index?page=content&id=SB10366","https://lists.apache.org/thread.html/r18995de860f0e63635f3008fd2a6aca82394249476d21691e7c59c9e%40%3Cdev.tomcat.apache.org%3E","https://lists.apache.org/thread.html/rad5d9f83f0d11fb3f8bb148d179b8a9ad7c6a17f18d70e5805a713d1%40%3Cdev.tomcat.apache.org%3E","https://lists.debian.org/debian-lts-announce/2021/09/msg00014.html","https://lists.debian.org/debian-lts-announce/2021/09/msg00021.html","https://security.gentoo.org/glsa/202209-02","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20210827-0010/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-4963","https://www.openssl.org/news/secadv/20210824.txt","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html","https://www.tenable.com/security/tns-2021-16","https://www.tenable.com/security/tns-2022-02","https://cert-portal.siemens.com/productcert/html/ssa-019200.html","https://cert-portal.siemens.com/productcert/html/ssa-028723.html","https://cert-portal.siemens.com/productcert/html/ssa-244969.html","https://cert-portal.siemens.com/productcert/html/ssa-389290.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3712","description":"ASN.1 strings are represented internally within OpenSSL as an ASN1_STRING structure which contains a buffer holding the string data and a field holding the buffer length. This contrasts with normal C strings which are repesented as a buffer for the string data which is terminated with a NUL (0) byte. Although not a strict requirement, ASN.1 strings that are parsed using OpenSSL's own \"d2i\" functions (and other similar parsing functions) as well as any string whose value has been set with the ASN1_STRING_set() function will additionally NUL terminate the byte array in the ASN1_STRING structure. However, it is possible for applications to directly construct valid ASN1_STRING structures which do not NUL terminate the byte array by directly setting the \"data\" and \"length\" fields in the ASN1_STRING array. This can also happen by using the ASN1_STRING_set0() function. Numerous OpenSSL functions that print ASN.1 data have been found to assume that the ASN1_STRING byte array will be NUL terminated, even though this is not guaranteed for strings that have been directly constructed. Where an application requests an ASN.1 structure to be printed, and where that ASN.1 structure contains ASN1_STRINGs that have been directly constructed by the application without NUL terminating the \"data\" field, then a read buffer overrun can occur. The same thing can also occur during name constraints processing of certificates (for example if a certificate has been directly constructed by the application instead of loading it via the OpenSSL parsing functions, and the certificate contains non NUL terminated ASN1_STRING structures). It can also occur in the X509_get1_email(), X509_REQ_get1_email() and X509_get1_ocsp() functions. If a malicious actor can cause an application to directly construct an ASN1_STRING and then process it through one of the affected OpenSSL functions then this issue could be hit. This might result in a crash (causing a Denial of Service attack). It could also result in the disclosure of private memory contents (such as private keys, or sensitive plaintext). Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k). Fixed in OpenSSL 1.0.2za (Affected 1.0.2-1.0.2y)."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1d-0+deb10u7"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-3712","versionConstraint":"< 1.1.1d-0+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3712","fix":{"state":"fixed","versions":["1.1.1d-0+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1d-0+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3712","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3712","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3712","date":"2026-10-08","epss":0.50445,"percentile":0.98887}],"risk":37.581525,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4963-1","link":"https://security-tracker.debian.org/tracker/DSA-4963-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3712","description":"ASN.1 strings are represented internally within OpenSSL as an ASN1_STRING structure which contains a buffer holding the string data and a field holding the buffer length. This contrasts with normal C strings which are repesented as a buffer for the string data which is terminated with a NUL (0) byte. Although not a strict requirement, ASN.1 strings that are parsed using OpenSSL's own \"d2i\" functions (and other similar parsing functions) as well as any string whose value has been set with the ASN1_STRING_set() function will additionally NUL terminate the byte array in the ASN1_STRING structure. However, it is possible for applications to directly construct valid ASN1_STRING structures which do not NUL terminate the byte array by directly setting the \"data\" and \"length\" fields in the ASN1_STRING array. This can also happen by using the ASN1_STRING_set0() function. Numerous OpenSSL functions that print ASN.1 data have been found to assume that the ASN1_STRING byte array will be NUL terminated, even though this is not guaranteed for strings that have been directly constructed. Where an application requests an ASN.1 structure to be printed, and where that ASN.1 structure contains ASN1_STRINGs that have been directly constructed by the application without NUL terminating the \"data\" field, then a read buffer overrun can occur. The same thing can also occur during name constraints processing of certificates (for example if a certificate has been directly constructed by the application instead of loading it via the OpenSSL parsing functions, and the certificate contains non NUL terminated ASN1_STRING structures). It can also occur in the X509_get1_email(), X509_REQ_get1_email() and X509_get1_ocsp() functions. If a malicious actor can cause an application to directly construct an ASN1_STRING and then process it through one of the affected OpenSSL functions then this issue could be hit. This might result in a crash (causing a Denial of Service attack). It could also result in the disclosure of private memory contents (such as private keys, or sensitive plaintext). Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k). Fixed in OpenSSL 1.0.2za (Affected 1.0.2-1.0.2y)."},"relatedVulnerabilities":[{"id":"CVE-2021-3712","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:P","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3712","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3712","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3712","date":"2026-10-08","epss":0.50445,"percentile":0.98887}],"urls":["http://www.openwall.com/lists/oss-security/2021/08/26/2","https://cert-portal.siemens.com/productcert/pdf/ssa-244969.pdf","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=94d23fcff9b2a7a8368dfe52214d5c2569882c11","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=ccb0a11145ee72b042d10593a64eaf9e8a55ec12","https://kc.mcafee.com/corporate/index?page=content&id=SB10366","https://lists.apache.org/thread.html/r18995de860f0e63635f3008fd2a6aca82394249476d21691e7c59c9e%40%3Cdev.tomcat.apache.org%3E","https://lists.apache.org/thread.html/rad5d9f83f0d11fb3f8bb148d179b8a9ad7c6a17f18d70e5805a713d1%40%3Cdev.tomcat.apache.org%3E","https://lists.debian.org/debian-lts-announce/2021/09/msg00014.html","https://lists.debian.org/debian-lts-announce/2021/09/msg00021.html","https://security.gentoo.org/glsa/202209-02","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20210827-0010/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-4963","https://www.openssl.org/news/secadv/20210824.txt","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html","https://www.tenable.com/security/tns-2021-16","https://www.tenable.com/security/tns-2022-02","https://cert-portal.siemens.com/productcert/html/ssa-019200.html","https://cert-portal.siemens.com/productcert/html/ssa-028723.html","https://cert-portal.siemens.com/productcert/html/ssa-244969.html","https://cert-portal.siemens.com/productcert/html/ssa-389290.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3712","description":"ASN.1 strings are represented internally within OpenSSL as an ASN1_STRING structure which contains a buffer holding the string data and a field holding the buffer length. This contrasts with normal C strings which are repesented as a buffer for the string data which is terminated with a NUL (0) byte. Although not a strict requirement, ASN.1 strings that are parsed using OpenSSL's own \"d2i\" functions (and other similar parsing functions) as well as any string whose value has been set with the ASN1_STRING_set() function will additionally NUL terminate the byte array in the ASN1_STRING structure. However, it is possible for applications to directly construct valid ASN1_STRING structures which do not NUL terminate the byte array by directly setting the \"data\" and \"length\" fields in the ASN1_STRING array. This can also happen by using the ASN1_STRING_set0() function. Numerous OpenSSL functions that print ASN.1 data have been found to assume that the ASN1_STRING byte array will be NUL terminated, even though this is not guaranteed for strings that have been directly constructed. Where an application requests an ASN.1 structure to be printed, and where that ASN.1 structure contains ASN1_STRINGs that have been directly constructed by the application without NUL terminating the \"data\" field, then a read buffer overrun can occur. The same thing can also occur during name constraints processing of certificates (for example if a certificate has been directly constructed by the application instead of loading it via the OpenSSL parsing functions, and the certificate contains non NUL terminated ASN1_STRING structures). It can also occur in the X509_get1_email(), X509_REQ_get1_email() and X509_get1_ocsp() functions. If a malicious actor can cause an application to directly construct an ASN1_STRING and then process it through one of the affected OpenSSL functions then this issue could be hit. This might result in a crash (causing a Denial of Service attack). It could also result in the disclosure of private memory contents (such as private keys, or sensitive plaintext). Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k). Fixed in OpenSSL 1.0.2za (Affected 1.0.2-1.0.2y)."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-25236","versionConstraint":"< 2.2.6-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-25236","fix":{"state":"fixed","versions":["2.2.6-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25236","cwe":"CWE-668","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25236","cwe":"CWE-668","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25236","date":"2026-10-08","epss":0.34174,"percentile":0.9837}],"risk":32.12356,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5085-1","link":"https://security-tracker.debian.org/tracker/DSA-5085-1"},{"id":"DSA-5085-2","link":"https://security-tracker.debian.org/tracker/DSA-5085-2"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-25236","description":"xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs."},"relatedVulnerabilities":[{"id":"CVE-2022-25236","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25236","cwe":"CWE-668","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25236","cwe":"CWE-668","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25236","date":"2026-10-08","epss":0.34174,"percentile":0.9837}],"urls":["http://packetstormsecurity.com/files/167238/Zoom-XMPP-Stanza-Smuggling-Remote-Code-Execution.html","http://www.openwall.com/lists/oss-security/2022/02/19/1","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/561","https://lists.debian.org/debian-lts-announce/2022/03/msg00007.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y27XO3JMKAOMQZVPS3B4MJGEAHCZF5OM/","https://security.gentoo.org/glsa/202209-24","https://security.netapp.com/advisory/ntap-20220303-0008/","https://www.debian.org/security/2022/dsa-5085","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-25236","description":"xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-2398","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2398","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L","metrics":{"baseScore":8.6,"impactScore":4.8,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2398","cwe":"CWE-772","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-2398","date":"2026-10-08","epss":0.36081,"percentile":0.98442}],"risk":29.045205000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2398","description":"When an application tells libcurl it wants to allow HTTP/2 server push, and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push. When aborting, libcurl inadvertently does not free all the previously allocated headers and instead leaks the memory.  Further, this error condition fails silently and is therefore not easily detected by an application."},"relatedVulnerabilities":[{"id":"CVE-2024-2398","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L","metrics":{"baseScore":8.6,"impactScore":4.8,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2398","cwe":"CWE-772","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-2398","date":"2026-10-08","epss":0.36081,"percentile":0.98442}],"urls":["http://seclists.org/fulldisclosure/2024/Jul/18","http://seclists.org/fulldisclosure/2024/Jul/19","http://seclists.org/fulldisclosure/2024/Jul/20","http://www.openwall.com/lists/oss-security/2024/03/27/3","https://curl.se/docs/CVE-2024-2398.html","https://curl.se/docs/CVE-2024-2398.json","https://hackerone.com/reports/2402845","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2D44YLAUFJU6BZ4XFG2FYV7SBKXB5IZ6/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GMD6UYKCCRCYETWQZUJ65ZRFULT6SHLI/","https://security.netapp.com/advisory/ntap-20240503-0009/","https://support.apple.com/kb/HT214118","https://support.apple.com/kb/HT214119","https://support.apple.com/kb/HT214120"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2398","description":"When an application tells libcurl it wants to allow HTTP/2 server push, and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push. When aborting, libcurl inadvertently does not free all the previously allocated headers and instead leaks the memory.  Further, this error condition fails silently and is therefore not easily detected by an application."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-2398","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2398","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L","metrics":{"baseScore":8.6,"impactScore":4.8,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2398","cwe":"CWE-772","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-2398","date":"2026-10-08","epss":0.36081,"percentile":0.98442}],"risk":29.045205000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2398","description":"When an application tells libcurl it wants to allow HTTP/2 server push, and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push. When aborting, libcurl inadvertently does not free all the previously allocated headers and instead leaks the memory.  Further, this error condition fails silently and is therefore not easily detected by an application."},"relatedVulnerabilities":[{"id":"CVE-2024-2398","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L","metrics":{"baseScore":8.6,"impactScore":4.8,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2398","cwe":"CWE-772","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-2398","date":"2026-10-08","epss":0.36081,"percentile":0.98442}],"urls":["http://seclists.org/fulldisclosure/2024/Jul/18","http://seclists.org/fulldisclosure/2024/Jul/19","http://seclists.org/fulldisclosure/2024/Jul/20","http://www.openwall.com/lists/oss-security/2024/03/27/3","https://curl.se/docs/CVE-2024-2398.html","https://curl.se/docs/CVE-2024-2398.json","https://hackerone.com/reports/2402845","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2D44YLAUFJU6BZ4XFG2FYV7SBKXB5IZ6/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GMD6UYKCCRCYETWQZUJ65ZRFULT6SHLI/","https://security.netapp.com/advisory/ntap-20240503-0009/","https://support.apple.com/kb/HT214118","https://support.apple.com/kb/HT214119","https://support.apple.com/kb/HT214120"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2398","description":"When an application tells libcurl it wants to allow HTTP/2 server push, and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push. When aborting, libcurl inadvertently does not free all the previously allocated headers and instead leaks the memory.  Further, this error condition fails silently and is therefore not easily detected by an application."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-2398","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2398","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L","metrics":{"baseScore":8.6,"impactScore":4.8,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2398","cwe":"CWE-772","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-2398","date":"2026-10-08","epss":0.36081,"percentile":0.98442}],"risk":29.045205000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2398","description":"When an application tells libcurl it wants to allow HTTP/2 server push, and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push. When aborting, libcurl inadvertently does not free all the previously allocated headers and instead leaks the memory.  Further, this error condition fails silently and is therefore not easily detected by an application."},"relatedVulnerabilities":[{"id":"CVE-2024-2398","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L","metrics":{"baseScore":8.6,"impactScore":4.8,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2398","cwe":"CWE-772","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-2398","date":"2026-10-08","epss":0.36081,"percentile":0.98442}],"urls":["http://seclists.org/fulldisclosure/2024/Jul/18","http://seclists.org/fulldisclosure/2024/Jul/19","http://seclists.org/fulldisclosure/2024/Jul/20","http://www.openwall.com/lists/oss-security/2024/03/27/3","https://curl.se/docs/CVE-2024-2398.html","https://curl.se/docs/CVE-2024-2398.json","https://hackerone.com/reports/2402845","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2D44YLAUFJU6BZ4XFG2FYV7SBKXB5IZ6/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GMD6UYKCCRCYETWQZUJ65ZRFULT6SHLI/","https://security.netapp.com/advisory/ntap-20240503-0009/","https://support.apple.com/kb/HT214118","https://support.apple.com/kb/HT214119","https://support.apple.com/kb/HT214120"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2398","description":"When an application tells libcurl it wants to allow HTTP/2 server push, and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push. When aborting, libcurl inadvertently does not free all the previously allocated headers and instead leaks the memory.  Further, this error condition fails silently and is therefore not easily detected by an application."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-2511","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2511","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2511","cwe":"CWE-1325","type":"Secondary","source":"openssl-security@openssl.org"}],"epss":[{"cve":"CVE-2024-2511","date":"2026-10-08","epss":0.52421,"percentile":0.98938}],"risk":28.569444999999998,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2511","description":"Issue summary: Some non-default TLS server configurations can cause unbounded memory growth when processing TLSv1.3 sessions  Impact summary: An attacker may exploit certain server configurations to trigger unbounded memory growth that would lead to a Denial of Service  This problem can occur in TLSv1.3 if the non-default SSL_OP_NO_TICKET option is being used (but not if early_data support is also configured and the default anti-replay protection is in use). In this case, under certain conditions, the session cache can get into an incorrect state and it will fail to flush properly as it fills. The session cache will continue to grow in an unbounded manner. A malicious client could deliberately create the scenario for this failure to force a Denial of Service. It may also happen by accident in normal operation.  This issue only affects TLS servers supporting TLSv1.3. It does not affect TLS clients.  The FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue. OpenSSL 1.0.2 is also not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2024-2511","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2511","cwe":"CWE-1325","type":"Secondary","source":"openssl-security@openssl.org"}],"epss":[{"cve":"CVE-2024-2511","date":"2026-10-08","epss":0.52421,"percentile":0.98938}],"urls":["https://github.com/openssl/openssl/commit/7e4d731b1c07201ad9374c1cd9ac5263bdf35bce","https://github.com/openssl/openssl/commit/b52867a9f618bb955bed2a3ce3db4d4f97ed8e5d","https://github.com/openssl/openssl/commit/e9d7083e241670332e0443da0f0d4ffb52829f08","https://github.openssl.org/openssl/extended-releases/commit/5f8d25770ae6437db119dfc951e207271a326640","https://www.openssl.org/news/secadv/20240408.txt","http://www.openwall.com/lists/oss-security/2024/04/08/5","https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html","https://security.netapp.com/advisory/ntap-20240503-0013/","https://cert-portal.siemens.com/productcert/html/ssa-265688.html","https://cert-portal.siemens.com/productcert/html/ssa-354112.html","https://cert-portal.siemens.com/productcert/html/ssa-398330.html","https://cert-portal.siemens.com/productcert/html/ssa-613116.html","https://cert-portal.siemens.com/productcert/html/ssa-769027.html","https://cert-portal.siemens.com/productcert/html/ssa-915275.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2511","description":"Issue summary: Some non-default TLS server configurations can cause unbounded\nmemory growth when processing TLSv1.3 sessions\n\nImpact summary: An attacker may exploit certain server configurations to trigger\nunbounded memory growth that would lead to a Denial of Service\n\nThis problem can occur in TLSv1.3 if the non-default SSL_OP_NO_TICKET option is\nbeing used (but not if early_data support is also configured and the default\nanti-replay protection is in use). In this case, under certain conditions, the\nsession cache can get into an incorrect state and it will fail to flush properly\nas it fills. The session cache will continue to grow in an unbounded manner. A\nmalicious client could deliberately create the scenario for this failure to\nforce a Denial of Service. It may also happen by accident in normal operation.\n\nThis issue only affects TLS servers supporting TLSv1.3. It does not affect TLS\nclients.\n\nThe FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue. OpenSSL\n1.0.2 is also not affected by this issue."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-2511","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2511","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2511","cwe":"CWE-1325","type":"Secondary","source":"openssl-security@openssl.org"}],"epss":[{"cve":"CVE-2024-2511","date":"2026-10-08","epss":0.52421,"percentile":0.98938}],"risk":28.569444999999998,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2511","description":"Issue summary: Some non-default TLS server configurations can cause unbounded memory growth when processing TLSv1.3 sessions  Impact summary: An attacker may exploit certain server configurations to trigger unbounded memory growth that would lead to a Denial of Service  This problem can occur in TLSv1.3 if the non-default SSL_OP_NO_TICKET option is being used (but not if early_data support is also configured and the default anti-replay protection is in use). In this case, under certain conditions, the session cache can get into an incorrect state and it will fail to flush properly as it fills. The session cache will continue to grow in an unbounded manner. A malicious client could deliberately create the scenario for this failure to force a Denial of Service. It may also happen by accident in normal operation.  This issue only affects TLS servers supporting TLSv1.3. It does not affect TLS clients.  The FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue. OpenSSL 1.0.2 is also not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2024-2511","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2511","cwe":"CWE-1325","type":"Secondary","source":"openssl-security@openssl.org"}],"epss":[{"cve":"CVE-2024-2511","date":"2026-10-08","epss":0.52421,"percentile":0.98938}],"urls":["https://github.com/openssl/openssl/commit/7e4d731b1c07201ad9374c1cd9ac5263bdf35bce","https://github.com/openssl/openssl/commit/b52867a9f618bb955bed2a3ce3db4d4f97ed8e5d","https://github.com/openssl/openssl/commit/e9d7083e241670332e0443da0f0d4ffb52829f08","https://github.openssl.org/openssl/extended-releases/commit/5f8d25770ae6437db119dfc951e207271a326640","https://www.openssl.org/news/secadv/20240408.txt","http://www.openwall.com/lists/oss-security/2024/04/08/5","https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html","https://security.netapp.com/advisory/ntap-20240503-0013/","https://cert-portal.siemens.com/productcert/html/ssa-265688.html","https://cert-portal.siemens.com/productcert/html/ssa-354112.html","https://cert-portal.siemens.com/productcert/html/ssa-398330.html","https://cert-portal.siemens.com/productcert/html/ssa-613116.html","https://cert-portal.siemens.com/productcert/html/ssa-769027.html","https://cert-portal.siemens.com/productcert/html/ssa-915275.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2511","description":"Issue summary: Some non-default TLS server configurations can cause unbounded\nmemory growth when processing TLSv1.3 sessions\n\nImpact summary: An attacker may exploit certain server configurations to trigger\nunbounded memory growth that would lead to a Denial of Service\n\nThis problem can occur in TLSv1.3 if the non-default SSL_OP_NO_TICKET option is\nbeing used (but not if early_data support is also configured and the default\nanti-replay protection is in use). In this case, under certain conditions, the\nsession cache can get into an incorrect state and it will fail to flush properly\nas it fills. The session cache will continue to grow in an unbounded manner. A\nmalicious client could deliberately create the scenario for this failure to\nforce a Denial of Service. It may also happen by accident in normal operation.\n\nThis issue only affects TLS servers supporting TLSv1.3. It does not affect TLS\nclients.\n\nThe FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue. OpenSSL\n1.0.2 is also not affected by this issue."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-32002","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32002","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":9,"impactScore":6.1,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32002","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2024-32002","cwe":"CWE-434","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2024-32002","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-32002","date":"2026-10-08","epss":0.29234,"percentile":0.98133}],"risk":26.3106,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32002","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, repositories with submodules can be crafted in a way that exploits a bug in Git whereby it can be fooled into writing files not into the submodule's worktree but into a `.git/` directory. This allows writing a hook that will be executed while the clone operation is still running, giving the user no opportunity to inspect the code that is being executed. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. If symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. As always, it is best to avoid cloning repositories from untrusted sources."},"relatedVulnerabilities":[{"id":"CVE-2024-32002","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":9,"impactScore":6.1,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":9,"impactScore":6.1,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32002","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2024-32002","cwe":"CWE-434","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2024-32002","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-32002","date":"2026-10-08","epss":0.29234,"percentile":0.98133}],"urls":["http://www.openwall.com/lists/oss-security/2024/05/14/2","https://git-scm.com/docs/git-clone#Documentation/git-clone.txt---recurse-submodulesltpathspecgt","https://git-scm.com/docs/git-config#Documentation/git-config.txt-coresymlinks","https://github.com/git/git/commit/97065761333fd62db1912d81b489db938d8c991d","https://github.com/git/git/security/advisories/GHSA-8h77-4q3w-gfgv","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S4CK4IYTXEOBZTEM5K3T6LWOIZ3S44AR/","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32002","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, repositories with submodules can be crafted in a way that exploits a bug in Git whereby it can be fooled into writing files not into the submodule's worktree but into a `.git/` directory. This allows writing a hook that will be executed while the clone operation is still running, giving the user no opportunity to inspect the code that is being executed. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. If symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. As always, it is best to avoid cloning repositories from untrusted sources."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-32002","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32002","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":9,"impactScore":6.1,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32002","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2024-32002","cwe":"CWE-434","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2024-32002","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-32002","date":"2026-10-08","epss":0.29234,"percentile":0.98133}],"risk":26.3106,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32002","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, repositories with submodules can be crafted in a way that exploits a bug in Git whereby it can be fooled into writing files not into the submodule's worktree but into a `.git/` directory. This allows writing a hook that will be executed while the clone operation is still running, giving the user no opportunity to inspect the code that is being executed. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. If symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. As always, it is best to avoid cloning repositories from untrusted sources."},"relatedVulnerabilities":[{"id":"CVE-2024-32002","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":9,"impactScore":6.1,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":9,"impactScore":6.1,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32002","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2024-32002","cwe":"CWE-434","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2024-32002","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-32002","date":"2026-10-08","epss":0.29234,"percentile":0.98133}],"urls":["http://www.openwall.com/lists/oss-security/2024/05/14/2","https://git-scm.com/docs/git-clone#Documentation/git-clone.txt---recurse-submodulesltpathspecgt","https://git-scm.com/docs/git-config#Documentation/git-config.txt-coresymlinks","https://github.com/git/git/commit/97065761333fd62db1912d81b489db938d8c991d","https://github.com/git/git/security/advisories/GHSA-8h77-4q3w-gfgv","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S4CK4IYTXEOBZTEM5K3T6LWOIZ3S44AR/","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32002","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, repositories with submodules can be crafted in a way that exploits a bug in Git whereby it can be fooled into writing files not into the submodule's worktree but into a `.git/` directory. This allows writing a hook that will be executed while the clone operation is still running, giving the user no opportunity to inspect the code that is being executed. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. If symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. As always, it is best to avoid cloning repositories from untrusted sources."}]},{"artifact":{"id":"2b718cc4fa04bea8","cpes":["cpe:2.3:a:org.jenkins-ci.main:remoting:4.9:*:*:*:*:*:*:*","cpe:2.3:a:jenkins-ci:remoting:4.9:*:*:*:*:*:*:*","cpe:2.3:a:jenkins_ci:remoting:4.9:*:*:*:*:*:*:*","cpe:2.3:a:remoting:remoting:4.9:*:*:*:*:*:*:*","cpe:2.3:a:jenkins:remoting:4.9:*:*:*:*:*:*:*","cpe:2.3:a:main:remoting:4.9:*:*:*:*:*:*:*"],"name":"remoting","purl":"pkg:maven/org.jenkins-ci.main/remoting@4.9","type":"java-archive","version":"4.9","language":"java","licenses":["Apache License 2.0","The MIT license"],"metadata":{"pomGroupID":"org.jenkins-ci.main","virtualPath":"/usr/share/jenkins/agent.jar:org.jenkins-ci.main:remoting","manifestName":"","pomArtifactID":"remoting","archiveDigests":null},"locations":[{"path":"/usr/share/jenkins/agent.jar","layerID":"sha256:3f01ba93adcb3157859d14ddae25e72968bb57f2224fe14f29d9ddad8edb190d","accessPath":"/usr/share/jenkins/agent.jar","annotations":{"evidence":"primary"}}],"upstreams":[],"metadataType":"JavaMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"3206.3208"},"type":"exact-direct-match","found":{"vulnerabilityID":"GHSA-h856-ffvv-xvr4","versionConstraint":"<3206.3208 (unknown)"},"matcher":"java-matcher","searchedBy":{"package":{"name":"org.jenkins-ci.main:remoting","version":"4.9"},"language":"java","namespace":"github:language:java"}}],"vulnerability":{"id":"GHSA-h856-ffvv-xvr4","fix":{"state":"fixed","versions":["3206.3208"],"available":[{"date":"2024-08-08","kind":"first-observed","version":"3206.3208"}]},"cvss":[{"type":"Secondary","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":9,"impactScore":6.1,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","vector":"CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H","metrics":{"baseScore":7.1},"version":"4.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-43044","cwe":"CWE-754","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2024-43044","cwe":"CWE-754","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-43044","date":"2026-10-08","epss":0.28782,"percentile":0.98105}],"risk":22.378005000000005,"urls":["https://nvd.nist.gov/vuln/detail/CVE-2024-43044","https://www.jenkins.io/security/advisory/2024-08-07/#SECURITY-3430","https://github.com/jenkinsci/jenkins/commit/3f54c41b40db9e4ae7afa4209bc1ea91bb9175c0","https://github.com/jenkinsci/jenkins/commit/5d26b53ad3a5cd8c4a060eef4f56d75e65ca17a5","https://github.com/jenkinsci/jenkins/commit/cec49ce5d58048f66ac3fa88409a0d38dec09bf0","https://github.com/jenkinsci/remoting/commit/3277a8e88c9b807b9a989bd7e9176d2ec9834e47","https://github.com/jenkinsci/remoting/commit/409508a675ffc4ed9681e30bb46c8d9cb375b78c","https://github.com/jenkinsci/remoting/commit/858f3c9af69d4d216b26551ea51dde6e67479bb3"],"severity":"High","namespace":"github:language:java","advisories":[],"dataSource":"https://github.com/advisories/GHSA-h856-ffvv-xvr4","description":"Jenkins Remoting library arbitrary file read vulnerability"},"relatedVulnerabilities":[{"id":"CVE-2024-43044","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-43044","cwe":"CWE-754","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2024-43044","cwe":"CWE-754","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-43044","date":"2026-10-08","epss":0.28782,"percentile":0.98105}],"urls":["https://www.jenkins.io/security/advisory/2024-08-07/#SECURITY-3430"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-43044","description":"Jenkins 2.470 and earlier, LTS 2.452.3 and earlier allows agent processes to read arbitrary files from the Jenkins controller file system by using the `ClassLoaderProxy#fetchJar` method in the Remoting library."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-32206","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32206","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32206","date":"2026-10-08","epss":0.33097,"percentile":0.98328}],"risk":19.030775,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32206","description":"curl < 7.84.0 supports \"chained\" HTTP compression algorithms, meaning that a serverresponse can be compressed multiple times and potentially with different algorithms. The number of acceptable \"links\" in this \"decompression chain\" was unbounded, allowing a malicious server to insert a virtually unlimited number of compression steps.The use of such a decompression chain could result in a \"malloc bomb\", makingcurl end up spending enormous amounts of allocated heap memory, or trying toand returning out of memory errors."},"relatedVulnerabilities":[{"id":"CVE-2022-32206","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:P","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32206","date":"2026-10-08","epss":0.33097,"percentile":0.98328}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","http://www.openwall.com/lists/oss-security/2023/02/15/3","https://cert-portal.siemens.com/productcert/pdf/ssa-333517.pdf","https://hackerone.com/reports/1570651","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEV6BR4MTI3CEWK2YU2HQZUW5FAS3FEY/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220915-0003/","https://support.apple.com/kb/HT213488","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32206","description":"curl < 7.84.0 supports \"chained\" HTTP compression algorithms, meaning that a serverresponse can be compressed multiple times and potentially with different algorithms. The number of acceptable \"links\" in this \"decompression chain\" was unbounded, allowing a malicious server to insert a virtually unlimited number of compression steps.The use of such a decompression chain could result in a \"malloc bomb\", makingcurl end up spending enormous amounts of allocated heap memory, or trying toand returning out of memory errors."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-32206","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32206","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32206","date":"2026-10-08","epss":0.33097,"percentile":0.98328}],"risk":19.030775,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32206","description":"curl < 7.84.0 supports \"chained\" HTTP compression algorithms, meaning that a serverresponse can be compressed multiple times and potentially with different algorithms. The number of acceptable \"links\" in this \"decompression chain\" was unbounded, allowing a malicious server to insert a virtually unlimited number of compression steps.The use of such a decompression chain could result in a \"malloc bomb\", makingcurl end up spending enormous amounts of allocated heap memory, or trying toand returning out of memory errors."},"relatedVulnerabilities":[{"id":"CVE-2022-32206","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:P","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32206","date":"2026-10-08","epss":0.33097,"percentile":0.98328}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","http://www.openwall.com/lists/oss-security/2023/02/15/3","https://cert-portal.siemens.com/productcert/pdf/ssa-333517.pdf","https://hackerone.com/reports/1570651","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEV6BR4MTI3CEWK2YU2HQZUW5FAS3FEY/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220915-0003/","https://support.apple.com/kb/HT213488","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32206","description":"curl < 7.84.0 supports \"chained\" HTTP compression algorithms, meaning that a serverresponse can be compressed multiple times and potentially with different algorithms. The number of acceptable \"links\" in this \"decompression chain\" was unbounded, allowing a malicious server to insert a virtually unlimited number of compression steps.The use of such a decompression chain could result in a \"malloc bomb\", makingcurl end up spending enormous amounts of allocated heap memory, or trying toand returning out of memory errors."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-32206","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32206","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32206","date":"2026-10-08","epss":0.33097,"percentile":0.98328}],"risk":19.030775,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32206","description":"curl < 7.84.0 supports \"chained\" HTTP compression algorithms, meaning that a serverresponse can be compressed multiple times and potentially with different algorithms. The number of acceptable \"links\" in this \"decompression chain\" was unbounded, allowing a malicious server to insert a virtually unlimited number of compression steps.The use of such a decompression chain could result in a \"malloc bomb\", makingcurl end up spending enormous amounts of allocated heap memory, or trying toand returning out of memory errors."},"relatedVulnerabilities":[{"id":"CVE-2022-32206","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:P","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32206","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32206","date":"2026-10-08","epss":0.33097,"percentile":0.98328}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","http://www.openwall.com/lists/oss-security/2023/02/15/3","https://cert-portal.siemens.com/productcert/pdf/ssa-333517.pdf","https://hackerone.com/reports/1570651","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEV6BR4MTI3CEWK2YU2HQZUW5FAS3FEY/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220915-0003/","https://support.apple.com/kb/HT213488","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32206","description":"curl < 7.84.0 supports \"chained\" HTTP compression algorithms, meaning that a serverresponse can be compressed multiple times and potentially with different algorithms. The number of acceptable \"links\" in this \"decompression chain\" was unbounded, allowing a malicious server to insert a virtually unlimited number of compression steps.The use of such a decompression chain could result in a \"malloc bomb\", makingcurl end up spending enormous amounts of allocated heap memory, or trying toand returning out of memory errors."}]},{"artifact":{"id":"bcc78aeb924eb6b8","cpes":["cpe:2.3:a:zlib1g:zlib1g:1\\:1.2.11.dfsg-1:*:*:*:*:*:*:*"],"name":"zlib1g","purl":"pkg:deb/debian/zlib1g@1%3A1.2.11.dfsg-1?arch=amd64&distro=debian-10.10&upstream=zlib","type":"deb","version":"1:1.2.11.dfsg-1","language":"","licenses":["Zlib"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/zlib1g/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/zlib1g/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/zlib1g:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/zlib1g:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"zlib"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:1.2.11.dfsg-1+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-37434","versionConstraint":"< 1:1.2.11.dfsg-1+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"zlib","version":"1:1.2.11.dfsg-1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-37434","fix":{"state":"fixed","versions":["1:1.2.11.dfsg-1+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:1.2.11.dfsg-1+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-37434","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-37434","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-37434","date":"2026-10-08","epss":0.18972,"percentile":0.97237}],"risk":17.83368,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-37434","description":"zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference)."},"relatedVulnerabilities":[{"id":"CVE-2022-37434","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-37434","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-37434","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-37434","date":"2026-10-08","epss":0.18972,"percentile":0.97237}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/37","http://seclists.org/fulldisclosure/2022/Oct/38","http://seclists.org/fulldisclosure/2022/Oct/41","http://seclists.org/fulldisclosure/2022/Oct/42","http://www.openwall.com/lists/oss-security/2022/08/05/2","http://www.openwall.com/lists/oss-security/2022/08/09/1","https://github.com/curl/curl/issues/9271","https://github.com/ivd38/zlib_overflow","https://github.com/madler/zlib/blob/21767c654d31d2dccdde4330529775c6c5fd5389/zlib.h#L1062-L1063","https://github.com/madler/zlib/commit/1eb7682f845ac9e9bf9ae35bbfb3bad5dacbd91d","https://github.com/madler/zlib/commit/eff308af425b67093bab25f80f1ae950166bece1","https://github.com/nodejs/node/blob/75b68c6e4db515f76df73af476eccf382bbcb00a/deps/zlib/inflate.c#L762-L764","https://lists.debian.org/debian-lts-announce/2022/09/msg00012.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JWN4VE3JQR4O2SOUS5TXNLANRPMHWV4I/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NMBOJ77A7T7PQCARMDUK75TE6LLESZ3O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PAVPQNCG3XRLCLNSQRM3KAN5ZFMVXVTY/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X5U7OTKZSHY2I3ZFJSR2SHFHW72RKGDK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YRQAI7H4M4RQZ2IWZUEEXECBE5D56BH2/","https://security.netapp.com/advisory/ntap-20220901-0005/","https://security.netapp.com/advisory/ntap-20230427-0007/","https://support.apple.com/kb/HT213488","https://support.apple.com/kb/HT213489","https://support.apple.com/kb/HT213490","https://support.apple.com/kb/HT213491","https://support.apple.com/kb/HT213493","https://support.apple.com/kb/HT213494","https://www.debian.org/security/2022/dsa-5218","https://cert-portal.siemens.com/productcert/html/ssa-150063.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://cert-portal.siemens.com/productcert/html/ssa-398330.html","https://cert-portal.siemens.com/productcert/html/ssa-470355.html","https://cert-portal.siemens.com/productcert/html/ssa-561322.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-37434","description":"zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the affected zlib source code but may be unable to call inflateGetHeader (e.g., see the nodejs/node reference)."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-4450","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-4450","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4450","cwe":"CWE-415","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-4450","cwe":"CWE-415","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-4450","date":"2026-10-08","epss":0.20287,"percentile":0.97419}],"risk":15.21525,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-4450","description":"The function PEM_read_bio_ex() reads a PEM file from a BIO and parses and decodes the \"name\" (e.g. \"CERTIFICATE\"), any header data and the payload data. If the function succeeds then the \"name_out\", \"header\" and \"data\" arguments are populated with pointers to buffers containing the relevant decoded data. The caller is responsible for freeing those buffers. It is possible to construct a PEM file that results in 0 bytes of payload data. In this case PEM_read_bio_ex() will return a failure code but will populate the header argument with a pointer to a buffer that has already been freed. If the caller also frees this buffer then a double free will occur. This will most likely lead to a crash. This could be exploited by an attacker who has the ability to supply malicious PEM files for parsing to achieve a denial of service attack.  The functions PEM_read_bio() and PEM_read() are simple wrappers around PEM_read_bio_ex() and therefore these functions are also directly affected.  These functions are also called indirectly by a number of other OpenSSL functions including PEM_X509_INFO_read_bio_ex() and SSL_CTX_use_serverinfo_file() which are also vulnerable. Some OpenSSL internal uses of these functions are not vulnerable because the caller does not free the header argument if PEM_read_bio_ex() returns a failure code. These locations include the PEM_read_bio_TYPE() functions as well as the decoders introduced in OpenSSL 3.0.  The OpenSSL asn1parse command line application is also impacted by this issue."},"relatedVulnerabilities":[{"id":"CVE-2022-4450","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4450","cwe":"CWE-415","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-4450","cwe":"CWE-415","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-4450","date":"2026-10-08","epss":0.20287,"percentile":0.97419}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=63bcf189be73a9cc1264059bed6f57974be74a83","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=bbcf509bd046b34cca19c766bbddc31683d0858b","https://security.gentoo.org/glsa/202402-08","https://www.openssl.org/news/secadv/20230207.txt","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-4450","description":"The function PEM_read_bio_ex() reads a PEM file from a BIO and parses and\ndecodes the \"name\" (e.g. \"CERTIFICATE\"), any header data and the payload data.\nIf the function succeeds then the \"name_out\", \"header\" and \"data\" arguments are\npopulated with pointers to buffers containing the relevant decoded data. The\ncaller is responsible for freeing those buffers. It is possible to construct a\nPEM file that results in 0 bytes of payload data. In this case PEM_read_bio_ex()\nwill return a failure code but will populate the header argument with a pointer\nto a buffer that has already been freed. If the caller also frees this buffer\nthen a double free will occur. This will most likely lead to a crash. This\ncould be exploited by an attacker who has the ability to supply malicious PEM\nfiles for parsing to achieve a denial of service attack.\n\nThe functions PEM_read_bio() and PEM_read() are simple wrappers around\nPEM_read_bio_ex() and therefore these functions are also directly affected.\n\nThese functions are also called indirectly by a number of other OpenSSL\nfunctions including PEM_X509_INFO_read_bio_ex() and\nSSL_CTX_use_serverinfo_file() which are also vulnerable. Some OpenSSL internal\nuses of these functions are not vulnerable because the caller does not free the\nheader argument if PEM_read_bio_ex() returns a failure code. These locations\ninclude the PEM_read_bio_TYPE() functions as well as the decoders introduced in\nOpenSSL 3.0.\n\nThe OpenSSL asn1parse command line application is also impacted by this issue."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-4450","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-4450","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4450","cwe":"CWE-415","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-4450","cwe":"CWE-415","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-4450","date":"2026-10-08","epss":0.20287,"percentile":0.97419}],"risk":15.21525,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-4450","description":"The function PEM_read_bio_ex() reads a PEM file from a BIO and parses and decodes the \"name\" (e.g. \"CERTIFICATE\"), any header data and the payload data. If the function succeeds then the \"name_out\", \"header\" and \"data\" arguments are populated with pointers to buffers containing the relevant decoded data. The caller is responsible for freeing those buffers. It is possible to construct a PEM file that results in 0 bytes of payload data. In this case PEM_read_bio_ex() will return a failure code but will populate the header argument with a pointer to a buffer that has already been freed. If the caller also frees this buffer then a double free will occur. This will most likely lead to a crash. This could be exploited by an attacker who has the ability to supply malicious PEM files for parsing to achieve a denial of service attack.  The functions PEM_read_bio() and PEM_read() are simple wrappers around PEM_read_bio_ex() and therefore these functions are also directly affected.  These functions are also called indirectly by a number of other OpenSSL functions including PEM_X509_INFO_read_bio_ex() and SSL_CTX_use_serverinfo_file() which are also vulnerable. Some OpenSSL internal uses of these functions are not vulnerable because the caller does not free the header argument if PEM_read_bio_ex() returns a failure code. These locations include the PEM_read_bio_TYPE() functions as well as the decoders introduced in OpenSSL 3.0.  The OpenSSL asn1parse command line application is also impacted by this issue."},"relatedVulnerabilities":[{"id":"CVE-2022-4450","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4450","cwe":"CWE-415","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-4450","cwe":"CWE-415","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-4450","date":"2026-10-08","epss":0.20287,"percentile":0.97419}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=63bcf189be73a9cc1264059bed6f57974be74a83","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=bbcf509bd046b34cca19c766bbddc31683d0858b","https://security.gentoo.org/glsa/202402-08","https://www.openssl.org/news/secadv/20230207.txt","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-4450","description":"The function PEM_read_bio_ex() reads a PEM file from a BIO and parses and\ndecodes the \"name\" (e.g. \"CERTIFICATE\"), any header data and the payload data.\nIf the function succeeds then the \"name_out\", \"header\" and \"data\" arguments are\npopulated with pointers to buffers containing the relevant decoded data. The\ncaller is responsible for freeing those buffers. It is possible to construct a\nPEM file that results in 0 bytes of payload data. In this case PEM_read_bio_ex()\nwill return a failure code but will populate the header argument with a pointer\nto a buffer that has already been freed. If the caller also frees this buffer\nthen a double free will occur. This will most likely lead to a crash. This\ncould be exploited by an attacker who has the ability to supply malicious PEM\nfiles for parsing to achieve a denial of service attack.\n\nThe functions PEM_read_bio() and PEM_read() are simple wrappers around\nPEM_read_bio_ex() and therefore these functions are also directly affected.\n\nThese functions are also called indirectly by a number of other OpenSSL\nfunctions including PEM_X509_INFO_read_bio_ex() and\nSSL_CTX_use_serverinfo_file() which are also vulnerable. Some OpenSSL internal\nuses of these functions are not vulnerable because the caller does not free the\nheader argument if PEM_read_bio_ex() returns a failure code. These locations\ninclude the PEM_read_bio_TYPE() functions as well as the decoders introduced in\nOpenSSL 3.0.\n\nThe OpenSSL asn1parse command line application is also impacted by this issue."}]},{"artifact":{"id":"dfdab1b7031e1625","cpes":["cpe:2.3:a:openssh-client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh-client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*"],"name":"openssh-client","purl":"pkg:deb/debian/openssh-client@1%3A7.9p1-10%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=openssh","type":"deb","version":"1:7.9p1-10+deb10u2","language":"","licenses":["BSD-2-clause","BSD-3-clause","Beer-ware","Expat-with-advertising-restriction","Mazieres-BSD-style","OpenSSH","Powell-BSD-style","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssh-client/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/openssh-client/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.list"},{"path":"/var/lib/dpkg/info/openssh-client.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postinst"},{"path":"/var/lib/dpkg/info/openssh-client.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postrm"},{"path":"/var/lib/dpkg/info/openssh-client.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.preinst"},{"path":"/var/lib/dpkg/info/openssh-client.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.prerm"}],"upstreams":[{"name":"openssh"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:7.9p1-10+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-51385","versionConstraint":"< 1:7.9p1-10+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssh","version":"1:7.9p1-10+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-51385","fix":{"state":"fixed","versions":["1:7.9p1-10+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:7.9p1-10+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-51385","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-51385","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-51385","date":"2026-10-08","epss":0.19753,"percentile":0.97345}],"risk":11.357975,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-51385","description":"In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and this name is referenced by an expansion token in certain situations. For example, an untrusted Git repository can have a submodule with shell metacharacters in a user name or host name."},"relatedVulnerabilities":[{"id":"CVE-2023-51385","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-51385","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-51385","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-51385","date":"2026-10-08","epss":0.19753,"percentile":0.97345}],"urls":["http://seclists.org/fulldisclosure/2024/Mar/21","http://www.openwall.com/lists/oss-security/2023/12/26/4","https://github.com/openssh/openssh-portable/commit/7ef3787c84b6b524501211b11a26c742f829af1a","https://lists.debian.org/debian-lts-announce/2023/12/msg00017.html","https://security.gentoo.org/glsa/202312-17","https://security.netapp.com/advisory/ntap-20240105-0005/","https://support.apple.com/kb/HT214084","https://vin01.github.io/piptagole/ssh/security/openssh/libssh/remote-code-execution/2023/12/20/openssh-proxycommand-libssh-rce.html","https://www.debian.org/security/2023/dsa-5586","https://www.openssh.com/txt/release-9.6","https://www.openwall.com/lists/oss-security/2023/12/18/2","http://www.openwall.com/lists/oss-security/2025/10/07/1","http://www.openwall.com/lists/oss-security/2025/10/12/1","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-769027.html","https://cert-portal.siemens.com/productcert/html/ssa-794697.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-51385","description":"In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and this name is referenced by an expansion token in certain situations. For example, an untrusted Git repository can have a submodule with shell metacharacters in a user name or host name."}]},{"artifact":{"id":"16faa100e8d6ebcf","cpes":["cpe:2.3:a:libssh2-1:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2-1:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2_1:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2_1:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*"],"name":"libssh2-1","purl":"pkg:deb/debian/libssh2-1@1.8.0-2.1?arch=amd64&distro=debian-10.10&upstream=libssh2","type":"deb","version":"1.8.0-2.1","language":"","licenses":["BSD3"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssh2-1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssh2-1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssh2-1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssh2-1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"libssh2"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0-2.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-13115","versionConstraint":"< 1.8.0-2.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libssh2","version":"1.8.0-2.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-13115","fix":{"state":"fixed","versions":["1.8.0-2.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.8.0-2.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-13115","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-13115","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-13115","date":"2026-10-08","epss":0.11659,"percentile":0.95959}],"risk":9.09402,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-13115","description":"In libssh2 before 1.9.0, kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has an integer overflow that could lead to an out-of-bounds read in the way packets are read from the server. A remote attacker who compromises a SSH server may be able to disclose sensitive information or cause a denial of service condition on the client system when a user connects to the server. This is related to an _libssh2_check_length mistake, and is different from the various issues fixed in 1.8.1, such as CVE-2019-3855."},"relatedVulnerabilities":[{"id":"CVE-2019-13115","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:P","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-13115","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-13115","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-13115","date":"2026-10-08","epss":0.11659,"percentile":0.95959}],"urls":["http://packetstormsecurity.com/files/172834/libssh2-1.8.2-Out-Of-Bounds-Read.html","https://blog.semmle.com/libssh2-integer-overflow/","https://github.com/libssh2/libssh2/compare/02ecf17...42d37aa","https://github.com/libssh2/libssh2/pull/350","https://libssh2.org/changes.html","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://lists.debian.org/debian-lts-announce/2019/07/msg00024.html","https://lists.debian.org/debian-lts-announce/2021/12/msg00013.html","https://lists.debian.org/debian-lts-announce/2023/09/msg00006.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6LUNHPW64IGCASZ4JQ2J5KDXNZN53DWW/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/M7IF3LNHOA75O4WZWIHJLIRMA5LJUED3/","https://security.netapp.com/advisory/ntap-20190806-0002/","https://support.f5.com/csp/article/K13322484","https://support.f5.com/csp/article/K13322484?utm_source=f5support&amp%3Butm_medium=RSS"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-13115","description":"In libssh2 before 1.9.0, kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has an integer overflow that could lead to an out-of-bounds read in the way packets are read from the server. A remote attacker who compromises a SSH server may be able to disclose sensitive information or cause a denial of service condition on the client system when a user connects to the server. This is related to an _libssh2_check_length mistake, and is different from the various issues fixed in 1.8.1, such as CVE-2019-3855."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-4304","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-4304","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4304","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-4304","cwe":"CWE-203","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-4304","date":"2026-10-08","epss":0.16195,"percentile":0.96865}],"risk":8.826275,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-4304","description":"A timing based side channel exists in the OpenSSL RSA Decryption implementation which could be sufficient to recover a plaintext across a network in a Bleichenbacher style attack. To achieve a successful decryption an attacker would have to be able to send a very large number of trial messages for decryption. The vulnerability affects all RSA padding modes: PKCS#1 v1.5, RSA-OEAP and RSASVE.  For example, in a TLS connection, RSA is commonly used by a client to send an encrypted pre-master secret to the server. An attacker that had observed a genuine connection between a client and a server could use this flaw to send trial messages to the server and record the time taken to process them. After a sufficiently large number of messages the attacker could recover the pre-master secret used for the original connection and thus be able to decrypt the application data sent over that connection."},"relatedVulnerabilities":[{"id":"CVE-2022-4304","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4304","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-4304","cwe":"CWE-203","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-4304","date":"2026-10-08","epss":0.16195,"percentile":0.96865}],"urls":["https://security.gentoo.org/glsa/202402-08","https://www.openssl.org/news/secadv/20230207.txt","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-4304","description":"A timing based side channel exists in the OpenSSL RSA Decryption implementation\nwhich could be sufficient to recover a plaintext across a network in a\nBleichenbacher style attack. To achieve a successful decryption an attacker\nwould have to be able to send a very large number of trial messages for\ndecryption. The vulnerability affects all RSA padding modes: PKCS#1 v1.5,\nRSA-OEAP and RSASVE.\n\nFor example, in a TLS connection, RSA is commonly used by a client to send an\nencrypted pre-master secret to the server. An attacker that had observed a\ngenuine connection between a client and a server could use this flaw to send\ntrial messages to the server and record the time taken to process them. After a\nsufficiently large number of messages the attacker could recover the pre-master\nsecret used for the original connection and thus be able to decrypt the\napplication data sent over that connection."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-4304","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-4304","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4304","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-4304","cwe":"CWE-203","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-4304","date":"2026-10-08","epss":0.16195,"percentile":0.96865}],"risk":8.826275,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-4304","description":"A timing based side channel exists in the OpenSSL RSA Decryption implementation which could be sufficient to recover a plaintext across a network in a Bleichenbacher style attack. To achieve a successful decryption an attacker would have to be able to send a very large number of trial messages for decryption. The vulnerability affects all RSA padding modes: PKCS#1 v1.5, RSA-OEAP and RSASVE.  For example, in a TLS connection, RSA is commonly used by a client to send an encrypted pre-master secret to the server. An attacker that had observed a genuine connection between a client and a server could use this flaw to send trial messages to the server and record the time taken to process them. After a sufficiently large number of messages the attacker could recover the pre-master secret used for the original connection and thus be able to decrypt the application data sent over that connection."},"relatedVulnerabilities":[{"id":"CVE-2022-4304","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4304","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-4304","cwe":"CWE-203","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-4304","date":"2026-10-08","epss":0.16195,"percentile":0.96865}],"urls":["https://security.gentoo.org/glsa/202402-08","https://www.openssl.org/news/secadv/20230207.txt","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-4304","description":"A timing based side channel exists in the OpenSSL RSA Decryption implementation\nwhich could be sufficient to recover a plaintext across a network in a\nBleichenbacher style attack. To achieve a successful decryption an attacker\nwould have to be able to send a very large number of trial messages for\ndecryption. The vulnerability affects all RSA padding modes: PKCS#1 v1.5,\nRSA-OEAP and RSASVE.\n\nFor example, in a TLS connection, RSA is commonly used by a client to send an\nencrypted pre-master secret to the server. An attacker that had observed a\ngenuine connection between a client and a server could use this flaw to send\ntrial messages to the server and record the time taken to process them. After a\nsufficiently large number of messages the attacker could recover the pre-master\nsecret used for the original connection and thus be able to decrypt the\napplication data sent over that connection."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35559","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 12, < 17.0.1||>= 7, < 7.0.321||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35559","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311","11.0.13","17.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35559","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35559","date":"2026-10-08","epss":0.159,"percentile":0.96812}],"risk":8.109000000000002,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7WTVCIVHTX3XONYOEGUMLKCM4QEC6INT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DJILEHYV2U37HKMGFEQ7CAVOV4DUWW2O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V362B2BWTH5IJDL45QPQGMBKIQOG7JX5/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-5000","https://www.debian.org/security/2021/dsa-5012","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35559","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"11266fe42a39668b","cpes":["cpe:2.3:a:libgssapi-krb5-2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5-2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgssapi-krb5-2","purl":"pkg:deb/debian/libgssapi-krb5-2@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgssapi-krb5-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libgssapi-krb5-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-36222","versionConstraint":"< 1.17-3+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-36222","fix":{"state":"fixed","versions":["1.17-3+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-36222","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-36222","date":"2026-10-08","epss":0.10276,"percentile":0.95584}],"risk":7.707,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4944-1","link":"https://security-tracker.debian.org/tracker/DSA-4944-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-36222","description":"ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation."},"relatedVulnerabilities":[{"id":"CVE-2021-36222","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-36222","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-36222","date":"2026-10-08","epss":0.10276,"percentile":0.95584}],"urls":["https://github.com/krb5/krb5/commit/fc98f520caefff2e5ee9a0026fdf5109944b3562","https://github.com/krb5/krb5/releases","https://security.netapp.com/advisory/ntap-20211022-0003/","https://security.netapp.com/advisory/ntap-20211104-0007/","https://web.mit.edu/kerberos/advisories/","https://www.debian.org/security/2021/dsa-4944","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-36222","description":"ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation."}]},{"artifact":{"id":"ccf5186a66741b60","cpes":["cpe:2.3:a:libk5crypto3:libk5crypto3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libk5crypto3","purl":"pkg:deb/debian/libk5crypto3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libk5crypto3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libk5crypto3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-36222","versionConstraint":"< 1.17-3+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-36222","fix":{"state":"fixed","versions":["1.17-3+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-36222","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-36222","date":"2026-10-08","epss":0.10276,"percentile":0.95584}],"risk":7.707,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4944-1","link":"https://security-tracker.debian.org/tracker/DSA-4944-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-36222","description":"ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation."},"relatedVulnerabilities":[{"id":"CVE-2021-36222","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-36222","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-36222","date":"2026-10-08","epss":0.10276,"percentile":0.95584}],"urls":["https://github.com/krb5/krb5/commit/fc98f520caefff2e5ee9a0026fdf5109944b3562","https://github.com/krb5/krb5/releases","https://security.netapp.com/advisory/ntap-20211022-0003/","https://security.netapp.com/advisory/ntap-20211104-0007/","https://web.mit.edu/kerberos/advisories/","https://www.debian.org/security/2021/dsa-4944","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-36222","description":"ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation."}]},{"artifact":{"id":"9d7689846a6700a5","cpes":["cpe:2.3:a:libkrb5-3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5-3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5-3","purl":"pkg:deb/debian/libkrb5-3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5-3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5-3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-36222","versionConstraint":"< 1.17-3+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-36222","fix":{"state":"fixed","versions":["1.17-3+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-36222","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-36222","date":"2026-10-08","epss":0.10276,"percentile":0.95584}],"risk":7.707,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4944-1","link":"https://security-tracker.debian.org/tracker/DSA-4944-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-36222","description":"ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation."},"relatedVulnerabilities":[{"id":"CVE-2021-36222","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-36222","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-36222","date":"2026-10-08","epss":0.10276,"percentile":0.95584}],"urls":["https://github.com/krb5/krb5/commit/fc98f520caefff2e5ee9a0026fdf5109944b3562","https://github.com/krb5/krb5/releases","https://security.netapp.com/advisory/ntap-20211022-0003/","https://security.netapp.com/advisory/ntap-20211104-0007/","https://web.mit.edu/kerberos/advisories/","https://www.debian.org/security/2021/dsa-4944","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-36222","description":"ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation."}]},{"artifact":{"id":"a14f851bc531224e","cpes":["cpe:2.3:a:libkrb5support0:libkrb5support0:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5support0","purl":"pkg:deb/debian/libkrb5support0@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5support0/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5support0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-36222","versionConstraint":"< 1.17-3+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-36222","fix":{"state":"fixed","versions":["1.17-3+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-36222","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-36222","date":"2026-10-08","epss":0.10276,"percentile":0.95584}],"risk":7.707,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4944-1","link":"https://security-tracker.debian.org/tracker/DSA-4944-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-36222","description":"ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation."},"relatedVulnerabilities":[{"id":"CVE-2021-36222","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-36222","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-36222","date":"2026-10-08","epss":0.10276,"percentile":0.95584}],"urls":["https://github.com/krb5/krb5/commit/fc98f520caefff2e5ee9a0026fdf5109944b3562","https://github.com/krb5/krb5/releases","https://security.netapp.com/advisory/ntap-20211022-0003/","https://security.netapp.com/advisory/ntap-20211104-0007/","https://web.mit.edu/kerberos/advisories/","https://www.debian.org/security/2021/dsa-4944","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-36222","description":"ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation."}]},{"artifact":{"id":"11266fe42a39668b","cpes":["cpe:2.3:a:libgssapi-krb5-2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5-2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgssapi-krb5-2","purl":"pkg:deb/debian/libgssapi-krb5-2@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgssapi-krb5-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libgssapi-krb5-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-42898","versionConstraint":"< 1.17-3+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-42898","fix":{"state":"fixed","versions":["1.17-3+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-42898","date":"2026-10-08","epss":0.06473,"percentile":0.93575}],"risk":5.275495,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-42898","description":"PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has \"a similar bug.\""},"relatedVulnerabilities":[{"id":"CVE-2022-42898","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-42898","date":"2026-10-08","epss":0.06473,"percentile":0.93575}],"urls":["https://bugzilla.samba.org/show_bug.cgi?id=15203","https://github.com/heimdal/heimdal/security/advisories/GHSA-64mq-fvfj-5x3c","https://github.com/krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583","https://security.gentoo.org/glsa/202309-06","https://security.gentoo.org/glsa/202310-06","https://security.netapp.com/advisory/ntap-20230216-0008/","https://security.netapp.com/advisory/ntap-20230223-0001/","https://web.mit.edu/kerberos/advisories/","https://web.mit.edu/kerberos/krb5-1.19/","https://web.mit.edu/kerberos/krb5-1.20/README-1.20.1.txt","https://www.samba.org/samba/security/CVE-2022-42898.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-42898","description":"PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has \"a similar bug.\""}]},{"artifact":{"id":"ccf5186a66741b60","cpes":["cpe:2.3:a:libk5crypto3:libk5crypto3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libk5crypto3","purl":"pkg:deb/debian/libk5crypto3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libk5crypto3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libk5crypto3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-42898","versionConstraint":"< 1.17-3+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-42898","fix":{"state":"fixed","versions":["1.17-3+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-42898","date":"2026-10-08","epss":0.06473,"percentile":0.93575}],"risk":5.275495,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-42898","description":"PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has \"a similar bug.\""},"relatedVulnerabilities":[{"id":"CVE-2022-42898","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-42898","date":"2026-10-08","epss":0.06473,"percentile":0.93575}],"urls":["https://bugzilla.samba.org/show_bug.cgi?id=15203","https://github.com/heimdal/heimdal/security/advisories/GHSA-64mq-fvfj-5x3c","https://github.com/krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583","https://security.gentoo.org/glsa/202309-06","https://security.gentoo.org/glsa/202310-06","https://security.netapp.com/advisory/ntap-20230216-0008/","https://security.netapp.com/advisory/ntap-20230223-0001/","https://web.mit.edu/kerberos/advisories/","https://web.mit.edu/kerberos/krb5-1.19/","https://web.mit.edu/kerberos/krb5-1.20/README-1.20.1.txt","https://www.samba.org/samba/security/CVE-2022-42898.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-42898","description":"PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has \"a similar bug.\""}]},{"artifact":{"id":"9d7689846a6700a5","cpes":["cpe:2.3:a:libkrb5-3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5-3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5-3","purl":"pkg:deb/debian/libkrb5-3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5-3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5-3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-42898","versionConstraint":"< 1.17-3+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-42898","fix":{"state":"fixed","versions":["1.17-3+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-42898","date":"2026-10-08","epss":0.06473,"percentile":0.93575}],"risk":5.275495,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-42898","description":"PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has \"a similar bug.\""},"relatedVulnerabilities":[{"id":"CVE-2022-42898","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-42898","date":"2026-10-08","epss":0.06473,"percentile":0.93575}],"urls":["https://bugzilla.samba.org/show_bug.cgi?id=15203","https://github.com/heimdal/heimdal/security/advisories/GHSA-64mq-fvfj-5x3c","https://github.com/krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583","https://security.gentoo.org/glsa/202309-06","https://security.gentoo.org/glsa/202310-06","https://security.netapp.com/advisory/ntap-20230216-0008/","https://security.netapp.com/advisory/ntap-20230223-0001/","https://web.mit.edu/kerberos/advisories/","https://web.mit.edu/kerberos/krb5-1.19/","https://web.mit.edu/kerberos/krb5-1.20/README-1.20.1.txt","https://www.samba.org/samba/security/CVE-2022-42898.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-42898","description":"PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has \"a similar bug.\""}]},{"artifact":{"id":"a14f851bc531224e","cpes":["cpe:2.3:a:libkrb5support0:libkrb5support0:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5support0","purl":"pkg:deb/debian/libkrb5support0@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5support0/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5support0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-42898","versionConstraint":"< 1.17-3+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-42898","fix":{"state":"fixed","versions":["1.17-3+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-42898","date":"2026-10-08","epss":0.06473,"percentile":0.93575}],"risk":5.275495,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-42898","description":"PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has \"a similar bug.\""},"relatedVulnerabilities":[{"id":"CVE-2022-42898","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-42898","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-42898","date":"2026-10-08","epss":0.06473,"percentile":0.93575}],"urls":["https://bugzilla.samba.org/show_bug.cgi?id=15203","https://github.com/heimdal/heimdal/security/advisories/GHSA-64mq-fvfj-5x3c","https://github.com/krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583","https://security.gentoo.org/glsa/202309-06","https://security.gentoo.org/glsa/202310-06","https://security.netapp.com/advisory/ntap-20230216-0008/","https://security.netapp.com/advisory/ntap-20230223-0001/","https://web.mit.edu/kerberos/advisories/","https://web.mit.edu/kerberos/krb5-1.19/","https://web.mit.edu/kerberos/krb5-1.20/README-1.20.1.txt","https://www.samba.org/samba/security/CVE-2022-42898.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-42898","description":"PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has \"a similar bug.\""}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35550","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 7, < 7.0.321||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35550","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311","11.0.13"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:C/I:N/A:N","metrics":{"baseScore":7.1,"impactScore":6.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35550","date":"2026-10-08","epss":0.07376,"percentile":0.94269}],"risk":5.08944,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7WTVCIVHTX3XONYOEGUMLKCM4QEC6INT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DJILEHYV2U37HKMGFEQ7CAVOV4DUWW2O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V362B2BWTH5IJDL45QPQGMBKIQOG7JX5/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-5000","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35550","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"dfdab1b7031e1625","cpes":["cpe:2.3:a:openssh-client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh-client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*"],"name":"openssh-client","purl":"pkg:deb/debian/openssh-client@1%3A7.9p1-10%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=openssh","type":"deb","version":"1:7.9p1-10+deb10u2","language":"","licenses":["BSD-2-clause","BSD-3-clause","Beer-ware","Expat-with-advertising-restriction","Mazieres-BSD-style","OpenSSH","Powell-BSD-style","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssh-client/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/openssh-client/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.list"},{"path":"/var/lib/dpkg/info/openssh-client.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postinst"},{"path":"/var/lib/dpkg/info/openssh-client.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postrm"},{"path":"/var/lib/dpkg/info/openssh-client.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.preinst"},{"path":"/var/lib/dpkg/info/openssh-client.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.prerm"}],"upstreams":[{"name":"openssh"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:7.9p1-10+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-48795","versionConstraint":"< 1:7.9p1-10+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssh","version":"1:7.9p1-10+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-48795","fix":{"state":"fixed","versions":["1:7.9p1-10+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:7.9p1-10+deb10u4"}]},"cvss":[],"cwes":[{"cve":"CVE-2023-48795","cwe":"CWE-354","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-48795","cwe":"CWE-354","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-48795","date":"2026-10-08","epss":0.93547,"percentile":0.9984}],"risk":4.677350000000001,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-48795","description":"The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabled, aka a Terrapin attack. This occurs because the SSH Binary Packet Protocol (BPP), implemented by these extensions, mishandles the handshake phase and mishandles use of sequence numbers. For example, there is an effective attack against SSH's use of ChaCha20-Poly1305 (and CBC with Encrypt-then-MAC). The bypass occurs in chacha20-poly1305@openssh.com and (if CBC is used) the -etm@openssh.com MAC algorithms. This also affects Maverick Synergy Java SSH API before 3.1.0-SNAPSHOT, Dropbear through 2022.83, Ssh before 5.1.1 in Erlang/OTP, PuTTY before 0.80, AsyncSSH before 2.14.2, golang.org/x/crypto before 0.17.0, libssh before 0.10.6, libssh2 through 1.11.0, Thorn Tech SFTP Gateway before 3.4.6, Tera Term before 5.1, Paramiko before 3.4.0, jsch before 0.2.15, SFTPGo before 2.5.6, Netgate pfSense Plus through 23.09.1, Netgate pfSense CE through 2.7.2, HPN-SSH through 18.2.0, ProFTPD before 1.3.8b (and before 1.3.9rc2), ORYX CycloneSSH before 2.3.4, NetSarang XShell 7 before Build 0144, CrushFTP before 10.6.0, ConnectBot SSH library before 2.2.22, Apache MINA sshd through 2.11.0, sshj through 0.37.0, TinySSH through 20230101, trilead-ssh2 6401, LANCOM LCOS and LANconfig, FileZilla before 3.66.4, Nova before 11.8, PKIX-SSH before 14.4, SecureCRT before 9.4.3, Transmit5 before 5.10.4, Win32-OpenSSH before 9.5.0.0p1-Beta, WinSCP before 6.2.2, Bitvise SSH Server before 9.32, Bitvise SSH Client before 9.33, KiTTY through 0.76.1.13, the net-ssh gem 7.2.0 for Ruby, the mscdex ssh2 module before 1.15.0 for Node.js, the thrussh library before 0.35.1 for Rust, and the Russh crate before 0.40.2 for Rust."},"relatedVulnerabilities":[{"id":"CVE-2023-48795","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-48795","cwe":"CWE-354","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-48795","cwe":"CWE-354","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-48795","date":"2026-10-08","epss":0.93547,"percentile":0.9984}],"urls":["http://packetstormsecurity.com/files/176280/Terrapin-SSH-Connection-Weakening.html","http://seclists.org/fulldisclosure/2024/Mar/21","http://www.openwall.com/lists/oss-security/2023/12/18/3","http://www.openwall.com/lists/oss-security/2023/12/19/5","http://www.openwall.com/lists/oss-security/2023/12/20/3","http://www.openwall.com/lists/oss-security/2024/03/06/3","http://www.openwall.com/lists/oss-security/2024/04/17/8","https://access.redhat.com/security/cve/cve-2023-48795","https://arstechnica.com/security/2023/12/hackers-can-break-ssh-channel-integrity-using-novel-data-corruption-attack/","https://bugs.gentoo.org/920280","https://bugzilla.redhat.com/show_bug.cgi?id=2254210","https://bugzilla.suse.com/show_bug.cgi?id=1217950","https://crates.io/crates/thrussh/versions","https://filezilla-project.org/versions.php","https://forum.netgate.com/topic/184941/terrapin-ssh-attack","https://git.libssh.org/projects/libssh.git/commit/?h=stable-0.10&id=10e09e273f69e149389b3e0e5d44b8c221c2e7f6","https://github.com/NixOS/nixpkgs/pull/275249","https://github.com/PowerShell/Win32-OpenSSH/issues/2189","https://github.com/PowerShell/Win32-OpenSSH/releases/tag/v9.5.0.0p1-Beta","https://github.com/TeraTermProject/teraterm/commit/7279fbd6ef4d0c8bdd6a90af4ada2899d786eec0","https://github.com/TeraTermProject/teraterm/releases/tag/v5.1","https://github.com/advisories/GHSA-45x7-px36-x8w8","https://github.com/apache/mina-sshd/issues/445","https://github.com/connectbot/sshlib/commit/5c8b534f6e97db7ac0e0e579331213aa25c173ab","https://github.com/connectbot/sshlib/compare/2.2.21...2.2.22","https://github.com/cyd01/KiTTY/issues/520","https://github.com/drakkan/sftpgo/releases/tag/v2.5.6","https://github.com/erlang/otp/blob/d1b43dc0f1361d2ad67601169e90a7fc50bb0369/lib/ssh/doc/src/notes.xml#L39-L42","https://github.com/erlang/otp/releases/tag/OTP-26.2.1","https://github.com/golang/crypto/commit/9d2ee975ef9fe627bf0a6f01c1f69e8ef1d4f05d","https://github.com/hierynomus/sshj/issues/916","https://github.com/janmojzis/tinyssh/issues/81","https://github.com/jtesta/ssh-audit/commit/8e972c5e94b460379fe0c7d20209c16df81538a5","https://github.com/libssh2/libssh2/pull/1291","https://github.com/mkj/dropbear/blob/17657c36cce6df7716d5ff151ec09a665382d5dd/CHANGES#L25","https://github.com/mscdex/ssh2/commit/97b223f8891b96d6fc054df5ab1d5a1a545da2a3","https://github.com/mwiede/jsch/compare/jsch-0.2.14...jsch-0.2.15","https://github.com/mwiede/jsch/issues/457","https://github.com/mwiede/jsch/pull/461","https://github.com/net-ssh/net-ssh/blob/2e65064a52d73396bfc3806c9196fc8108f33cd8/CHANGES.txt#L14-L16","https://github.com/openssh/openssh-portable/commits/master","https://github.com/paramiko/paramiko/issues/2337","https://github.com/proftpd/proftpd/blob/0a7ea9b0ba9fcdf368374a226370d08f10397d99/RELEASE_NOTES","https://github.com/proftpd/proftpd/blob/d21e7a2e47e9b38f709bec58e3fa711f759ad0e1/RELEASE_NOTES","https://github.com/proftpd/proftpd/blob/master/RELEASE_NOTES","https://github.com/proftpd/proftpd/issues/456","https://github.com/rapier1/hpn-ssh/releases","https://github.com/ronf/asyncssh/blob/develop/docs/changes.rst","https://github.com/ronf/asyncssh/tags","https://github.com/ssh-mitm/ssh-mitm/issues/165","https://github.com/warp-tech/russh/releases/tag/v0.40.2","https://gitlab.com/libssh/libssh-mirror/-/tags","https://groups.google.com/g/golang-announce/c/-n5WqVC18LQ","https://groups.google.com/g/golang-announce/c/qA3XtxvMUyg","https://help.panic.com/releasenotes/transmit5/","https://jadaptive.com/important-java-ssh-security-update-new-ssh-vulnerability-discovered-cve-2023-48795/","https://lists.debian.org/debian-lts-announce/2023/12/msg00017.html","https://lists.debian.org/debian-lts-announce/2024/01/msg00013.html","https://lists.debian.org/debian-lts-announce/2024/01/msg00014.html","https://lists.debian.org/debian-lts-announce/2024/04/msg00016.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/33XHJUB6ROFUOH2OQNENFROTVH6MHSHA/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3CAYYW35MUTNO65RVAELICTNZZFMT2XS/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3JIMLVBDWOP4FUPXPTB4PGHHIOMGFLQE/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3YQLUQWLIHDB5QCXQEX7HXHAWMOKPP5O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6Y74KVCPEPT4MVU3LHDWCNNOXOE5ZLUR/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/APYIXIQOVDCRWLHTGB4VYMAUIAQLKYJ3/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BL5KTLOSLH2KHRN4HCXJPK3JUVLDGEL6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C3AFMZ6MH2UHHOPIWT5YLSFV3D2VB3AC/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CHHITS4PUOZAKFIUBQAQZC7JWXMOYE4B/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F7EYCFQCTSGJXWO3ZZ44MGKFC5HA7G3Y/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HYEDEXIKFKTUJIN43RG4B7T5ZS6MHUSP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/I724O3LSRCPO4WNVIXTZCT4VVRMXMMSG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KEOTKBUPZXHE3F352JBYNTSNRXYLWD6P/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KMZCVGUGJZZVDPCVDA7TEB22VUCNEXDD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L5Y6MNNVAPIJSXJERQ6PKZVCIUXSNJK7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LZQVUHWVWRH73YBXUQJOD6CKHDQBU3DM/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MKQRBF3DWMWPH36LBCOBUTSIZRTPEZXB/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QI3EHAHABFQK7OABNCSF5GMYP6TONTI7/","https://matt.ucc.asn.au/dropbear/CHANGES","https://nest.pijul.com/pijul/thrussh/changes/D6H7OWTTMHHX6BTB3B6MNBOBX2L66CBL4LGSEUSAI2MCRCJDQFRQC","https://news.ycombinator.com/item?id=38684904","https://news.ycombinator.com/item?id=38685286","https://news.ycombinator.com/item?id=38732005","https://nova.app/releases/#v11.8","https://oryx-embedded.com/download/#changelog","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0002","https://roumenpetrov.info/secsh/#news20231220","https://security-tracker.debian.org/tracker/CVE-2023-48795","https://security-tracker.debian.org/tracker/source-package/libssh2","https://security-tracker.debian.org/tracker/source-package/proftpd-dfsg","https://security-tracker.debian.org/tracker/source-package/trilead-ssh2","https://security.gentoo.org/glsa/202312-16","https://security.gentoo.org/glsa/202312-17","https://security.netapp.com/advisory/ntap-20240105-0004/","https://support.apple.com/kb/HT214084","https://thorntech.com/cve-2023-48795-and-sftp-gateway/","https://twitter.com/TrueSkrillor/status/1736774389725565005","https://ubuntu.com/security/CVE-2023-48795","https://winscp.net/eng/docs/history#6.2.2","https://www.bitvise.com/ssh-client-version-history#933","https://www.bitvise.com/ssh-server-version-history","https://www.chiark.greenend.org.uk/~sgtatham/putty/changes.html","https://www.crushftp.com/crush10wiki/Wiki.jsp?page=Update","https://www.debian.org/security/2023/dsa-5586","https://www.debian.org/security/2023/dsa-5588","https://www.freebsd.org/security/advisories/FreeBSD-SA-23:19.openssh.asc","https://www.lancom-systems.de/service-support/allgemeine-sicherheitshinweise#c243508","https://www.netsarang.com/en/xshell-update-history/","https://www.openssh.com/openbsd.html","https://www.openssh.com/txt/release-9.6","https://www.openwall.com/lists/oss-security/2023/12/18/2","https://www.openwall.com/lists/oss-security/2023/12/20/3","https://www.paramiko.org/changelog.html","https://www.reddit.com/r/sysadmin/comments/18idv52/cve202348795_why_is_this_cve_still_undisclosed/","https://www.suse.com/c/suse-addresses-the-ssh-v2-protocol-terrapin-attack-aka-cve-2023-48795/","https://www.terrapin-attack.com","https://www.theregister.com/2023/12/20/terrapin_attack_ssh","https://www.vandyke.com/products/securecrt/history.txt","https://lists.debian.org/debian-lts-announce/2024/09/msg00042.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00032.html","https://lists.debian.org/debian-lts-announce/2025/04/msg00028.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/33XHJUB6ROFUOH2OQNENFROTVH6MHSHA/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3JIMLVBDWOP4FUPXPTB4PGHHIOMGFLQE/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3YQLUQWLIHDB5QCXQEX7HXHAWMOKPP5O/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6Y74KVCPEPT4MVU3LHDWCNNOXOE5ZLUR/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/APYIXIQOVDCRWLHTGB4VYMAUIAQLKYJ3/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/C3AFMZ6MH2UHHOPIWT5YLSFV3D2VB3AC/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HYEDEXIKFKTUJIN43RG4B7T5ZS6MHUSP/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/I724O3LSRCPO4WNVIXTZCT4VVRMXMMSG/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L5Y6MNNVAPIJSXJERQ6PKZVCIUXSNJK7/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LZQVUHWVWRH73YBXUQJOD6CKHDQBU3DM/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MKQRBF3DWMWPH36LBCOBUTSIZRTPEZXB/","https://www.vicarius.io/vsociety/posts/cve-2023-48795-detect-openssh-vulnerabilit","https://www.vicarius.io/vsociety/posts/cve-2023-48795-mitigate-openssh-vulnerability","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-364175.html","https://cert-portal.siemens.com/productcert/html/ssa-769027.html","https://cert-portal.siemens.com/productcert/html/ssa-794697.html","https://cert-portal.siemens.com/productcert/html/ssa-915275.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-48795","description":"The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabled, aka a Terrapin attack. This occurs because the SSH Binary Packet Protocol (BPP), implemented by these extensions, mishandles the handshake phase and mishandles use of sequence numbers. For example, there is an effective attack against SSH's use of ChaCha20-Poly1305 (and CBC with Encrypt-then-MAC). The bypass occurs in chacha20-poly1305@openssh.com and (if CBC is used) the -etm@openssh.com MAC algorithms. This also affects Maverick Synergy Java SSH API before 3.1.0-SNAPSHOT, Dropbear through 2022.83, Ssh before 5.1.1 in Erlang/OTP, PuTTY before 0.80, AsyncSSH before 2.14.2, golang.org/x/crypto before 0.17.0, libssh before 0.10.6, libssh2 through 1.11.0, Thorn Tech SFTP Gateway before 3.4.6, Tera Term before 5.1, Paramiko before 3.4.0, jsch before 0.2.15, SFTPGo before 2.5.6, Netgate pfSense Plus through 23.09.1, Netgate pfSense CE through 2.7.2, HPN-SSH through 18.2.0, ProFTPD before 1.3.8b (and before 1.3.9rc2), ORYX CycloneSSH before 2.3.4, NetSarang XShell 7 before Build 0144, CrushFTP before 10.6.0, ConnectBot SSH library before 2.2.22, Apache MINA sshd through 2.11.0, sshj through 0.37.0, TinySSH through 20230101, trilead-ssh2 6401, LANCOM LCOS and LANconfig, FileZilla before 3.66.4, Nova before 11.8, PKIX-SSH before 14.4, SecureCRT before 9.4.3, Transmit5 before 5.10.4, Win32-OpenSSH before 9.5.0.0p1-Beta, WinSCP before 6.2.2, Bitvise SSH Server before 9.32, Bitvise SSH Client before 9.33, KiTTY through 0.76.1.13, the net-ssh gem 7.2.0 for Ruby, the mscdex ssh2 module before 1.15.0 for Node.js, the thrussh library before 0.35.1 for Rust, and the Russh crate before 0.40.2 for Rust."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-25235","versionConstraint":"< 2.2.6-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-25235","fix":{"state":"fixed","versions":["2.2.6-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25235","cwe":"CWE-116","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25235","cwe":"CWE-116","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25235","date":"2026-10-08","epss":0.04955,"percentile":0.91956}],"risk":4.6577,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5085-1","link":"https://security-tracker.debian.org/tracker/DSA-5085-1"},{"id":"DSA-5085-2","link":"https://security-tracker.debian.org/tracker/DSA-5085-2"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-25235","description":"xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context."},"relatedVulnerabilities":[{"id":"CVE-2022-25235","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25235","cwe":"CWE-116","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25235","cwe":"CWE-116","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25235","date":"2026-10-08","epss":0.04955,"percentile":0.91956}],"urls":["http://www.openwall.com/lists/oss-security/2022/02/19/1","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/562","https://lists.debian.org/debian-lts-announce/2022/03/msg00007.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y27XO3JMKAOMQZVPS3B4MJGEAHCZF5OM/","https://security.gentoo.org/glsa/202209-24","https://security.netapp.com/advisory/ntap-20220303-0008/","https://www.debian.org/security/2022/dsa-5085","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-25235","description":"xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-29007","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-29007","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29007","cwe":"CWE-74","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2023-29007","date":"2026-10-08","epss":0.06079,"percentile":0.93223}],"risk":4.650435,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-29007","description":"Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, a specially crafted `.gitmodules` file with submodule URLs that are longer than 1024 characters can used to exploit a bug in `config.c::git_config_copy_or_rename_section_in_file()`. This bug can be used to inject arbitrary configuration into a user's `$GIT_DIR/config` when attempting to remove the configuration section associated with that submodule. When the attacker injects configuration values which specify executables to run (such as `core.pager`, `core.editor`, `core.sshCommand`, etc.) this can lead to a remote code execution. A fix A fix is available in versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1. As a workaround, avoid running `git submodule deinit` on untrusted repositories or without prior inspection of any submodule sections in `$GIT_DIR/config`."},"relatedVulnerabilities":[{"id":"CVE-2023-29007","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29007","cwe":"CWE-74","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2023-29007","date":"2026-10-08","epss":0.06079,"percentile":0.93223}],"urls":["https://github.com/git/git/blob/9ce9dea4e1c2419cca126d29fa7730baa078a11b/Documentation/RelNotes/2.30.9.txt","https://github.com/git/git/commit/528290f8c61222433a8cf02fb7cfffa8438432b4","https://github.com/git/git/security/advisories/GHSA-v48j-4xgg-4844","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PI7FZ4NNR5S5J5K6AMVQBH2JFP6NE4L7/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RKOXOAZ42HLXHXTW6JZI4L5DAIYDTYCU/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YFZWGQKB6MM5MNF2DLFTD7KS2KWPICKL/","https://security.gentoo.org/glsa/202312-15","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-29007","description":"Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, a specially crafted `.gitmodules` file with submodule URLs that are longer than 1024 characters can used to exploit a bug in `config.c::git_config_copy_or_rename_section_in_file()`. This bug can be used to inject arbitrary configuration into a user's `$GIT_DIR/config` when attempting to remove the configuration section associated with that submodule. When the attacker injects configuration values which specify executables to run (such as `core.pager`, `core.editor`, `core.sshCommand`, etc.) this can lead to a remote code execution. A fix A fix is available in versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1. As a workaround, avoid running `git submodule deinit` on untrusted repositories or without prior inspection of any submodule sections in `$GIT_DIR/config`."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-29007","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-29007","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29007","cwe":"CWE-74","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2023-29007","date":"2026-10-08","epss":0.06079,"percentile":0.93223}],"risk":4.650435,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-29007","description":"Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, a specially crafted `.gitmodules` file with submodule URLs that are longer than 1024 characters can used to exploit a bug in `config.c::git_config_copy_or_rename_section_in_file()`. This bug can be used to inject arbitrary configuration into a user's `$GIT_DIR/config` when attempting to remove the configuration section associated with that submodule. When the attacker injects configuration values which specify executables to run (such as `core.pager`, `core.editor`, `core.sshCommand`, etc.) this can lead to a remote code execution. A fix A fix is available in versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1. As a workaround, avoid running `git submodule deinit` on untrusted repositories or without prior inspection of any submodule sections in `$GIT_DIR/config`."},"relatedVulnerabilities":[{"id":"CVE-2023-29007","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29007","cwe":"CWE-74","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2023-29007","date":"2026-10-08","epss":0.06079,"percentile":0.93223}],"urls":["https://github.com/git/git/blob/9ce9dea4e1c2419cca126d29fa7730baa078a11b/Documentation/RelNotes/2.30.9.txt","https://github.com/git/git/commit/528290f8c61222433a8cf02fb7cfffa8438432b4","https://github.com/git/git/security/advisories/GHSA-v48j-4xgg-4844","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PI7FZ4NNR5S5J5K6AMVQBH2JFP6NE4L7/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RKOXOAZ42HLXHXTW6JZI4L5DAIYDTYCU/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YFZWGQKB6MM5MNF2DLFTD7KS2KWPICKL/","https://security.gentoo.org/glsa/202312-15","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-29007","description":"Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1, a specially crafted `.gitmodules` file with submodule URLs that are longer than 1024 characters can used to exploit a bug in `config.c::git_config_copy_or_rename_section_in_file()`. This bug can be used to inject arbitrary configuration into a user's `$GIT_DIR/config` when attempting to remove the configuration section associated with that submodule. When the attacker injects configuration values which specify executables to run (such as `core.pager`, `core.editor`, `core.sshCommand`, etc.) this can lead to a remote code execution. A fix A fix is available in versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38.5, 2.39.3, and 2.40.1. As a workaround, avoid running `git submodule deinit` on untrusted repositories or without prior inspection of any submodule sections in `$GIT_DIR/config`."}]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"fix":{"suggestedVersion":"241-7~deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-33910","versionConstraint":"< 241-7~deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-33910","fix":{"state":"fixed","versions":["241-7~deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"241-7~deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33910","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-33910","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-33910","date":"2026-10-08","epss":0.08792,"percentile":0.95058}],"risk":4.6158,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4942-1","link":"https://security-tracker.debian.org/tracker/DSA-4942-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-33910","description":"basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash."},"relatedVulnerabilities":[{"id":"CVE-2021-33910","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:C","metrics":{"baseScore":4.9,"impactScore":6.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33910","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-33910","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-33910","date":"2026-10-08","epss":0.08792,"percentile":0.95058}],"urls":["http://packetstormsecurity.com/files/163621/Sequoia-A-Deep-Root-In-Linuxs-Filesystem-Layer.html","http://www.openwall.com/lists/oss-security/2021/08/04/2","http://www.openwall.com/lists/oss-security/2021/08/17/3","http://www.openwall.com/lists/oss-security/2021/09/07/3","https://cert-portal.siemens.com/productcert/pdf/ssa-222547.pdf","https://github.com/systemd/systemd-stable/commit/4a1c5f34bd3e1daed4490e9d97918e504d19733b","https://github.com/systemd/systemd-stable/commit/764b74113e36ac5219a4b82a05f311b5a92136ce","https://github.com/systemd/systemd-stable/commit/b00674347337b7531c92fdb65590ab253bb57538","https://github.com/systemd/systemd-stable/commit/cfd14c65374027b34dbbc4f0551456c5dc2d1f61","https://github.com/systemd/systemd/commit/b34a4f0e6729de292cb3b0c03c1d48f246ad896b","https://github.com/systemd/systemd/pull/20256/commits/441e0115646d54f080e5c3bb0ba477c892861ab9","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2LSDMHAKI4LGFOCSPXNVVSEWQFAVFWR7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/42TMJVNYRY65B4QCJICBYOEIVZV3KUYI/","https://security.gentoo.org/glsa/202107-48","https://security.netapp.com/advisory/ntap-20211104-0008/","https://www.debian.org/security/2021/dsa-4942","https://www.openwall.com/lists/oss-security/2021/07/20/2"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-33910","description":"basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"fix":{"suggestedVersion":"241-7~deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-33910","versionConstraint":"< 241-7~deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-33910","fix":{"state":"fixed","versions":["241-7~deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"241-7~deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33910","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-33910","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-33910","date":"2026-10-08","epss":0.08792,"percentile":0.95058}],"risk":4.6158,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4942-1","link":"https://security-tracker.debian.org/tracker/DSA-4942-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-33910","description":"basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash."},"relatedVulnerabilities":[{"id":"CVE-2021-33910","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:C","metrics":{"baseScore":4.9,"impactScore":6.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33910","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-33910","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-33910","date":"2026-10-08","epss":0.08792,"percentile":0.95058}],"urls":["http://packetstormsecurity.com/files/163621/Sequoia-A-Deep-Root-In-Linuxs-Filesystem-Layer.html","http://www.openwall.com/lists/oss-security/2021/08/04/2","http://www.openwall.com/lists/oss-security/2021/08/17/3","http://www.openwall.com/lists/oss-security/2021/09/07/3","https://cert-portal.siemens.com/productcert/pdf/ssa-222547.pdf","https://github.com/systemd/systemd-stable/commit/4a1c5f34bd3e1daed4490e9d97918e504d19733b","https://github.com/systemd/systemd-stable/commit/764b74113e36ac5219a4b82a05f311b5a92136ce","https://github.com/systemd/systemd-stable/commit/b00674347337b7531c92fdb65590ab253bb57538","https://github.com/systemd/systemd-stable/commit/cfd14c65374027b34dbbc4f0551456c5dc2d1f61","https://github.com/systemd/systemd/commit/b34a4f0e6729de292cb3b0c03c1d48f246ad896b","https://github.com/systemd/systemd/pull/20256/commits/441e0115646d54f080e5c3bb0ba477c892861ab9","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2LSDMHAKI4LGFOCSPXNVVSEWQFAVFWR7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/42TMJVNYRY65B4QCJICBYOEIVZV3KUYI/","https://security.gentoo.org/glsa/202107-48","https://security.netapp.com/advisory/ntap-20211104-0008/","https://www.debian.org/security/2021/dsa-4942","https://www.openwall.com/lists/oss-security/2021/07/20/2"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-33910","description":"basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-22822","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22822","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22822","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22822","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22822","date":"2026-10-08","epss":0.04829,"percentile":0.9176}],"risk":4.5392600000000005,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22822","description":"addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."},"relatedVulnerabilities":[{"id":"CVE-2022-22822","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22822","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22822","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22822","date":"2026-10-08","epss":0.04829,"percentile":0.9176}],"urls":["http://www.openwall.com/lists/oss-security/2022/01/17/3","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/539","https://security.gentoo.org/glsa/202209-24","https://www.debian.org/security/2022/dsa-5073","https://www.tenable.com/security/tns-2022-05"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22822","description":"addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-25315","versionConstraint":"< 2.2.6-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-25315","fix":{"state":"fixed","versions":["2.2.6-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25315","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25315","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25315","date":"2026-10-08","epss":0.04821,"percentile":0.91746}],"risk":4.531740000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5085-1","link":"https://security-tracker.debian.org/tracker/DSA-5085-1"},{"id":"DSA-5085-2","link":"https://security-tracker.debian.org/tracker/DSA-5085-2"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-25315","description":"In Expat (aka libexpat) before 2.4.5, there is an integer overflow in storeRawNames."},"relatedVulnerabilities":[{"id":"CVE-2022-25315","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25315","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25315","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25315","date":"2026-10-08","epss":0.04821,"percentile":0.91746}],"urls":["http://www.openwall.com/lists/oss-security/2022/02/19/1","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/559","https://lists.debian.org/debian-lts-announce/2022/03/msg00007.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y27XO3JMKAOMQZVPS3B4MJGEAHCZF5OM/","https://security.gentoo.org/glsa/202209-24","https://security.netapp.com/advisory/ntap-20220303-0008/","https://www.debian.org/security/2022/dsa-5085","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-25315","description":"In Expat (aka libexpat) before 2.4.5, there is an integer overflow in storeRawNames."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23218","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23218","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23218","date":"2026-10-08","epss":0.0482,"percentile":0.91745}],"risk":4.5308,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23218","description":"The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."},"relatedVulnerabilities":[{"id":"CVE-2022-23218","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23218","date":"2026-10-08","epss":0.0482,"percentile":0.91745}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://sourceware.org/bugzilla/show_bug.cgi?id=28768","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23218","description":"The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23218","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23218","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23218","date":"2026-10-08","epss":0.0482,"percentile":0.91745}],"risk":4.5308,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23218","description":"The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."},"relatedVulnerabilities":[{"id":"CVE-2022-23218","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23218","date":"2026-10-08","epss":0.0482,"percentile":0.91745}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://sourceware.org/bugzilla/show_bug.cgi?id=28768","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23218","description":"The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23218","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23218","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23218","date":"2026-10-08","epss":0.0482,"percentile":0.91745}],"risk":4.5308,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23218","description":"The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."},"relatedVulnerabilities":[{"id":"CVE-2022-23218","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23218","date":"2026-10-08","epss":0.0482,"percentile":0.91745}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://sourceware.org/bugzilla/show_bug.cgi?id=28768","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23218","description":"The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23218","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23218","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23218","date":"2026-10-08","epss":0.0482,"percentile":0.91745}],"risk":4.5308,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23218","description":"The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."},"relatedVulnerabilities":[{"id":"CVE-2022-23218","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23218","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23218","date":"2026-10-08","epss":0.0482,"percentile":0.91745}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://sourceware.org/bugzilla/show_bug.cgi?id=28768","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23218","description":"The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-32221","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32221","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32221","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32221","cwe":"CWE-668","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32221","date":"2026-10-08","epss":0.04676,"percentile":0.91537}],"risk":4.395440000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32221","description":"When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the subsequent `POST` request. The problem exists in the logic for a reused handle when it is changed from a PUT to a POST."},"relatedVulnerabilities":[{"id":"CVE-2022-32221","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32221","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32221","cwe":"CWE-668","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32221","date":"2026-10-08","epss":0.04676,"percentile":0.91537}],"urls":["http://seclists.org/fulldisclosure/2023/Jan/19","http://seclists.org/fulldisclosure/2023/Jan/20","http://www.openwall.com/lists/oss-security/2023/05/17/4","https://hackerone.com/reports/1704017","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20230110-0006/","https://security.netapp.com/advisory/ntap-20230208-0002/","https://support.apple.com/kb/HT213604","https://support.apple.com/kb/HT213605","https://www.debian.org/security/2023/dsa-5330"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32221","description":"When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the subsequent `POST` request. The problem exists in the logic for a reused handle when it is changed from a PUT to a POST."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-32221","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32221","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32221","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32221","cwe":"CWE-668","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32221","date":"2026-10-08","epss":0.04676,"percentile":0.91537}],"risk":4.395440000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32221","description":"When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the subsequent `POST` request. The problem exists in the logic for a reused handle when it is changed from a PUT to a POST."},"relatedVulnerabilities":[{"id":"CVE-2022-32221","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32221","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32221","cwe":"CWE-668","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32221","date":"2026-10-08","epss":0.04676,"percentile":0.91537}],"urls":["http://seclists.org/fulldisclosure/2023/Jan/19","http://seclists.org/fulldisclosure/2023/Jan/20","http://www.openwall.com/lists/oss-security/2023/05/17/4","https://hackerone.com/reports/1704017","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20230110-0006/","https://security.netapp.com/advisory/ntap-20230208-0002/","https://support.apple.com/kb/HT213604","https://support.apple.com/kb/HT213605","https://www.debian.org/security/2023/dsa-5330"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32221","description":"When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the subsequent `POST` request. The problem exists in the logic for a reused handle when it is changed from a PUT to a POST."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-32221","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32221","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32221","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32221","cwe":"CWE-668","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32221","date":"2026-10-08","epss":0.04676,"percentile":0.91537}],"risk":4.395440000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32221","description":"When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the subsequent `POST` request. The problem exists in the logic for a reused handle when it is changed from a PUT to a POST."},"relatedVulnerabilities":[{"id":"CVE-2022-32221","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32221","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32221","cwe":"CWE-668","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32221","date":"2026-10-08","epss":0.04676,"percentile":0.91537}],"urls":["http://seclists.org/fulldisclosure/2023/Jan/19","http://seclists.org/fulldisclosure/2023/Jan/20","http://www.openwall.com/lists/oss-security/2023/05/17/4","https://hackerone.com/reports/1704017","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20230110-0006/","https://security.netapp.com/advisory/ntap-20230208-0002/","https://support.apple.com/kb/HT213604","https://support.apple.com/kb/HT213605","https://www.debian.org/security/2023/dsa-5330"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32221","description":"When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the subsequent `POST` request. The problem exists in the logic for a reused handle when it is changed from a PUT to a POST."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35556","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 12, < 17.0.1||>= 7, < 7.0.321||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35556","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311","11.0.13","17.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35556","cwe":"CWE-693","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35556","date":"2026-10-08","epss":0.08464,"percentile":0.94888}],"risk":4.3166400000000005,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7WTVCIVHTX3XONYOEGUMLKCM4QEC6INT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DJILEHYV2U37HKMGFEQ7CAVOV4DUWW2O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V362B2BWTH5IJDL45QPQGMBKIQOG7JX5/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-5000","https://www.debian.org/security/2021/dsa-5012","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35556","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23852","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23852","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23852","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23852","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23852","date":"2026-10-08","epss":0.04563,"percentile":0.9136}],"risk":4.28922,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23852","description":"Expat (aka libexpat) before 2.4.4 has a signed integer overflow in XML_GetBuffer, for configurations with a nonzero XML_CONTEXT_BYTES."},"relatedVulnerabilities":[{"id":"CVE-2022-23852","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23852","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23852","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23852","date":"2026-10-08","epss":0.04563,"percentile":0.9136}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/550","https://lists.debian.org/debian-lts-announce/2022/03/msg00007.html","https://security.gentoo.org/glsa/202209-24","https://security.netapp.com/advisory/ntap-20220217-0001/","https://www.debian.org/security/2022/dsa-5073","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.tenable.com/security/tns-2022-05"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23852","description":"Expat (aka libexpat) before 2.4.4 has a signed integer overflow in XML_GetBuffer, for configurations with a nonzero XML_CONTEXT_BYTES."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21293","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21293","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21293","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21293","date":"2026-10-08","epss":0.08346,"percentile":0.94825}],"risk":4.235595000000001,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2DIN3L6L3SVZK75CKW2GPSU4HIGZR7XG/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21293","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-6096","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-6096","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-6096","cwe":"CWE-195","type":"Secondary","source":"talos-cna@cisco.com"},{"cve":"CVE-2020-6096","cwe":"CWE-191","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2020-6096","cwe":"CWE-681","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-6096","date":"2026-10-08","epss":0.05354,"percentile":0.92432}],"risk":4.17612,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-6096","description":"An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the 'num' parameter to memcpy(), this vulnerability could lead to undefined behavior such as writing to out-of-bounds memory and potentially remote code execution. Furthermore, this memcpy() implementation allows for program execution to continue in scenarios where a segmentation fault or crash should have occurred. The dangers occur in that subsequent execution and iterations of this code will be executed with this corrupted data."},"relatedVulnerabilities":[{"id":"CVE-2020-6096","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"talos-cna@cisco.com","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-6096","cwe":"CWE-195","type":"Secondary","source":"talos-cna@cisco.com"},{"cve":"CVE-2020-6096","cwe":"CWE-191","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2020-6096","cwe":"CWE-681","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-6096","date":"2026-10-08","epss":0.05354,"percentile":0.92432}],"urls":["https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SPYXTDOOB4PQGTYAMZAZNJIB3FF6YQXI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/URXOIA2LDUKHQXK4BE55BQBRI6ZZG3Y6/","https://security.gentoo.org/glsa/202101-20","https://sourceware.org/bugzilla/show_bug.cgi?id=25620","https://www.talosintelligence.com/vulnerability_reports/TALOS-2020-1019"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-6096","description":"An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the 'num' parameter to memcpy(), this vulnerability could lead to undefined behavior such as writing to out-of-bounds memory and potentially remote code execution. Furthermore, this memcpy() implementation allows for program execution to continue in scenarios where a segmentation fault or crash should have occurred. The dangers occur in that subsequent execution and iterations of this code will be executed with this corrupted data."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-6096","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-6096","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-6096","cwe":"CWE-195","type":"Secondary","source":"talos-cna@cisco.com"},{"cve":"CVE-2020-6096","cwe":"CWE-191","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2020-6096","cwe":"CWE-681","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-6096","date":"2026-10-08","epss":0.05354,"percentile":0.92432}],"risk":4.17612,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-6096","description":"An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the 'num' parameter to memcpy(), this vulnerability could lead to undefined behavior such as writing to out-of-bounds memory and potentially remote code execution. Furthermore, this memcpy() implementation allows for program execution to continue in scenarios where a segmentation fault or crash should have occurred. The dangers occur in that subsequent execution and iterations of this code will be executed with this corrupted data."},"relatedVulnerabilities":[{"id":"CVE-2020-6096","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"talos-cna@cisco.com","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-6096","cwe":"CWE-195","type":"Secondary","source":"talos-cna@cisco.com"},{"cve":"CVE-2020-6096","cwe":"CWE-191","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2020-6096","cwe":"CWE-681","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-6096","date":"2026-10-08","epss":0.05354,"percentile":0.92432}],"urls":["https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SPYXTDOOB4PQGTYAMZAZNJIB3FF6YQXI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/URXOIA2LDUKHQXK4BE55BQBRI6ZZG3Y6/","https://security.gentoo.org/glsa/202101-20","https://sourceware.org/bugzilla/show_bug.cgi?id=25620","https://www.talosintelligence.com/vulnerability_reports/TALOS-2020-1019"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-6096","description":"An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the 'num' parameter to memcpy(), this vulnerability could lead to undefined behavior such as writing to out-of-bounds memory and potentially remote code execution. Furthermore, this memcpy() implementation allows for program execution to continue in scenarios where a segmentation fault or crash should have occurred. The dangers occur in that subsequent execution and iterations of this code will be executed with this corrupted data."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-6096","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-6096","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-6096","cwe":"CWE-195","type":"Secondary","source":"talos-cna@cisco.com"},{"cve":"CVE-2020-6096","cwe":"CWE-191","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2020-6096","cwe":"CWE-681","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-6096","date":"2026-10-08","epss":0.05354,"percentile":0.92432}],"risk":4.17612,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-6096","description":"An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the 'num' parameter to memcpy(), this vulnerability could lead to undefined behavior such as writing to out-of-bounds memory and potentially remote code execution. Furthermore, this memcpy() implementation allows for program execution to continue in scenarios where a segmentation fault or crash should have occurred. The dangers occur in that subsequent execution and iterations of this code will be executed with this corrupted data."},"relatedVulnerabilities":[{"id":"CVE-2020-6096","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"talos-cna@cisco.com","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-6096","cwe":"CWE-195","type":"Secondary","source":"talos-cna@cisco.com"},{"cve":"CVE-2020-6096","cwe":"CWE-191","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2020-6096","cwe":"CWE-681","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-6096","date":"2026-10-08","epss":0.05354,"percentile":0.92432}],"urls":["https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SPYXTDOOB4PQGTYAMZAZNJIB3FF6YQXI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/URXOIA2LDUKHQXK4BE55BQBRI6ZZG3Y6/","https://security.gentoo.org/glsa/202101-20","https://sourceware.org/bugzilla/show_bug.cgi?id=25620","https://www.talosintelligence.com/vulnerability_reports/TALOS-2020-1019"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-6096","description":"An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the 'num' parameter to memcpy(), this vulnerability could lead to undefined behavior such as writing to out-of-bounds memory and potentially remote code execution. Furthermore, this memcpy() implementation allows for program execution to continue in scenarios where a segmentation fault or crash should have occurred. The dangers occur in that subsequent execution and iterations of this code will be executed with this corrupted data."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-6096","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-6096","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-6096","cwe":"CWE-195","type":"Secondary","source":"talos-cna@cisco.com"},{"cve":"CVE-2020-6096","cwe":"CWE-191","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2020-6096","cwe":"CWE-681","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-6096","date":"2026-10-08","epss":0.05354,"percentile":0.92432}],"risk":4.17612,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-6096","description":"An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the 'num' parameter to memcpy(), this vulnerability could lead to undefined behavior such as writing to out-of-bounds memory and potentially remote code execution. Furthermore, this memcpy() implementation allows for program execution to continue in scenarios where a segmentation fault or crash should have occurred. The dangers occur in that subsequent execution and iterations of this code will be executed with this corrupted data."},"relatedVulnerabilities":[{"id":"CVE-2020-6096","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"talos-cna@cisco.com","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-6096","cwe":"CWE-195","type":"Secondary","source":"talos-cna@cisco.com"},{"cve":"CVE-2020-6096","cwe":"CWE-191","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2020-6096","cwe":"CWE-681","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-6096","date":"2026-10-08","epss":0.05354,"percentile":0.92432}],"urls":["https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SPYXTDOOB4PQGTYAMZAZNJIB3FF6YQXI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/URXOIA2LDUKHQXK4BE55BQBRI6ZZG3Y6/","https://security.gentoo.org/glsa/202101-20","https://sourceware.org/bugzilla/show_bug.cgi?id=25620","https://www.talosintelligence.com/vulnerability_reports/TALOS-2020-1019"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-6096","description":"An exploitable signed comparison vulnerability exists in the ARMv7 memcpy() implementation of GNU glibc 2.30.9000. Calling memcpy() (on ARMv7 targets that utilize the GNU glibc implementation) with a negative value for the 'num' parameter results in a signed comparison vulnerability. If an attacker underflows the 'num' parameter to memcpy(), this vulnerability could lead to undefined behavior such as writing to out-of-bounds memory and potentially remote code execution. Furthermore, this memcpy() implementation allows for program execution to continue in scenarios where a segmentation fault or crash should have occurred. The dangers occur in that subsequent execution and iterations of this code will be executed with this corrupted data."}]},{"artifact":{"id":"3b266bbb8fa28b2f","cpes":["cpe:2.3:a:gzip:gzip:1.9-3:*:*:*:*:*:*:*"],"name":"gzip","purl":"pkg:deb/debian/gzip@1.9-3?arch=amd64&distro=debian-10.10","type":"deb","version":"1.9-3","language":"","licenses":["sha256:f9ac4a5d7a670e3891881a2cdba5fa2cd625c4d58eae4a7aa372ac00a06803bd"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gzip/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/gzip/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gzip.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gzip.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gzip.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gzip.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.9-3+deb10u1"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-1271","versionConstraint":"< 1.9-3+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gzip","version":"1.9-3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1271","fix":{"state":"fixed","versions":["1.9-3+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.9-3+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1271","cwe":"CWE-179","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1271","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1271","date":"2026-10-08","epss":0.0507,"percentile":0.92107}],"risk":4.1320500000000004,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5122-1","link":"https://security-tracker.debian.org/tracker/DSA-5122-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1271","description":"An arbitrary file write vulnerability was found in GNU gzip's zgrep utility. When zgrep is applied on the attacker's chosen file name (for example, a crafted file name), this can overwrite an attacker's content to an arbitrary attacker-selected file. This flaw occurs due to insufficient validation when processing filenames with two or more newlines where selected content and the target file names are embedded in crafted multi-line file names. This flaw allows a remote, low privileged attacker to force zgrep to write arbitrary files on the system."},"relatedVulnerabilities":[{"id":"CVE-2022-1271","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1271","cwe":"CWE-179","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1271","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1271","date":"2026-10-08","epss":0.0507,"percentile":0.92107}],"urls":["https://access.redhat.com/security/cve/CVE-2022-1271","https://bugzilla.redhat.com/show_bug.cgi?id=2073310","https://git.tukaani.org/?p=xz.git%3Ba=commit%3Bh=69d1b3fc29677af8ade8dc15dba83f0589cb63d6","https://lists.gnu.org/r/bug-gzip/2022-04/msg00011.html","https://security-tracker.debian.org/tracker/CVE-2022-1271","https://security.gentoo.org/glsa/202209-01","https://security.netapp.com/advisory/ntap-20220930-0006/","https://tukaani.org/xz/xzgrep-ZDI-CAN-16587.patch","https://www.openwall.com/lists/oss-security/2022/04/07/8"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1271","description":"An arbitrary file write vulnerability was found in GNU gzip's zgrep utility. When zgrep is applied on the attacker's chosen file name (for example, a crafted file name), this can overwrite an attacker's content to an arbitrary attacker-selected file. This flaw occurs due to insufficient validation when processing filenames with two or more newlines where selected content and the target file names are embedded in crafted multi-line file names. This flaw allows a remote, low privileged attacker to force zgrep to write arbitrary files on the system."}]},{"artifact":{"id":"c32191f717ec58de","cpes":["cpe:2.3:a:liblzma5:liblzma5:5.2.4-1:*:*:*:*:*:*:*"],"name":"liblzma5","purl":"pkg:deb/debian/liblzma5@5.2.4-1?arch=amd64&distro=debian-10.10&upstream=xz-utils","type":"deb","version":"5.2.4-1","language":"","licenses":["Autoconf","GPL-2","GPL-2+","GPL-3","LGPL-2","LGPL-2.1","LGPL-2.1+","PD","PD-debian","config-h","noderivs","permissive-fsf","permissive-nowarranty","probably-PD"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/liblzma5/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/liblzma5/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/liblzma5:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/liblzma5:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"xz-utils"}]},"matchDetails":[{"fix":{"suggestedVersion":"5.2.4-1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-1271","versionConstraint":"< 5.2.4-1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"xz-utils","version":"5.2.4-1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1271","fix":{"state":"fixed","versions":["5.2.4-1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"5.2.4-1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1271","cwe":"CWE-179","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1271","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1271","date":"2026-10-08","epss":0.0507,"percentile":0.92107}],"risk":4.1320500000000004,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5123-1","link":"https://security-tracker.debian.org/tracker/DSA-5123-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1271","description":"An arbitrary file write vulnerability was found in GNU gzip's zgrep utility. When zgrep is applied on the attacker's chosen file name (for example, a crafted file name), this can overwrite an attacker's content to an arbitrary attacker-selected file. This flaw occurs due to insufficient validation when processing filenames with two or more newlines where selected content and the target file names are embedded in crafted multi-line file names. This flaw allows a remote, low privileged attacker to force zgrep to write arbitrary files on the system."},"relatedVulnerabilities":[{"id":"CVE-2022-1271","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1271","cwe":"CWE-179","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1271","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1271","date":"2026-10-08","epss":0.0507,"percentile":0.92107}],"urls":["https://access.redhat.com/security/cve/CVE-2022-1271","https://bugzilla.redhat.com/show_bug.cgi?id=2073310","https://git.tukaani.org/?p=xz.git%3Ba=commit%3Bh=69d1b3fc29677af8ade8dc15dba83f0589cb63d6","https://lists.gnu.org/r/bug-gzip/2022-04/msg00011.html","https://security-tracker.debian.org/tracker/CVE-2022-1271","https://security.gentoo.org/glsa/202209-01","https://security.netapp.com/advisory/ntap-20220930-0006/","https://tukaani.org/xz/xzgrep-ZDI-CAN-16587.patch","https://www.openwall.com/lists/oss-security/2022/04/07/8"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1271","description":"An arbitrary file write vulnerability was found in GNU gzip's zgrep utility. When zgrep is applied on the attacker's chosen file name (for example, a crafted file name), this can overwrite an attacker's content to an arbitrary attacker-selected file. This flaw occurs due to insufficient validation when processing filenames with two or more newlines where selected content and the target file names are embedded in crafted multi-line file names. This flaw allows a remote, low privileged attacker to force zgrep to write arbitrary files on the system."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-32208","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32208","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32208","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32208","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32208","date":"2026-10-08","epss":0.07499,"percentile":0.94338}],"risk":4.086955000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32208","description":"When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client."},"relatedVulnerabilities":[{"id":"CVE-2022-32208","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32208","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32208","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32208","date":"2026-10-08","epss":0.07499,"percentile":0.94338}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","https://hackerone.com/reports/1590071","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEV6BR4MTI3CEWK2YU2HQZUW5FAS3FEY/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220915-0003/","https://support.apple.com/kb/HT213488","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32208","description":"When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-32208","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32208","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32208","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32208","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32208","date":"2026-10-08","epss":0.07499,"percentile":0.94338}],"risk":4.086955000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32208","description":"When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client."},"relatedVulnerabilities":[{"id":"CVE-2022-32208","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32208","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32208","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32208","date":"2026-10-08","epss":0.07499,"percentile":0.94338}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","https://hackerone.com/reports/1590071","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEV6BR4MTI3CEWK2YU2HQZUW5FAS3FEY/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220915-0003/","https://support.apple.com/kb/HT213488","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32208","description":"When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-32208","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-32208","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32208","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32208","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32208","date":"2026-10-08","epss":0.07499,"percentile":0.94338}],"risk":4.086955000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-32208","description":"When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client."},"relatedVulnerabilities":[{"id":"CVE-2022-32208","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-32208","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-32208","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-32208","date":"2026-10-08","epss":0.07499,"percentile":0.94338}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","https://hackerone.com/reports/1590071","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEV6BR4MTI3CEWK2YU2HQZUW5FAS3FEY/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220915-0003/","https://support.apple.com/kb/HT213488","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-32208","description":"When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23219","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23219","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23219","date":"2026-10-08","epss":0.04293,"percentile":0.90869}],"risk":4.03542,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23219","description":"The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."},"relatedVulnerabilities":[{"id":"CVE-2022-23219","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23219","date":"2026-10-08","epss":0.04293,"percentile":0.90869}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://sourceware.org/bugzilla/show_bug.cgi?id=22542","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23219","description":"The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23219","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23219","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23219","date":"2026-10-08","epss":0.04293,"percentile":0.90869}],"risk":4.03542,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23219","description":"The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."},"relatedVulnerabilities":[{"id":"CVE-2022-23219","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23219","date":"2026-10-08","epss":0.04293,"percentile":0.90869}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://sourceware.org/bugzilla/show_bug.cgi?id=22542","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23219","description":"The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23219","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23219","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23219","date":"2026-10-08","epss":0.04293,"percentile":0.90869}],"risk":4.03542,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23219","description":"The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."},"relatedVulnerabilities":[{"id":"CVE-2022-23219","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23219","date":"2026-10-08","epss":0.04293,"percentile":0.90869}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://sourceware.org/bugzilla/show_bug.cgi?id=22542","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23219","description":"The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23219","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23219","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23219","date":"2026-10-08","epss":0.04293,"percentile":0.90869}],"risk":4.03542,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23219","description":"The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."},"relatedVulnerabilities":[{"id":"CVE-2022-23219","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23219","cwe":"CWE-120","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23219","date":"2026-10-08","epss":0.04293,"percentile":0.90869}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://sourceware.org/bugzilla/show_bug.cgi?id=22542","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23219","description":"The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution."}]},{"artifact":{"id":"0ee3c902a7004593","cpes":["cpe:2.3:a:libnghttp2-14:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2-14:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2_14:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2_14:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2:libnghttp2-14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libnghttp2:libnghttp2_14:1.36.0-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libnghttp2-14","purl":"pkg:deb/debian/libnghttp2-14@1.36.0-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=nghttp2","type":"deb","version":"1.36.0-2+deb10u1","language":"","licenses":["BSD-2-clause","Expat","GPL-3","GPL-3+","MIT","SIL-OFL-1.1","all-permissive"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libnghttp2-14/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libnghttp2-14/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libnghttp2-14:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libnghttp2-14:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"nghttp2"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.36.0-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-11080","versionConstraint":"< 1.36.0-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"nghttp2","version":"1.36.0-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-11080","fix":{"state":"fixed","versions":["1.36.0-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.36.0-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-11080","cwe":"CWE-707","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2020-11080","cwe":"CWE-400","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-11080","date":"2026-10-08","epss":0.05316,"percentile":0.92393}],"risk":3.987,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-11080","description":"In nghttp2 before version 1.41.0, the overly large HTTP/2 SETTINGS frame payload causes denial of service. The proof of concept attack involves a malicious client constructing a SETTINGS frame with a length of 14,400 bytes (2400 individual settings entries) over and over again. The attack causes the CPU to spike at 100%. nghttp2 v1.41.0 fixes this vulnerability. There is a workaround to this vulnerability. Implement nghttp2_on_frame_recv_callback callback, and if received frame is SETTINGS frame and the number of settings entries are large (e.g., > 32), then drop the connection."},"relatedVulnerabilities":[{"id":"CVE-2020-11080","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-11080","cwe":"CWE-707","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2020-11080","cwe":"CWE-400","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-11080","date":"2026-10-08","epss":0.05316,"percentile":0.92393}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00024.html","https://github.com/nghttp2/nghttp2/commit/336a98feb0d56b9ac54e12736b18785c27f75090","https://github.com/nghttp2/nghttp2/commit/f8da73bd042f810f34d19f9eae02b46d870af394","https://github.com/nghttp2/nghttp2/security/advisories/GHSA-q5wr-xfw9-q7xr","https://lists.debian.org/debian-lts-announce/2021/10/msg00011.html","https://lists.debian.org/debian-lts-announce/2023/10/msg00023.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4OOYAMJVLLCLXDTHW3V5UXNULZBBK4O6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AAC2AA36OTRHKSVM5OV7TTVB3CZIGEFL/","https://www.debian.org/security/2020/dsa-4696","https://www.oracle.com//security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2021.html","https://www.oracle.com/security-alerts/cpujul2020.html","https://www.oracle.com/security-alerts/cpuoct2020.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-11080","description":"In nghttp2 before version 1.41.0, the overly large HTTP/2 SETTINGS frame payload causes denial of service. The proof of concept attack involves a malicious client constructing a SETTINGS frame with a length of 14,400 bytes (2400 individual settings entries) over and over again. The attack causes the CPU to spike at 100%. nghttp2 v1.41.0 fixes this vulnerability. There is a workaround to this vulnerability. Implement nghttp2_on_frame_recv_callback callback, and if received frame is SETTINGS frame and the number of settings entries are large (e.g., > 32), then drop the connection."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21340","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21340","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21340","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21340","date":"2026-10-08","epss":0.07748,"percentile":0.9449}],"risk":3.9321100000000007,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21340","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35565","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 7, < 7.0.321||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35565","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311","11.0.13"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35565","date":"2026-10-08","epss":0.07395,"percentile":0.94281}],"risk":3.7714500000000006,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7WTVCIVHTX3XONYOEGUMLKCM4QEC6INT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DJILEHYV2U37HKMGFEQ7CAVOV4DUWW2O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V362B2BWTH5IJDL45QPQGMBKIQOG7JX5/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-5000","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35565","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"848b1948f834d7ce","cpes":["cpe:2.3:a:libgnutls30:libgnutls30:3.6.7-4\\+deb10u7:*:*:*:*:*:*:*"],"name":"libgnutls30","purl":"pkg:deb/debian/libgnutls30@3.6.7-4%2Bdeb10u7?arch=amd64&distro=debian-10.10&upstream=gnutls28","type":"deb","version":"3.6.7-4+deb10u7","language":"","licenses":["sha256:d35f0abecc61a3676965c20cf13a44815b05d9b4a68985fa1809b13c2aff9090"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgnutls30/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgnutls30/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gnutls28"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2011-3389","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gnutls28","version":"3.6.7-4+deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2011-3389","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2011-3389","cwe":"CWE-326","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2011-3389","date":"2026-10-08","epss":0.73327,"percentile":0.99453}],"risk":3.66635,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2011-3389","description":"The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man-in-the-middle attackers to obtain plaintext HTTP headers via a blockwise chosen-boundary attack (BCBA) on an HTTPS session, in conjunction with JavaScript code that uses (1) the HTML5 WebSocket API, (2) the Java URLConnection API, or (3) the Silverlight WebClient API, aka a \"BEAST\" attack."},"relatedVulnerabilities":[{"id":"CVE-2011-3389","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2011-3389","cwe":"CWE-326","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2011-3389","date":"2026-10-08","epss":0.73327,"percentile":0.99453}],"urls":["http://blog.mozilla.com/security/2011/09/27/attack-against-tls-protected-communications/","http://blogs.technet.com/b/msrc/archive/2011/09/26/microsoft-releases-security-advisory-2588513.aspx","http://blogs.technet.com/b/srd/archive/2011/09/26/is-ssl-broken-more-about-security-advisory-2588513.aspx","http://curl.haxx.se/docs/adv_20120124B.html","http://downloads.asterisk.org/pub/security/AST-2016-001.html","http://ekoparty.org/2011/juliano-rizzo.php","http://eprint.iacr.org/2004/111","http://eprint.iacr.org/2006/136","http://googlechromereleases.blogspot.com/2011/10/chrome-stable-release.html","http://isc.sans.edu/diary/SSL+TLS+part+3+/11635","http://lists.apple.com/archives/Security-announce/2011//Oct/msg00001.html","http://lists.apple.com/archives/Security-announce/2011//Oct/msg00002.html","http://lists.apple.com/archives/security-announce/2012/Feb/msg00000.html","http://lists.apple.com/archives/security-announce/2012/Jul/msg00001.html","http://lists.apple.com/archives/security-announce/2012/May/msg00001.html","http://lists.apple.com/archives/security-announce/2012/Sep/msg00004.html","http://lists.apple.com/archives/security-announce/2013/Oct/msg00004.html","http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00049.html","http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00051.html","http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00009.html","http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00040.html","http://marc.info/?l=bugtraq&m=132750579901589&w=2","http://marc.info/?l=bugtraq&m=132872385320240&w=2","http://marc.info/?l=bugtraq&m=133365109612558&w=2","http://marc.info/?l=bugtraq&m=133728004526190&w=2","http://marc.info/?l=bugtraq&m=134254866602253&w=2","http://marc.info/?l=bugtraq&m=134254957702612&w=2","http://my.opera.com/securitygroup/blog/2011/09/28/the-beast-ssl-tls-issue","http://osvdb.org/74829","http://rhn.redhat.com/errata/RHSA-2012-0508.html","http://rhn.redhat.com/errata/RHSA-2013-1455.html","http://secunia.com/advisories/45791","http://secunia.com/advisories/47998","http://secunia.com/advisories/48256","http://secunia.com/advisories/48692","http://secunia.com/advisories/48915","http://secunia.com/advisories/48948","http://secunia.com/advisories/49198","http://secunia.com/advisories/55322","http://secunia.com/advisories/55350","http://secunia.com/advisories/55351","http://security.gentoo.org/glsa/glsa-201203-02.xml","http://security.gentoo.org/glsa/glsa-201406-32.xml","http://support.apple.com/kb/HT4999","http://support.apple.com/kb/HT5001","http://support.apple.com/kb/HT5130","http://support.apple.com/kb/HT5281","http://support.apple.com/kb/HT5501","http://support.apple.com/kb/HT6150","http://technet.microsoft.com/security/advisory/2588513","http://vnhacker.blogspot.com/2011/09/beast.html","http://www.apcmedia.com/salestools/SJHN-7RKGNM/SJHN-7RKGNM_R4_EN.pdf","http://www.debian.org/security/2012/dsa-2398","http://www.educatedguesswork.org/2011/09/security_impact_of_the_rizzodu.html","http://www.ibm.com/developerworks/java/jdk/alerts/","http://www.imperialviolet.org/2011/09/23/chromeandbeast.html","http://www.insecure.cl/Beast-SSL.rar","http://www.kb.cert.org/vuls/id/864643","http://www.mandriva.com/security/advisories?name=MDVSA-2012:058","http://www.opera.com/docs/changelogs/mac/1151/","http://www.opera.com/docs/changelogs/mac/1160/","http://www.opera.com/docs/changelogs/unix/1151/","http://www.opera.com/docs/changelogs/unix/1160/","http://www.opera.com/docs/changelogs/windows/1151/","http://www.opera.com/docs/changelogs/windows/1160/","http://www.opera.com/support/kb/view/1004/","http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html","http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html","http://www.oracle.com/technetwork/topics/security/javacpuoct2011-443431.html","http://www.redhat.com/support/errata/RHSA-2011-1384.html","http://www.redhat.com/support/errata/RHSA-2012-0006.html","http://www.securityfocus.com/bid/49388","http://www.securityfocus.com/bid/49778","http://www.securitytracker.com/id/1029190","http://www.securitytracker.com/id?1025997","http://www.securitytracker.com/id?1026103","http://www.securitytracker.com/id?1026704","http://www.ubuntu.com/usn/USN-1263-1","http://www.us-cert.gov/cas/techalerts/TA12-010A.html","https://blogs.oracle.com/sunsecurity/entry/multiple_vulnerabilities_in_fetchmail","https://bugzilla.novell.com/show_bug.cgi?id=719047","https://bugzilla.redhat.com/show_bug.cgi?id=737506","https://cert-portal.siemens.com/productcert/pdf/ssa-556833.pdf","https://docs.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-006","https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03839862","https://hermes.opensuse.org/messages/13154861","https://hermes.opensuse.org/messages/13155432","https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02","https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14752"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2011-3389","description":"The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man-in-the-middle attackers to obtain plaintext HTTP headers via a blockwise chosen-boundary attack (BCBA) on an HTTPS session, in conjunction with JavaScript code that uses (1) the HTML5 WebSocket API, (2) the Java URLConnection API, or (3) the Silverlight WebClient API, aka a \"BEAST\" attack."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2019-1387","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-1387","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2019-1387","date":"2026-10-08","epss":0.04426,"percentile":0.91121}],"risk":3.6071900000000006,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4581-1","link":"https://security-tracker.debian.org/tracker/DSA-4581-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-1387","description":"An issue was found in Git before v2.24.1, v2.23.1, v2.22.2, v2.21.1, v2.20.2, v2.19.3, v2.18.2, v2.17.3, v2.16.6, v2.15.4, and v2.14.6. Recursive clones are currently affected by a vulnerability that is caused by too-lax validation of submodule names, allowing very targeted attacks via remote code execution in recursive clones."},"relatedVulnerabilities":[{"id":"CVE-2019-1387","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"epss":[{"cve":"CVE-2019-1387","date":"2026-10-08","epss":0.04426,"percentile":0.91121}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00056.html","http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00003.html","https://access.redhat.com/errata/RHSA-2019:4356","https://access.redhat.com/errata/RHSA-2020:0002","https://access.redhat.com/errata/RHSA-2020:0124","https://access.redhat.com/errata/RHSA-2020:0228","https://lists.debian.org/debian-lts-announce/2020/01/msg00019.html","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/N6UGTEOXWIYSM5KDZL74QD2GK6YQNQCP/","https://lore.kernel.org/git/xmqqr21cqcn9.fsf%40gitster-ct.c.googlers.com/T/#u","https://public-inbox.org/git/xmqqr21cqcn9.fsf%40gitster-ct.c.googlers.com/","https://security.gentoo.org/glsa/202003-30","https://security.gentoo.org/glsa/202003-42","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-1387","description":"An issue was found in Git before v2.24.1, v2.23.1, v2.22.2, v2.21.1, v2.20.2, v2.19.3, v2.18.2, v2.17.3, v2.16.6, v2.15.4, and v2.14.6. Recursive clones are currently affected by a vulnerability that is caused by too-lax validation of submodule names, allowing very targeted attacks via remote code execution in recursive clones."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-1387","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-1387","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2019-1387","date":"2026-10-08","epss":0.04426,"percentile":0.91121}],"risk":3.6071900000000006,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-4581-1","link":"https://security-tracker.debian.org/tracker/DSA-4581-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-1387","description":"An issue was found in Git before v2.24.1, v2.23.1, v2.22.2, v2.21.1, v2.20.2, v2.19.3, v2.18.2, v2.17.3, v2.16.6, v2.15.4, and v2.14.6. Recursive clones are currently affected by a vulnerability that is caused by too-lax validation of submodule names, allowing very targeted attacks via remote code execution in recursive clones."},"relatedVulnerabilities":[{"id":"CVE-2019-1387","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"epss":[{"cve":"CVE-2019-1387","date":"2026-10-08","epss":0.04426,"percentile":0.91121}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00056.html","http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00003.html","https://access.redhat.com/errata/RHSA-2019:4356","https://access.redhat.com/errata/RHSA-2020:0002","https://access.redhat.com/errata/RHSA-2020:0124","https://access.redhat.com/errata/RHSA-2020:0228","https://lists.debian.org/debian-lts-announce/2020/01/msg00019.html","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/N6UGTEOXWIYSM5KDZL74QD2GK6YQNQCP/","https://lore.kernel.org/git/xmqqr21cqcn9.fsf%40gitster-ct.c.googlers.com/T/#u","https://public-inbox.org/git/xmqqr21cqcn9.fsf%40gitster-ct.c.googlers.com/","https://security.gentoo.org/glsa/202003-30","https://security.gentoo.org/glsa/202003-42","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-1387","description":"An issue was found in Git before v2.24.1, v2.23.1, v2.22.2, v2.21.1, v2.20.2, v2.19.3, v2.18.2, v2.17.3, v2.16.6, v2.15.4, and v2.14.6. Recursive clones are currently affected by a vulnerability that is caused by too-lax validation of submodule names, allowing very targeted attacks via remote code execution in recursive clones."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35561","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 12, < 17.0.1||>= 7, < 7.0.321||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35561","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311","11.0.13","17.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35561","date":"2026-10-08","epss":0.06946,"percentile":0.93954}],"risk":3.54246,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7WTVCIVHTX3XONYOEGUMLKCM4QEC6INT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DJILEHYV2U37HKMGFEQ7CAVOV4DUWW2O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V362B2BWTH5IJDL45QPQGMBKIQOG7JX5/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://www.debian.org/security/2021/dsa-5000","https://www.debian.org/security/2021/dsa-5012","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35561","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Utility). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-25314","versionConstraint":"< 2.2.6-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-25314","fix":{"state":"fixed","versions":["2.2.6-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25314","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25314","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25314","date":"2026-10-08","epss":0.04693,"percentile":0.91557}],"risk":3.51975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5085-1","link":"https://security-tracker.debian.org/tracker/DSA-5085-1"},{"id":"DSA-5085-2","link":"https://security-tracker.debian.org/tracker/DSA-5085-2"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-25314","description":"In Expat (aka libexpat) before 2.4.5, there is an integer overflow in copyString."},"relatedVulnerabilities":[{"id":"CVE-2022-25314","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25314","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25314","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25314","date":"2026-10-08","epss":0.04693,"percentile":0.91557}],"urls":["http://www.openwall.com/lists/oss-security/2022/02/19/1","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/560","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y27XO3JMKAOMQZVPS3B4MJGEAHCZF5OM/","https://security.gentoo.org/glsa/202209-24","https://security.netapp.com/advisory/ntap-20220303-0008/","https://www.debian.org/security/2022/dsa-5085","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-25314","description":"In Expat (aka libexpat) before 2.4.5, there is an integer overflow in copyString."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35586","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 12, < 17.0.1||>= 7, < 7.0.321||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35586","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311","11.0.13","17.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35586","date":"2026-10-08","epss":0.0679,"percentile":0.93832}],"risk":3.4629,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-5000","https://www.debian.org/security/2021/dsa-5012","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35586","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-45960","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-45960","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-45960","cwe":"CWE-682","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-45960","cwe":"CWE-682","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-45960","date":"2026-10-08","epss":0.04234,"percentile":0.90764}],"risk":3.4507100000000004,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-45960","description":"In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory)."},"relatedVulnerabilities":[{"id":"CVE-2021-45960","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:C/I:C/A:C","metrics":{"baseScore":9,"impactScore":10.1,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-45960","cwe":"CWE-682","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-45960","cwe":"CWE-682","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-45960","date":"2026-10-08","epss":0.04234,"percentile":0.90764}],"urls":["http://www.openwall.com/lists/oss-security/2022/01/17/3","https://bugzilla.mozilla.org/show_bug.cgi?id=1217609","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/issues/531","https://github.com/libexpat/libexpat/pull/534","https://security.gentoo.org/glsa/202209-24","https://security.netapp.com/advisory/ntap-20220121-0004/","https://www.debian.org/security/2022/dsa-5073","https://www.tenable.com/security/tns-2022-05"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-45960","description":"In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory)."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35560","versionConstraint":"< 1.8.0_311||>= 8, < 8.0.311 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35560","fix":{"state":"fixed","versions":["1.8.0_311","8.0.311"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.5,"impactScore":5.9,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:P/I:P/A:P","metrics":{"baseScore":5.1,"impactScore":6.5,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.5,"impactScore":5.9,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35560","date":"2026-10-08","epss":0.0483,"percentile":0.91761}],"risk":3.4292999999999996,"urls":["https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35560","description":"Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35578","versionConstraint":"< 1.8.0_311||>= 12, < 17.0.1||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35578","fix":{"state":"fixed","versions":["1.8.0_311","8.0.311","11.0.13","17.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35578","date":"2026-10-08","epss":0.06679,"percentile":0.93732}],"risk":3.40629,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-5000","https://www.debian.org/security/2021/dsa-5012","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35578","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-22946","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22946","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22946","cwe":"CWE-325","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-22946","date":"2026-10-08","epss":0.04539,"percentile":0.91321}],"risk":3.40425,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22946","description":"A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-reqd` on the command line or`CURLOPT_USE_SSL` set to `CURLUSESSL_CONTROL` or `CURLUSESSL_ALL` withlibcurl). This requirement could be bypassed if the server would return a properly crafted but perfectly legitimate response.This flaw would then make curl silently continue its operations **withoutTLS** contrary to the instructions and expectations, exposing possibly sensitive data in clear text over the network."},"relatedVulnerabilities":[{"id":"CVE-2021-22946","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22946","cwe":"CWE-325","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-22946","date":"2026-10-08","epss":0.04539,"percentile":0.91321}],"urls":["http://seclists.org/fulldisclosure/2022/Mar/29","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://hackerone.com/reports/1334111","https://lists.debian.org/debian-lts-announce/2021/09/msg00022.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/APOAK4X73EJTAPTSVT7IRVDMUWVXNWGD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RWLEC6YVEM2HWUBX67SDGPSY4CQB72OE/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20211029-0003/","https://security.netapp.com/advisory/ntap-20220121-0008/","https://support.apple.com/kb/HT213183","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22946","description":"A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-reqd` on the command line or`CURLOPT_USE_SSL` set to `CURLUSESSL_CONTROL` or `CURLUSESSL_ALL` withlibcurl). This requirement could be bypassed if the server would return a properly crafted but perfectly legitimate response.This flaw would then make curl silently continue its operations **withoutTLS** contrary to the instructions and expectations, exposing possibly sensitive data in clear text over the network."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-22946","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22946","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22946","cwe":"CWE-325","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-22946","date":"2026-10-08","epss":0.04539,"percentile":0.91321}],"risk":3.40425,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22946","description":"A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-reqd` on the command line or`CURLOPT_USE_SSL` set to `CURLUSESSL_CONTROL` or `CURLUSESSL_ALL` withlibcurl). This requirement could be bypassed if the server would return a properly crafted but perfectly legitimate response.This flaw would then make curl silently continue its operations **withoutTLS** contrary to the instructions and expectations, exposing possibly sensitive data in clear text over the network."},"relatedVulnerabilities":[{"id":"CVE-2021-22946","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22946","cwe":"CWE-325","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-22946","date":"2026-10-08","epss":0.04539,"percentile":0.91321}],"urls":["http://seclists.org/fulldisclosure/2022/Mar/29","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://hackerone.com/reports/1334111","https://lists.debian.org/debian-lts-announce/2021/09/msg00022.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/APOAK4X73EJTAPTSVT7IRVDMUWVXNWGD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RWLEC6YVEM2HWUBX67SDGPSY4CQB72OE/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20211029-0003/","https://security.netapp.com/advisory/ntap-20220121-0008/","https://support.apple.com/kb/HT213183","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22946","description":"A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-reqd` on the command line or`CURLOPT_USE_SSL` set to `CURLUSESSL_CONTROL` or `CURLUSESSL_ALL` withlibcurl). This requirement could be bypassed if the server would return a properly crafted but perfectly legitimate response.This flaw would then make curl silently continue its operations **withoutTLS** contrary to the instructions and expectations, exposing possibly sensitive data in clear text over the network."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-22946","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22946","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22946","cwe":"CWE-325","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-22946","date":"2026-10-08","epss":0.04539,"percentile":0.91321}],"risk":3.40425,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22946","description":"A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-reqd` on the command line or`CURLOPT_USE_SSL` set to `CURLUSESSL_CONTROL` or `CURLUSESSL_ALL` withlibcurl). This requirement could be bypassed if the server would return a properly crafted but perfectly legitimate response.This flaw would then make curl silently continue its operations **withoutTLS** contrary to the instructions and expectations, exposing possibly sensitive data in clear text over the network."},"relatedVulnerabilities":[{"id":"CVE-2021-22946","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22946","cwe":"CWE-325","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-22946","cwe":"CWE-319","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-22946","date":"2026-10-08","epss":0.04539,"percentile":0.91321}],"urls":["http://seclists.org/fulldisclosure/2022/Mar/29","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://hackerone.com/reports/1334111","https://lists.debian.org/debian-lts-announce/2021/09/msg00022.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/APOAK4X73EJTAPTSVT7IRVDMUWVXNWGD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RWLEC6YVEM2HWUBX67SDGPSY4CQB72OE/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20211029-0003/","https://security.netapp.com/advisory/ntap-20220121-0008/","https://support.apple.com/kb/HT213183","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22946","description":"A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-reqd` on the command line or`CURLOPT_USE_SSL` set to `CURLUSESSL_CONTROL` or `CURLUSESSL_ALL` withlibcurl). This requirement could be bypassed if the server would return a properly crafted but perfectly legitimate response.This flaw would then make curl silently continue its operations **withoutTLS** contrary to the instructions and expectations, exposing possibly sensitive data in clear text over the network."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-0215","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0215","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0215","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0215","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0215","date":"2026-10-08","epss":0.04494,"percentile":0.91248}],"risk":3.3705,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0215","description":"The public API function BIO_new_NDEF is a helper function used for streaming ASN.1 data via a BIO. It is primarily used internally to OpenSSL to support the SMIME, CMS and PKCS7 streaming capabilities, but may also be called directly by end user applications.  The function receives a BIO from the caller, prepends a new BIO_f_asn1 filter BIO onto the front of it to form a BIO chain, and then returns the new head of the BIO chain to the caller. Under certain conditions, for example if a CMS recipient public key is invalid, the new filter BIO is freed and the function returns a NULL result indicating a failure. However, in this case, the BIO chain is not properly cleaned up and the BIO passed by the caller still retains internal pointers to the previously freed filter BIO. If the caller then goes on to call BIO_pop() on the BIO then a use-after-free will occur. This will most likely result in a crash.    This scenario occurs directly in the internal function B64_write_ASN1() which may cause BIO_new_NDEF() to be called and will subsequently call BIO_pop() on the BIO. This internal function is in turn called by the public API functions PEM_write_bio_ASN1_stream, PEM_write_bio_CMS_stream, PEM_write_bio_PKCS7_stream, SMIME_write_ASN1, SMIME_write_CMS and SMIME_write_PKCS7.  Other public API functions that may be impacted by this include i2d_ASN1_bio_stream, BIO_new_CMS, BIO_new_PKCS7, i2d_CMS_bio_stream and i2d_PKCS7_bio_stream.  The OpenSSL cms and smime command line applications are similarly affected."},"relatedVulnerabilities":[{"id":"CVE-2023-0215","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0215","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0215","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0215","date":"2026-10-08","epss":0.04494,"percentile":0.91248}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=8818064ce3c3c0f1b740a5aaba2a987e75bfbafd","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9816136fe31d92ace4037d5da5257f763aeeb4eb","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=c3829dd8825c654652201e16f8a0a0c46ee3f344","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230427-0007/","https://security.netapp.com/advisory/ntap-20230427-0009/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.openssl.org/news/secadv/20230207.txt","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0215","description":"The public API function BIO_new_NDEF is a helper function used for streaming\nASN.1 data via a BIO. It is primarily used internally to OpenSSL to support the\nSMIME, CMS and PKCS7 streaming capabilities, but may also be called directly by\nend user applications.\n\nThe function receives a BIO from the caller, prepends a new BIO_f_asn1 filter\nBIO onto the front of it to form a BIO chain, and then returns the new head of\nthe BIO chain to the caller. Under certain conditions, for example if a CMS\nrecipient public key is invalid, the new filter BIO is freed and the function\nreturns a NULL result indicating a failure. However, in this case, the BIO chain\nis not properly cleaned up and the BIO passed by the caller still retains\ninternal pointers to the previously freed filter BIO. If the caller then goes on\nto call BIO_pop() on the BIO then a use-after-free will occur. This will most\nlikely result in a crash.\n\n\n\nThis scenario occurs directly in the internal function B64_write_ASN1() which\nmay cause BIO_new_NDEF() to be called and will subsequently call BIO_pop() on\nthe BIO. This internal function is in turn called by the public API functions\nPEM_write_bio_ASN1_stream, PEM_write_bio_CMS_stream, PEM_write_bio_PKCS7_stream,\nSMIME_write_ASN1, SMIME_write_CMS and SMIME_write_PKCS7.\n\nOther public API functions that may be impacted by this include\ni2d_ASN1_bio_stream, BIO_new_CMS, BIO_new_PKCS7, i2d_CMS_bio_stream and\ni2d_PKCS7_bio_stream.\n\nThe OpenSSL cms and smime command line applications are similarly affected."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-0215","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0215","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0215","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0215","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0215","date":"2026-10-08","epss":0.04494,"percentile":0.91248}],"risk":3.3705,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0215","description":"The public API function BIO_new_NDEF is a helper function used for streaming ASN.1 data via a BIO. It is primarily used internally to OpenSSL to support the SMIME, CMS and PKCS7 streaming capabilities, but may also be called directly by end user applications.  The function receives a BIO from the caller, prepends a new BIO_f_asn1 filter BIO onto the front of it to form a BIO chain, and then returns the new head of the BIO chain to the caller. Under certain conditions, for example if a CMS recipient public key is invalid, the new filter BIO is freed and the function returns a NULL result indicating a failure. However, in this case, the BIO chain is not properly cleaned up and the BIO passed by the caller still retains internal pointers to the previously freed filter BIO. If the caller then goes on to call BIO_pop() on the BIO then a use-after-free will occur. This will most likely result in a crash.    This scenario occurs directly in the internal function B64_write_ASN1() which may cause BIO_new_NDEF() to be called and will subsequently call BIO_pop() on the BIO. This internal function is in turn called by the public API functions PEM_write_bio_ASN1_stream, PEM_write_bio_CMS_stream, PEM_write_bio_PKCS7_stream, SMIME_write_ASN1, SMIME_write_CMS and SMIME_write_PKCS7.  Other public API functions that may be impacted by this include i2d_ASN1_bio_stream, BIO_new_CMS, BIO_new_PKCS7, i2d_CMS_bio_stream and i2d_PKCS7_bio_stream.  The OpenSSL cms and smime command line applications are similarly affected."},"relatedVulnerabilities":[{"id":"CVE-2023-0215","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0215","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0215","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0215","date":"2026-10-08","epss":0.04494,"percentile":0.91248}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=8818064ce3c3c0f1b740a5aaba2a987e75bfbafd","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9816136fe31d92ace4037d5da5257f763aeeb4eb","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=c3829dd8825c654652201e16f8a0a0c46ee3f344","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230427-0007/","https://security.netapp.com/advisory/ntap-20230427-0009/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.openssl.org/news/secadv/20230207.txt","https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0003"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0215","description":"The public API function BIO_new_NDEF is a helper function used for streaming\nASN.1 data via a BIO. It is primarily used internally to OpenSSL to support the\nSMIME, CMS and PKCS7 streaming capabilities, but may also be called directly by\nend user applications.\n\nThe function receives a BIO from the caller, prepends a new BIO_f_asn1 filter\nBIO onto the front of it to form a BIO chain, and then returns the new head of\nthe BIO chain to the caller. Under certain conditions, for example if a CMS\nrecipient public key is invalid, the new filter BIO is freed and the function\nreturns a NULL result indicating a failure. However, in this case, the BIO chain\nis not properly cleaned up and the BIO passed by the caller still retains\ninternal pointers to the previously freed filter BIO. If the caller then goes on\nto call BIO_pop() on the BIO then a use-after-free will occur. This will most\nlikely result in a crash.\n\n\n\nThis scenario occurs directly in the internal function B64_write_ASN1() which\nmay cause BIO_new_NDEF() to be called and will subsequently call BIO_pop() on\nthe BIO. This internal function is in turn called by the public API functions\nPEM_write_bio_ASN1_stream, PEM_write_bio_CMS_stream, PEM_write_bio_PKCS7_stream,\nSMIME_write_ASN1, SMIME_write_CMS and SMIME_write_PKCS7.\n\nOther public API functions that may be impacted by this include\ni2d_ASN1_bio_stream, BIO_new_CMS, BIO_new_PKCS7, i2d_CMS_bio_stream and\ni2d_PKCS7_bio_stream.\n\nThe OpenSSL cms and smime command line applications are similarly affected."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-3446","versionConstraint":"< 1.1.1n-0+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-3446","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3446","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-3446","cwe":"CWE-1333","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3446","date":"2026-10-08","epss":0.06531,"percentile":0.93621}],"risk":3.363465,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-3446","description":"Issue summary: Checking excessively long DH keys or parameters may be very slow.  Impact summary: Applications that use the functions DH_check(), DH_check_ex() or EVP_PKEY_param_check() to check a DH key or DH parameters may experience long delays. Where the key or parameters that are being checked have been obtained from an untrusted source this may lead to a Denial of Service.  The function DH_check() performs various checks on DH parameters. One of those checks confirms that the modulus ('p' parameter) is not too large. Trying to use a very large modulus is slow and OpenSSL will not normally use a modulus which is over 10,000 bits in length.  However the DH_check() function checks numerous aspects of the key or parameters that have been supplied. Some of those checks use the supplied modulus value even if it has already been found to be too large.  An application that calls DH_check() and supplies a key or parameters obtained from an untrusted source could be vulernable to a Denial of Service attack.  The function DH_check() is itself called by a number of other OpenSSL functions. An application calling any of those other functions may similarly be affected. The other functions affected by this are DH_check_ex() and EVP_PKEY_param_check().  Also vulnerable are the OpenSSL dhparam and pkeyparam command line applications when using the '-check' option.  The OpenSSL SSL/TLS implementation is not affected by this issue. The OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2023-3446","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3446","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-3446","cwe":"CWE-1333","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3446","date":"2026-10-08","epss":0.06531,"percentile":0.93621}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=1fa20cf2f506113c761777127a38bce5068740eb","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=8780a896543a654e757db1b9396383f9d8095528","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9a0a4d3c1e7138915563c0df4fe6a3f9377b839c","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fc9867c1e03c22ebf56943be205202e576aabf23","https://www.openssl.org/news/secadv/20230719.txt","http://www.openwall.com/lists/oss-security/2023/07/19/4","http://www.openwall.com/lists/oss-security/2023/07/19/5","http://www.openwall.com/lists/oss-security/2023/07/19/6","http://www.openwall.com/lists/oss-security/2023/07/31/1","http://www.openwall.com/lists/oss-security/2024/05/16/1","https://lists.debian.org/debian-lts-announce/2023/08/msg00019.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230803-0011/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-3446","description":"Issue summary: Checking excessively long DH keys or parameters may be very slow.\n\nImpact summary: Applications that use the functions DH_check(), DH_check_ex()\nor EVP_PKEY_param_check() to check a DH key or DH parameters may experience long\ndelays. Where the key or parameters that are being checked have been obtained\nfrom an untrusted source this may lead to a Denial of Service.\n\nThe function DH_check() performs various checks on DH parameters. One of those\nchecks confirms that the modulus ('p' parameter) is not too large. Trying to use\na very large modulus is slow and OpenSSL will not normally use a modulus which\nis over 10,000 bits in length.\n\nHowever the DH_check() function checks numerous aspects of the key or parameters\nthat have been supplied. Some of those checks use the supplied modulus value\neven if it has already been found to be too large.\n\nAn application that calls DH_check() and supplies a key or parameters obtained\nfrom an untrusted source could be vulernable to a Denial of Service attack.\n\nThe function DH_check() is itself called by a number of other OpenSSL functions.\nAn application calling any of those other functions may similarly be affected.\nThe other functions affected by this are DH_check_ex() and\nEVP_PKEY_param_check().\n\nAlso vulnerable are the OpenSSL dhparam and pkeyparam command line applications\nwhen using the '-check' option.\n\nThe OpenSSL SSL/TLS implementation is not affected by this issue.\nThe OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u6"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-3446","versionConstraint":"< 1.1.1n-0+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-3446","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3446","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-3446","cwe":"CWE-1333","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3446","date":"2026-10-08","epss":0.06531,"percentile":0.93621}],"risk":3.363465,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-3446","description":"Issue summary: Checking excessively long DH keys or parameters may be very slow.  Impact summary: Applications that use the functions DH_check(), DH_check_ex() or EVP_PKEY_param_check() to check a DH key or DH parameters may experience long delays. Where the key or parameters that are being checked have been obtained from an untrusted source this may lead to a Denial of Service.  The function DH_check() performs various checks on DH parameters. One of those checks confirms that the modulus ('p' parameter) is not too large. Trying to use a very large modulus is slow and OpenSSL will not normally use a modulus which is over 10,000 bits in length.  However the DH_check() function checks numerous aspects of the key or parameters that have been supplied. Some of those checks use the supplied modulus value even if it has already been found to be too large.  An application that calls DH_check() and supplies a key or parameters obtained from an untrusted source could be vulernable to a Denial of Service attack.  The function DH_check() is itself called by a number of other OpenSSL functions. An application calling any of those other functions may similarly be affected. The other functions affected by this are DH_check_ex() and EVP_PKEY_param_check().  Also vulnerable are the OpenSSL dhparam and pkeyparam command line applications when using the '-check' option.  The OpenSSL SSL/TLS implementation is not affected by this issue. The OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2023-3446","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3446","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-3446","cwe":"CWE-1333","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3446","date":"2026-10-08","epss":0.06531,"percentile":0.93621}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=1fa20cf2f506113c761777127a38bce5068740eb","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=8780a896543a654e757db1b9396383f9d8095528","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9a0a4d3c1e7138915563c0df4fe6a3f9377b839c","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fc9867c1e03c22ebf56943be205202e576aabf23","https://www.openssl.org/news/secadv/20230719.txt","http://www.openwall.com/lists/oss-security/2023/07/19/4","http://www.openwall.com/lists/oss-security/2023/07/19/5","http://www.openwall.com/lists/oss-security/2023/07/19/6","http://www.openwall.com/lists/oss-security/2023/07/31/1","http://www.openwall.com/lists/oss-security/2024/05/16/1","https://lists.debian.org/debian-lts-announce/2023/08/msg00019.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230803-0011/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-3446","description":"Issue summary: Checking excessively long DH keys or parameters may be very slow.\n\nImpact summary: Applications that use the functions DH_check(), DH_check_ex()\nor EVP_PKEY_param_check() to check a DH key or DH parameters may experience long\ndelays. Where the key or parameters that are being checked have been obtained\nfrom an untrusted source this may lead to a Denial of Service.\n\nThe function DH_check() performs various checks on DH parameters. One of those\nchecks confirms that the modulus ('p' parameter) is not too large. Trying to use\na very large modulus is slow and OpenSSL will not normally use a modulus which\nis over 10,000 bits in length.\n\nHowever the DH_check() function checks numerous aspects of the key or parameters\nthat have been supplied. Some of those checks use the supplied modulus value\neven if it has already been found to be too large.\n\nAn application that calls DH_check() and supplies a key or parameters obtained\nfrom an untrusted source could be vulernable to a Denial of Service attack.\n\nThe function DH_check() is itself called by a number of other OpenSSL functions.\nAn application calling any of those other functions may similarly be affected.\nThe other functions affected by this are DH_check_ex() and\nEVP_PKEY_param_check().\n\nAlso vulnerable are the OpenSSL dhparam and pkeyparam command line applications\nwhen using the '-check' option.\n\nThe OpenSSL SSL/TLS implementation is not affected by this issue.\nThe OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."}]},{"artifact":{"id":"56eb272c9677fc6a","cpes":["cpe:2.3:a:libsasl2-2:libsasl2-2:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2-2:libsasl2_2:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2_2:libsasl2-2:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2_2:libsasl2_2:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2:libsasl2-2:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2:libsasl2_2:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*"],"name":"libsasl2-2","purl":"pkg:deb/debian/libsasl2-2@2.1.27%2Bdfsg-1%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=cyrus-sasl2","type":"deb","version":"2.1.27+dfsg-1+deb10u1","language":"","licenses":["BSD-4-clause","GPL-3","GPL-3+"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsasl2-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libsasl2-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsasl2-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libsasl2-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"cyrus-sasl2"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.1.27+dfsg-1+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-24407","versionConstraint":"< 2.1.27+dfsg-1+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"cyrus-sasl2","version":"2.1.27+dfsg-1+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-24407","fix":{"state":"fixed","versions":["2.1.27+dfsg-1+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.1.27+dfsg-1+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-24407","cwe":"CWE-89","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-24407","date":"2026-10-08","epss":0.04123,"percentile":0.90534}],"risk":3.360245000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5087-1","link":"https://security-tracker.debian.org/tracker/DSA-5087-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-24407","description":"In Cyrus SASL 2.1.17 through 2.1.27 before 2.1.28, plugins/sql.c does not escape the password for a SQL INSERT or UPDATE statement."},"relatedVulnerabilities":[{"id":"CVE-2022-24407","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:P/I:P/A:P","metrics":{"baseScore":6.5,"impactScore":6.5,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-24407","cwe":"CWE-89","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-24407","date":"2026-10-08","epss":0.04123,"percentile":0.90534}],"urls":["http://www.openwall.com/lists/oss-security/2022/02/23/4","https://github.com/cyrusimap/cyrus-sasl/blob/fdcd13ceaef8de684dc69008011fa865c5b4a3ac/docsrc/sasl/release-notes/2.1/index.rst","https://lists.debian.org/debian-lts-announce/2022/03/msg00002.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4FIXU75Q6RBNK6UYM7MQ3TCFGXR7AX4U/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/H26R4SMGM3WHXX4XYNNJB4YGFIL5UNF4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZZC6BMPI3V3MC2IGNLN377ETUWO7QBIH/","https://security.netapp.com/advisory/ntap-20221007-0003/","https://www.cyrusimap.org/sasl/sasl/release-notes/2.1/index.html#new-in-2-1-28","https://www.debian.org/security/2022/dsa-5087","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-24407","description":"In Cyrus SASL 2.1.17 through 2.1.27 before 2.1.28, plugins/sql.c does not escape the password for a SQL INSERT or UPDATE statement."}]},{"artifact":{"id":"0dddbf5f31db948d","cpes":["cpe:2.3:a:libsasl2-modules-db:libsasl2-modules-db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2-modules-db:libsasl2_modules_db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2_modules_db:libsasl2-modules-db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2_modules_db:libsasl2_modules_db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2-modules:libsasl2-modules-db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2-modules:libsasl2_modules_db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2_modules:libsasl2-modules-db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2_modules:libsasl2_modules_db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2:libsasl2-modules-db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libsasl2:libsasl2_modules_db:2.1.27\\+dfsg-1\\+deb10u1:*:*:*:*:*:*:*"],"name":"libsasl2-modules-db","purl":"pkg:deb/debian/libsasl2-modules-db@2.1.27%2Bdfsg-1%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=cyrus-sasl2","type":"deb","version":"2.1.27+dfsg-1+deb10u1","language":"","licenses":["BSD-4-clause","GPL-3","GPL-3+"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsasl2-modules-db/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libsasl2-modules-db/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsasl2-modules-db:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libsasl2-modules-db:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"cyrus-sasl2"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.1.27+dfsg-1+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-24407","versionConstraint":"< 2.1.27+dfsg-1+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"cyrus-sasl2","version":"2.1.27+dfsg-1+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-24407","fix":{"state":"fixed","versions":["2.1.27+dfsg-1+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.1.27+dfsg-1+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-24407","cwe":"CWE-89","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-24407","date":"2026-10-08","epss":0.04123,"percentile":0.90534}],"risk":3.360245000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5087-1","link":"https://security-tracker.debian.org/tracker/DSA-5087-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-24407","description":"In Cyrus SASL 2.1.17 through 2.1.27 before 2.1.28, plugins/sql.c does not escape the password for a SQL INSERT or UPDATE statement."},"relatedVulnerabilities":[{"id":"CVE-2022-24407","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:P/I:P/A:P","metrics":{"baseScore":6.5,"impactScore":6.5,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-24407","cwe":"CWE-89","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-24407","date":"2026-10-08","epss":0.04123,"percentile":0.90534}],"urls":["http://www.openwall.com/lists/oss-security/2022/02/23/4","https://github.com/cyrusimap/cyrus-sasl/blob/fdcd13ceaef8de684dc69008011fa865c5b4a3ac/docsrc/sasl/release-notes/2.1/index.rst","https://lists.debian.org/debian-lts-announce/2022/03/msg00002.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4FIXU75Q6RBNK6UYM7MQ3TCFGXR7AX4U/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/H26R4SMGM3WHXX4XYNNJB4YGFIL5UNF4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZZC6BMPI3V3MC2IGNLN377ETUWO7QBIH/","https://security.netapp.com/advisory/ntap-20221007-0003/","https://www.cyrusimap.org/sasl/sasl/release-notes/2.1/index.html#new-in-2-1-28","https://www.debian.org/security/2022/dsa-5087","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-24407","description":"In Cyrus SASL 2.1.17 through 2.1.27 before 2.1.28, plugins/sql.c does not escape the password for a SQL INSERT or UPDATE statement."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-22823","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22823","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22823","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22823","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22823","date":"2026-10-08","epss":0.03404,"percentile":0.88532}],"risk":3.19976,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22823","description":"build_model in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."},"relatedVulnerabilities":[{"id":"CVE-2022-22823","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22823","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22823","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22823","date":"2026-10-08","epss":0.03404,"percentile":0.88532}],"urls":["http://www.openwall.com/lists/oss-security/2022/01/17/3","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/539","https://security.gentoo.org/glsa/202209-24","https://www.debian.org/security/2022/dsa-5073","https://www.tenable.com/security/tns-2022-05"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22823","description":"build_model in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-22824","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22824","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22824","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22824","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22824","date":"2026-10-08","epss":0.03404,"percentile":0.88532}],"risk":3.19976,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22824","description":"defineAttribute in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."},"relatedVulnerabilities":[{"id":"CVE-2022-22824","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22824","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22824","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22824","date":"2026-10-08","epss":0.03404,"percentile":0.88532}],"urls":["http://www.openwall.com/lists/oss-security/2022/01/17/3","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/539","https://security.gentoo.org/glsa/202209-24","https://www.debian.org/security/2022/dsa-5073","https://www.tenable.com/security/tns-2022-05"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22824","description":"defineAttribute in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."}]},{"artifact":{"id":"88bd54add991dd60","cpes":["cpe:2.3:a:libpcre2-8-0:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8-0:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8_0:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8_0:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*"],"name":"libpcre2-8-0","purl":"pkg:deb/debian/libpcre2-8-0@10.32-5?arch=amd64&distro=debian-10.10&upstream=pcre2","type":"deb","version":"10.32-5","language":"","licenses":["sha256:f65dae37239e4d61a1bdeaf2ded76b8569d012a054aa042233b78615e7a83210"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libpcre2-8-0/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libpcre2-8-0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libpcre2-8-0:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libpcre2-8-0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"pcre2"}]},"matchDetails":[{"fix":{"suggestedVersion":"10.32-5+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-1586","versionConstraint":"< 10.32-5+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"pcre2","version":"10.32-5"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1586","fix":{"state":"fixed","versions":["10.32-5+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"10.32-5+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1586","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1586","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1586","date":"2026-10-08","epss":0.03366,"percentile":0.88405}],"risk":3.0462300000000004,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1586","description":"An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled regular expressions. The issue occurs because the character was not fully read in case-less matching within JIT."},"relatedVulnerabilities":[{"id":"CVE-2022-1586","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:P","metrics":{"baseScore":6.4,"impactScore":5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1586","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1586","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1586","date":"2026-10-08","epss":0.03366,"percentile":0.88405}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=2077976%2C","https://github.com/PCRE2Project/pcre2/commit/50a51cb7e67268e6ad417eb07c9de9bfea5cc55a%2C","https://github.com/PCRE2Project/pcre2/commit/d4fa336fbcc388f89095b184ba6d99422cfc676c","https://lists.debian.org/debian-lts-announce/2023/03/msg00014.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DWNG2NS3GINO6LQYUVC4BZLUQPJ3DYHA/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JXINO3KKI5DICQ45E2FKD6MKVMGJLEKJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KAX7767BCUFC7JMDGP7GOQ5GIZCAUGBB/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/M2GLQQUEY5VFM57CFYXVIFOXN2HUZPDM/","https://security.netapp.com/advisory/ntap-20221028-0009/","https://bugzilla.redhat.com/show_bug.cgi?id=2077976","https://github.com/PCRE2Project/pcre2/commit/50a51cb7e67268e6ad417eb07c9de9bfea5cc55a"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1586","description":"An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled regular expressions. The issue occurs because the character was not fully read in case-less matching within JIT."}]},{"artifact":{"id":"da9ff9a377f09d63","cpes":["cpe:2.3:a:dpkg:dpkg:1.19.7:*:*:*:*:*:*:*"],"name":"dpkg","purl":"pkg:deb/debian/dpkg@1.19.7?arch=amd64&distro=debian-10.10","type":"deb","version":"1.19.7","language":"","licenses":["BSD-2-clause","GPL-2","GPL-2+","public-domain-md5","public-domain-s-s-d"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/dpkg/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/dpkg/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/dpkg.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/dpkg.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/dpkg.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/dpkg.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/dpkg.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/dpkg.list"},{"path":"/var/lib/dpkg/info/dpkg.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/dpkg.postinst"},{"path":"/var/lib/dpkg/info/dpkg.postrm","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/dpkg.postrm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.19.8"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-1664","versionConstraint":"< 1.19.8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"dpkg","version":"1.19.7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1664","fix":{"state":"fixed","versions":["1.19.8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.19.8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1664","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1664","date":"2026-10-08","epss":0.0324,"percentile":0.87919}],"risk":3.0456,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5147-1","link":"https://security-tracker.debian.org/tracker/DSA-5147-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1664","description":"Dpkg::Source::Archive in dpkg, the Debian package management system, before version 1.21.8, 1.20.10, 1.19.8, 1.18.26 is prone to a directory traversal vulnerability. When extracting untrusted source packages in v2 and v3 source package formats that include a debian.tar, the in-place extraction can lead to directory traversal situations on specially crafted orig.tar and debian.tar tarballs."},"relatedVulnerabilities":[{"id":"CVE-2022-1664","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1664","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1664","date":"2026-10-08","epss":0.0324,"percentile":0.87919}],"urls":["https://git.dpkg.org/cgit/dpkg/dpkg.git/commit/?id=1f23dddc17f69c9598477098c7fb9936e15fa495","https://git.dpkg.org/cgit/dpkg/dpkg.git/commit/?id=58814cacee39c4ce9e2cd0e3a3b9b57ad437eff5","https://git.dpkg.org/cgit/dpkg/dpkg.git/commit/?id=7a6c03cb34d4a09f35df2f10779cbf1b70a5200b","https://git.dpkg.org/cgit/dpkg/dpkg.git/commit/?id=faa4c92debe45412bfcf8a44f26e827800bb24be","https://lists.debian.org/debian-lts-announce/2022/05/msg00033.html","https://lists.debian.org/debian-security-announce/2022/msg00115.html","https://security.netapp.com/advisory/ntap-20221007-0002/"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1664","description":"Dpkg::Source::Archive in dpkg, the Debian package management system, before version 1.21.8, 1.20.10, 1.19.8, 1.18.26 is prone to a directory traversal vulnerability. When extracting untrusted source packages in v2 and v3 source package formats that include a debian.tar, the in-place extraction can lead to directory traversal situations on specially crafted orig.tar and debian.tar tarballs."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-23990","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-23990","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23990","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23990","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23990","date":"2026-10-08","epss":0.03992,"percentile":0.90252}],"risk":2.9939999999999998,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-23990","description":"Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function."},"relatedVulnerabilities":[{"id":"CVE-2022-23990","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-23990","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-23990","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-23990","date":"2026-10-08","epss":0.03992,"percentile":0.90252}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/551","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/34NXVL2RZC2YZRV74ZQ3RNFB7WCEUP7D/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R7FF2UH7MPXKTADYSJUAHI2Y5UHBSHUH/","https://security.gentoo.org/glsa/202209-24","https://www.debian.org/security/2022/dsa-5073","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.tenable.com/security/tns-2022-05"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-23990","description":"Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function."}]},{"artifact":{"id":"16faa100e8d6ebcf","cpes":["cpe:2.3:a:libssh2-1:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2-1:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2_1:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2_1:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*"],"name":"libssh2-1","purl":"pkg:deb/debian/libssh2-1@1.8.0-2.1?arch=amd64&distro=debian-10.10&upstream=libssh2","type":"deb","version":"1.8.0-2.1","language":"","licenses":["BSD3"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssh2-1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssh2-1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssh2-1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssh2-1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"libssh2"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0-2.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-17498","versionConstraint":"< 1.8.0-2.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libssh2","version":"1.8.0-2.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-17498","fix":{"state":"fixed","versions":["1.8.0-2.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.8.0-2.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-17498","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-17498","date":"2026-10-08","epss":0.03762,"percentile":0.89624}],"risk":2.9343600000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-17498","description":"In libssh2 v1.9.0 and earlier versions, the SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check, enabling an attacker to specify an arbitrary (out-of-bounds) offset for a subsequent memory read. A crafted SSH server may be able to disclose sensitive information or cause a denial of service condition on the client system when a user connects to the server."},"relatedVulnerabilities":[{"id":"CVE-2019-17498","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:P","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-17498","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-17498","date":"2026-10-08","epss":0.03762,"percentile":0.89624}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00026.html","http://packetstormsecurity.com/files/172835/libssh2-1.9.0-Out-Of-Bounds-Read.html","https://blog.semmle.com/libssh2-integer-overflow-CVE-2019-17498/","https://github.com/kevinbackhouse/SecurityExploits/tree/8cbdbbe6363510f7d9ceec685373da12e6fc752d/libssh2/out_of_bounds_read_disconnect_CVE-2019-17498","https://github.com/libssh2/libssh2/blob/42d37aa63129a1b2644bf6495198923534322d64/src/packet.c#L480","https://github.com/libssh2/libssh2/commit/dedcbd106f8e52d5586b0205bc7677e4c9868f9c","https://lists.debian.org/debian-lts-announce/2019/11/msg00010.html","https://lists.debian.org/debian-lts-announce/2021/12/msg00013.html","https://lists.debian.org/debian-lts-announce/2023/09/msg00006.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/22H4Q5XMGS3QNSA7OCL3U7UQZ4NXMR5O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TY7EEE34RFKCTXTMBQQWWSLXZWSCXNDB/","https://security.netapp.com/advisory/ntap-20220909-0004/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-17498","description":"In libssh2 v1.9.0 and earlier versions, the SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check, enabling an attacker to specify an arbitrary (out-of-bounds) offset for a subsequent memory read. A crafted SSH server may be able to disclose sensitive information or cause a denial of service condition on the client system when a user connects to the server."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-46143","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-46143","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-46143","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-46143","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-46143","date":"2026-10-08","epss":0.0379,"percentile":0.897}],"risk":2.89935,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-46143","description":"In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize."},"relatedVulnerabilities":[{"id":"CVE-2021-46143","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"cve@mitre.org","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-46143","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-46143","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-46143","date":"2026-10-08","epss":0.0379,"percentile":0.897}],"urls":["http://www.openwall.com/lists/oss-security/2022/01/17/3","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/issues/532","https://github.com/libexpat/libexpat/pull/538","https://security.gentoo.org/glsa/202209-24","https://security.netapp.com/advisory/ntap-20220121-0006/","https://www.debian.org/security/2022/dsa-5073","https://www.tenable.com/security/tns-2022-05"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-46143","description":"In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35564","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 12, < 17.0.1||>= 7, < 7.0.321||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35564","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311","11.0.13","17.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35564","date":"2026-10-08","epss":0.0563,"percentile":0.92749}],"risk":2.8713,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7WTVCIVHTX3XONYOEGUMLKCM4QEC6INT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DJILEHYV2U37HKMGFEQ7CAVOV4DUWW2O/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V362B2BWTH5IJDL45QPQGMBKIQOG7JX5/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-5000","https://www.debian.org/security/2021/dsa-5012","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35564","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Keytool). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"31533a2d94521b3a","cpes":["cpe:2.3:a:libgmp10:libgmp10:2\\:6.1.2\\+dfsg-4:*:*:*:*:*:*:*"],"name":"libgmp10","purl":"pkg:deb/debian/libgmp10@2%3A6.1.2%2Bdfsg-4?arch=amd64&distro=debian-10.10&upstream=gmp","type":"deb","version":"2:6.1.2+dfsg-4","language":"","licenses":["sha256:f73f781beb9f85b3f921f9bf540fc89d6eff9e20689ef9323ce510d077a30878"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgmp10/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgmp10/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgmp10:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgmp10:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gmp"}]},"matchDetails":[{"fix":{"suggestedVersion":"2:6.1.2+dfsg-4+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-43618","versionConstraint":"< 2:6.1.2+dfsg-4+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gmp","version":"2:6.1.2+dfsg-4"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-43618","fix":{"state":"fixed","versions":["2:6.1.2+dfsg-4+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2:6.1.2+dfsg-4+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-43618","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-43618","date":"2026-10-08","epss":0.03712,"percentile":0.89469}],"risk":2.784,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-43618","description":"GNU Multiple Precision Arithmetic Library (GMP) through 6.2.1 has an mpz/inp_raw.c integer overflow and resultant buffer overflow via crafted input, leading to a segmentation fault on 32-bit platforms."},"relatedVulnerabilities":[{"id":"CVE-2021-43618","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-43618","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-43618","date":"2026-10-08","epss":0.03712,"percentile":0.89469}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/8","http://www.openwall.com/lists/oss-security/2022/10/13/3","https://bugs.debian.org/994405","https://gmplib.org/list-archives/gmp-bugs/2021-September/005077.html","https://gmplib.org/repo/gmp-6.2/rev/561a9c25298e","https://lists.debian.org/debian-lts-announce/2021/12/msg00001.html","https://security.gentoo.org/glsa/202309-13","https://security.netapp.com/advisory/ntap-20221111-0001/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-43618","description":"GNU Multiple Precision Arithmetic Library (GMP) through 6.2.1 has an mpz/inp_raw.c integer overflow and resultant buffer overflow via crafted input, leading to a segmentation fault on 32-bit platforms."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-0464","versionConstraint":"< 1.1.1n-0+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0464","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0464","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0464","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0464","date":"2026-10-08","epss":0.03658,"percentile":0.89322}],"risk":2.7435,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0464","description":"A security vulnerability has been identified in all supported versions  of OpenSSL related to the verification of X.509 certificate chains that include policy constraints.  Attackers may be able to exploit this vulnerability by creating a malicious certificate chain that triggers exponential use of computational resources, leading to a denial-of-service (DoS) attack on affected systems.  Policy processing is disabled by default but can be enabled by passing the `-policy' argument to the command line utilities or by calling the `X509_VERIFY_PARAM_set1_policies()' function."},"relatedVulnerabilities":[{"id":"CVE-2023-0464","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0464","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0464","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0464","date":"2026-10-08","epss":0.03658,"percentile":0.89322}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2017771e2db3e2b96f89bbe8766c3209f6a99545","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2dcd4f1e3115f38cefa43e3efbe9b801c27e642e","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=879f7080d7e141f415c79eaa3a8ac4a3dad0348b","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=959c59c7a0164117e7f8366466a32bb1f8d77ff1","https://lists.debian.org/debian-lts-announce/2023/06/msg00011.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5417","https://www.openssl.org/news/secadv/20230322.txt","https://security.netapp.com/advisory/ntap-20230406-0006/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0464","description":"A security vulnerability has been identified in all supported versions\n\nof OpenSSL related to the verification of X.509 certificate chains\nthat include policy constraints.  Attackers may be able to exploit this\nvulnerability by creating a malicious certificate chain that triggers\nexponential use of computational resources, leading to a denial-of-service\n(DoS) attack on affected systems.\n\nPolicy processing is disabled by default but can be enabled by passing\nthe `-policy' argument to the command line utilities or by calling the\n`X509_VERIFY_PARAM_set1_policies()' function."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-0464","versionConstraint":"< 1.1.1n-0+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0464","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0464","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0464","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0464","date":"2026-10-08","epss":0.03658,"percentile":0.89322}],"risk":2.7435,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0464","description":"A security vulnerability has been identified in all supported versions  of OpenSSL related to the verification of X.509 certificate chains that include policy constraints.  Attackers may be able to exploit this vulnerability by creating a malicious certificate chain that triggers exponential use of computational resources, leading to a denial-of-service (DoS) attack on affected systems.  Policy processing is disabled by default but can be enabled by passing the `-policy' argument to the command line utilities or by calling the `X509_VERIFY_PARAM_set1_policies()' function."},"relatedVulnerabilities":[{"id":"CVE-2023-0464","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0464","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0464","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0464","date":"2026-10-08","epss":0.03658,"percentile":0.89322}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2017771e2db3e2b96f89bbe8766c3209f6a99545","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=2dcd4f1e3115f38cefa43e3efbe9b801c27e642e","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=879f7080d7e141f415c79eaa3a8ac4a3dad0348b","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=959c59c7a0164117e7f8366466a32bb1f8d77ff1","https://lists.debian.org/debian-lts-announce/2023/06/msg00011.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5417","https://www.openssl.org/news/secadv/20230322.txt","https://security.netapp.com/advisory/ntap-20230406-0006/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0464","description":"A security vulnerability has been identified in all supported versions\n\nof OpenSSL related to the verification of X.509 certificate chains\nthat include policy constraints.  Attackers may be able to exploit this\nvulnerability by creating a malicious certificate chain that triggers\nexponential use of computational resources, leading to a denial-of-service\n(DoS) attack on affected systems.\n\nPolicy processing is disabled by default but can be enabled by passing\nthe `-policy' argument to the command line utilities or by calling the\n`X509_VERIFY_PARAM_set1_policies()' function."}]},{"artifact":{"id":"2ee01fd2c453e926","cpes":["cpe:2.3:a:liblz4-1:liblz4-1:1.8.3-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:liblz4-1:liblz4_1:1.8.3-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:liblz4_1:liblz4-1:1.8.3-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:liblz4_1:liblz4_1:1.8.3-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:liblz4:liblz4-1:1.8.3-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:liblz4:liblz4_1:1.8.3-1\\+deb10u1:*:*:*:*:*:*:*"],"name":"liblz4-1","purl":"pkg:deb/debian/liblz4-1@1.8.3-1%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=lz4","type":"deb","version":"1.8.3-1+deb10u1","language":"","licenses":["BSD-2-clause","GPL-2","GPL-2+"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/liblz4-1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/liblz4-1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/liblz4-1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/liblz4-1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"lz4"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-17543","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"lz4","version":"1.8.3-1+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-17543","fix":{"state":"wont-fix","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2019-17543","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-17543","date":"2026-10-08","epss":0.09116,"percentile":0.95192}],"risk":2.7348,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-17543","description":"LZ4 before 1.9.2 has a heap-based buffer overflow in LZ4_write32 (related to LZ4_compress_destSize), affecting applications that call LZ4_compress_fast with a large input. (This issue can also lead to data corruption.) NOTE: the vendor states \"only a few specific / uncommon usages of the API are at risk.\""},"relatedVulnerabilities":[{"id":"CVE-2019-17543","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-17543","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-17543","date":"2026-10-08","epss":0.09116,"percentile":0.95192}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00069.html","http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00070.html","https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=15941","https://github.com/lz4/lz4/compare/v1.9.1...v1.9.2","https://github.com/lz4/lz4/issues/801","https://github.com/lz4/lz4/pull/756","https://github.com/lz4/lz4/pull/760","https://lists.apache.org/thread.html/25015588b770d67470b7ba7ea49a305d6735dd7f00eabe7d50ec1e17%40%3Cissues.arrow.apache.org%3E","https://lists.apache.org/thread.html/543302d55e2d2da4311994e9b0debdc676bf3fd05e1a2be3407aa2d6%40%3Cissues.arrow.apache.org%3E","https://lists.apache.org/thread.html/793012683dc0fa6819b7c2560e6cf990811014c40c7d75412099c357%40%3Cissues.arrow.apache.org%3E","https://lists.apache.org/thread.html/9ff0606d16be2ab6a81619e1c9e23c3e251756638e36272c8c8b7fa3%40%3Cissues.arrow.apache.org%3E","https://lists.apache.org/thread.html/f0038c4fab2ee25aee849ebeff6b33b3aa89e07ccfb06b5c87b36316%40%3Cissues.arrow.apache.org%3E","https://lists.apache.org/thread.html/f506bc371d4a068d5d84d7361293568f61167d3a1c3e91f0def2d7d3%40%3Cdev.arrow.apache.org%3E","https://lists.apache.org/thread.html/r0fb226357e7988a241b06b93bab065bcea2eb38658b382e485960e26%40%3Cissues.kudu.apache.org%3E","https://lists.apache.org/thread.html/r4068ba81066792f2b4d208b39c4c4713c5d4c79bd8cb6c1904af5720%40%3Cissues.kudu.apache.org%3E","https://lists.apache.org/thread.html/r7bc72200f94298bc9a0e35637f388deb53467ca4b2e2ad1ff66d8960%40%3Cissues.kudu.apache.org%3E","https://security.netapp.com/advisory/ntap-20210723-0001/","https://www.oracle.com//security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuoct2020.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-17543","description":"LZ4 before 1.9.2 has a heap-based buffer overflow in LZ4_write32 (related to LZ4_compress_destSize), affecting applications that call LZ4_compress_fast with a large input. (This issue can also lead to data corruption.) NOTE: the vendor states \"only a few specific / uncommon usages of the API are at risk.\""}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-33574","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-33574","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33574","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-33574","date":"2026-10-08","epss":0.02874,"percentile":0.86413}],"risk":2.7015600000000006,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-33574","description":"The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact."},"relatedVulnerabilities":[{"id":"CVE-2021-33574","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33574","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-33574","date":"2026-10-08","epss":0.02874,"percentile":0.86413}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KJYYIMDDYOHTP2PORLABTOHYQYYREZDD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RBUUWUGXVILQXVWEOU7N42ICHPJNAEUP/","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210629-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=27896","https://sourceware.org/bugzilla/show_bug.cgi?id=27896#c1"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-33574","description":"The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-33574","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-33574","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33574","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-33574","date":"2026-10-08","epss":0.02874,"percentile":0.86413}],"risk":2.7015600000000006,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-33574","description":"The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact."},"relatedVulnerabilities":[{"id":"CVE-2021-33574","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33574","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-33574","date":"2026-10-08","epss":0.02874,"percentile":0.86413}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KJYYIMDDYOHTP2PORLABTOHYQYYREZDD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RBUUWUGXVILQXVWEOU7N42ICHPJNAEUP/","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210629-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=27896","https://sourceware.org/bugzilla/show_bug.cgi?id=27896#c1"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-33574","description":"The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-33574","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-33574","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33574","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-33574","date":"2026-10-08","epss":0.02874,"percentile":0.86413}],"risk":2.7015600000000006,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-33574","description":"The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact."},"relatedVulnerabilities":[{"id":"CVE-2021-33574","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33574","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-33574","date":"2026-10-08","epss":0.02874,"percentile":0.86413}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KJYYIMDDYOHTP2PORLABTOHYQYYREZDD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RBUUWUGXVILQXVWEOU7N42ICHPJNAEUP/","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210629-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=27896","https://sourceware.org/bugzilla/show_bug.cgi?id=27896#c1"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-33574","description":"The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-33574","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-33574","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33574","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-33574","date":"2026-10-08","epss":0.02874,"percentile":0.86413}],"risk":2.7015600000000006,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-33574","description":"The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact."},"relatedVulnerabilities":[{"id":"CVE-2021-33574","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33574","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-33574","date":"2026-10-08","epss":0.02874,"percentile":0.86413}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KJYYIMDDYOHTP2PORLABTOHYQYYREZDD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RBUUWUGXVILQXVWEOU7N42ICHPJNAEUP/","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210629-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=27896","https://sourceware.org/bugzilla/show_bug.cgi?id=27896#c1"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-33574","description":"The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-39260","versionConstraint":"< 1:2.20.1-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-39260","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-39260","cwe":"CWE-122","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39260","cwe":"CWE-787","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39260","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-39260","date":"2026-10-08","epss":0.03275,"percentile":0.88079}],"risk":2.669125,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-39260","description":"Git is an open source, scalable, distributed revision control system. `git shell` is a restricted login shell that can be used to implement Git's push/pull functionality via SSH. In versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4, the function that splits the command arguments into an array improperly uses an `int` to represent the number of entries in the array, allowing a malicious actor to intentionally overflow the return value, leading to arbitrary heap writes. Because the resulting array is then passed to `execv()`, it is possible to leverage this attack to gain remote code execution on a victim machine. Note that a victim must first allow access to `git shell` as a login shell in order to be vulnerable to this attack. This problem is patched in versions 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 and users are advised to upgrade to the latest version. Disabling `git shell` access via remote logins is a viable short-term workaround."},"relatedVulnerabilities":[{"id":"CVE-2022-39260","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":8.5,"impactScore":6.1,"exploitabilityScore":1.8},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-39260","cwe":"CWE-122","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39260","cwe":"CWE-787","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39260","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-39260","date":"2026-10-08","epss":0.03275,"percentile":0.88079}],"urls":["http://seclists.org/fulldisclosure/2022/Nov/1","https://github.com/git/git/security/advisories/GHSA-rjr6-wcq6-83p6","https://lists.debian.org/debian-lts-announce/2022/12/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7B6JPKX5CGGLAHXJVQMIZNNEEB72FHD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OHNO2FB55CPX47BAXMBWUBGWHO6N6ZZH/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UKFHE4KVD7EKS5J3KTDFVBEKU3CLXGVV/","https://security.gentoo.org/glsa/202312-15","https://support.apple.com/kb/HT213496"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-39260","description":"Git is an open source, scalable, distributed revision control system. `git shell` is a restricted login shell that can be used to implement Git's push/pull functionality via SSH. In versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4, the function that splits the command arguments into an array improperly uses an `int` to represent the number of entries in the array, allowing a malicious actor to intentionally overflow the return value, leading to arbitrary heap writes. Because the resulting array is then passed to `execv()`, it is possible to leverage this attack to gain remote code execution on a victim machine. Note that a victim must first allow access to `git shell` as a login shell in order to be vulnerable to this attack. This problem is patched in versions 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 and users are advised to upgrade to the latest version. Disabling `git shell` access via remote logins is a viable short-term workaround."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-39260","versionConstraint":"< 1:2.20.1-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-39260","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-39260","cwe":"CWE-122","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39260","cwe":"CWE-787","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39260","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-39260","date":"2026-10-08","epss":0.03275,"percentile":0.88079}],"risk":2.669125,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-39260","description":"Git is an open source, scalable, distributed revision control system. `git shell` is a restricted login shell that can be used to implement Git's push/pull functionality via SSH. In versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4, the function that splits the command arguments into an array improperly uses an `int` to represent the number of entries in the array, allowing a malicious actor to intentionally overflow the return value, leading to arbitrary heap writes. Because the resulting array is then passed to `execv()`, it is possible to leverage this attack to gain remote code execution on a victim machine. Note that a victim must first allow access to `git shell` as a login shell in order to be vulnerable to this attack. This problem is patched in versions 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 and users are advised to upgrade to the latest version. Disabling `git shell` access via remote logins is a viable short-term workaround."},"relatedVulnerabilities":[{"id":"CVE-2022-39260","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":8.5,"impactScore":6.1,"exploitabilityScore":1.8},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-39260","cwe":"CWE-122","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39260","cwe":"CWE-787","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39260","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-39260","date":"2026-10-08","epss":0.03275,"percentile":0.88079}],"urls":["http://seclists.org/fulldisclosure/2022/Nov/1","https://github.com/git/git/security/advisories/GHSA-rjr6-wcq6-83p6","https://lists.debian.org/debian-lts-announce/2022/12/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7B6JPKX5CGGLAHXJVQMIZNNEEB72FHD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OHNO2FB55CPX47BAXMBWUBGWHO6N6ZZH/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UKFHE4KVD7EKS5J3KTDFVBEKU3CLXGVV/","https://security.gentoo.org/glsa/202312-15","https://support.apple.com/kb/HT213496"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-39260","description":"Git is an open source, scalable, distributed revision control system. `git shell` is a restricted login shell that can be used to implement Git's push/pull functionality via SSH. In versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4, the function that splits the command arguments into an array improperly uses an `int` to represent the number of entries in the array, allowing a malicious actor to intentionally overflow the return value, leading to arbitrary heap writes. Because the resulting array is then passed to `execv()`, it is possible to leverage this attack to gain remote code execution on a victim machine. Note that a victim must first allow access to `git shell` as a login shell in order to be vulnerable to this attack. This problem is patched in versions 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 and users are advised to upgrade to the latest version. Disabling `git shell` access via remote logins is a viable short-term workaround."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_462"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-30761","versionConstraint":"< 1.8.0_462||>= 1.9, < 8.0.462||>= 9, < 11.0.28 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-30761","fix":{"state":"fixed","versions":["1.8.0_462","8.0.462","11.0.28"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_462"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.462"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.28"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-30761","cwe":"CWE-502","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2025-30761","date":"2026-10-08","epss":0.04873,"percentile":0.91827}],"risk":2.6557850000000003,"urls":["https://www.oracle.com/security-alerts/cpujul2025.html","http://www.openwall.com/lists/oss-security/2025/07/16/1","http://www.openwall.com/lists/oss-security/2025/07/21/3","http://www.openwall.com/lists/oss-security/2025/07/24/1","https://lists.debian.org/debian-lts-announce/2025/07/msg00011.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-30761","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Scripting).  Supported versions that are affected are Oracle Java SE: 8u451, 8u451-perf and  11.0.27; Oracle GraalVM Enterprise Edition: 21.3.14. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 5.9 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"dd6e91cb036cd97c","cpes":["cpe:2.3:a:libncursesw6:libncursesw6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libncursesw6","purl":"pkg:deb/debian/libncursesw6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libncursesw6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-39537","versionConstraint":"< 6.1+20181013-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-39537","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-39537","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-39537","date":"2026-10-08","epss":0.03231,"percentile":0.87888}],"risk":2.6332649999999997,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-39537","description":"An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow."},"relatedVulnerabilities":[{"id":"CVE-2021-39537","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-39537","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-39537","date":"2026-10-08","epss":0.03231,"percentile":0.87888}],"urls":["http://cvsweb.netbsd.org/bsdweb.cgi/pkgsrc/devel/ncurses/patches/patch-ncurses_tinfo_captoinfo.c?rev=1.1&content-type=text/x-cvsweb-markup","http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","http://seclists.org/fulldisclosure/2022/Oct/43","http://seclists.org/fulldisclosure/2022/Oct/45","https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html","https://lists.gnu.org/archive/html/bug-ncurses/2020-08/msg00006.html","https://lists.gnu.org/archive/html/bug-ncurses/2021-10/msg00023.html","https://security.netapp.com/advisory/ntap-20230427-0012/","https://support.apple.com/kb/HT213443","https://support.apple.com/kb/HT213444","https://support.apple.com/kb/HT213488"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-39537","description":"An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow."}]},{"artifact":{"id":"32ae0288f40dd7ec","cpes":["cpe:2.3:a:libtinfo6:libtinfo6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libtinfo6","purl":"pkg:deb/debian/libtinfo6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libtinfo6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-39537","versionConstraint":"< 6.1+20181013-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-39537","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-39537","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-39537","date":"2026-10-08","epss":0.03231,"percentile":0.87888}],"risk":2.6332649999999997,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-39537","description":"An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow."},"relatedVulnerabilities":[{"id":"CVE-2021-39537","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-39537","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-39537","date":"2026-10-08","epss":0.03231,"percentile":0.87888}],"urls":["http://cvsweb.netbsd.org/bsdweb.cgi/pkgsrc/devel/ncurses/patches/patch-ncurses_tinfo_captoinfo.c?rev=1.1&content-type=text/x-cvsweb-markup","http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","http://seclists.org/fulldisclosure/2022/Oct/43","http://seclists.org/fulldisclosure/2022/Oct/45","https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html","https://lists.gnu.org/archive/html/bug-ncurses/2020-08/msg00006.html","https://lists.gnu.org/archive/html/bug-ncurses/2021-10/msg00023.html","https://security.netapp.com/advisory/ntap-20230427-0012/","https://support.apple.com/kb/HT213443","https://support.apple.com/kb/HT213444","https://support.apple.com/kb/HT213488"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-39537","description":"An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow."}]},{"artifact":{"id":"a8f604f9c5ac808b","cpes":["cpe:2.3:a:ncurses-base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-base","purl":"pkg:deb/debian/ncurses-base@6.1%2B20181013-2%2Bdeb10u2?arch=all&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-39537","versionConstraint":"< 6.1+20181013-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-39537","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-39537","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-39537","date":"2026-10-08","epss":0.03231,"percentile":0.87888}],"risk":2.6332649999999997,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-39537","description":"An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow."},"relatedVulnerabilities":[{"id":"CVE-2021-39537","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-39537","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-39537","date":"2026-10-08","epss":0.03231,"percentile":0.87888}],"urls":["http://cvsweb.netbsd.org/bsdweb.cgi/pkgsrc/devel/ncurses/patches/patch-ncurses_tinfo_captoinfo.c?rev=1.1&content-type=text/x-cvsweb-markup","http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","http://seclists.org/fulldisclosure/2022/Oct/43","http://seclists.org/fulldisclosure/2022/Oct/45","https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html","https://lists.gnu.org/archive/html/bug-ncurses/2020-08/msg00006.html","https://lists.gnu.org/archive/html/bug-ncurses/2021-10/msg00023.html","https://security.netapp.com/advisory/ntap-20230427-0012/","https://support.apple.com/kb/HT213443","https://support.apple.com/kb/HT213444","https://support.apple.com/kb/HT213488"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-39537","description":"An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow."}]},{"artifact":{"id":"9954ccfd24462fc8","cpes":["cpe:2.3:a:ncurses-bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-bin","purl":"pkg:deb/debian/ncurses-bin@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-39537","versionConstraint":"< 6.1+20181013-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-39537","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-39537","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-39537","date":"2026-10-08","epss":0.03231,"percentile":0.87888}],"risk":2.6332649999999997,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-39537","description":"An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow."},"relatedVulnerabilities":[{"id":"CVE-2021-39537","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-39537","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-39537","date":"2026-10-08","epss":0.03231,"percentile":0.87888}],"urls":["http://cvsweb.netbsd.org/bsdweb.cgi/pkgsrc/devel/ncurses/patches/patch-ncurses_tinfo_captoinfo.c?rev=1.1&content-type=text/x-cvsweb-markup","http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","http://seclists.org/fulldisclosure/2022/Oct/43","http://seclists.org/fulldisclosure/2022/Oct/45","https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html","https://lists.gnu.org/archive/html/bug-ncurses/2020-08/msg00006.html","https://lists.gnu.org/archive/html/bug-ncurses/2021-10/msg00023.html","https://security.netapp.com/advisory/ntap-20230427-0012/","https://support.apple.com/kb/HT213443","https://support.apple.com/kb/HT213444","https://support.apple.com/kb/HT213488"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-39537","description":"An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow."}]},{"artifact":{"id":"6ee23e24edb96ac0","cpes":["cpe:2.3:a:libfreetype6:libfreetype6:2.9.1-3\\+deb10u2:*:*:*:*:*:*:*"],"name":"libfreetype6","purl":"pkg:deb/debian/libfreetype6@2.9.1-3%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=freetype","type":"deb","version":"2.9.1-3+deb10u2","language":"","licenses":["BSD-3-Clause","Catharon-OSL","FSFUL","FSFULLR","FTL","GPL-2","GPL-2+","GPL-3","GPL-3+","MIT","OpenGroup-BSD-like","Permissive","Public-Domain","Zlib"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libfreetype6/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libfreetype6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libfreetype6:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libfreetype6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"freetype"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.9.1-3+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27404","versionConstraint":"< 2.9.1-3+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"freetype","version":"2.9.1-3+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27404","fix":{"state":"fixed","versions":["2.9.1-3+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.9.1-3+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27404","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27404","date":"2026-10-08","epss":0.02736,"percentile":0.85687}],"risk":2.57184,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27404","description":"FreeType commit 1e2eb65048f75c64b68708efed6ce904c31f3b2f was discovered to contain a heap buffer overflow via the function sfnt_init_face."},"relatedVulnerabilities":[{"id":"CVE-2022-27404","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27404","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27404","date":"2026-10-08","epss":0.02736,"percentile":0.85687}],"urls":["https://gitlab.freedesktop.org/freetype/freetype/-/issues/1138","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EFPNRKDLCXHZVYYQLQMP44UHLU32GA6Z/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FDU2FOEMCEF6WVR6ZBIH5MT5O7FAK6UP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IWQ7IB2A75MEHM63WEUXBYEC7OR5SGDY/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NYVC2NPKKXKP3TWJWG4ONYWNO6ZPHLA5/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TCEMWCM46PKM4U5ENRASPKQD6JDOLKRU/","https://security.gentoo.org/glsa/202402-06"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27404","description":"FreeType commit 1e2eb65048f75c64b68708efed6ce904c31f3b2f was discovered to contain a heap buffer overflow via the function sfnt_init_face."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-2097","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-2097","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2097","cwe":"CWE-327","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-2097","date":"2026-10-08","epss":0.04899,"percentile":0.91868}],"risk":2.5229850000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-2097","description":"AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the data under some circumstances. This could reveal sixteen bytes of data that was preexisting in the memory that wasn't written. In the special case of \"in place\" encryption, sixteen bytes of the plaintext would be revealed. Since OpenSSL does not support OCB based cipher suites for TLS and DTLS, they are both unaffected. Fixed in OpenSSL 3.0.5 (Affected 3.0.0-3.0.4). Fixed in OpenSSL 1.1.1q (Affected 1.1.1-1.1.1p)."},"relatedVulnerabilities":[{"id":"CVE-2022-2097","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2097","cwe":"CWE-327","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-2097","date":"2026-10-08","epss":0.04899,"percentile":0.91868}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-332410.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=919925673d6c9cfed3c1085497f5dfbbed5fc431","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=a98f339ddd7e8f487d6e0088d4a9a42324885a93","https://lists.debian.org/debian-lts-announce/2023/02/msg00019.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R6CK57NBQFTPUMXAPJURCGXUYT76NQAK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V6567JERRHHJW2GNGJGKDRNHR7SNPZK7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VCMNWKERPBKOEBNL7CLTTX3ZZCZLH7XA/","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20220715-0011/","https://security.netapp.com/advisory/ntap-20230420-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2023/dsa-5343","https://www.openssl.org/news/secadv/20220705.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-2097","description":"AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the data under some circumstances. This could reveal sixteen bytes of data that was preexisting in the memory that wasn't written. In the special case of \"in place\" encryption, sixteen bytes of the plaintext would be revealed. Since OpenSSL does not support OCB based cipher suites for TLS and DTLS, they are both unaffected. Fixed in OpenSSL 3.0.5 (Affected 3.0.0-3.0.4). Fixed in OpenSSL 1.1.1q (Affected 1.1.1-1.1.1p)."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-2097","versionConstraint":"< 1.1.1n-0+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-2097","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2097","cwe":"CWE-327","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-2097","date":"2026-10-08","epss":0.04899,"percentile":0.91868}],"risk":2.5229850000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-2097","description":"AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the data under some circumstances. This could reveal sixteen bytes of data that was preexisting in the memory that wasn't written. In the special case of \"in place\" encryption, sixteen bytes of the plaintext would be revealed. Since OpenSSL does not support OCB based cipher suites for TLS and DTLS, they are both unaffected. Fixed in OpenSSL 3.0.5 (Affected 3.0.0-3.0.4). Fixed in OpenSSL 1.1.1q (Affected 1.1.1-1.1.1p)."},"relatedVulnerabilities":[{"id":"CVE-2022-2097","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2097","cwe":"CWE-327","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-2097","date":"2026-10-08","epss":0.04899,"percentile":0.91868}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-332410.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=919925673d6c9cfed3c1085497f5dfbbed5fc431","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=a98f339ddd7e8f487d6e0088d4a9a42324885a93","https://lists.debian.org/debian-lts-announce/2023/02/msg00019.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R6CK57NBQFTPUMXAPJURCGXUYT76NQAK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V6567JERRHHJW2GNGJGKDRNHR7SNPZK7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VCMNWKERPBKOEBNL7CLTTX3ZZCZLH7XA/","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20220715-0011/","https://security.netapp.com/advisory/ntap-20230420-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2023/dsa-5343","https://www.openssl.org/news/secadv/20220705.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-2097","description":"AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the data under some circumstances. This could reveal sixteen bytes of data that was preexisting in the memory that wasn't written. In the special case of \"in place\" encryption, sixteen bytes of the plaintext would be revealed. Since OpenSSL does not support OCB based cipher suites for TLS and DTLS, they are both unaffected. Fixed in OpenSSL 3.0.5 (Affected 3.0.0-3.0.4). Fixed in OpenSSL 1.1.1q (Affected 1.1.1-1.1.1p)."}]},{"artifact":{"id":"88bd54add991dd60","cpes":["cpe:2.3:a:libpcre2-8-0:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8-0:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8_0:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8_0:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*"],"name":"libpcre2-8-0","purl":"pkg:deb/debian/libpcre2-8-0@10.32-5?arch=amd64&distro=debian-10.10&upstream=pcre2","type":"deb","version":"10.32-5","language":"","licenses":["sha256:f65dae37239e4d61a1bdeaf2ded76b8569d012a054aa042233b78615e7a83210"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libpcre2-8-0/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libpcre2-8-0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libpcre2-8-0:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libpcre2-8-0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"pcre2"}]},"matchDetails":[{"fix":{"suggestedVersion":"10.32-5+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-1587","versionConstraint":"< 10.32-5+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"pcre2","version":"10.32-5"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1587","fix":{"state":"fixed","versions":["10.32-5+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"10.32-5+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1587","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1587","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1587","date":"2026-10-08","epss":0.02767,"percentile":0.85889}],"risk":2.504135,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1587","description":"An out-of-bounds read vulnerability was discovered in the PCRE2 library in the get_recurse_data_length() function of the pcre2_jit_compile.c file. This issue affects recursions in JIT-compiled regular expressions caused by duplicate data transfers."},"relatedVulnerabilities":[{"id":"CVE-2022-1587","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:P","metrics":{"baseScore":6.4,"impactScore":5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1587","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1587","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1587","date":"2026-10-08","epss":0.02767,"percentile":0.85889}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=2077983%2C","https://github.com/PCRE2Project/pcre2/commit/03654e751e7f0700693526b67dfcadda6b42c9d0","https://lists.debian.org/debian-lts-announce/2023/03/msg00014.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DWNG2NS3GINO6LQYUVC4BZLUQPJ3DYHA/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JXINO3KKI5DICQ45E2FKD6MKVMGJLEKJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KAX7767BCUFC7JMDGP7GOQ5GIZCAUGBB/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/M2GLQQUEY5VFM57CFYXVIFOXN2HUZPDM/","https://security.netapp.com/advisory/ntap-20221028-0009/"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1587","description":"An out-of-bounds read vulnerability was discovered in the PCRE2 library in the get_recurse_data_length() function of the pcre2_jit_compile.c file. This issue affects recursions in JIT-compiled regular expressions caused by duplicate data transfers."}]},{"artifact":{"id":"6ee23e24edb96ac0","cpes":["cpe:2.3:a:libfreetype6:libfreetype6:2.9.1-3\\+deb10u2:*:*:*:*:*:*:*"],"name":"libfreetype6","purl":"pkg:deb/debian/libfreetype6@2.9.1-3%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=freetype","type":"deb","version":"2.9.1-3+deb10u2","language":"","licenses":["BSD-3-Clause","Catharon-OSL","FSFUL","FSFULLR","FTL","GPL-2","GPL-2+","GPL-3","GPL-3+","MIT","OpenGroup-BSD-like","Permissive","Public-Domain","Zlib"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libfreetype6/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libfreetype6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libfreetype6:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libfreetype6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"freetype"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.9.1-3+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27406","versionConstraint":"< 2.9.1-3+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"freetype","version":"2.9.1-3+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27406","fix":{"state":"fixed","versions":["2.9.1-3+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.9.1-3+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27406","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27406","date":"2026-10-08","epss":0.03326,"percentile":0.88269}],"risk":2.4945,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27406","description":"FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function FT_Request_Size."},"relatedVulnerabilities":[{"id":"CVE-2022-27406","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27406","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27406","date":"2026-10-08","epss":0.03326,"percentile":0.88269}],"urls":["https://gitlab.freedesktop.org/freetype/freetype/-/issues/1140","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EFPNRKDLCXHZVYYQLQMP44UHLU32GA6Z/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FDU2FOEMCEF6WVR6ZBIH5MT5O7FAK6UP/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IWQ7IB2A75MEHM63WEUXBYEC7OR5SGDY/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NYVC2NPKKXKP3TWJWG4ONYWNO6ZPHLA5/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TCEMWCM46PKM4U5ENRASPKQD6JDOLKRU/","https://security.gentoo.org/glsa/202402-06","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EFPNRKDLCXHZVYYQLQMP44UHLU32GA6Z/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FDU2FOEMCEF6WVR6ZBIH5MT5O7FAK6UP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IWQ7IB2A75MEHM63WEUXBYEC7OR5SGDY/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NYVC2NPKKXKP3TWJWG4ONYWNO6ZPHLA5/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TCEMWCM46PKM4U5ENRASPKQD6JDOLKRU/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27406","description":"FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function FT_Request_Size."}]},{"artifact":{"id":"ba5663119246d2af","cpes":["cpe:2.3:a:gcc-8-base:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8-base:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8_base:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8_base:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*"],"name":"gcc-8-base","purl":"pkg:deb/debian/gcc-8-base@8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8","type":"deb","version":"8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/gcc-8-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gcc-8-base:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gcc-8-base:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-15847","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-15847","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-15847","cwe":"CWE-331","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-15847","date":"2026-10-08","epss":0.03181,"percentile":0.87681}],"risk":2.38575,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-15847","description":"The POWER9 backend in GNU Compiler Collection (GCC) before version 10 could optimize multiple calls of the __builtin_darn intrinsic into a single call, thus reducing the entropy of the random number generator. This occurred because a volatile operation was not specified. For example, within a single execution of a program, the output of every __builtin_darn() call may be the same."},"relatedVulnerabilities":[{"id":"CVE-2019-15847","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-15847","cwe":"CWE-331","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-15847","date":"2026-10-08","epss":0.03181,"percentile":0.87681}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00056.html","http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00057.html","http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00058.html","https://gcc.gnu.org/bugzilla/show_bug.cgi?id=91481"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-15847","description":"The POWER9 backend in GNU Compiler Collection (GCC) before version 10 could optimize multiple calls of the __builtin_darn intrinsic into a single call, thus reducing the entropy of the random number generator. This occurred because a volatile operation was not specified. For example, within a single execution of a program, the output of every __builtin_darn() call may be the same."}]},{"artifact":{"id":"ffc1d39eff5a666e","cpes":["cpe:2.3:a:libgcc1:libgcc1:1\\:8.3.0-6:*:*:*:*:*:*:*"],"name":"libgcc1","purl":"pkg:deb/debian/libgcc1@1%3A8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8%408.3.0-6","type":"deb","version":"1:8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgcc1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgcc1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgcc1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8","version":"8.3.0-6"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-15847","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-15847","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-15847","cwe":"CWE-331","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-15847","date":"2026-10-08","epss":0.03181,"percentile":0.87681}],"risk":2.38575,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-15847","description":"The POWER9 backend in GNU Compiler Collection (GCC) before version 10 could optimize multiple calls of the __builtin_darn intrinsic into a single call, thus reducing the entropy of the random number generator. This occurred because a volatile operation was not specified. For example, within a single execution of a program, the output of every __builtin_darn() call may be the same."},"relatedVulnerabilities":[{"id":"CVE-2019-15847","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-15847","cwe":"CWE-331","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-15847","date":"2026-10-08","epss":0.03181,"percentile":0.87681}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00056.html","http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00057.html","http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00058.html","https://gcc.gnu.org/bugzilla/show_bug.cgi?id=91481"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-15847","description":"The POWER9 backend in GNU Compiler Collection (GCC) before version 10 could optimize multiple calls of the __builtin_darn intrinsic into a single call, thus reducing the entropy of the random number generator. This occurred because a volatile operation was not specified. For example, within a single execution of a program, the output of every __builtin_darn() call may be the same."}]},{"artifact":{"id":"0ebb89f70b0c2511","cpes":["cpe:2.3:a:libstdc\\+\\+6:libstdc\\+\\+6:8.3.0-6:*:*:*:*:*:*:*"],"name":"libstdc++6","purl":"pkg:deb/debian/libstdc%2B%2B6@8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8","type":"deb","version":"8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libstdc++6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libstdc++6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libstdc++6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-15847","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-15847","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-15847","cwe":"CWE-331","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-15847","date":"2026-10-08","epss":0.03181,"percentile":0.87681}],"risk":2.38575,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-15847","description":"The POWER9 backend in GNU Compiler Collection (GCC) before version 10 could optimize multiple calls of the __builtin_darn intrinsic into a single call, thus reducing the entropy of the random number generator. This occurred because a volatile operation was not specified. For example, within a single execution of a program, the output of every __builtin_darn() call may be the same."},"relatedVulnerabilities":[{"id":"CVE-2019-15847","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-15847","cwe":"CWE-331","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-15847","date":"2026-10-08","epss":0.03181,"percentile":0.87681}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00056.html","http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00057.html","http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00058.html","https://gcc.gnu.org/bugzilla/show_bug.cgi?id=91481"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-15847","description":"The POWER9 backend in GNU Compiler Collection (GCC) before version 10 could optimize multiple calls of the __builtin_darn intrinsic into a single call, thus reducing the entropy of the random number generator. This occurred because a volatile operation was not specified. For example, within a single execution of a program, the output of every __builtin_darn() call may be the same."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-35942","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-35942","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35942","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-35942","cwe":"CWE-704","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35942","date":"2026-10-08","epss":0.02605,"percentile":0.84917}],"risk":2.3575250000000003,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-35942","description":"The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclosure of information. This occurs because atoi was used but strtoul should have been used to ensure correct calculations."},"relatedVulnerabilities":[{"id":"CVE-2021-35942","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:P","metrics":{"baseScore":6.4,"impactScore":5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35942","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-35942","cwe":"CWE-704","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35942","date":"2026-10-08","epss":0.02605,"percentile":0.84917}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://security.netapp.com/advisory/ntap-20210827-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=28011","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=5adda61f62b77384718b4c0d8336ade8f2b4b35c","https://sourceware.org/glibc/wiki/Security%20Exceptions"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35942","description":"The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclosure of information. This occurs because atoi was used but strtoul should have been used to ensure correct calculations."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-35942","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-35942","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35942","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-35942","cwe":"CWE-704","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35942","date":"2026-10-08","epss":0.02605,"percentile":0.84917}],"risk":2.3575250000000003,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-35942","description":"The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclosure of information. This occurs because atoi was used but strtoul should have been used to ensure correct calculations."},"relatedVulnerabilities":[{"id":"CVE-2021-35942","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:P","metrics":{"baseScore":6.4,"impactScore":5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35942","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-35942","cwe":"CWE-704","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35942","date":"2026-10-08","epss":0.02605,"percentile":0.84917}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://security.netapp.com/advisory/ntap-20210827-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=28011","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=5adda61f62b77384718b4c0d8336ade8f2b4b35c","https://sourceware.org/glibc/wiki/Security%20Exceptions"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35942","description":"The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclosure of information. This occurs because atoi was used but strtoul should have been used to ensure correct calculations."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-35942","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-35942","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35942","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-35942","cwe":"CWE-704","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35942","date":"2026-10-08","epss":0.02605,"percentile":0.84917}],"risk":2.3575250000000003,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-35942","description":"The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclosure of information. This occurs because atoi was used but strtoul should have been used to ensure correct calculations."},"relatedVulnerabilities":[{"id":"CVE-2021-35942","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:P","metrics":{"baseScore":6.4,"impactScore":5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35942","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-35942","cwe":"CWE-704","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35942","date":"2026-10-08","epss":0.02605,"percentile":0.84917}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://security.netapp.com/advisory/ntap-20210827-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=28011","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=5adda61f62b77384718b4c0d8336ade8f2b4b35c","https://sourceware.org/glibc/wiki/Security%20Exceptions"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35942","description":"The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclosure of information. This occurs because atoi was used but strtoul should have been used to ensure correct calculations."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-35942","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-35942","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35942","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-35942","cwe":"CWE-704","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35942","date":"2026-10-08","epss":0.02605,"percentile":0.84917}],"risk":2.3575250000000003,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-35942","description":"The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclosure of information. This occurs because atoi was used but strtoul should have been used to ensure correct calculations."},"relatedVulnerabilities":[{"id":"CVE-2021-35942","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:P","metrics":{"baseScore":6.4,"impactScore":5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-35942","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-35942","cwe":"CWE-704","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-35942","date":"2026-10-08","epss":0.02605,"percentile":0.84917}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202208-24","https://security.netapp.com/advisory/ntap-20210827-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=28011","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=5adda61f62b77384718b4c0d8336ade8f2b4b35c","https://sourceware.org/glibc/wiki/Security%20Exceptions"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35942","description":"The wordexp function in the GNU C Library (aka glibc) through 2.33 may crash or read arbitrary memory in parse_param (in posix/wordexp.c) when called with an untrusted, crafted pattern, potentially resulting in a denial of service or disclosure of information. This occurs because atoi was used but strtoul should have been used to ensure correct calculations."}]},{"artifact":{"id":"5a5081d247582e95","cpes":["cpe:2.3:a:libidn2-0:libidn2-0:2.0.5-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libidn2-0:libidn2_0:2.0.5-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libidn2_0:libidn2-0:2.0.5-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libidn2_0:libidn2_0:2.0.5-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libidn2:libidn2-0:2.0.5-1\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libidn2:libidn2_0:2.0.5-1\\+deb10u1:*:*:*:*:*:*:*"],"name":"libidn2-0","purl":"pkg:deb/debian/libidn2-0@2.0.5-1%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=libidn2","type":"deb","version":"2.0.5-1+deb10u1","language":"","licenses":["GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL-3","LGPL-3+","Unicode"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libidn2-0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libidn2-0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libidn2-0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libidn2-0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"libidn2"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-12290","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libidn2","version":"2.0.5-1+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-12290","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-12290","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-12290","date":"2026-10-08","epss":0.03106,"percentile":0.87386}],"risk":2.3295,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-12290","description":"GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated."},"relatedVulnerabilities":[{"id":"CVE-2019-12290","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-12290","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-12290","date":"2026-10-08","epss":0.03106,"percentile":0.87386}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00008.html","http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00009.html","https://gitlab.com/libidn/libidn2/commit/241e8f486134793cb0f4a5b0e5817a97883401f5","https://gitlab.com/libidn/libidn2/commit/614117ef6e4c60e1950d742e3edf0a0ef8d389de","https://gitlab.com/libidn/libidn2/merge_requests/71","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3UFT76Y7OSGPZV3EBEHD6ISVUM3DLARM/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KXDKYWFV6N2HHVSE67FFDM7G3FEL2ZNE/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ONG3GJRRJO35COPGVJXXSZLU4J5Y42AT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RSI4TI2JTQWQ3YEUX5X36GTVGKO4QKZ5/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/U6ZXL2RDNQRAHCMKWPOMJFKYJ344X4HL/","https://security.gentoo.org/glsa/202003-63","https://usn.ubuntu.com/4168-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-12290","description":"GNU libidn2 before 2.2.0 fails to perform the roundtrip checks specified in RFC3490 Section 4.2 when converting A-labels to U-labels. This makes it possible in some circumstances for one domain to impersonate another. By creating a malicious domain that matches a target domain except for the inclusion of certain punycoded Unicode characters (that would be discarded when converted first to a Unicode label and then back to an ASCII label), arbitrary domains can be impersonated."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3326","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3326","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3326","date":"2026-10-08","epss":0.03093,"percentile":0.87343}],"risk":2.31975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3326","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service."},"relatedVulnerabilities":[{"id":"CVE-2021-3326","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3326","date":"2026-10-08","epss":0.03093,"percentile":0.87343}],"urls":["http://www.openwall.com/lists/oss-security/2021/01/28/2","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210304-0007/","https://sourceware.org/bugzilla/show_bug.cgi?id=27256","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=7d88c6142c6efc160c0ee5e4f85cde382c072888","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3326","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3326","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3326","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3326","date":"2026-10-08","epss":0.03093,"percentile":0.87343}],"risk":2.31975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3326","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service."},"relatedVulnerabilities":[{"id":"CVE-2021-3326","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3326","date":"2026-10-08","epss":0.03093,"percentile":0.87343}],"urls":["http://www.openwall.com/lists/oss-security/2021/01/28/2","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210304-0007/","https://sourceware.org/bugzilla/show_bug.cgi?id=27256","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=7d88c6142c6efc160c0ee5e4f85cde382c072888","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3326","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3326","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3326","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3326","date":"2026-10-08","epss":0.03093,"percentile":0.87343}],"risk":2.31975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3326","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service."},"relatedVulnerabilities":[{"id":"CVE-2021-3326","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3326","date":"2026-10-08","epss":0.03093,"percentile":0.87343}],"urls":["http://www.openwall.com/lists/oss-security/2021/01/28/2","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210304-0007/","https://sourceware.org/bugzilla/show_bug.cgi?id=27256","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=7d88c6142c6efc160c0ee5e4f85cde382c072888","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3326","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3326","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3326","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3326","date":"2026-10-08","epss":0.03093,"percentile":0.87343}],"risk":2.31975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3326","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service."},"relatedVulnerabilities":[{"id":"CVE-2021-3326","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-3326","cwe":"CWE-617","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-3326","date":"2026-10-08","epss":0.03093,"percentile":0.87343}],"urls":["http://www.openwall.com/lists/oss-security/2021/01/28/2","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210304-0007/","https://sourceware.org/bugzilla/show_bug.cgi?id=27256","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=7d88c6142c6efc160c0ee5e4f85cde382c072888","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3326","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-5678","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-5678","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-5678","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-5678","cwe":"CWE-754","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-5678","date":"2026-10-08","epss":0.04459,"percentile":0.9119}],"risk":2.296385,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-5678","description":"Issue summary: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow.  Impact summary: Applications that use the functions DH_generate_key() to generate an X9.42 DH key may experience long delays.  Likewise, applications that use DH_check_pub_key(), DH_check_pub_key_ex() or EVP_PKEY_public_check() to check an X9.42 DH key or X9.42 DH parameters may experience long delays. Where the key or parameters that are being checked have been obtained from an untrusted source this may lead to a Denial of Service.  While DH_check() performs all the necessary checks (as of CVE-2023-3817), DH_check_pub_key() doesn't make any of these checks, and is therefore vulnerable for excessively large P and Q parameters.  Likewise, while DH_generate_key() performs a check for an excessively large P, it doesn't check for an excessively large Q.  An application that calls DH_generate_key() or DH_check_pub_key() and supplies a key or parameters obtained from an untrusted source could be vulnerable to a Denial of Service attack.  DH_generate_key() and DH_check_pub_key() are also called by a number of other OpenSSL functions.  An application calling any of those other functions may similarly be affected.  The other functions affected by this are DH_check_pub_key_ex(), EVP_PKEY_public_check(), and EVP_PKEY_generate().  Also vulnerable are the OpenSSL pkey command line application when using the \"-pubcheck\" option, as well as the OpenSSL genpkey command line application.  The OpenSSL SSL/TLS implementation is not affected by this issue.  The OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2023-5678","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-5678","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-5678","cwe":"CWE-754","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-5678","date":"2026-10-08","epss":0.04459,"percentile":0.9119}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=34efaef6c103d636ab507a0cc34dca4d3aecc055","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=710fee740904b6290fef0dd5536fbcedbc38ff0c","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=db925ae2e65d0d925adef429afc37f75bd1c2017","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=ddeb4b6c6d527e54ce9a99cba785c0f7776e54b6","https://www.openssl.org/news/secadv/20231106.txt","http://www.openwall.com/lists/oss-security/2024/03/11/1","https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html","https://security.netapp.com/advisory/ntap-20231130-0010/","https://cert-portal.siemens.com/productcert/html/ssa-093430.html","https://cert-portal.siemens.com/productcert/html/ssa-128433.html","https://cert-portal.siemens.com/productcert/html/ssa-265688.html","https://cert-portal.siemens.com/productcert/html/ssa-277137.html","https://cert-portal.siemens.com/productcert/html/ssa-331112.html","https://cert-portal.siemens.com/productcert/html/ssa-341067.html","https://cert-portal.siemens.com/productcert/html/ssa-398330.html","https://cert-portal.siemens.com/productcert/html/ssa-556635.html","https://cert-portal.siemens.com/productcert/html/ssa-613116.html","https://cert-portal.siemens.com/productcert/html/ssa-769027.html","https://cert-portal.siemens.com/productcert/html/ssa-794697.html","https://cert-portal.siemens.com/productcert/html/ssa-915275.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-5678","description":"Issue summary: Generating excessively long X9.42 DH keys or checking\nexcessively long X9.42 DH keys or parameters may be very slow.\n\nImpact summary: Applications that use the functions DH_generate_key() to\ngenerate an X9.42 DH key may experience long delays.  Likewise, applications\nthat use DH_check_pub_key(), DH_check_pub_key_ex() or EVP_PKEY_public_check()\nto check an X9.42 DH key or X9.42 DH parameters may experience long delays.\nWhere the key or parameters that are being checked have been obtained from\nan untrusted source this may lead to a Denial of Service.\n\nWhile DH_check() performs all the necessary checks (as of CVE-2023-3817),\nDH_check_pub_key() doesn't make any of these checks, and is therefore\nvulnerable for excessively large P and Q parameters.\n\nLikewise, while DH_generate_key() performs a check for an excessively large\nP, it doesn't check for an excessively large Q.\n\nAn application that calls DH_generate_key() or DH_check_pub_key() and\nsupplies a key or parameters obtained from an untrusted source could be\nvulnerable to a Denial of Service attack.\n\nDH_generate_key() and DH_check_pub_key() are also called by a number of\nother OpenSSL functions.  An application calling any of those other\nfunctions may similarly be affected.  The other functions affected by this\nare DH_check_pub_key_ex(), EVP_PKEY_public_check(), and EVP_PKEY_generate().\n\nAlso vulnerable are the OpenSSL pkey command line application when using the\n\"-pubcheck\" option, as well as the OpenSSL genpkey command line application.\n\nThe OpenSSL SSL/TLS implementation is not affected by this issue.\n\nThe OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-5678","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-5678","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-5678","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-5678","cwe":"CWE-754","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-5678","date":"2026-10-08","epss":0.04459,"percentile":0.9119}],"risk":2.296385,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-5678","description":"Issue summary: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow.  Impact summary: Applications that use the functions DH_generate_key() to generate an X9.42 DH key may experience long delays.  Likewise, applications that use DH_check_pub_key(), DH_check_pub_key_ex() or EVP_PKEY_public_check() to check an X9.42 DH key or X9.42 DH parameters may experience long delays. Where the key or parameters that are being checked have been obtained from an untrusted source this may lead to a Denial of Service.  While DH_check() performs all the necessary checks (as of CVE-2023-3817), DH_check_pub_key() doesn't make any of these checks, and is therefore vulnerable for excessively large P and Q parameters.  Likewise, while DH_generate_key() performs a check for an excessively large P, it doesn't check for an excessively large Q.  An application that calls DH_generate_key() or DH_check_pub_key() and supplies a key or parameters obtained from an untrusted source could be vulnerable to a Denial of Service attack.  DH_generate_key() and DH_check_pub_key() are also called by a number of other OpenSSL functions.  An application calling any of those other functions may similarly be affected.  The other functions affected by this are DH_check_pub_key_ex(), EVP_PKEY_public_check(), and EVP_PKEY_generate().  Also vulnerable are the OpenSSL pkey command line application when using the \"-pubcheck\" option, as well as the OpenSSL genpkey command line application.  The OpenSSL SSL/TLS implementation is not affected by this issue.  The OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2023-5678","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-5678","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-5678","cwe":"CWE-754","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-5678","date":"2026-10-08","epss":0.04459,"percentile":0.9119}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=34efaef6c103d636ab507a0cc34dca4d3aecc055","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=710fee740904b6290fef0dd5536fbcedbc38ff0c","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=db925ae2e65d0d925adef429afc37f75bd1c2017","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=ddeb4b6c6d527e54ce9a99cba785c0f7776e54b6","https://www.openssl.org/news/secadv/20231106.txt","http://www.openwall.com/lists/oss-security/2024/03/11/1","https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html","https://security.netapp.com/advisory/ntap-20231130-0010/","https://cert-portal.siemens.com/productcert/html/ssa-093430.html","https://cert-portal.siemens.com/productcert/html/ssa-128433.html","https://cert-portal.siemens.com/productcert/html/ssa-265688.html","https://cert-portal.siemens.com/productcert/html/ssa-277137.html","https://cert-portal.siemens.com/productcert/html/ssa-331112.html","https://cert-portal.siemens.com/productcert/html/ssa-341067.html","https://cert-portal.siemens.com/productcert/html/ssa-398330.html","https://cert-portal.siemens.com/productcert/html/ssa-556635.html","https://cert-portal.siemens.com/productcert/html/ssa-613116.html","https://cert-portal.siemens.com/productcert/html/ssa-769027.html","https://cert-portal.siemens.com/productcert/html/ssa-794697.html","https://cert-portal.siemens.com/productcert/html/ssa-915275.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-5678","description":"Issue summary: Generating excessively long X9.42 DH keys or checking\nexcessively long X9.42 DH keys or parameters may be very slow.\n\nImpact summary: Applications that use the functions DH_generate_key() to\ngenerate an X9.42 DH key may experience long delays.  Likewise, applications\nthat use DH_check_pub_key(), DH_check_pub_key_ex() or EVP_PKEY_public_check()\nto check an X9.42 DH key or X9.42 DH parameters may experience long delays.\nWhere the key or parameters that are being checked have been obtained from\nan untrusted source this may lead to a Denial of Service.\n\nWhile DH_check() performs all the necessary checks (as of CVE-2023-3817),\nDH_check_pub_key() doesn't make any of these checks, and is therefore\nvulnerable for excessively large P and Q parameters.\n\nLikewise, while DH_generate_key() performs a check for an excessively large\nP, it doesn't check for an excessively large Q.\n\nAn application that calls DH_generate_key() or DH_check_pub_key() and\nsupplies a key or parameters obtained from an untrusted source could be\nvulnerable to a Denial of Service attack.\n\nDH_generate_key() and DH_check_pub_key() are also called by a number of\nother OpenSSL functions.  An application calling any of those other\nfunctions may similarly be affected.  The other functions affected by this\nare DH_check_pub_key_ex(), EVP_PKEY_public_check(), and EVP_PKEY_generate().\n\nAlso vulnerable are the OpenSSL pkey command line application when using the\n\"-pubcheck\" option, as well as the OpenSSL genpkey command line application.\n\nThe OpenSSL SSL/TLS implementation is not affected by this issue.\n\nThe OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-22826","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22826","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22826","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22826","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22826","date":"2026-10-08","epss":0.02801,"percentile":0.86057}],"risk":2.2828150000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22826","description":"nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."},"relatedVulnerabilities":[{"id":"CVE-2022-22826","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22826","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22826","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22826","date":"2026-10-08","epss":0.02801,"percentile":0.86057}],"urls":["http://www.openwall.com/lists/oss-security/2022/01/17/3","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/539","https://security.gentoo.org/glsa/202209-24","https://www.debian.org/security/2022/dsa-5073","https://www.tenable.com/security/tns-2022-05"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22826","description":"nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-22827","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22827","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22827","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22827","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22827","date":"2026-10-08","epss":0.02801,"percentile":0.86057}],"risk":2.2828150000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22827","description":"storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."},"relatedVulnerabilities":[{"id":"CVE-2022-22827","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22827","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22827","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22827","date":"2026-10-08","epss":0.02801,"percentile":0.86057}],"urls":["http://www.openwall.com/lists/oss-security/2022/01/17/3","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/539","https://security.gentoo.org/glsa/202209-24","https://www.debian.org/security/2022/dsa-5073","https://www.tenable.com/security/tns-2022-05"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22827","description":"storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_331"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21476","versionConstraint":"< 1.7.0_341||>= 1.8, < 1.8.0_331||>= 12, < 17.0.3||>= 18, < 18.0.1||>= 7, < 7.0.341||>= 8, < 8.0.331||>= 9, < 11.0.15 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21476","fix":{"state":"fixed","versions":["1.7.0_341","7.0.341","1.8.0_331","8.0.331","11.0.15","17.0.3","18.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_341"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.3"},{"date":"2025-09-04","kind":"first-observed","version":"18.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.341"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.15"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21476","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21476","date":"2026-10-08","epss":0.04046,"percentile":0.90365}],"risk":2.275875,"urls":["https://lists.debian.org/debian-lts-announce/2022/05/msg00017.html","https://security.netapp.com/advisory/ntap-20220429-0006/","https://www.debian.org/security/2022/dsa-5128","https://www.debian.org/security/2022/dsa-5131","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21476","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"24cab09f870cf7ee","cpes":["cpe:2.3:a:libdb5.3:libdb5.3:5.3.28\\+dfsg1-0.5:*:*:*:*:*:*:*"],"name":"libdb5.3","purl":"pkg:deb/debian/libdb5.3@5.3.28%2Bdfsg1-0.5?arch=amd64&distro=debian-10.10&upstream=db5.3","type":"deb","version":"5.3.28+dfsg1-0.5","language":"","licenses":["sha256:b3bbc6fbb3f2a0e6a487e953eb8c3cc4bdb6f4150f7f51d20b1e9a3c8ef92d3d"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libdb5.3/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libdb5.3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libdb5.3:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libdb5.3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"db5.3"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-8457","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"db5.3","version":"5.3.28+dfsg1-0.5"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-8457","fix":{"state":"wont-fix","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2019-8457","cwe":"CWE-125","type":"Secondary","source":"cve@checkpoint.com"},{"cve":"CVE-2019-8457","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-8457","date":"2026-10-08","epss":0.45426,"percentile":0.98761}],"risk":2.2713,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-8457","description":"SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables."},"relatedVulnerabilities":[{"id":"CVE-2019-8457","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":7.5,"impactScore":6.5,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-8457","cwe":"CWE-125","type":"Secondary","source":"cve@checkpoint.com"},{"cve":"CVE-2019-8457","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-8457","date":"2026-10-08","epss":0.45426,"percentile":0.98761}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00074.html","https://kc.mcafee.com/corporate/index?page=content&id=SB10365","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OPKYSWCOM3CL66RI76TYVIG6TJ263RXH/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SJPFGA45DI4F5MCF2OAACGH3HQOF4G3M/","https://security.netapp.com/advisory/ntap-20190606-0002/","https://usn.ubuntu.com/4004-1/","https://usn.ubuntu.com/4004-2/","https://usn.ubuntu.com/4019-1/","https://usn.ubuntu.com/4019-2/","https://www.oracle.com/security-alerts/cpuapr2020.html","https://www.oracle.com/security-alerts/cpujan2020.html","https://www.oracle.com/security-alerts/cpujul2020.html","https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html","https://www.sqlite.org/releaselog/3_28_0.html","https://www.sqlite.org/src/info/90acdbfce9c08858"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-8457","description":"SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_301"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-2388","versionConstraint":"< 1.8.0_301||>= 12, < 16.0.2||>= 8, < 8.0.301||>= 9, < 11.0.12 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-2388","fix":{"state":"fixed","versions":["1.8.0_301","8.0.301","11.0.12","16.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_301"},{"date":"2025-09-04","kind":"first-observed","version":"16.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.301"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.12"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:P/I:P/A:P","metrics":{"baseScore":5.1,"impactScore":6.5,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.5,"impactScore":5.9,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-2388","date":"2026-10-08","epss":0.04008,"percentile":0.90288}],"risk":2.2645199999999996,"urls":["https://lists.debian.org/debian-lts-announce/2021/08/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20210723-0002/","https://www.debian.org/security/2021/dsa-4946","https://www.oracle.com/security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-2388","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Java SE: 8u291, 11.0.11, 16.0.1; Oracle GraalVM Enterprise Edition: 20.3.2 and 21.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-27782","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27782","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27782","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27782","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27782","date":"2026-10-08","epss":0.0293,"percentile":0.86676}],"risk":2.1975000000000002,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27782","description":"libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily."},"relatedVulnerabilities":[{"id":"CVE-2022-27782","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27782","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27782","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27782","date":"2026-10-08","epss":0.0293,"percentile":0.86676}],"urls":["http://www.openwall.com/lists/oss-security/2023/03/20/6","https://hackerone.com/reports/1555796","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0009/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27782","description":"libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27782","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27782","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27782","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27782","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27782","date":"2026-10-08","epss":0.0293,"percentile":0.86676}],"risk":2.1975000000000002,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27782","description":"libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily."},"relatedVulnerabilities":[{"id":"CVE-2022-27782","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27782","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27782","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27782","date":"2026-10-08","epss":0.0293,"percentile":0.86676}],"urls":["http://www.openwall.com/lists/oss-security/2023/03/20/6","https://hackerone.com/reports/1555796","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0009/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27782","description":"libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27782","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27782","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27782","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27782","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27782","date":"2026-10-08","epss":0.0293,"percentile":0.86676}],"risk":2.1975000000000002,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27782","description":"libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily."},"relatedVulnerabilities":[{"id":"CVE-2022-27782","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27782","cwe":"CWE-840","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27782","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27782","date":"2026-10-08","epss":0.0293,"percentile":0.86676}],"urls":["http://www.openwall.com/lists/oss-security/2023/03/20/6","https://hackerone.com/reports/1555796","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0009/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27782","description":"libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-4741","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-4741","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-4741","cwe":"CWE-416","type":"Secondary","source":"openssl-security@openssl.org"}],"epss":[{"cve":"CVE-2024-4741","date":"2026-10-08","epss":0.02925,"percentile":0.86654}],"risk":2.19375,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-4741"},"relatedVulnerabilities":[{"id":"CVE-2024-4741","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-4741","cwe":"CWE-416","type":"Secondary","source":"openssl-security@openssl.org"}],"epss":[{"cve":"CVE-2024-4741","date":"2026-10-08","epss":0.02925,"percentile":0.86654}],"urls":["https://github.com/openssl/openssl/commit/704f725b96aa373ee45ecfb23f6abfe8be8d9177","https://github.com/openssl/openssl/commit/b3f0eb0a295f58f16ba43ba99dad70d4ee5c437d","https://github.com/openssl/openssl/commit/c88c3de51020c37e8706bf7a682a162593053aac","https://github.com/openssl/openssl/commit/e5093133c35ca82874ad83697af76f4b0f7e3bd8","https://github.openssl.org/openssl/extended-releases/commit/f7a045f3143fc6da2ee66bf52d8df04829590dd4","https://www.openssl.org/news/secadv/20240528.txt","https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html","https://security.netapp.com/advisory/ntap-20240621-0004/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-4741","description":"Issue summary: Calling the OpenSSL API function SSL_free_buffers may cause\nmemory to be accessed that was previously freed in some situations\n\nImpact summary: A use after free can have a range of potential consequences such\nas the corruption of valid data, crashes or execution of arbitrary code.\nHowever, only applications that directly call the SSL_free_buffers function are\naffected by this issue. Applications that do not call this function are not\nvulnerable. Our investigations indicate that this function is rarely used by\napplications.\n\nThe SSL_free_buffers function is used to free the internal OpenSSL buffer used\nwhen processing an incoming record from the network. The call is only expected\nto succeed if the buffer is not currently in use. However, two scenarios have\nbeen identified where the buffer is freed even when still in use.\n\nThe first scenario occurs where a record header has been received from the\nnetwork and processed by OpenSSL, but the full record body has not yet arrived.\nIn this case calling SSL_free_buffers will succeed even though a record has only\nbeen partially processed and the buffer is still in use.\n\nThe second scenario occurs where a full record containing application data has\nbeen received and processed by OpenSSL but the application has only read part of\nthis data. Again a call to SSL_free_buffers will succeed even though the buffer\nis still in use.\n\nWhile these scenarios could occur accidentally during normal operation a\nmalicious attacker could attempt to engineer a stituation where this occurs.\nWe are not aware of this issue being actively exploited.\n\nThe FIPS modules in 3.3, 3.2, 3.1 and 3.0 are not affected by this issue."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-4741","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-4741","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-4741","cwe":"CWE-416","type":"Secondary","source":"openssl-security@openssl.org"}],"epss":[{"cve":"CVE-2024-4741","date":"2026-10-08","epss":0.02925,"percentile":0.86654}],"risk":2.19375,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-4741"},"relatedVulnerabilities":[{"id":"CVE-2024-4741","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-4741","cwe":"CWE-416","type":"Secondary","source":"openssl-security@openssl.org"}],"epss":[{"cve":"CVE-2024-4741","date":"2026-10-08","epss":0.02925,"percentile":0.86654}],"urls":["https://github.com/openssl/openssl/commit/704f725b96aa373ee45ecfb23f6abfe8be8d9177","https://github.com/openssl/openssl/commit/b3f0eb0a295f58f16ba43ba99dad70d4ee5c437d","https://github.com/openssl/openssl/commit/c88c3de51020c37e8706bf7a682a162593053aac","https://github.com/openssl/openssl/commit/e5093133c35ca82874ad83697af76f4b0f7e3bd8","https://github.openssl.org/openssl/extended-releases/commit/f7a045f3143fc6da2ee66bf52d8df04829590dd4","https://www.openssl.org/news/secadv/20240528.txt","https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html","https://security.netapp.com/advisory/ntap-20240621-0004/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-4741","description":"Issue summary: Calling the OpenSSL API function SSL_free_buffers may cause\nmemory to be accessed that was previously freed in some situations\n\nImpact summary: A use after free can have a range of potential consequences such\nas the corruption of valid data, crashes or execution of arbitrary code.\nHowever, only applications that directly call the SSL_free_buffers function are\naffected by this issue. Applications that do not call this function are not\nvulnerable. Our investigations indicate that this function is rarely used by\napplications.\n\nThe SSL_free_buffers function is used to free the internal OpenSSL buffer used\nwhen processing an incoming record from the network. The call is only expected\nto succeed if the buffer is not currently in use. However, two scenarios have\nbeen identified where the buffer is freed even when still in use.\n\nThe first scenario occurs where a record header has been received from the\nnetwork and processed by OpenSSL, but the full record body has not yet arrived.\nIn this case calling SSL_free_buffers will succeed even though a record has only\nbeen partially processed and the buffer is still in use.\n\nThe second scenario occurs where a full record containing application data has\nbeen received and processed by OpenSSL but the application has only read part of\nthis data. Again a call to SSL_free_buffers will succeed even though the buffer\nis still in use.\n\nWhile these scenarios could occur accidentally during normal operation a\nmalicious attacker could attempt to engineer a stituation where this occurs.\nWe are not aware of this issue being actively exploited.\n\nThe FIPS modules in 3.3, 3.2, 3.1 and 3.0 are not affected by this issue."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2016-10228","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2016-10228","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2016-10228","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2016-10228","date":"2026-10-08","epss":0.04006,"percentile":0.90284}],"risk":2.18327,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2016-10228","description":"The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service."},"relatedVulnerabilities":[{"id":"CVE-2016-10228","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:P","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2016-10228","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2016-10228","date":"2026-10-08","epss":0.04006,"percentile":0.90284}],"urls":["http://openwall.com/lists/oss-security/2017/03/01/10","http://www.securityfocus.com/bid/96525","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202101-20","https://sourceware.org/bugzilla/show_bug.cgi?id=19519","https://sourceware.org/bugzilla/show_bug.cgi?id=19519#c21","https://sourceware.org/bugzilla/show_bug.cgi?id=26224","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2016-10228","description":"The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2016-10228","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2016-10228","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2016-10228","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2016-10228","date":"2026-10-08","epss":0.04006,"percentile":0.90284}],"risk":2.18327,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2016-10228","description":"The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service."},"relatedVulnerabilities":[{"id":"CVE-2016-10228","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:P","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2016-10228","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2016-10228","date":"2026-10-08","epss":0.04006,"percentile":0.90284}],"urls":["http://openwall.com/lists/oss-security/2017/03/01/10","http://www.securityfocus.com/bid/96525","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202101-20","https://sourceware.org/bugzilla/show_bug.cgi?id=19519","https://sourceware.org/bugzilla/show_bug.cgi?id=19519#c21","https://sourceware.org/bugzilla/show_bug.cgi?id=26224","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2016-10228","description":"The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2016-10228","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2016-10228","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2016-10228","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2016-10228","date":"2026-10-08","epss":0.04006,"percentile":0.90284}],"risk":2.18327,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2016-10228","description":"The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service."},"relatedVulnerabilities":[{"id":"CVE-2016-10228","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:P","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2016-10228","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2016-10228","date":"2026-10-08","epss":0.04006,"percentile":0.90284}],"urls":["http://openwall.com/lists/oss-security/2017/03/01/10","http://www.securityfocus.com/bid/96525","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202101-20","https://sourceware.org/bugzilla/show_bug.cgi?id=19519","https://sourceware.org/bugzilla/show_bug.cgi?id=19519#c21","https://sourceware.org/bugzilla/show_bug.cgi?id=26224","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2016-10228","description":"The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2016-10228","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2016-10228","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2016-10228","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2016-10228","date":"2026-10-08","epss":0.04006,"percentile":0.90284}],"risk":2.18327,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2016-10228","description":"The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service."},"relatedVulnerabilities":[{"id":"CVE-2016-10228","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:P","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2016-10228","cwe":"CWE-20","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2016-10228","date":"2026-10-08","epss":0.04006,"percentile":0.90284}],"urls":["http://openwall.com/lists/oss-security/2017/03/01/10","http://www.securityfocus.com/bid/96525","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202101-20","https://sourceware.org/bugzilla/show_bug.cgi?id=19519","https://sourceware.org/bugzilla/show_bug.cgi?id=19519#c21","https://sourceware.org/bugzilla/show_bug.cgi?id=26224","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2016-10228","description":"The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-27776","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27776","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27776","date":"2026-10-08","epss":0.03777,"percentile":0.89666}],"risk":2.171775,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27776","description":"A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number."},"relatedVulnerabilities":[{"id":"CVE-2022-27776","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27776","date":"2026-10-08","epss":0.03777,"percentile":0.89666}],"urls":["https://hackerone.com/reports/1547048","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7N5ZBWLNNPZKFK7Q4KEHGCJ2YELQEUJP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DKKOQXPYLMBSEVDHFS32BPBR3ZQJKY5B/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27776","description":"A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27776","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27776","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27776","date":"2026-10-08","epss":0.03777,"percentile":0.89666}],"risk":2.171775,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27776","description":"A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number."},"relatedVulnerabilities":[{"id":"CVE-2022-27776","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27776","date":"2026-10-08","epss":0.03777,"percentile":0.89666}],"urls":["https://hackerone.com/reports/1547048","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7N5ZBWLNNPZKFK7Q4KEHGCJ2YELQEUJP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DKKOQXPYLMBSEVDHFS32BPBR3ZQJKY5B/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27776","description":"A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27776","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27776","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27776","date":"2026-10-08","epss":0.03777,"percentile":0.89666}],"risk":2.171775,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27776","description":"A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number."},"relatedVulnerabilities":[{"id":"CVE-2022-27776","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27776","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27776","date":"2026-10-08","epss":0.03777,"percentile":0.89666}],"urls":["https://hackerone.com/reports/1547048","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7N5ZBWLNNPZKFK7Q4KEHGCJ2YELQEUJP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DKKOQXPYLMBSEVDHFS32BPBR3ZQJKY5B/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27776","description":"A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-40330","versionConstraint":"< 1:2.20.1-2+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-40330","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-40330","date":"2026-10-08","epss":0.02874,"percentile":0.86411}],"risk":2.1555,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-40330","description":"git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring."},"relatedVulnerabilities":[{"id":"CVE-2021-40330","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-40330","date":"2026-10-08","epss":0.02874,"percentile":0.86411}],"urls":["https://github.com/git/git/commit/a02ea577174ab8ed18f847cf1693f213e0b9c473","https://github.com/git/git/compare/v2.30.0...v2.30.1","https://lists.debian.org/debian-lts-announce/2022/10/msg00014.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-40330","description":"git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-40330","versionConstraint":"< 1:2.20.1-2+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-40330","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-40330","date":"2026-10-08","epss":0.02874,"percentile":0.86411}],"risk":2.1555,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-40330","description":"git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring."},"relatedVulnerabilities":[{"id":"CVE-2021-40330","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-40330","date":"2026-10-08","epss":0.02874,"percentile":0.86411}],"urls":["https://github.com/git/git/commit/a02ea577174ab8ed18f847cf1693f213e0b9c473","https://github.com/git/git/compare/v2.30.0...v2.30.1","https://lists.debian.org/debian-lts-announce/2022/10/msg00014.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-40330","description":"git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring."}]},{"artifact":{"id":"a2c5569d9b015a19","cpes":["cpe:2.3:a:libpcre3:libpcre3:2\\:8.39-12:*:*:*:*:*:*:*"],"name":"libpcre3","purl":"pkg:deb/debian/libpcre3@2%3A8.39-12?arch=amd64&distro=debian-10.10&upstream=pcre3","type":"deb","version":"2:8.39-12","language":"","licenses":["sha256:ac9276490d2fa167442ae1aae33926514ad10c8886baa40046c5e367fccc5938"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libpcre3/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libpcre3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libpcre3:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libpcre3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"pcre3"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-14155","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"pcre3","version":"2:8.39-12"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-14155","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-14155","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-14155","date":"2026-10-08","epss":0.04182,"percentile":0.90662}],"risk":2.1537300000000004,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-14155","description":"libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring."},"relatedVulnerabilities":[{"id":"CVE-2020-14155","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-14155","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-14155","date":"2026-10-08","epss":0.04182,"percentile":0.90662}],"urls":["http://seclists.org/fulldisclosure/2020/Dec/32","http://seclists.org/fulldisclosure/2021/Feb/14","https://about.gitlab.com/releases/2020/07/01/security-release-13-1-2-release/","https://bugs.gentoo.org/717920","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://security.netapp.com/advisory/ntap-20221028-0010/","https://support.apple.com/kb/HT211931","https://support.apple.com/kb/HT212147","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.pcre.org/original/changelog.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-14155","description":"libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-22825","versionConstraint":"< 2.2.6-2+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22825","fix":{"state":"fixed","versions":["2.2.6-2+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22825","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22825","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22825","date":"2026-10-08","epss":0.02636,"percentile":0.85107}],"risk":2.14834,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5073-1","link":"https://security-tracker.debian.org/tracker/DSA-5073-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22825","description":"lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."},"relatedVulnerabilities":[{"id":"CVE-2022-22825","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22825","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-22825","cwe":"CWE-190","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-22825","date":"2026-10-08","epss":0.02636,"percentile":0.85107}],"urls":["http://www.openwall.com/lists/oss-security/2022/01/17/3","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/539","https://security.gentoo.org/glsa/202209-24","https://www.debian.org/security/2022/dsa-5073","https://www.tenable.com/security/tns-2022-05"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22825","description":"lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_341"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21540","versionConstraint":"< 1.7.0_351||>= 1.8, < 1.8.0_341||>= 12, < 17.0.4||>= 18, < 18.0.2||>= 7, < 7.0.351||>= 8, < 8.0.341||>= 9, < 11.0.16 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21540","fix":{"state":"fixed","versions":["1.7.0_351","7.0.351","1.8.0_341","8.0.341","11.0.16","17.0.4","18.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_351"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_341"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.4"},{"date":"2025-09-04","kind":"first-observed","version":"18.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.351"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.341"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.16"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21540","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21540","date":"2026-10-08","epss":0.04167,"percentile":0.90627}],"risk":2.146005,"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/H4YNJSJ64NPCNKFPNBYITNZU5H3L4D6L/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/I5OZNAZJ4YHLOKRRRZSWRT5OJ25E4XLM/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JN3EVGR7FD3ZLV5SBTJXUIDCMSK4QUE2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KO3DXNKZ4EU3UZBT6AAR4XRKCD73KLMO/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L3XPOTPPBZIPFBZHQE5E7OW6PDACUMCJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YULPNO3PAWMEQQZV2C54I3H3ZOXFZUTB/","https://security.gentoo.org/glsa/202401-25","https://security.netapp.com/advisory/ntap-20220729-0009/","https://www.debian.org/security/2022/dsa-5188","https://www.debian.org/security/2022/dsa-5192","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21540","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6ee23e24edb96ac0","cpes":["cpe:2.3:a:libfreetype6:libfreetype6:2.9.1-3\\+deb10u2:*:*:*:*:*:*:*"],"name":"libfreetype6","purl":"pkg:deb/debian/libfreetype6@2.9.1-3%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=freetype","type":"deb","version":"2.9.1-3+deb10u2","language":"","licenses":["BSD-3-Clause","Catharon-OSL","FSFUL","FSFULLR","FTL","GPL-2","GPL-2+","GPL-3","GPL-3+","MIT","OpenGroup-BSD-like","Permissive","Public-Domain","Zlib"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libfreetype6/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libfreetype6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libfreetype6:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libfreetype6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"freetype"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.9.1-3+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27405","versionConstraint":"< 2.9.1-3+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"freetype","version":"2.9.1-3+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27405","fix":{"state":"fixed","versions":["2.9.1-3+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.9.1-3+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27405","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27405","date":"2026-10-08","epss":0.02829,"percentile":0.86198}],"risk":2.12175,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27405","description":"FreeType commit 53dfdcd8198d2b3201a23c4bad9190519ba918db was discovered to contain a segmentation violation via the function FNT_Size_Request."},"relatedVulnerabilities":[{"id":"CVE-2022-27405","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27405","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27405","date":"2026-10-08","epss":0.02829,"percentile":0.86198}],"urls":["https://gitlab.freedesktop.org/freetype/freetype/-/issues/1139","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EFPNRKDLCXHZVYYQLQMP44UHLU32GA6Z/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FDU2FOEMCEF6WVR6ZBIH5MT5O7FAK6UP/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IWQ7IB2A75MEHM63WEUXBYEC7OR5SGDY/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NYVC2NPKKXKP3TWJWG4ONYWNO6ZPHLA5/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TCEMWCM46PKM4U5ENRASPKQD6JDOLKRU/","https://security.gentoo.org/glsa/202402-06","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EFPNRKDLCXHZVYYQLQMP44UHLU32GA6Z/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FDU2FOEMCEF6WVR6ZBIH5MT5O7FAK6UP/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IWQ7IB2A75MEHM63WEUXBYEC7OR5SGDY/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NYVC2NPKKXKP3TWJWG4ONYWNO6ZPHLA5/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TCEMWCM46PKM4U5ENRASPKQD6JDOLKRU/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27405","description":"FreeType commit 53dfdcd8198d2b3201a23c4bad9190519ba918db was discovered to contain a segmentation violation via the function FNT_Size_Request."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-22924","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22924","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22924","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22924","cwe":"CWE-706","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22924","date":"2026-10-08","epss":0.0627,"percentile":0.93399}],"risk":2.10045,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22924","description":"libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take 'issuercert' into account and it compared the involved paths *case insensitively*,which could lead to libcurl reusing wrong connections.File paths are, or can be, case sensitive on many systems but not all, and caneven vary depending on used file systems.The comparison also didn't include the 'issuer cert' which a transfer can setto qualify how to verify the server certificate."},"relatedVulnerabilities":[{"id":"CVE-2021-22924","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22924","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22924","cwe":"CWE-706","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22924","date":"2026-10-08","epss":0.0627,"percentile":0.93399}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf","https://hackerone.com/reports/1223565","https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01b9ff3f55308aacc%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01b9ff3f55308aacc%40%3Cusers.kafka.apache.org%3E","https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c27a97111c06ccb7%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c27a97111c06ccb7%40%3Cusers.kafka.apache.org%3E","https://lists.debian.org/debian-lts-announce/2021/08/msg00017.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRUCW2UVNYUDZF72DQLFQR4PJEC6CF7V/","https://security.netapp.com/advisory/ntap-20210902-0003/","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22924","description":"libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take 'issuercert' into account and it compared the involved paths *case insensitively*,which could lead to libcurl reusing wrong connections.File paths are, or can be, case sensitive on many systems but not all, and caneven vary depending on used file systems.The comparison also didn't include the 'issuer cert' which a transfer can setto qualify how to verify the server certificate."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-22924","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22924","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22924","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22924","cwe":"CWE-706","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22924","date":"2026-10-08","epss":0.0627,"percentile":0.93399}],"risk":2.10045,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22924","description":"libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take 'issuercert' into account and it compared the involved paths *case insensitively*,which could lead to libcurl reusing wrong connections.File paths are, or can be, case sensitive on many systems but not all, and caneven vary depending on used file systems.The comparison also didn't include the 'issuer cert' which a transfer can setto qualify how to verify the server certificate."},"relatedVulnerabilities":[{"id":"CVE-2021-22924","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22924","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22924","cwe":"CWE-706","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22924","date":"2026-10-08","epss":0.0627,"percentile":0.93399}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf","https://hackerone.com/reports/1223565","https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01b9ff3f55308aacc%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01b9ff3f55308aacc%40%3Cusers.kafka.apache.org%3E","https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c27a97111c06ccb7%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c27a97111c06ccb7%40%3Cusers.kafka.apache.org%3E","https://lists.debian.org/debian-lts-announce/2021/08/msg00017.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRUCW2UVNYUDZF72DQLFQR4PJEC6CF7V/","https://security.netapp.com/advisory/ntap-20210902-0003/","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22924","description":"libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take 'issuercert' into account and it compared the involved paths *case insensitively*,which could lead to libcurl reusing wrong connections.File paths are, or can be, case sensitive on many systems but not all, and caneven vary depending on used file systems.The comparison also didn't include the 'issuer cert' which a transfer can setto qualify how to verify the server certificate."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-22924","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22924","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22924","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22924","cwe":"CWE-706","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22924","date":"2026-10-08","epss":0.0627,"percentile":0.93399}],"risk":2.10045,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22924","description":"libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take 'issuercert' into account and it compared the involved paths *case insensitively*,which could lead to libcurl reusing wrong connections.File paths are, or can be, case sensitive on many systems but not all, and caneven vary depending on used file systems.The comparison also didn't include the 'issuer cert' which a transfer can setto qualify how to verify the server certificate."},"relatedVulnerabilities":[{"id":"CVE-2021-22924","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22924","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22924","cwe":"CWE-706","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22924","date":"2026-10-08","epss":0.0627,"percentile":0.93399}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://cert-portal.siemens.com/productcert/pdf/ssa-732250.pdf","https://hackerone.com/reports/1223565","https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01b9ff3f55308aacc%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01b9ff3f55308aacc%40%3Cusers.kafka.apache.org%3E","https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c27a97111c06ccb7%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c27a97111c06ccb7%40%3Cusers.kafka.apache.org%3E","https://lists.debian.org/debian-lts-announce/2021/08/msg00017.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRUCW2UVNYUDZF72DQLFQR4PJEC6CF7V/","https://security.netapp.com/advisory/ntap-20210902-0003/","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22924","description":"libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take 'issuercert' into account and it compared the involved paths *case insensitively*,which could lead to libcurl reusing wrong connections.File paths are, or can be, case sensitive on many systems but not all, and caneven vary depending on used file systems.The comparison also didn't include the 'issuer cert' which a transfer can setto qualify how to verify the server certificate."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-27781","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27781","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27781","cwe":"CWE-400","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27781","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27781","date":"2026-10-08","epss":0.02747,"percentile":0.85771}],"risk":2.0602500000000004,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27781","description":"libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function, a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation."},"relatedVulnerabilities":[{"id":"CVE-2022-27781","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27781","cwe":"CWE-400","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27781","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27781","date":"2026-10-08","epss":0.02747,"percentile":0.85771}],"urls":["https://hackerone.com/reports/1555441","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0009/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27781","description":"libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function, a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27781","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27781","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27781","cwe":"CWE-400","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27781","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27781","date":"2026-10-08","epss":0.02747,"percentile":0.85771}],"risk":2.0602500000000004,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27781","description":"libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function, a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation."},"relatedVulnerabilities":[{"id":"CVE-2022-27781","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27781","cwe":"CWE-400","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27781","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27781","date":"2026-10-08","epss":0.02747,"percentile":0.85771}],"urls":["https://hackerone.com/reports/1555441","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0009/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27781","description":"libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function, a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27781","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27781","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27781","cwe":"CWE-400","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27781","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27781","date":"2026-10-08","epss":0.02747,"percentile":0.85771}],"risk":2.0602500000000004,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27781","description":"libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function, a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation."},"relatedVulnerabilities":[{"id":"CVE-2022-27781","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27781","cwe":"CWE-400","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27781","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27781","date":"2026-10-08","epss":0.02747,"percentile":0.85771}],"urls":["https://hackerone.com/reports/1555441","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0009/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27781","description":"libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function, a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1d-0+deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-4160","versionConstraint":"< 1.1.1d-0+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-4160","fix":{"state":"fixed","versions":["1.1.1d-0+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1d-0+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-4160","date":"2026-10-08","epss":0.03772,"percentile":0.89654}],"risk":2.05574,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5103-1","link":"https://security-tracker.debian.org/tracker/DSA-5103-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-4160","description":"There is a carry propagation bug in the MIPS32 and MIPS64 squaring procedure. Many EC algorithms are affected, including some of the TLS 1.3 default curves. Impact was not analyzed in detail, because the pre-requisites for attack are considered unlikely and include reusing private keys. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be significant. However, for an attack on TLS to be meaningful, the server would have to share the DH private key among multiple clients, which is no longer an option since CVE-2016-0701. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0.0. It was addressed in the releases of 1.1.1m and 3.0.1 on the 15th of December 2021. For the 1.0.2 release it is addressed in git commit 6fc1aaaf3 that is available to premium support customers only. It will be made available in 1.0.2zc when it is released. The issue only affects OpenSSL on MIPS platforms. Fixed in OpenSSL 3.0.1 (Affected 3.0.0). Fixed in OpenSSL 1.1.1m (Affected 1.1.1-1.1.1l). Fixed in OpenSSL 1.0.2zc-dev (Affected 1.0.2-1.0.2zb)."},"relatedVulnerabilities":[{"id":"CVE-2021-4160","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-4160","date":"2026-10-08","epss":0.03772,"percentile":0.89654}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-637483.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=3bf7b73ea7123045b8f972badc67ed6878e6c37f","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=6fc1aaaf303185aa5e483e06bdfae16daa9193a7","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=e9e726506cd2a3fd9c0f12daf8cc1fe934c7dddb","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2022/dsa-5103","https://www.openssl.org/news/secadv/20220128.txt","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-4160","description":"There is a carry propagation bug in the MIPS32 and MIPS64 squaring procedure. Many EC algorithms are affected, including some of the TLS 1.3 default curves. Impact was not analyzed in detail, because the pre-requisites for attack are considered unlikely and include reusing private keys. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be significant. However, for an attack on TLS to be meaningful, the server would have to share the DH private key among multiple clients, which is no longer an option since CVE-2016-0701. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0.0. It was addressed in the releases of 1.1.1m and 3.0.1 on the 15th of December 2021. For the 1.0.2 release it is addressed in git commit 6fc1aaaf3 that is available to premium support customers only. It will be made available in 1.0.2zc when it is released. The issue only affects OpenSSL on MIPS platforms. Fixed in OpenSSL 3.0.1 (Affected 3.0.0). Fixed in OpenSSL 1.1.1m (Affected 1.1.1-1.1.1l). Fixed in OpenSSL 1.0.2zc-dev (Affected 1.0.2-1.0.2zb)."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1d-0+deb10u8"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-4160","versionConstraint":"< 1.1.1d-0+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-4160","fix":{"state":"fixed","versions":["1.1.1d-0+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1d-0+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-4160","date":"2026-10-08","epss":0.03772,"percentile":0.89654}],"risk":2.05574,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5103-1","link":"https://security-tracker.debian.org/tracker/DSA-5103-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-4160","description":"There is a carry propagation bug in the MIPS32 and MIPS64 squaring procedure. Many EC algorithms are affected, including some of the TLS 1.3 default curves. Impact was not analyzed in detail, because the pre-requisites for attack are considered unlikely and include reusing private keys. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be significant. However, for an attack on TLS to be meaningful, the server would have to share the DH private key among multiple clients, which is no longer an option since CVE-2016-0701. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0.0. It was addressed in the releases of 1.1.1m and 3.0.1 on the 15th of December 2021. For the 1.0.2 release it is addressed in git commit 6fc1aaaf3 that is available to premium support customers only. It will be made available in 1.0.2zc when it is released. The issue only affects OpenSSL on MIPS platforms. Fixed in OpenSSL 3.0.1 (Affected 3.0.0). Fixed in OpenSSL 1.1.1m (Affected 1.1.1-1.1.1l). Fixed in OpenSSL 1.0.2zc-dev (Affected 1.0.2-1.0.2zb)."},"relatedVulnerabilities":[{"id":"CVE-2021-4160","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-4160","date":"2026-10-08","epss":0.03772,"percentile":0.89654}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-637483.pdf","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=3bf7b73ea7123045b8f972badc67ed6878e6c37f","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=6fc1aaaf303185aa5e483e06bdfae16daa9193a7","https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=e9e726506cd2a3fd9c0f12daf8cc1fe934c7dddb","https://security.gentoo.org/glsa/202210-02","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2022/dsa-5103","https://www.openssl.org/news/secadv/20220128.txt","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-4160","description":"There is a carry propagation bug in the MIPS32 and MIPS64 squaring procedure. Many EC algorithms are affected, including some of the TLS 1.3 default curves. Impact was not analyzed in detail, because the pre-requisites for attack are considered unlikely and include reusing private keys. Analysis suggests that attacks against RSA and DSA as a result of this defect would be very difficult to perform and are not believed likely. Attacks against DH are considered just feasible (although very difficult) because most of the work necessary to deduce information about a private key may be performed offline. The amount of resources required for such an attack would be significant. However, for an attack on TLS to be meaningful, the server would have to share the DH private key among multiple clients, which is no longer an option since CVE-2016-0701. This issue affects OpenSSL versions 1.0.2, 1.1.1 and 3.0.0. It was addressed in the releases of 1.1.1m and 3.0.1 on the 15th of December 2021. For the 1.0.2 release it is addressed in git commit 6fc1aaaf3 that is available to premium support customers only. It will be made available in 1.0.2zc when it is released. The issue only affects OpenSSL on MIPS platforms. Fixed in OpenSSL 3.0.1 (Affected 3.0.0). Fixed in OpenSSL 1.1.1m (Affected 1.1.1-1.1.1l). Fixed in OpenSSL 1.0.2zc-dev (Affected 1.0.2-1.0.2zb)."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u7"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-38546","versionConstraint":"< 7.64.0-4+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-38546","fix":{"state":"fixed","versions":["7.64.0-4+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-38546","date":"2026-10-08","epss":0.05956,"percentile":0.931}],"risk":1.9952599999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-38546","description":"This flaw allows an attacker to insert cookies at will into a running program using libcurl, if the specific series of conditions are met.  libcurl performs transfers. In its API, an application creates \"easy handles\" that are the individual handles for single transfers.  libcurl provides a function call that duplicates en easy handle called [curl_easy_duphandle](https://curl.se/libcurl/c/curl_easy_duphandle.html).  If a transfer has cookies enabled when the handle is duplicated, the cookie-enable state is also cloned - but without cloning the actual cookies. If the source handle did not read any cookies from a specific file on disk, the cloned version of the handle would instead store the file name as `none` (using the four ASCII letters, no quotes).  Subsequent use of the cloned handle that does not explicitly set a source to load cookies from would then inadvertently load cookies from a file named `none` - if such a file exists and is readable in the current directory of the program using libcurl. And if using the correct file format of course."},"relatedVulnerabilities":[{"id":"CVE-2023-38546","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-38546","date":"2026-10-08","epss":0.05956,"percentile":0.931}],"urls":["http://seclists.org/fulldisclosure/2024/Jan/34","http://seclists.org/fulldisclosure/2024/Jan/37","http://seclists.org/fulldisclosure/2024/Jan/38","https://curl.se/docs/CVE-2023-38546.html","https://forum.vmssoftware.com/viewtopic.php?f=8&t=8868","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OGMXNRNSJ4ETDK6FRNU3J7SABXPWCHSQ/","https://support.apple.com/kb/HT214036","https://support.apple.com/kb/HT214057","https://support.apple.com/kb/HT214058","https://support.apple.com/kb/HT214063","https://lists.debian.org/debian-lts-announce/2023/10/msg00016.html","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-093430.html","https://cert-portal.siemens.com/productcert/html/ssa-832273.html","https://cert-portal.siemens.com/productcert/html/ssa-943925.html"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-38546","description":"This flaw allows an attacker to insert cookies at will into a running program\nusing libcurl, if the specific series of conditions are met.\n\nlibcurl performs transfers. In its API, an application creates \"easy handles\"\nthat are the individual handles for single transfers.\n\nlibcurl provides a function call that duplicates en easy handle called\n[curl_easy_duphandle](https://curl.se/libcurl/c/curl_easy_duphandle.html).\n\nIf a transfer has cookies enabled when the handle is duplicated, the\ncookie-enable state is also cloned - but without cloning the actual\ncookies. If the source handle did not read any cookies from a specific file on\ndisk, the cloned version of the handle would instead store the file name as\n`none` (using the four ASCII letters, no quotes).\n\nSubsequent use of the cloned handle that does not explicitly set a source to\nload cookies from would then inadvertently load cookies from a file named\n`none` - if such a file exists and is readable in the current directory of the\nprogram using libcurl. And if using the correct file format of course."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-38546","versionConstraint":"< 7.64.0-4+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-38546","fix":{"state":"fixed","versions":["7.64.0-4+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-38546","date":"2026-10-08","epss":0.05956,"percentile":0.931}],"risk":1.9952599999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-38546","description":"This flaw allows an attacker to insert cookies at will into a running program using libcurl, if the specific series of conditions are met.  libcurl performs transfers. In its API, an application creates \"easy handles\" that are the individual handles for single transfers.  libcurl provides a function call that duplicates en easy handle called [curl_easy_duphandle](https://curl.se/libcurl/c/curl_easy_duphandle.html).  If a transfer has cookies enabled when the handle is duplicated, the cookie-enable state is also cloned - but without cloning the actual cookies. If the source handle did not read any cookies from a specific file on disk, the cloned version of the handle would instead store the file name as `none` (using the four ASCII letters, no quotes).  Subsequent use of the cloned handle that does not explicitly set a source to load cookies from would then inadvertently load cookies from a file named `none` - if such a file exists and is readable in the current directory of the program using libcurl. And if using the correct file format of course."},"relatedVulnerabilities":[{"id":"CVE-2023-38546","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-38546","date":"2026-10-08","epss":0.05956,"percentile":0.931}],"urls":["http://seclists.org/fulldisclosure/2024/Jan/34","http://seclists.org/fulldisclosure/2024/Jan/37","http://seclists.org/fulldisclosure/2024/Jan/38","https://curl.se/docs/CVE-2023-38546.html","https://forum.vmssoftware.com/viewtopic.php?f=8&t=8868","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OGMXNRNSJ4ETDK6FRNU3J7SABXPWCHSQ/","https://support.apple.com/kb/HT214036","https://support.apple.com/kb/HT214057","https://support.apple.com/kb/HT214058","https://support.apple.com/kb/HT214063","https://lists.debian.org/debian-lts-announce/2023/10/msg00016.html","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-093430.html","https://cert-portal.siemens.com/productcert/html/ssa-832273.html","https://cert-portal.siemens.com/productcert/html/ssa-943925.html"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-38546","description":"This flaw allows an attacker to insert cookies at will into a running program\nusing libcurl, if the specific series of conditions are met.\n\nlibcurl performs transfers. In its API, an application creates \"easy handles\"\nthat are the individual handles for single transfers.\n\nlibcurl provides a function call that duplicates en easy handle called\n[curl_easy_duphandle](https://curl.se/libcurl/c/curl_easy_duphandle.html).\n\nIf a transfer has cookies enabled when the handle is duplicated, the\ncookie-enable state is also cloned - but without cloning the actual\ncookies. If the source handle did not read any cookies from a specific file on\ndisk, the cloned version of the handle would instead store the file name as\n`none` (using the four ASCII letters, no quotes).\n\nSubsequent use of the cloned handle that does not explicitly set a source to\nload cookies from would then inadvertently load cookies from a file named\n`none` - if such a file exists and is readable in the current directory of the\nprogram using libcurl. And if using the correct file format of course."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-38546","versionConstraint":"< 7.64.0-4+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-38546","fix":{"state":"fixed","versions":["7.64.0-4+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-38546","date":"2026-10-08","epss":0.05956,"percentile":0.931}],"risk":1.9952599999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-38546","description":"This flaw allows an attacker to insert cookies at will into a running program using libcurl, if the specific series of conditions are met.  libcurl performs transfers. In its API, an application creates \"easy handles\" that are the individual handles for single transfers.  libcurl provides a function call that duplicates en easy handle called [curl_easy_duphandle](https://curl.se/libcurl/c/curl_easy_duphandle.html).  If a transfer has cookies enabled when the handle is duplicated, the cookie-enable state is also cloned - but without cloning the actual cookies. If the source handle did not read any cookies from a specific file on disk, the cloned version of the handle would instead store the file name as `none` (using the four ASCII letters, no quotes).  Subsequent use of the cloned handle that does not explicitly set a source to load cookies from would then inadvertently load cookies from a file named `none` - if such a file exists and is readable in the current directory of the program using libcurl. And if using the correct file format of course."},"relatedVulnerabilities":[{"id":"CVE-2023-38546","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-38546","date":"2026-10-08","epss":0.05956,"percentile":0.931}],"urls":["http://seclists.org/fulldisclosure/2024/Jan/34","http://seclists.org/fulldisclosure/2024/Jan/37","http://seclists.org/fulldisclosure/2024/Jan/38","https://curl.se/docs/CVE-2023-38546.html","https://forum.vmssoftware.com/viewtopic.php?f=8&t=8868","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OGMXNRNSJ4ETDK6FRNU3J7SABXPWCHSQ/","https://support.apple.com/kb/HT214036","https://support.apple.com/kb/HT214057","https://support.apple.com/kb/HT214058","https://support.apple.com/kb/HT214063","https://lists.debian.org/debian-lts-announce/2023/10/msg00016.html","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-093430.html","https://cert-portal.siemens.com/productcert/html/ssa-832273.html","https://cert-portal.siemens.com/productcert/html/ssa-943925.html"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-38546","description":"This flaw allows an attacker to insert cookies at will into a running program\nusing libcurl, if the specific series of conditions are met.\n\nlibcurl performs transfers. In its API, an application creates \"easy handles\"\nthat are the individual handles for single transfers.\n\nlibcurl provides a function call that duplicates en easy handle called\n[curl_easy_duphandle](https://curl.se/libcurl/c/curl_easy_duphandle.html).\n\nIf a transfer has cookies enabled when the handle is duplicated, the\ncookie-enable state is also cloned - but without cloning the actual\ncookies. If the source handle did not read any cookies from a specific file on\ndisk, the cloned version of the handle would instead store the file name as\n`none` (using the four ASCII letters, no quotes).\n\nSubsequent use of the cloned handle that does not explicitly set a source to\nload cookies from would then inadvertently load cookies from a file named\n`none` - if such a file exists and is readable in the current directory of the\nprogram using libcurl. And if using the correct file format of course."}]},{"artifact":{"id":"fd336d60afd415f8","cpes":["cpe:2.3:a:libtasn1-6:libtasn1-6:4.13-3:*:*:*:*:*:*:*","cpe:2.3:a:libtasn1-6:libtasn1_6:4.13-3:*:*:*:*:*:*:*","cpe:2.3:a:libtasn1_6:libtasn1-6:4.13-3:*:*:*:*:*:*:*","cpe:2.3:a:libtasn1_6:libtasn1_6:4.13-3:*:*:*:*:*:*:*","cpe:2.3:a:libtasn1:libtasn1-6:4.13-3:*:*:*:*:*:*:*","cpe:2.3:a:libtasn1:libtasn1_6:4.13-3:*:*:*:*:*:*:*"],"name":"libtasn1-6","purl":"pkg:deb/debian/libtasn1-6@4.13-3?arch=amd64&distro=debian-10.10","type":"deb","version":"4.13-3","language":"","licenses":["sha256:dc1e5deaae0e497cdf0833a38742749695ad77fb8cfb5ef1e608724e6add9c81"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtasn1-6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libtasn1-6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libtasn1-6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libtasn1-6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"4.13-3+deb10u1"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-46848","versionConstraint":"< 4.13-3+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libtasn1-6","version":"4.13-3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-46848","fix":{"state":"fixed","versions":["4.13-3+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"4.13-3+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-46848","cwe":"CWE-193","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-46848","cwe":"CWE-193","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-46848","date":"2026-10-08","epss":0.02203,"percentile":0.81992}],"risk":1.9937150000000001,"urls":[],"severity":"Critical","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-46848","description":"GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects asn1_encode_simple_der."},"relatedVulnerabilities":[{"id":"CVE-2021-46848","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":9.1,"impactScore":5.2,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-46848","cwe":"CWE-193","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-46848","cwe":"CWE-193","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-46848","date":"2026-10-08","epss":0.02203,"percentile":0.81992}],"urls":["https://bugs.gentoo.org/866237","https://gitlab.com/gnutls/libtasn1/-/commit/44a700d2051a666235748970c2df047ff207aeb5","https://gitlab.com/gnutls/libtasn1/-/issues/32","https://lists.debian.org/debian-lts-announce/2023/01/msg00003.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AV4SHDJF2XLB4CUPTBPQQ6CLGZ5LKXPZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ECM2ELTVRYV4BZ5L5GMIRQE27RFHPAQ6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OGO7XST4EIJGX4B2ITZCYSWM24534BSU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V5LWOGF7QRMNFRUCZY6TDYQJVFI6MOQ2/","https://security.netapp.com/advisory/ntap-20221118-0006/"],"severity":"Critical","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-46848","description":"GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects asn1_encode_simple_der."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35603","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 1.9, < 7.0.321||>= 12, < 17.0.1||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35603","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311","11.0.13","17.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35603","date":"2026-10-08","epss":0.04411,"percentile":0.91088}],"risk":1.9628950000000003,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2021/dsa-5000","https://www.debian.org/security/2021/dsa-5012","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35603","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-25013","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-25013","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-25013","date":"2026-10-08","epss":0.03565,"percentile":0.89034}],"risk":1.9429250000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-25013","description":"The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read."},"relatedVulnerabilities":[{"id":"CVE-2019-25013","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:C","metrics":{"baseScore":7.1,"impactScore":6.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-25013","date":"2026-10-08","epss":0.03565,"percentile":0.89034}],"urls":["https://lists.apache.org/thread.html/r32d767ac804e9b8aad4355bb85960a6a1385eab7afff549a5e98660f%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r448bb851cc8e6e3f93f3c28c70032b37062625d81214744474ac49e7%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/r4806a391091e082bdea17266452ca656ebc176e51bb3932733b3a0a2%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r499e4f96d0b5109ef083f2feccd33c51650c1b7d7068aa3bd47efca9%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r5af4430421bb6f9973294691a7904bbd260937e9eef96b20556f43ff%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r750eee18542bc02bd8350861c424ee60a9b9b225568fa09436a37ece%40%3Cissues.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/r7a2e94adfe0a2f0a1d42e4927e8c32ecac97d37db9cb68095fe9ddbc%40%3Cdev.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/rd2354f9ccce41e494fbadcbc5ad87218de6ec0fff8a7b54c8462226c%40%3Cissues.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4Y6TX47P47KABSFOL26FLDNVCWXDKDEZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TVCUNLQ3HXGS4VPUQKWTJGRAW2KTFGXS/","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210205-0004/","https://sourceware.org/bugzilla/show_bug.cgi?id=24973","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=ee7a3144c9922808181009b7b3e50e852fb4999b","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-25013","description":"The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-25013","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-25013","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-25013","date":"2026-10-08","epss":0.03565,"percentile":0.89034}],"risk":1.9429250000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-25013","description":"The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read."},"relatedVulnerabilities":[{"id":"CVE-2019-25013","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:C","metrics":{"baseScore":7.1,"impactScore":6.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-25013","date":"2026-10-08","epss":0.03565,"percentile":0.89034}],"urls":["https://lists.apache.org/thread.html/r32d767ac804e9b8aad4355bb85960a6a1385eab7afff549a5e98660f%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r448bb851cc8e6e3f93f3c28c70032b37062625d81214744474ac49e7%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/r4806a391091e082bdea17266452ca656ebc176e51bb3932733b3a0a2%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r499e4f96d0b5109ef083f2feccd33c51650c1b7d7068aa3bd47efca9%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r5af4430421bb6f9973294691a7904bbd260937e9eef96b20556f43ff%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r750eee18542bc02bd8350861c424ee60a9b9b225568fa09436a37ece%40%3Cissues.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/r7a2e94adfe0a2f0a1d42e4927e8c32ecac97d37db9cb68095fe9ddbc%40%3Cdev.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/rd2354f9ccce41e494fbadcbc5ad87218de6ec0fff8a7b54c8462226c%40%3Cissues.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4Y6TX47P47KABSFOL26FLDNVCWXDKDEZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TVCUNLQ3HXGS4VPUQKWTJGRAW2KTFGXS/","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210205-0004/","https://sourceware.org/bugzilla/show_bug.cgi?id=24973","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=ee7a3144c9922808181009b7b3e50e852fb4999b","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-25013","description":"The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-25013","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-25013","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-25013","date":"2026-10-08","epss":0.03565,"percentile":0.89034}],"risk":1.9429250000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-25013","description":"The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read."},"relatedVulnerabilities":[{"id":"CVE-2019-25013","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:C","metrics":{"baseScore":7.1,"impactScore":6.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-25013","date":"2026-10-08","epss":0.03565,"percentile":0.89034}],"urls":["https://lists.apache.org/thread.html/r32d767ac804e9b8aad4355bb85960a6a1385eab7afff549a5e98660f%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r448bb851cc8e6e3f93f3c28c70032b37062625d81214744474ac49e7%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/r4806a391091e082bdea17266452ca656ebc176e51bb3932733b3a0a2%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r499e4f96d0b5109ef083f2feccd33c51650c1b7d7068aa3bd47efca9%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r5af4430421bb6f9973294691a7904bbd260937e9eef96b20556f43ff%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r750eee18542bc02bd8350861c424ee60a9b9b225568fa09436a37ece%40%3Cissues.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/r7a2e94adfe0a2f0a1d42e4927e8c32ecac97d37db9cb68095fe9ddbc%40%3Cdev.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/rd2354f9ccce41e494fbadcbc5ad87218de6ec0fff8a7b54c8462226c%40%3Cissues.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4Y6TX47P47KABSFOL26FLDNVCWXDKDEZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TVCUNLQ3HXGS4VPUQKWTJGRAW2KTFGXS/","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210205-0004/","https://sourceware.org/bugzilla/show_bug.cgi?id=24973","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=ee7a3144c9922808181009b7b3e50e852fb4999b","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-25013","description":"The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-25013","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-25013","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-25013","date":"2026-10-08","epss":0.03565,"percentile":0.89034}],"risk":1.9429250000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-25013","description":"The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read."},"relatedVulnerabilities":[{"id":"CVE-2019-25013","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:C","metrics":{"baseScore":7.1,"impactScore":6.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-25013","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-25013","date":"2026-10-08","epss":0.03565,"percentile":0.89034}],"urls":["https://lists.apache.org/thread.html/r32d767ac804e9b8aad4355bb85960a6a1385eab7afff549a5e98660f%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r448bb851cc8e6e3f93f3c28c70032b37062625d81214744474ac49e7%40%3Cdev.kafka.apache.org%3E","https://lists.apache.org/thread.html/r4806a391091e082bdea17266452ca656ebc176e51bb3932733b3a0a2%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r499e4f96d0b5109ef083f2feccd33c51650c1b7d7068aa3bd47efca9%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r5af4430421bb6f9973294691a7904bbd260937e9eef96b20556f43ff%40%3Cjira.kafka.apache.org%3E","https://lists.apache.org/thread.html/r750eee18542bc02bd8350861c424ee60a9b9b225568fa09436a37ece%40%3Cissues.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/r7a2e94adfe0a2f0a1d42e4927e8c32ecac97d37db9cb68095fe9ddbc%40%3Cdev.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/rd2354f9ccce41e494fbadcbc5ad87218de6ec0fff8a7b54c8462226c%40%3Cissues.zookeeper.apache.org%3E","https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4Y6TX47P47KABSFOL26FLDNVCWXDKDEZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TVCUNLQ3HXGS4VPUQKWTJGRAW2KTFGXS/","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210205-0004/","https://sourceware.org/bugzilla/show_bug.cgi?id=24973","https://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=ee7a3144c9922808181009b7b3e50e852fb4999b","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-25013","description":"The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21341","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21341","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21341","cwe":"CWE-502","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21341","date":"2026-10-08","epss":0.03765,"percentile":0.89632}],"risk":1.9107375000000002,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21341","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-25313","versionConstraint":"< 2.2.6-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-25313","fix":{"state":"fixed","versions":["2.2.6-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25313","cwe":"CWE-674","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25313","cwe":"CWE-674","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25313","date":"2026-10-08","epss":0.03295,"percentile":0.88164}],"risk":1.8946249999999998,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5085-1","link":"https://security-tracker.debian.org/tracker/DSA-5085-1"},{"id":"DSA-5085-2","link":"https://security-tracker.debian.org/tracker/DSA-5085-2"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-25313","description":"In Expat (aka libexpat) before 2.4.5, an attacker can trigger stack exhaustion in build_model via a large nesting depth in the DTD element."},"relatedVulnerabilities":[{"id":"CVE-2022-25313","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:N/A:P","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-25313","cwe":"CWE-674","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-25313","cwe":"CWE-674","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-25313","date":"2026-10-08","epss":0.03295,"percentile":0.88164}],"urls":["http://www.openwall.com/lists/oss-security/2022/02/19/1","https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf","https://github.com/libexpat/libexpat/pull/558","https://lists.debian.org/debian-lts-announce/2022/03/msg00007.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y27XO3JMKAOMQZVPS3B4MJGEAHCZF5OM/","https://security.gentoo.org/glsa/202209-24","https://security.netapp.com/advisory/ntap-20220303-0008/","https://www.debian.org/security/2022/dsa-5085","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-25313","description":"In Expat (aka libexpat) before 2.4.5, an attacker can trigger stack exhaustion in build_model via a large nesting depth in the DTD element."}]},{"artifact":{"id":"dfdab1b7031e1625","cpes":["cpe:2.3:a:openssh-client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh-client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*"],"name":"openssh-client","purl":"pkg:deb/debian/openssh-client@1%3A7.9p1-10%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=openssh","type":"deb","version":"1:7.9p1-10+deb10u2","language":"","licenses":["BSD-2-clause","BSD-3-clause","Beer-ware","Expat-with-advertising-restriction","Mazieres-BSD-style","OpenSSH","Powell-BSD-style","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssh-client/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/openssh-client/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.list"},{"path":"/var/lib/dpkg/info/openssh-client.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postinst"},{"path":"/var/lib/dpkg/info/openssh-client.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postrm"},{"path":"/var/lib/dpkg/info/openssh-client.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.preinst"},{"path":"/var/lib/dpkg/info/openssh-client.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.prerm"}],"upstreams":[{"name":"openssh"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:7.9p1-10+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-41617","versionConstraint":"< 1:7.9p1-10+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssh","version":"1:7.9p1-10+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-41617","fix":{"state":"fixed","versions":["1:7.9p1-10+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:7.9p1-10+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-41617","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-41617","date":"2026-10-08","epss":0.02545,"percentile":0.84536}],"risk":1.845125,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-41617","description":"sshd in OpenSSH 6.2 through 8.x before 8.8, when certain non-default configurations are used, allows privilege escalation because supplemental groups are not initialized as expected. Helper programs for AuthorizedKeysCommand and AuthorizedPrincipalsCommand may run with privileges associated with group memberships of the sshd process, if the configuration specifies running the command as a different user."},"relatedVulnerabilities":[{"id":"CVE-2021-41617","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":4.4,"impactScore":6.5,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-41617","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-41617","date":"2026-10-08","epss":0.02545,"percentile":0.84536}],"urls":["https://bugzilla.suse.com/show_bug.cgi?id=1190975","https://lists.debian.org/debian-lts-announce/2023/12/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6XJIONMHMKZDTMH6BQR5TNLF2WDCGWED/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KVI7RWM2JLNMWTOFK6BDUSGNOIPZYPUT/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W44V2PFQH5YLRN6ZJTVRKAD7CU6CYYET/","https://security.netapp.com/advisory/ntap-20211014-0004/","https://www.debian.org/security/2023/dsa-5586","https://www.openssh.com/security.html","https://www.openssh.com/txt/release-8.8","https://www.openwall.com/lists/oss-security/2021/09/26/1","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.starwindsoftware.com/security/sw-20220805-0001/","https://www.tenable.com/plugins/nessus/154174","https://cert-portal.siemens.com/productcert/html/ssa-019113.html","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-41617","description":"sshd in OpenSSH 6.2 through 8.x before 8.8, when certain non-default configurations are used, allows privilege escalation because supplemental groups are not initialized as expected. Helper programs for AuthorizedKeysCommand and AuthorizedPrincipalsCommand may run with privileges associated with group memberships of the sshd process, if the configuration specifies running the command as a different user."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_301"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-2341","versionConstraint":"< 1.7.0_311||>= 1.8, < 1.8.0_301||>= 12, < 16.0.2||>= 7, < 7.0.311||>= 8, < 8.0.301||>= 9, < 11.0.12 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-2341","fix":{"state":"fixed","versions":["1.7.0_311","7.0.311","1.8.0_301","8.0.301","11.0.12","16.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_301"},{"date":"2025-09-04","kind":"first-observed","version":"16.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.301"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.12"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-2341","date":"2026-10-08","epss":0.04238,"percentile":0.90772}],"risk":1.8435300000000001,"urls":["https://lists.debian.org/debian-lts-announce/2021/08/msg00011.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/A4TTUHVQF2MGUTP6GTCXLZS4GXK3XUWC/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/N57OFX5EJKHHDW4WAOBZFWA5CL4VIIK5/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PJJ75FHSUZGWPV4UJTSMQHWLOQ77LHTG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VTRQIXB52KIXUAO6JBYUKYWXST2NKNAK/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20210723-0002/","https://www.debian.org/security/2021/dsa-4946","https://www.oracle.com/security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-2341","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u301, 8u291, 11.0.11, 16.0.1; Oracle GraalVM Enterprise Edition: 20.3.2 and 21.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-43680","versionConstraint":"< 2.2.6-2+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-43680","fix":{"state":"fixed","versions":["2.2.6-2+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-43680","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-43680","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-43680","date":"2026-10-08","epss":0.02457,"percentile":0.83939}],"risk":1.8427499999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-43680","description":"In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations."},"relatedVulnerabilities":[{"id":"CVE-2022-43680","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-43680","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-43680","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-43680","date":"2026-10-08","epss":0.02457,"percentile":0.83939}],"urls":["http://www.openwall.com/lists/oss-security/2023/12/28/5","http://www.openwall.com/lists/oss-security/2024/01/03/5","https://github.com/libexpat/libexpat/issues/649","https://github.com/libexpat/libexpat/pull/616","https://github.com/libexpat/libexpat/pull/650","https://lists.debian.org/debian-lts-announce/2022/10/msg00033.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AJ5VY2VYXE4WTRGQ6LMGLF6FV3SY37YE/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BY4OPSIB33ETNUXZY2UPZ4NGQ3OKDY4D/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DPQVIF6TOJNY2T3ZZETFKR4G34FFREBQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FFCOMBSOJKLIKCGCJWHLJXO4EVYBG7AR/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IUJ2BULJTZ2BMSKQHB6US674P55UCWWS/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XG5XOOB7CD55CEE6OJYKSACSIMQ4RWQ6/","https://security.gentoo.org/glsa/202210-38","https://security.netapp.com/advisory/ntap-20221118-0007/","https://www.debian.org/security/2022/dsa-5266"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-43680","description":"In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u9"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-27534","versionConstraint":"< 7.64.0-4+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27534","fix":{"state":"fixed","versions":["7.64.0-4+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27534","date":"2026-10-08","epss":0.02195,"percentile":0.81928}],"risk":1.7889250000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27534","description":"A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly replaced when used as a prefix in the first path element, in addition to its intended use as the first element to indicate a path relative to the user's home directory. Attackers can exploit this flaw to bypass filtering or execute arbitrary code by crafting a path like /~2/foo while accessing a server with a specific user."},"relatedVulnerabilities":[{"id":"CVE-2023-27534","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27534","date":"2026-10-08","epss":0.02195,"percentile":0.81928}],"urls":["https://hackerone.com/reports/1892351","https://lists.debian.org/debian-lts-announce/2024/03/msg00016.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0012/","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2023-27534.json"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27534","description":"A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly replaced when used as a prefix in the first path element, in addition to its intended use as the first element to indicate a path relative to the user's home directory. Attackers can exploit this flaw to bypass filtering or execute arbitrary code by crafting a path like /~2/foo while accessing a server with a specific user."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27534","versionConstraint":"< 7.64.0-4+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27534","fix":{"state":"fixed","versions":["7.64.0-4+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27534","date":"2026-10-08","epss":0.02195,"percentile":0.81928}],"risk":1.7889250000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27534","description":"A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly replaced when used as a prefix in the first path element, in addition to its intended use as the first element to indicate a path relative to the user's home directory. Attackers can exploit this flaw to bypass filtering or execute arbitrary code by crafting a path like /~2/foo while accessing a server with a specific user."},"relatedVulnerabilities":[{"id":"CVE-2023-27534","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27534","date":"2026-10-08","epss":0.02195,"percentile":0.81928}],"urls":["https://hackerone.com/reports/1892351","https://lists.debian.org/debian-lts-announce/2024/03/msg00016.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0012/","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2023-27534.json"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27534","description":"A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly replaced when used as a prefix in the first path element, in addition to its intended use as the first element to indicate a path relative to the user's home directory. Attackers can exploit this flaw to bypass filtering or execute arbitrary code by crafting a path like /~2/foo while accessing a server with a specific user."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27534","versionConstraint":"< 7.64.0-4+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27534","fix":{"state":"fixed","versions":["7.64.0-4+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27534","date":"2026-10-08","epss":0.02195,"percentile":0.81928}],"risk":1.7889250000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27534","description":"A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly replaced when used as a prefix in the first path element, in addition to its intended use as the first element to indicate a path relative to the user's home directory. Attackers can exploit this flaw to bypass filtering or execute arbitrary code by crafting a path like /~2/foo while accessing a server with a specific user."},"relatedVulnerabilities":[{"id":"CVE-2023-27534","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27534","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27534","date":"2026-10-08","epss":0.02195,"percentile":0.81928}],"urls":["https://hackerone.com/reports/1892351","https://lists.debian.org/debian-lts-announce/2024/03/msg00016.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0012/","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2023-27534.json"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27534","description":"A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly replaced when used as a prefix in the first path element, in addition to its intended use as the first element to indicate a path relative to the user's home directory. Attackers can exploit this flaw to bypass filtering or execute arbitrary code by crafting a path like /~2/foo while accessing a server with a specific user."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21360","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21360","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21360","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21360","date":"2026-10-08","epss":0.03486,"percentile":0.88802}],"risk":1.7691450000000004,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21360","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21365","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21365","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2022-21365","date":"2026-10-08","epss":0.03486,"percentile":0.88802}],"risk":1.7691450000000004,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21365","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"77ef9f927b15ea5e","cpes":["cpe:2.3:a:libgcrypt20:libgcrypt20:1.8.4-5\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgcrypt20","purl":"pkg:deb/debian/libgcrypt20@1.8.4-5%2Bdeb10u1?arch=amd64&distro=debian-10.10","type":"deb","version":"1.8.4-5+deb10u1","language":"","licenses":["sha256:26c21767c3a769ed688e2fe3d890963bd0992b5a53ee9cd18babd680e665f131"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgcrypt20/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgcrypt20/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgcrypt20:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgcrypt20:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-33560","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libgcrypt20","version":"1.8.4-5+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-33560","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33560","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-33560","cwe":"CWE-325","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-33560","date":"2026-10-08","epss":0.02342,"percentile":0.83115}],"risk":1.7565000000000002,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-33560","description":"Libgcrypt before 1.8.8 and 1.9.x before 1.9.3 mishandles ElGamal encryption because it lacks exponent blinding to address a side-channel attack against mpi_powm, and the window size is not chosen appropriately. This, for example, affects use of ElGamal in OpenPGP."},"relatedVulnerabilities":[{"id":"CVE-2021-33560","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-33560","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2021-33560","cwe":"CWE-325","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2021-33560","date":"2026-10-08","epss":0.02342,"percentile":0.83115}],"urls":["https://dev.gnupg.org/T5305","https://dev.gnupg.org/T5328","https://dev.gnupg.org/T5466","https://dev.gnupg.org/rCe8b7f10be275bcedb5fc05ed4837a89bfd605c61","https://lists.debian.org/debian-lts-announce/2021/06/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BKKTOIGFW2SGN3DO2UHHVZ7MJSYN4AAB/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R7OAPCUGPF3VLA7QAJUQSL255D4ITVTL/","https://security.gentoo.org/glsa/202210-13","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-33560","description":"Libgcrypt before 1.8.8 and 1.9.x before 1.9.3 mishandles ElGamal encryption because it lacks exponent blinding to address a side-channel attack against mpi_powm, and the window size is not chosen appropriately. This, for example, affects use of ElGamal in OpenPGP."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21299","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21299","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21299","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21299","date":"2026-10-08","epss":0.03458,"percentile":0.88709}],"risk":1.7549350000000001,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21299","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-40674","versionConstraint":"< 2.2.6-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-40674","fix":{"state":"fixed","versions":["2.2.6-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-40674","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-40674","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-40674","date":"2026-10-08","epss":0.02223,"percentile":0.82161}],"risk":1.73394,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-40674","description":"libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c."},"relatedVulnerabilities":[{"id":"CVE-2022-40674","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-40674","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-40674","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-40674","date":"2026-10-08","epss":0.02223,"percentile":0.82161}],"urls":["https://github.com/libexpat/libexpat/pull/629","https://github.com/libexpat/libexpat/pull/640","https://lists.debian.org/debian-lts-announce/2022/09/msg00029.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GSVZN3IJ6OCPSJL7AEX3ZHSHAHFOGESK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/J2IGJNHFV53PYST7VQV3T4NHVYAMXA36/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LQB6FJAM5YQ35SF5B2MN25Y2FX56EOEZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WE2ZKEPGFCZ7R6DRVH3K6RBJPT42ZBEG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XCGBVQQ47URGJAZWHCISHDWF6QBTV2LE/","https://security.gentoo.org/glsa/202209-24","https://security.gentoo.org/glsa/202211-06","https://security.netapp.com/advisory/ntap-20221028-0008/","https://www.debian.org/security/2022/dsa-5236"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-40674","description":"libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21294","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21294","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21294","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21294","date":"2026-10-08","epss":0.0335,"percentile":0.88351}],"risk":1.7001250000000003,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21294","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"ba5663119246d2af","cpes":["cpe:2.3:a:gcc-8-base:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8-base:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8_base:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8_base:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*"],"name":"gcc-8-base","purl":"pkg:deb/debian/gcc-8-base@8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8","type":"deb","version":"8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/gcc-8-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gcc-8-base:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gcc-8-base:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2018-12886","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2018-12886","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-12886","cwe":"CWE-209","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-12886","date":"2026-10-08","epss":0.02171,"percentile":0.81734}],"risk":1.6933800000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2018-12886","description":"stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against."},"relatedVulnerabilities":[{"id":"CVE-2018-12886","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-12886","cwe":"CWE-209","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-12886","date":"2026-10-08","epss":0.02171,"percentile":0.81734}],"urls":["https://gcc.gnu.org/viewcvs/gcc/trunk/gcc/config/arm/arm-protos.h?revision=266379&view=markup","https://www.gnu.org/software/gcc/gcc-8/changes.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2018-12886","description":"stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against."}]},{"artifact":{"id":"ffc1d39eff5a666e","cpes":["cpe:2.3:a:libgcc1:libgcc1:1\\:8.3.0-6:*:*:*:*:*:*:*"],"name":"libgcc1","purl":"pkg:deb/debian/libgcc1@1%3A8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8%408.3.0-6","type":"deb","version":"1:8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgcc1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgcc1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgcc1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8","version":"8.3.0-6"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2018-12886","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2018-12886","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-12886","cwe":"CWE-209","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-12886","date":"2026-10-08","epss":0.02171,"percentile":0.81734}],"risk":1.6933800000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2018-12886","description":"stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against."},"relatedVulnerabilities":[{"id":"CVE-2018-12886","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-12886","cwe":"CWE-209","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-12886","date":"2026-10-08","epss":0.02171,"percentile":0.81734}],"urls":["https://gcc.gnu.org/viewcvs/gcc/trunk/gcc/config/arm/arm-protos.h?revision=266379&view=markup","https://www.gnu.org/software/gcc/gcc-8/changes.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2018-12886","description":"stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against."}]},{"artifact":{"id":"0ebb89f70b0c2511","cpes":["cpe:2.3:a:libstdc\\+\\+6:libstdc\\+\\+6:8.3.0-6:*:*:*:*:*:*:*"],"name":"libstdc++6","purl":"pkg:deb/debian/libstdc%2B%2B6@8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8","type":"deb","version":"8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libstdc++6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libstdc++6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libstdc++6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2018-12886","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2018-12886","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-12886","cwe":"CWE-209","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-12886","date":"2026-10-08","epss":0.02171,"percentile":0.81734}],"risk":1.6933800000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2018-12886","description":"stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against."},"relatedVulnerabilities":[{"id":"CVE-2018-12886","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-12886","cwe":"CWE-209","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-12886","date":"2026-10-08","epss":0.02171,"percentile":0.81734}],"urls":["https://gcc.gnu.org/viewcvs/gcc/trunk/gcc/config/arm/arm-protos.h?revision=266379&view=markup","https://www.gnu.org/software/gcc/gcc-8/changes.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2018-12886","description":"stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21248","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21248","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:P/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2022-21248","date":"2026-10-08","epss":0.03763,"percentile":0.89624}],"risk":1.6933500000000001,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2DIN3L6L3SVZK75CKW2GPSU4HIGZR7XG/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4J2N4FNXW6JKJBWUZH6SNI2UHCZXQXCY/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KPIWQ6DL5IPOT54UBWTISG5T24FQJ7MN/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21248","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 3.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35567","versionConstraint":"< 1.8.0_311||>= 12, < 17.0.1||>= 8, < 8.0.311||>= 9, < 11.0.13 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35567","fix":{"state":"fixed","versions":["1.8.0_311","8.0.311","11.0.13","17.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.13"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:S/C:C/I:N/A:N","metrics":{"baseScore":6.3,"impactScore":6.9,"exploitabilityScore":6.9},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N","metrics":{"baseScore":6.8,"impactScore":4,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N","metrics":{"baseScore":6.8,"impactScore":4,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35567","date":"2026-10-08","epss":0.02902,"percentile":0.86549}],"risk":1.6879966666666666,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://www.debian.org/security/2021/dsa-5000","https://www.debian.org/security/2021/dsa-5012","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35567","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via Kerberos to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Oracle GraalVM Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 6.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-22576","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22576","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22576","cwe":"CWE-287","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-22576","cwe":"CWE-306","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-22576","date":"2026-10-08","epss":0.02161,"percentile":0.8166}],"risk":1.68558,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22576","description":"An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only)."},"relatedVulnerabilities":[{"id":"CVE-2022-22576","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:P/I:P/A:N","metrics":{"baseScore":5.5,"impactScore":5,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22576","cwe":"CWE-287","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-22576","cwe":"CWE-306","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-22576","date":"2026-10-08","epss":0.02161,"percentile":0.8166}],"urls":["https://hackerone.com/reports/1526328","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22576","description":"An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only)."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-22576","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22576","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22576","cwe":"CWE-287","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-22576","cwe":"CWE-306","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-22576","date":"2026-10-08","epss":0.02161,"percentile":0.8166}],"risk":1.68558,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22576","description":"An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only)."},"relatedVulnerabilities":[{"id":"CVE-2022-22576","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:P/I:P/A:N","metrics":{"baseScore":5.5,"impactScore":5,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22576","cwe":"CWE-287","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-22576","cwe":"CWE-306","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-22576","date":"2026-10-08","epss":0.02161,"percentile":0.8166}],"urls":["https://hackerone.com/reports/1526328","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22576","description":"An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only)."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-22576","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-22576","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22576","cwe":"CWE-287","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-22576","cwe":"CWE-306","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-22576","date":"2026-10-08","epss":0.02161,"percentile":0.8166}],"risk":1.68558,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-22576","description":"An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only)."},"relatedVulnerabilities":[{"id":"CVE-2022-22576","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:P/I:P/A:N","metrics":{"baseScore":5.5,"impactScore":5,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":8.1,"impactScore":5.2,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-22576","cwe":"CWE-287","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-22576","cwe":"CWE-306","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-22576","date":"2026-10-08","epss":0.02161,"percentile":0.8166}],"urls":["https://hackerone.com/reports/1526328","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-22576","description":"An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only)."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21349","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 8, < 8.0.322 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21349","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2022-21349","date":"2026-10-08","epss":0.03306,"percentile":0.88204}],"risk":1.6777950000000004,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21349","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Java SE: 7u321, 8u311; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-0727","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-0727","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-0727","cwe":"CWE-476","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2024-0727","cwe":"CWE-476","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-0727","date":"2026-10-08","epss":0.03187,"percentile":0.877}],"risk":1.6731750000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-0727","description":"Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL to crash leading to a potential Denial of Service attack  Impact summary: Applications loading files in the PKCS12 format from untrusted sources might terminate abruptly.  A file in PKCS12 format can contain certificates and keys and may come from an untrusted source. The PKCS12 specification allows certain fields to be NULL, but OpenSSL does not correctly check for this case. This can lead to a NULL pointer dereference that results in OpenSSL crashing. If an application processes PKCS12 files from an untrusted source using the OpenSSL APIs then that application will be vulnerable to this issue.  OpenSSL APIs that are vulnerable to this are: PKCS12_parse(), PKCS12_unpack_p7data(), PKCS12_unpack_p7encdata(), PKCS12_unpack_authsafes() and PKCS12_newpass().  We have also fixed a similar issue in SMIME_write_PKCS7(). However since this function is related to writing data we do not consider it security significant.  The FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2024-0727","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-0727","cwe":"CWE-476","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2024-0727","cwe":"CWE-476","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-0727","date":"2026-10-08","epss":0.03187,"percentile":0.877}],"urls":["https://github.com/openssl/openssl/commit/09df4395b5071217b76dc7d3d2e630eb8c5a79c2","https://github.com/openssl/openssl/commit/775acfdbd0c6af9ac855f34969cdab0c0c90844a","https://github.com/openssl/openssl/commit/d135eeab8a5dbf72b3da5240bab9ddb7678dbd2c","https://github.openssl.org/openssl/extended-releases/commit/03b3941d60c4bce58fab69a0c22377ab439bc0e8","https://github.openssl.org/openssl/extended-releases/commit/aebaa5883e31122b404e450732dc833dc9dee539","https://www.openssl.org/news/secadv/20240125.txt","http://www.openwall.com/lists/oss-security/2024/03/11/1","https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html","https://security.netapp.com/advisory/ntap-20240208-0006/","https://cert-portal.siemens.com/productcert/html/ssa-265688.html","https://cert-portal.siemens.com/productcert/html/ssa-277137.html","https://cert-portal.siemens.com/productcert/html/ssa-331112.html","https://cert-portal.siemens.com/productcert/html/ssa-769027.html","https://cert-portal.siemens.com/productcert/html/ssa-915275.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-0727","description":"Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL\nto crash leading to a potential Denial of Service attack\n\nImpact summary: Applications loading files in the PKCS12 format from untrusted\nsources might terminate abruptly.\n\nA file in PKCS12 format can contain certificates and keys and may come from an\nuntrusted source. The PKCS12 specification allows certain fields to be NULL, but\nOpenSSL does not correctly check for this case. This can lead to a NULL pointer\ndereference that results in OpenSSL crashing. If an application processes PKCS12\nfiles from an untrusted source using the OpenSSL APIs then that application will\nbe vulnerable to this issue.\n\nOpenSSL APIs that are vulnerable to this are: PKCS12_parse(),\nPKCS12_unpack_p7data(), PKCS12_unpack_p7encdata(), PKCS12_unpack_authsafes()\nand PKCS12_newpass().\n\nWe have also fixed a similar issue in SMIME_write_PKCS7(). However since this\nfunction is related to writing data we do not consider it security significant.\n\nThe FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-0727","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-0727","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-0727","cwe":"CWE-476","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2024-0727","cwe":"CWE-476","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-0727","date":"2026-10-08","epss":0.03187,"percentile":0.877}],"risk":1.6731750000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-0727","description":"Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL to crash leading to a potential Denial of Service attack  Impact summary: Applications loading files in the PKCS12 format from untrusted sources might terminate abruptly.  A file in PKCS12 format can contain certificates and keys and may come from an untrusted source. The PKCS12 specification allows certain fields to be NULL, but OpenSSL does not correctly check for this case. This can lead to a NULL pointer dereference that results in OpenSSL crashing. If an application processes PKCS12 files from an untrusted source using the OpenSSL APIs then that application will be vulnerable to this issue.  OpenSSL APIs that are vulnerable to this are: PKCS12_parse(), PKCS12_unpack_p7data(), PKCS12_unpack_p7encdata(), PKCS12_unpack_authsafes() and PKCS12_newpass().  We have also fixed a similar issue in SMIME_write_PKCS7(). However since this function is related to writing data we do not consider it security significant.  The FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2024-0727","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-0727","cwe":"CWE-476","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2024-0727","cwe":"CWE-476","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-0727","date":"2026-10-08","epss":0.03187,"percentile":0.877}],"urls":["https://github.com/openssl/openssl/commit/09df4395b5071217b76dc7d3d2e630eb8c5a79c2","https://github.com/openssl/openssl/commit/775acfdbd0c6af9ac855f34969cdab0c0c90844a","https://github.com/openssl/openssl/commit/d135eeab8a5dbf72b3da5240bab9ddb7678dbd2c","https://github.openssl.org/openssl/extended-releases/commit/03b3941d60c4bce58fab69a0c22377ab439bc0e8","https://github.openssl.org/openssl/extended-releases/commit/aebaa5883e31122b404e450732dc833dc9dee539","https://www.openssl.org/news/secadv/20240125.txt","http://www.openwall.com/lists/oss-security/2024/03/11/1","https://lists.debian.org/debian-lts-announce/2024/10/msg00033.html","https://lists.debian.org/debian-lts-announce/2024/11/msg00000.html","https://security.netapp.com/advisory/ntap-20240208-0006/","https://cert-portal.siemens.com/productcert/html/ssa-265688.html","https://cert-portal.siemens.com/productcert/html/ssa-277137.html","https://cert-portal.siemens.com/productcert/html/ssa-331112.html","https://cert-portal.siemens.com/productcert/html/ssa-769027.html","https://cert-portal.siemens.com/productcert/html/ssa-915275.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-0727","description":"Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL\nto crash leading to a potential Denial of Service attack\n\nImpact summary: Applications loading files in the PKCS12 format from untrusted\nsources might terminate abruptly.\n\nA file in PKCS12 format can contain certificates and keys and may come from an\nuntrusted source. The PKCS12 specification allows certain fields to be NULL, but\nOpenSSL does not correctly check for this case. This can lead to a NULL pointer\ndereference that results in OpenSSL crashing. If an application processes PKCS12\nfiles from an untrusted source using the OpenSSL APIs then that application will\nbe vulnerable to this issue.\n\nOpenSSL APIs that are vulnerable to this are: PKCS12_parse(),\nPKCS12_unpack_p7data(), PKCS12_unpack_p7encdata(), PKCS12_unpack_authsafes()\nand PKCS12_newpass().\n\nWe have also fixed a similar issue in SMIME_write_PKCS7(). However since this\nfunction is related to writing data we do not consider it security significant.\n\nThe FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-22947","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22947","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22947","cwe":"CWE-310","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22947","cwe":"CWE-345","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22947","date":"2026-10-08","epss":0.03009,"percentile":0.87008}],"risk":1.6399050000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22947","description":"When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server."},"relatedVulnerabilities":[{"id":"CVE-2021-22947","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:P/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22947","cwe":"CWE-310","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22947","cwe":"CWE-345","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22947","date":"2026-10-08","epss":0.03009,"percentile":0.87008}],"urls":["http://seclists.org/fulldisclosure/2022/Mar/29","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://hackerone.com/reports/1334763","https://lists.debian.org/debian-lts-announce/2021/09/msg00022.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/APOAK4X73EJTAPTSVT7IRVDMUWVXNWGD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RWLEC6YVEM2HWUBX67SDGPSY4CQB72OE/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20211029-0003/","https://support.apple.com/kb/HT213183","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22947","description":"When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-22947","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22947","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22947","cwe":"CWE-310","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22947","cwe":"CWE-345","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22947","date":"2026-10-08","epss":0.03009,"percentile":0.87008}],"risk":1.6399050000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22947","description":"When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server."},"relatedVulnerabilities":[{"id":"CVE-2021-22947","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:P/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22947","cwe":"CWE-310","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22947","cwe":"CWE-345","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22947","date":"2026-10-08","epss":0.03009,"percentile":0.87008}],"urls":["http://seclists.org/fulldisclosure/2022/Mar/29","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://hackerone.com/reports/1334763","https://lists.debian.org/debian-lts-announce/2021/09/msg00022.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/APOAK4X73EJTAPTSVT7IRVDMUWVXNWGD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RWLEC6YVEM2HWUBX67SDGPSY4CQB72OE/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20211029-0003/","https://support.apple.com/kb/HT213183","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22947","description":"When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-22947","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22947","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22947","cwe":"CWE-310","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22947","cwe":"CWE-345","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22947","date":"2026-10-08","epss":0.03009,"percentile":0.87008}],"risk":1.6399050000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22947","description":"When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server."},"relatedVulnerabilities":[{"id":"CVE-2021-22947","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:P/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22947","cwe":"CWE-310","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22947","cwe":"CWE-345","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22947","date":"2026-10-08","epss":0.03009,"percentile":0.87008}],"urls":["http://seclists.org/fulldisclosure/2022/Mar/29","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://hackerone.com/reports/1334763","https://lists.debian.org/debian-lts-announce/2021/09/msg00022.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/APOAK4X73EJTAPTSVT7IRVDMUWVXNWGD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RWLEC6YVEM2HWUBX67SDGPSY4CQB72OE/","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20211029-0003/","https://support.apple.com/kb/HT213183","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22947","description":"When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server."}]},{"artifact":{"id":"7f936fc60378589a","cpes":["cpe:2.3:a:gpgv:gpgv:2.2.12-1\\+deb10u1:*:*:*:*:*:*:*"],"name":"gpgv","purl":"pkg:deb/debian/gpgv@2.2.12-1%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=gnupg2","type":"deb","version":"2.2.12-1+deb10u1","language":"","licenses":["BSD-3-clause","CC0-1.0","Expat","GPL-3","GPL-3+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","RFC-Reference","TinySCHEME","permissive"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gpgv/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/gpgv/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gpgv.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gpgv.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gpgv.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gpgv.list"}],"upstreams":[{"name":"gnupg2"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.12-1+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-34903","versionConstraint":"< 2.2.12-1+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gnupg2","version":"2.2.12-1+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-34903","fix":{"state":"fixed","versions":["2.2.12-1+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.12-1+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":4.3,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-34903","cwe":"CWE-74","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-34903","date":"2026-10-08","epss":0.02844,"percentile":0.8627}],"risk":1.6353,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[{"id":"DSA-5174-1","link":"https://security-tracker.debian.org/tracker/DSA-5174-1"}],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-34903","description":"GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line."},"relatedVulnerabilities":[{"id":"CVE-2022-34903","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":4.3,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:N","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-34903","cwe":"CWE-74","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-34903","date":"2026-10-08","epss":0.02844,"percentile":0.8627}],"urls":["http://www.openwall.com/lists/oss-security/2022/07/02/1","https://bugs.debian.org/1014157","https://dev.gnupg.org/T6027","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRLWJQ76A4UKHI3Q36BKSJKS4LFLQO33/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NPTAR76EIZY7NQFENSOZO7U473257OVZ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VN63GBTMRWO36Y7BKA2WQHROAKCXKCBL/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VU64FUVG2PRZBSHFOQRSP7KDVEIZ23OS/","https://security.netapp.com/advisory/ntap-20220826-0005/","https://www.debian.org/security/2022/dsa-5174","https://www.openwall.com/lists/oss-security/2022/06/30/1"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-34903","description":"GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyring and other constraints (e.g., use of GPGME) are met, allows signature forgery via injection into the status line."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_331"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21426","versionConstraint":"< 1.7.0_341||>= 1.8, < 1.8.0_331||>= 12, < 17.0.3||>= 18, < 18.0.1||>= 7, < 7.0.341||>= 8, < 8.0.331||>= 9, < 11.0.15 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21426","fix":{"state":"fixed","versions":["1.7.0_341","7.0.341","1.8.0_331","8.0.331","11.0.15","17.0.3","18.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_341"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.3"},{"date":"2025-09-04","kind":"first-observed","version":"18.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.341"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.15"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2022-21426","date":"2026-10-08","epss":0.03203,"percentile":0.87769}],"risk":1.6255225000000004,"urls":["https://lists.debian.org/debian-lts-announce/2022/05/msg00017.html","https://security.netapp.com/advisory/ntap-20220429-0006/","https://www.debian.org/security/2022/dsa-5128","https://www.debian.org/security/2022/dsa-5131","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21426","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-27533","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27533","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27533","cwe":"CWE-75","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27533","cwe":"CWE-74","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27533","date":"2026-10-08","epss":0.01993,"percentile":0.80048}],"risk":1.6242950000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27533","description":"A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and \"telnet options\" during server negotiation. The lack of proper input scrubbing allows an attacker to send content or perform option negotiation without the application's intent. This vulnerability could be exploited if an application allows user input, thereby enabling attackers to execute arbitrary code on the system."},"relatedVulnerabilities":[{"id":"CVE-2023-27533","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27533","cwe":"CWE-75","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27533","cwe":"CWE-74","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27533","date":"2026-10-08","epss":0.01993,"percentile":0.80048}],"urls":["https://hackerone.com/reports/1891474","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0011/","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2023-27533.json"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27533","description":"A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and \"telnet options\" during server negotiation. The lack of proper input scrubbing allows an attacker to send content or perform option negotiation without the application's intent. This vulnerability could be exploited if an application allows user input, thereby enabling attackers to execute arbitrary code on the system."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27533","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27533","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27533","cwe":"CWE-75","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27533","cwe":"CWE-74","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27533","date":"2026-10-08","epss":0.01993,"percentile":0.80048}],"risk":1.6242950000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27533","description":"A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and \"telnet options\" during server negotiation. The lack of proper input scrubbing allows an attacker to send content or perform option negotiation without the application's intent. This vulnerability could be exploited if an application allows user input, thereby enabling attackers to execute arbitrary code on the system."},"relatedVulnerabilities":[{"id":"CVE-2023-27533","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27533","cwe":"CWE-75","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27533","cwe":"CWE-74","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27533","date":"2026-10-08","epss":0.01993,"percentile":0.80048}],"urls":["https://hackerone.com/reports/1891474","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0011/","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2023-27533.json"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27533","description":"A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and \"telnet options\" during server negotiation. The lack of proper input scrubbing allows an attacker to send content or perform option negotiation without the application's intent. This vulnerability could be exploited if an application allows user input, thereby enabling attackers to execute arbitrary code on the system."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27533","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27533","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27533","cwe":"CWE-75","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27533","cwe":"CWE-74","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27533","date":"2026-10-08","epss":0.01993,"percentile":0.80048}],"risk":1.6242950000000003,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27533","description":"A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and \"telnet options\" during server negotiation. The lack of proper input scrubbing allows an attacker to send content or perform option negotiation without the application's intent. This vulnerability could be exploited if an application allows user input, thereby enabling attackers to execute arbitrary code on the system."},"relatedVulnerabilities":[{"id":"CVE-2023-27533","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.8,"impactScore":5.9,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":9.8,"impactScore":5.9,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27533","cwe":"CWE-75","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27533","cwe":"CWE-74","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27533","date":"2026-10-08","epss":0.01993,"percentile":0.80048}],"urls":["https://hackerone.com/reports/1891474","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0011/","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2023-27533.json"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27533","description":"A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and \"telnet options\" during server negotiation. The lack of proper input scrubbing allows an attacker to send content or perform option negotiation without the application's intent. This vulnerability could be exploited if an application allows user input, thereby enabling attackers to execute arbitrary code on the system."}]},{"artifact":{"id":"11266fe42a39668b","cpes":["cpe:2.3:a:libgssapi-krb5-2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5-2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgssapi-krb5-2","purl":"pkg:deb/debian/libgssapi-krb5-2@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgssapi-krb5-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libgssapi-krb5-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-36054","versionConstraint":"< 1.17-3+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-36054","fix":{"state":"fixed","versions":["1.17-3+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-36054","cwe":"CWE-824","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-36054","date":"2026-10-08","epss":0.02814,"percentile":0.86119}],"risk":1.6180499999999998,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-36054","description":"lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count."},"relatedVulnerabilities":[{"id":"CVE-2023-36054","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-36054","cwe":"CWE-824","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-36054","date":"2026-10-08","epss":0.02814,"percentile":0.86119}],"urls":["https://github.com/krb5/krb5/commit/ef08b09c9459551aabbe7924fb176f1583053cdd","https://github.com/krb5/krb5/compare/krb5-1.20.1-final...krb5-1.20.2-final","https://github.com/krb5/krb5/compare/krb5-1.21-final...krb5-1.21.1-final","https://lists.debian.org/debian-lts-announce/2023/10/msg00031.html","https://security.netapp.com/advisory/ntap-20230908-0004/","https://web.mit.edu/kerberos/www/advisories/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-36054","description":"lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count."}]},{"artifact":{"id":"ccf5186a66741b60","cpes":["cpe:2.3:a:libk5crypto3:libk5crypto3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libk5crypto3","purl":"pkg:deb/debian/libk5crypto3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libk5crypto3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libk5crypto3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-36054","versionConstraint":"< 1.17-3+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-36054","fix":{"state":"fixed","versions":["1.17-3+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-36054","cwe":"CWE-824","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-36054","date":"2026-10-08","epss":0.02814,"percentile":0.86119}],"risk":1.6180499999999998,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-36054","description":"lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count."},"relatedVulnerabilities":[{"id":"CVE-2023-36054","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-36054","cwe":"CWE-824","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-36054","date":"2026-10-08","epss":0.02814,"percentile":0.86119}],"urls":["https://github.com/krb5/krb5/commit/ef08b09c9459551aabbe7924fb176f1583053cdd","https://github.com/krb5/krb5/compare/krb5-1.20.1-final...krb5-1.20.2-final","https://github.com/krb5/krb5/compare/krb5-1.21-final...krb5-1.21.1-final","https://lists.debian.org/debian-lts-announce/2023/10/msg00031.html","https://security.netapp.com/advisory/ntap-20230908-0004/","https://web.mit.edu/kerberos/www/advisories/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-36054","description":"lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count."}]},{"artifact":{"id":"9d7689846a6700a5","cpes":["cpe:2.3:a:libkrb5-3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5-3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5-3","purl":"pkg:deb/debian/libkrb5-3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5-3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5-3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-36054","versionConstraint":"< 1.17-3+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-36054","fix":{"state":"fixed","versions":["1.17-3+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-36054","cwe":"CWE-824","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-36054","date":"2026-10-08","epss":0.02814,"percentile":0.86119}],"risk":1.6180499999999998,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-36054","description":"lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count."},"relatedVulnerabilities":[{"id":"CVE-2023-36054","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-36054","cwe":"CWE-824","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-36054","date":"2026-10-08","epss":0.02814,"percentile":0.86119}],"urls":["https://github.com/krb5/krb5/commit/ef08b09c9459551aabbe7924fb176f1583053cdd","https://github.com/krb5/krb5/compare/krb5-1.20.1-final...krb5-1.20.2-final","https://github.com/krb5/krb5/compare/krb5-1.21-final...krb5-1.21.1-final","https://lists.debian.org/debian-lts-announce/2023/10/msg00031.html","https://security.netapp.com/advisory/ntap-20230908-0004/","https://web.mit.edu/kerberos/www/advisories/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-36054","description":"lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count."}]},{"artifact":{"id":"a14f851bc531224e","cpes":["cpe:2.3:a:libkrb5support0:libkrb5support0:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5support0","purl":"pkg:deb/debian/libkrb5support0@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5support0/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5support0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-36054","versionConstraint":"< 1.17-3+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-36054","fix":{"state":"fixed","versions":["1.17-3+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-36054","cwe":"CWE-824","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-36054","date":"2026-10-08","epss":0.02814,"percentile":0.86119}],"risk":1.6180499999999998,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-36054","description":"lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count."},"relatedVulnerabilities":[{"id":"CVE-2023-36054","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-36054","cwe":"CWE-824","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-36054","date":"2026-10-08","epss":0.02814,"percentile":0.86119}],"urls":["https://github.com/krb5/krb5/commit/ef08b09c9459551aabbe7924fb176f1583053cdd","https://github.com/krb5/krb5/compare/krb5-1.20.1-final...krb5-1.20.2-final","https://github.com/krb5/krb5/compare/krb5-1.21-final...krb5-1.21.1-final","https://lists.debian.org/debian-lts-announce/2023/10/msg00031.html","https://security.netapp.com/advisory/ntap-20230908-0004/","https://web.mit.edu/kerberos/www/advisories/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-36054","description":"lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can trigger a kadmind crash. This occurs because _xdr_kadm5_principal_ent_rec does not validate the relationship between n_key_data and the key_data array count."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_301"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-2369","versionConstraint":"< 1.7.0_311||>= 1.8, < 1.8.0_301||>= 12, < 16.0.2||>= 7, < 7.0.311||>= 8, < 8.0.301||>= 9, < 11.0.12 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-2369","fix":{"state":"fixed","versions":["1.7.0_311","7.0.311","1.8.0_301","8.0.301","11.0.12","16.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_301"},{"date":"2025-09-04","kind":"first-observed","version":"16.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.311"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.301"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.12"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:N/I:P/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N","metrics":{"baseScore":4.3,"impactScore":1.5,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-2369","date":"2026-10-08","epss":0.03444,"percentile":0.88668}],"risk":1.6014599999999997,"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=1982879","https://lists.debian.org/debian-lts-announce/2021/08/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20210723-0002/","https://www.debian.org/security/2021/dsa-4946","https://www.oracle.com/security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-2369","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Library). Supported versions that are affected are Java SE: 7u301, 8u291, 11.0.11, 16.0.1; Oracle GraalVM Enterprise Edition: 20.3.2 and 21.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_341"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21541","versionConstraint":"< 1.7.0_351||>= 1.8, < 1.8.0_341||>= 12, < 17.0.4||>= 18, < 18.0.2||>= 7, < 7.0.351||>= 8, < 8.0.341||>= 9, < 11.0.16 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21541","fix":{"state":"fixed","versions":["1.7.0_351","7.0.351","1.8.0_341","8.0.341","11.0.16","17.0.4","18.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_351"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_341"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.4"},{"date":"2025-09-04","kind":"first-observed","version":"18.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.351"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.341"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.16"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2022-21541","date":"2026-10-08","epss":0.02906,"percentile":0.86566}],"risk":1.58377,"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/H4YNJSJ64NPCNKFPNBYITNZU5H3L4D6L/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/I5OZNAZJ4YHLOKRRRZSWRT5OJ25E4XLM/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JN3EVGR7FD3ZLV5SBTJXUIDCMSK4QUE2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KO3DXNKZ4EU3UZBT6AAR4XRKCD73KLMO/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/L3XPOTPPBZIPFBZHQE5E7OW6PDACUMCJ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YULPNO3PAWMEQQZV2C54I3H3ZOXFZUTB/","https://security.gentoo.org/glsa/202401-25","https://security.netapp.com/advisory/ntap-20220729-0009/","https://www.debian.org/security/2022/dsa-5188","https://www.debian.org/security/2022/dsa-5192","https://www.oracle.com/security-alerts/cpujul2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21541","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.9 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-3817","versionConstraint":"< 1.1.1n-0+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-3817","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3817","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-3817","cwe":"CWE-834","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3817","date":"2026-10-08","epss":0.03047,"percentile":0.87153}],"risk":1.569205,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-3817","description":"Issue summary: Checking excessively long DH keys or parameters may be very slow.  Impact summary: Applications that use the functions DH_check(), DH_check_ex() or EVP_PKEY_param_check() to check a DH key or DH parameters may experience long delays. Where the key or parameters that are being checked have been obtained from an untrusted source this may lead to a Denial of Service.  The function DH_check() performs various checks on DH parameters. After fixing CVE-2023-3446 it was discovered that a large q parameter value can also trigger an overly long computation during some of these checks. A correct q value, if present, cannot be larger than the modulus p parameter, thus it is unnecessary to perform these checks if q is larger than p.  An application that calls DH_check() and supplies a key or parameters obtained from an untrusted source could be vulnerable to a Denial of Service attack.  The function DH_check() is itself called by a number of other OpenSSL functions. An application calling any of those other functions may similarly be affected. The other functions affected by this are DH_check_ex() and EVP_PKEY_param_check().  Also vulnerable are the OpenSSL dhparam and pkeyparam command line applications when using the \"-check\" option.  The OpenSSL SSL/TLS implementation is not affected by this issue.  The OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2023-3817","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3817","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-3817","cwe":"CWE-834","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3817","date":"2026-10-08","epss":0.03047,"percentile":0.87153}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=6a1eb62c29db6cb5eec707f9338aee00f44e26f5","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=869ad69aadd985c7b8ca6f4e5dd0eb274c9f3644","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9002fd07327a91f35ba6c1307e71fa6fd4409b7f","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=91ddeba0f2269b017dc06c46c993a788974b1aa5","https://www.openssl.org/news/secadv/20230731.txt","http://seclists.org/fulldisclosure/2023/Jul/43","http://www.openwall.com/lists/oss-security/2023/07/31/1","http://www.openwall.com/lists/oss-security/2023/09/22/11","http://www.openwall.com/lists/oss-security/2023/09/22/9","http://www.openwall.com/lists/oss-security/2023/11/06/2","https://lists.debian.org/debian-lts-announce/2023/08/msg00019.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230818-0014/","https://security.netapp.com/advisory/ntap-20231027-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-3817","description":"Issue summary: Checking excessively long DH keys or parameters may be very slow.\n\nImpact summary: Applications that use the functions DH_check(), DH_check_ex()\nor EVP_PKEY_param_check() to check a DH key or DH parameters may experience long\ndelays. Where the key or parameters that are being checked have been obtained\nfrom an untrusted source this may lead to a Denial of Service.\n\nThe function DH_check() performs various checks on DH parameters. After fixing\nCVE-2023-3446 it was discovered that a large q parameter value can also trigger\nan overly long computation during some of these checks. A correct q value,\nif present, cannot be larger than the modulus p parameter, thus it is\nunnecessary to perform these checks if q is larger than p.\n\nAn application that calls DH_check() and supplies a key or parameters obtained\nfrom an untrusted source could be vulnerable to a Denial of Service attack.\n\nThe function DH_check() is itself called by a number of other OpenSSL functions.\nAn application calling any of those other functions may similarly be affected.\nThe other functions affected by this are DH_check_ex() and\nEVP_PKEY_param_check().\n\nAlso vulnerable are the OpenSSL dhparam and pkeyparam command line applications\nwhen using the \"-check\" option.\n\nThe OpenSSL SSL/TLS implementation is not affected by this issue.\n\nThe OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u6"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-3817","versionConstraint":"< 1.1.1n-0+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-3817","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3817","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-3817","cwe":"CWE-834","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3817","date":"2026-10-08","epss":0.03047,"percentile":0.87153}],"risk":1.569205,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-3817","description":"Issue summary: Checking excessively long DH keys or parameters may be very slow.  Impact summary: Applications that use the functions DH_check(), DH_check_ex() or EVP_PKEY_param_check() to check a DH key or DH parameters may experience long delays. Where the key or parameters that are being checked have been obtained from an untrusted source this may lead to a Denial of Service.  The function DH_check() performs various checks on DH parameters. After fixing CVE-2023-3446 it was discovered that a large q parameter value can also trigger an overly long computation during some of these checks. A correct q value, if present, cannot be larger than the modulus p parameter, thus it is unnecessary to perform these checks if q is larger than p.  An application that calls DH_check() and supplies a key or parameters obtained from an untrusted source could be vulnerable to a Denial of Service attack.  The function DH_check() is itself called by a number of other OpenSSL functions. An application calling any of those other functions may similarly be affected. The other functions affected by this are DH_check_ex() and EVP_PKEY_param_check().  Also vulnerable are the OpenSSL dhparam and pkeyparam command line applications when using the \"-check\" option.  The OpenSSL SSL/TLS implementation is not affected by this issue.  The OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."},"relatedVulnerabilities":[{"id":"CVE-2023-3817","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3817","cwe":"CWE-606","type":"Secondary","source":"openssl-security@openssl.org"},{"cve":"CVE-2023-3817","cwe":"CWE-834","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3817","date":"2026-10-08","epss":0.03047,"percentile":0.87153}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=6a1eb62c29db6cb5eec707f9338aee00f44e26f5","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=869ad69aadd985c7b8ca6f4e5dd0eb274c9f3644","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9002fd07327a91f35ba6c1307e71fa6fd4409b7f","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=91ddeba0f2269b017dc06c46c993a788974b1aa5","https://www.openssl.org/news/secadv/20230731.txt","http://seclists.org/fulldisclosure/2023/Jul/43","http://www.openwall.com/lists/oss-security/2023/07/31/1","http://www.openwall.com/lists/oss-security/2023/09/22/11","http://www.openwall.com/lists/oss-security/2023/09/22/9","http://www.openwall.com/lists/oss-security/2023/11/06/2","https://lists.debian.org/debian-lts-announce/2023/08/msg00019.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230818-0014/","https://security.netapp.com/advisory/ntap-20231027-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-3817","description":"Issue summary: Checking excessively long DH keys or parameters may be very slow.\n\nImpact summary: Applications that use the functions DH_check(), DH_check_ex()\nor EVP_PKEY_param_check() to check a DH key or DH parameters may experience long\ndelays. Where the key or parameters that are being checked have been obtained\nfrom an untrusted source this may lead to a Denial of Service.\n\nThe function DH_check() performs various checks on DH parameters. After fixing\nCVE-2023-3446 it was discovered that a large q parameter value can also trigger\nan overly long computation during some of these checks. A correct q value,\nif present, cannot be larger than the modulus p parameter, thus it is\nunnecessary to perform these checks if q is larger than p.\n\nAn application that calls DH_check() and supplies a key or parameters obtained\nfrom an untrusted source could be vulnerable to a Denial of Service attack.\n\nThe function DH_check() is itself called by a number of other OpenSSL functions.\nAn application calling any of those other functions may similarly be affected.\nThe other functions affected by this are DH_check_ex() and\nEVP_PKEY_param_check().\n\nAlso vulnerable are the OpenSSL dhparam and pkeyparam command line applications\nwhen using the \"-check\" option.\n\nThe OpenSSL SSL/TLS implementation is not affected by this issue.\n\nThe OpenSSL 3.0 and 3.1 FIPS providers are not affected by this issue."}]},{"artifact":{"id":"848b1948f834d7ce","cpes":["cpe:2.3:a:libgnutls30:libgnutls30:3.6.7-4\\+deb10u7:*:*:*:*:*:*:*"],"name":"libgnutls30","purl":"pkg:deb/debian/libgnutls30@3.6.7-4%2Bdeb10u7?arch=amd64&distro=debian-10.10&upstream=gnutls28","type":"deb","version":"3.6.7-4+deb10u7","language":"","licenses":["sha256:d35f0abecc61a3676965c20cf13a44815b05d9b4a68985fa1809b13c2aff9090"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgnutls30/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgnutls30/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gnutls28"}]},"matchDetails":[{"fix":{"suggestedVersion":"3.6.7-4+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-2509","versionConstraint":"< 3.6.7-4+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gnutls28","version":"3.6.7-4+deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-2509","fix":{"state":"fixed","versions":["3.6.7-4+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"3.6.7-4+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2509","cwe":"CWE-415","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-2509","cwe":"CWE-415","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-2509","date":"2026-10-08","epss":0.01988,"percentile":0.79996}],"risk":1.4909999999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-2509","description":"A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function."},"relatedVulnerabilities":[{"id":"CVE-2022-2509","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-2509","cwe":"CWE-415","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-2509","cwe":"CWE-415","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-2509","date":"2026-10-08","epss":0.01988,"percentile":0.79996}],"urls":["https://access.redhat.com/security/cve/CVE-2022-2509","https://lists.debian.org/debian-lts-announce/2022/08/msg00002.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6FL27JS3VM74YEQU7PGB62USO3KSBYZX/","https://lists.gnupg.org/pipermail/gnutls-help/2022-July/004746.html","https://www.debian.org/security/2022/dsa-5203"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-2509","description":"A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of pkcs7 signatures in gnutls_pkcs7_verify function."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21291","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21291","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21291","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21291","date":"2026-10-08","epss":0.02896,"percentile":0.86522}],"risk":1.4697200000000001,"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2DIN3L6L3SVZK75CKW2GPSU4HIGZR7XG/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21291","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21282","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21282","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21282","cwe":"CWE-611","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21282","date":"2026-10-08","epss":0.02877,"percentile":0.86424}],"risk":1.4600775000000001,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21282","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"1cfe6e2be5a9442c","cpes":["cpe:2.3:a:libldap-2.4-2:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4-2:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4_2:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4_2:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*"],"name":"libldap-2.4-2","purl":"pkg:deb/debian/libldap-2.4-2@2.4.47%2Bdfsg-3%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openldap","type":"deb","version":"2.4.47+dfsg-3+deb10u6","language":"","licenses":["sha256:0690f1ee382f98e95b446743db55395641d5e258de65939e9cb1c660d67a43a8"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libldap-2.4-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libldap-2.4-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-2.4-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-2.4-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openldap"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-2953","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openldap","version":"2.4.47+dfsg-3+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-2953","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-2953","date":"2026-10-08","epss":0.0193,"percentile":0.7939}],"risk":1.4475000000000002,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-2953","description":"A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function."},"relatedVulnerabilities":[{"id":"CVE-2023-2953","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-2953","date":"2026-10-08","epss":0.0193,"percentile":0.7939}],"urls":["http://seclists.org/fulldisclosure/2023/Jul/47","http://seclists.org/fulldisclosure/2023/Jul/48","http://seclists.org/fulldisclosure/2023/Jul/52","https://access.redhat.com/security/cve/CVE-2023-2953","https://bugs.openldap.org/show_bug.cgi?id=9904","https://security.netapp.com/advisory/ntap-20230703-0005/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-2953","description":"A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function."}]},{"artifact":{"id":"e69f561869ff04f0","cpes":["cpe:2.3:a:libldap-common:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-common:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_common:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_common:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*"],"name":"libldap-common","purl":"pkg:deb/debian/libldap-common@2.4.47%2Bdfsg-3%2Bdeb10u6?arch=all&distro=debian-10.10&upstream=openldap","type":"deb","version":"2.4.47+dfsg-3+deb10u6","language":"","licenses":["sha256:0690f1ee382f98e95b446743db55395641d5e258de65939e9cb1c660d67a43a8"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libldap-common/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libldap-common/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.list"}],"upstreams":[{"name":"openldap"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-2953","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openldap","version":"2.4.47+dfsg-3+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-2953","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-2953","date":"2026-10-08","epss":0.0193,"percentile":0.7939}],"risk":1.4475000000000002,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-2953","description":"A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function."},"relatedVulnerabilities":[{"id":"CVE-2023-2953","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2023-2953","cwe":"CWE-476","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-2953","date":"2026-10-08","epss":0.0193,"percentile":0.7939}],"urls":["http://seclists.org/fulldisclosure/2023/Jul/47","http://seclists.org/fulldisclosure/2023/Jul/48","http://seclists.org/fulldisclosure/2023/Jul/52","https://access.redhat.com/security/cve/CVE-2023-2953","https://bugs.openldap.org/show_bug.cgi?id=9904","https://security.netapp.com/advisory/ntap-20230703-0005/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-2953","description":"A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21296","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21296","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21296","cwe":"CWE-200","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21296","date":"2026-10-08","epss":0.02825,"percentile":0.86173}],"risk":1.4336875000000002,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21296","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"8.0.321"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21271","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 8, < 8.0.321||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21271","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","8.0.321","1.8.0_322","11.0.14"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2022-21271","date":"2026-10-08","epss":0.02789,"percentile":0.85995}],"risk":1.4154175000000002,"urls":["https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21271","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_322"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21305","versionConstraint":"< 1.7.0_331||>= 1.8, < 1.8.0_322||>= 1.9, < 7.0.331||>= 12, < 17.0.2||>= 8, < 8.0.322||>= 9, < 11.0.14 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21305","fix":{"state":"fixed","versions":["1.7.0_331","7.0.331","1.8.0_322","8.0.322","11.0.14","17.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_322"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.322"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.14"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21305","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21305","date":"2026-10-08","epss":0.02755,"percentile":0.8582}],"risk":1.3981625000000002,"urls":["https://lists.debian.org/debian-lts-announce/2022/02/msg00011.html","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20220121-0007/","https://www.debian.org/security/2022/dsa-5057","https://www.debian.org/security/2022/dsa-5058","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21305","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-22898","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22898","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22898","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22898","cwe":"CWE-909","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22898","date":"2026-10-08","epss":0.04507,"percentile":0.91268}],"risk":1.3746349999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22898","description":"curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol."},"relatedVulnerabilities":[{"id":"CVE-2021-22898","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:P/I:N/A:N","metrics":{"baseScore":2.6,"impactScore":2.9,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22898","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22898","cwe":"CWE-909","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22898","date":"2026-10-08","epss":0.04507,"percentile":0.91268}],"urls":["http://www.openwall.com/lists/oss-security/2021/07/21/4","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://curl.se/docs/CVE-2021-22898.html","https://github.com/curl/curl/commit/39ce47f219b09c380b81f89fe54ac586c8db6bde","https://hackerone.com/reports/1176461","https://lists.apache.org/thread.html/rc713534b10f9daeee2e0990239fa407e2118e4aa9e88a7041177497c%40%3Cissues.guacamole.apache.org%3E","https://lists.debian.org/debian-lts-announce/2021/08/msg00017.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRUCW2UVNYUDZF72DQLFQR4PJEC6CF7V/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/POOC3UV7V6L4CJ5KA2PTWTNUV5Y72T3Q/","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com//security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2021-22898.json"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22898","description":"curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-22898","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22898","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22898","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22898","cwe":"CWE-909","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22898","date":"2026-10-08","epss":0.04507,"percentile":0.91268}],"risk":1.3746349999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22898","description":"curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol."},"relatedVulnerabilities":[{"id":"CVE-2021-22898","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:P/I:N/A:N","metrics":{"baseScore":2.6,"impactScore":2.9,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22898","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22898","cwe":"CWE-909","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22898","date":"2026-10-08","epss":0.04507,"percentile":0.91268}],"urls":["http://www.openwall.com/lists/oss-security/2021/07/21/4","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://curl.se/docs/CVE-2021-22898.html","https://github.com/curl/curl/commit/39ce47f219b09c380b81f89fe54ac586c8db6bde","https://hackerone.com/reports/1176461","https://lists.apache.org/thread.html/rc713534b10f9daeee2e0990239fa407e2118e4aa9e88a7041177497c%40%3Cissues.guacamole.apache.org%3E","https://lists.debian.org/debian-lts-announce/2021/08/msg00017.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRUCW2UVNYUDZF72DQLFQR4PJEC6CF7V/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/POOC3UV7V6L4CJ5KA2PTWTNUV5Y72T3Q/","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com//security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2021-22898.json"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22898","description":"curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-22898","versionConstraint":"< 7.64.0-4+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-22898","fix":{"state":"fixed","versions":["7.64.0-4+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22898","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22898","cwe":"CWE-909","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22898","date":"2026-10-08","epss":0.04507,"percentile":0.91268}],"risk":1.3746349999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-22898","description":"curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol."},"relatedVulnerabilities":[{"id":"CVE-2021-22898","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:P/I:N/A:N","metrics":{"baseScore":2.6,"impactScore":2.9,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-22898","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2021-22898","cwe":"CWE-909","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-22898","date":"2026-10-08","epss":0.04507,"percentile":0.91268}],"urls":["http://www.openwall.com/lists/oss-security/2021/07/21/4","https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf","https://curl.se/docs/CVE-2021-22898.html","https://github.com/curl/curl/commit/39ce47f219b09c380b81f89fe54ac586c8db6bde","https://hackerone.com/reports/1176461","https://lists.apache.org/thread.html/rc713534b10f9daeee2e0990239fa407e2118e4aa9e88a7041177497c%40%3Cissues.guacamole.apache.org%3E","https://lists.debian.org/debian-lts-announce/2021/08/msg00017.html","https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FRUCW2UVNYUDZF72DQLFQR4PJEC6CF7V/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/POOC3UV7V6L4CJ5KA2PTWTNUV5Y72T3Q/","https://www.debian.org/security/2022/dsa-5197","https://www.oracle.com//security-alerts/cpujul2021.html","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2021-22898.json"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-22898","description":"curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-43552","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-43552","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-43552","date":"2026-10-08","epss":0.02511,"percentile":0.84298}],"risk":1.3684950000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-43552","description":"A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path."},"relatedVulnerabilities":[{"id":"CVE-2022-43552","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-43552","date":"2026-10-08","epss":0.02511,"percentile":0.84298}],"urls":["http://seclists.org/fulldisclosure/2023/Mar/17","https://hackerone.com/reports/1764858","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230214-0002/","https://support.apple.com/kb/HT213670"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-43552","description":"A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-43552","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-43552","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-43552","date":"2026-10-08","epss":0.02511,"percentile":0.84298}],"risk":1.3684950000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-43552","description":"A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path."},"relatedVulnerabilities":[{"id":"CVE-2022-43552","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-43552","date":"2026-10-08","epss":0.02511,"percentile":0.84298}],"urls":["http://seclists.org/fulldisclosure/2023/Mar/17","https://hackerone.com/reports/1764858","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230214-0002/","https://support.apple.com/kb/HT213670"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-43552","description":"A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-43552","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-43552","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-43552","date":"2026-10-08","epss":0.02511,"percentile":0.84298}],"risk":1.3684950000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-43552","description":"A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path."},"relatedVulnerabilities":[{"id":"CVE-2022-43552","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-43552","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-43552","date":"2026-10-08","epss":0.02511,"percentile":0.84298}],"urls":["http://seclists.org/fulldisclosure/2023/Mar/17","https://hackerone.com/reports/1764858","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230214-0002/","https://support.apple.com/kb/HT213670"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-43552","description":"A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.2.6-2+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-52425","versionConstraint":"< 2.2.6-2+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-52425","fix":{"state":"fixed","versions":["2.2.6-2+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.2.6-2+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-52425","cwe":"CWE-400","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-52425","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-52425","date":"2026-10-08","epss":0.01815,"percentile":0.7802}],"risk":1.36125,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-52425","description":"libexpat through 2.5.0 allows a denial of service (resource consumption) because many full reparsings are required in the case of a large token for which multiple buffer fills are needed."},"relatedVulnerabilities":[{"id":"CVE-2023-52425","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-52425","cwe":"CWE-400","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-52425","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-52425","date":"2026-10-08","epss":0.01815,"percentile":0.7802}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/20/5","https://github.com/libexpat/libexpat/pull/789","https://lists.debian.org/debian-lts-announce/2024/04/msg00006.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PNRIHC7DVVRAIWFRGV23Y6UZXFBXSQDB/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WNUBSGZFEZOBHJFTAD42SAN4ATW2VEMV/","https://security.netapp.com/advisory/ntap-20240614-0003/","https://lists.debian.org/debian-lts-announce/2024/09/msg00036.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PNRIHC7DVVRAIWFRGV23Y6UZXFBXSQDB/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-52425","description":"libexpat through 2.5.0 allows a denial of service (resource consumption) because many full reparsings are required in the case of a large token for which multiple buffer fills are needed."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_372"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21939","versionConstraint":"< 1.8.0_372||>= 1.9, < 8.0.372||>= 12, < 17.0.7||>= 18, < 20.0.1||>= 9, < 11.0.19 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21939","fix":{"state":"fixed","versions":["1.8.0_372","8.0.372","11.0.19","17.0.7","20.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_372"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.372"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"20.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.19"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-21939","date":"2026-10-08","epss":0.02495,"percentile":0.84196}],"risk":1.2849249999999999,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230427-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5430","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpuapr2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-04-18"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21939","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing).  Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and  22.3.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"dd6e91cb036cd97c","cpes":["cpe:2.3:a:libncursesw6:libncursesw6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libncursesw6","purl":"pkg:deb/debian/libncursesw6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libncursesw6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-19189","versionConstraint":"< 6.1+20181013-2+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-19189","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-19189","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-19189","date":"2026-10-08","epss":0.02234,"percentile":0.82244}],"risk":1.2845499999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-19189","description":"Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command."},"relatedVulnerabilities":[{"id":"CVE-2020-19189","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-19189","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-19189","date":"2026-10-08","epss":0.02234,"percentile":0.82244}],"urls":["http://seclists.org/fulldisclosure/2023/Dec/10","http://seclists.org/fulldisclosure/2023/Dec/11","http://seclists.org/fulldisclosure/2023/Dec/9","https://github.com/zjuchenyuan/fuzzpoc/blob/master/infotocap_poc5.md","https://lists.debian.org/debian-lts-announce/2023/09/msg00033.html","https://security.netapp.com/advisory/ntap-20231006-0005/","https://support.apple.com/kb/HT214036","https://support.apple.com/kb/HT214037","https://support.apple.com/kb/HT214038"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-19189","description":"Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command."}]},{"artifact":{"id":"32ae0288f40dd7ec","cpes":["cpe:2.3:a:libtinfo6:libtinfo6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libtinfo6","purl":"pkg:deb/debian/libtinfo6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libtinfo6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-19189","versionConstraint":"< 6.1+20181013-2+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-19189","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-19189","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-19189","date":"2026-10-08","epss":0.02234,"percentile":0.82244}],"risk":1.2845499999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-19189","description":"Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command."},"relatedVulnerabilities":[{"id":"CVE-2020-19189","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-19189","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-19189","date":"2026-10-08","epss":0.02234,"percentile":0.82244}],"urls":["http://seclists.org/fulldisclosure/2023/Dec/10","http://seclists.org/fulldisclosure/2023/Dec/11","http://seclists.org/fulldisclosure/2023/Dec/9","https://github.com/zjuchenyuan/fuzzpoc/blob/master/infotocap_poc5.md","https://lists.debian.org/debian-lts-announce/2023/09/msg00033.html","https://security.netapp.com/advisory/ntap-20231006-0005/","https://support.apple.com/kb/HT214036","https://support.apple.com/kb/HT214037","https://support.apple.com/kb/HT214038"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-19189","description":"Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command."}]},{"artifact":{"id":"a8f604f9c5ac808b","cpes":["cpe:2.3:a:ncurses-base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-base","purl":"pkg:deb/debian/ncurses-base@6.1%2B20181013-2%2Bdeb10u2?arch=all&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-19189","versionConstraint":"< 6.1+20181013-2+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-19189","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-19189","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-19189","date":"2026-10-08","epss":0.02234,"percentile":0.82244}],"risk":1.2845499999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-19189","description":"Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command."},"relatedVulnerabilities":[{"id":"CVE-2020-19189","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-19189","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-19189","date":"2026-10-08","epss":0.02234,"percentile":0.82244}],"urls":["http://seclists.org/fulldisclosure/2023/Dec/10","http://seclists.org/fulldisclosure/2023/Dec/11","http://seclists.org/fulldisclosure/2023/Dec/9","https://github.com/zjuchenyuan/fuzzpoc/blob/master/infotocap_poc5.md","https://lists.debian.org/debian-lts-announce/2023/09/msg00033.html","https://security.netapp.com/advisory/ntap-20231006-0005/","https://support.apple.com/kb/HT214036","https://support.apple.com/kb/HT214037","https://support.apple.com/kb/HT214038"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-19189","description":"Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command."}]},{"artifact":{"id":"9954ccfd24462fc8","cpes":["cpe:2.3:a:ncurses-bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-bin","purl":"pkg:deb/debian/ncurses-bin@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-19189","versionConstraint":"< 6.1+20181013-2+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-19189","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-19189","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-19189","date":"2026-10-08","epss":0.02234,"percentile":0.82244}],"risk":1.2845499999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-19189","description":"Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command."},"relatedVulnerabilities":[{"id":"CVE-2020-19189","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-19189","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-19189","date":"2026-10-08","epss":0.02234,"percentile":0.82244}],"urls":["http://seclists.org/fulldisclosure/2023/Dec/10","http://seclists.org/fulldisclosure/2023/Dec/11","http://seclists.org/fulldisclosure/2023/Dec/9","https://github.com/zjuchenyuan/fuzzpoc/blob/master/infotocap_poc5.md","https://lists.debian.org/debian-lts-announce/2023/09/msg00033.html","https://security.netapp.com/advisory/ntap-20231006-0005/","https://support.apple.com/kb/HT214036","https://support.apple.com/kb/HT214037","https://support.apple.com/kb/HT214038"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-19189","description":"Buffer Overflow vulnerability in postprocess_terminfo function in tinfo/parse_entry.c:997 in ncurses 6.1 allows remote attackers to cause a denial of service via crafted command."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_331"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21434","versionConstraint":"< 1.7.0_341||>= 1.8, < 1.8.0_331||>= 1.9, < 7.0.341||>= 12, < 17.0.3||>= 18, < 18.0.1||>= 8, < 8.0.331||>= 9, < 11.0.15 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21434","fix":{"state":"fixed","versions":["1.7.0_341","7.0.341","1.8.0_331","8.0.331","11.0.15","17.0.3","18.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_341"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_331"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.341"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.3"},{"date":"2025-09-04","kind":"first-observed","version":"18.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.331"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.15"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2022-21434","date":"2026-10-08","epss":0.02492,"percentile":0.8418}],"risk":1.2646900000000003,"urls":["https://lists.debian.org/debian-lts-announce/2022/05/msg00017.html","https://security.netapp.com/advisory/ntap-20220429-0006/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2022/dsa-5128","https://www.debian.org/security/2022/dsa-5131","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21434","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u331, 8u321, 11.0.14, 17.0.2, 18; Oracle GraalVM Enterprise Edition: 20.3.5, 21.3.1 and 22.0.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"11266fe42a39668b","cpes":["cpe:2.3:a:libgssapi-krb5-2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5-2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgssapi-krb5-2","purl":"pkg:deb/debian/libgssapi-krb5-2@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgssapi-krb5-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libgssapi-krb5-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37750","versionConstraint":"< 1.17-3+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37750","fix":{"state":"fixed","versions":["1.17-3+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37750","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37750","date":"2026-10-08","epss":0.02166,"percentile":0.81699}],"risk":1.24545,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37750","description":"The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field."},"relatedVulnerabilities":[{"id":"CVE-2021-37750","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:N/I:N/A:P","metrics":{"baseScore":4,"impactScore":2.9,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37750","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37750","date":"2026-10-08","epss":0.02166,"percentile":0.81699}],"urls":["https://github.com/krb5/krb5/commit/d775c95af7606a51bf79547a94fa52ddd1cb7f49","https://github.com/krb5/krb5/releases","https://lists.debian.org/debian-lts-announce/2021/09/msg00019.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MFCLW7D46E4VCREKKH453T5DA4XOLHU2/","https://security.netapp.com/advisory/ntap-20210923-0002/","https://web.mit.edu/kerberos/advisories/","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.starwindsoftware.com/security/sw-20220817-0004/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37750","description":"The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field."}]},{"artifact":{"id":"ccf5186a66741b60","cpes":["cpe:2.3:a:libk5crypto3:libk5crypto3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libk5crypto3","purl":"pkg:deb/debian/libk5crypto3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libk5crypto3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libk5crypto3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37750","versionConstraint":"< 1.17-3+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37750","fix":{"state":"fixed","versions":["1.17-3+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37750","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37750","date":"2026-10-08","epss":0.02166,"percentile":0.81699}],"risk":1.24545,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37750","description":"The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field."},"relatedVulnerabilities":[{"id":"CVE-2021-37750","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:N/I:N/A:P","metrics":{"baseScore":4,"impactScore":2.9,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37750","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37750","date":"2026-10-08","epss":0.02166,"percentile":0.81699}],"urls":["https://github.com/krb5/krb5/commit/d775c95af7606a51bf79547a94fa52ddd1cb7f49","https://github.com/krb5/krb5/releases","https://lists.debian.org/debian-lts-announce/2021/09/msg00019.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MFCLW7D46E4VCREKKH453T5DA4XOLHU2/","https://security.netapp.com/advisory/ntap-20210923-0002/","https://web.mit.edu/kerberos/advisories/","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.starwindsoftware.com/security/sw-20220817-0004/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37750","description":"The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field."}]},{"artifact":{"id":"9d7689846a6700a5","cpes":["cpe:2.3:a:libkrb5-3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5-3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5-3","purl":"pkg:deb/debian/libkrb5-3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5-3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5-3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37750","versionConstraint":"< 1.17-3+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37750","fix":{"state":"fixed","versions":["1.17-3+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37750","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37750","date":"2026-10-08","epss":0.02166,"percentile":0.81699}],"risk":1.24545,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37750","description":"The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field."},"relatedVulnerabilities":[{"id":"CVE-2021-37750","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:N/I:N/A:P","metrics":{"baseScore":4,"impactScore":2.9,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37750","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37750","date":"2026-10-08","epss":0.02166,"percentile":0.81699}],"urls":["https://github.com/krb5/krb5/commit/d775c95af7606a51bf79547a94fa52ddd1cb7f49","https://github.com/krb5/krb5/releases","https://lists.debian.org/debian-lts-announce/2021/09/msg00019.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MFCLW7D46E4VCREKKH453T5DA4XOLHU2/","https://security.netapp.com/advisory/ntap-20210923-0002/","https://web.mit.edu/kerberos/advisories/","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.starwindsoftware.com/security/sw-20220817-0004/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37750","description":"The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field."}]},{"artifact":{"id":"a14f851bc531224e","cpes":["cpe:2.3:a:libkrb5support0:libkrb5support0:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5support0","purl":"pkg:deb/debian/libkrb5support0@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5support0/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5support0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.17-3+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37750","versionConstraint":"< 1.17-3+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37750","fix":{"state":"fixed","versions":["1.17-3+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.17-3+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37750","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37750","date":"2026-10-08","epss":0.02166,"percentile":0.81699}],"risk":1.24545,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37750","description":"The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field."},"relatedVulnerabilities":[{"id":"CVE-2021-37750","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:N/I:N/A:P","metrics":{"baseScore":4,"impactScore":2.9,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37750","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37750","date":"2026-10-08","epss":0.02166,"percentile":0.81699}],"urls":["https://github.com/krb5/krb5/commit/d775c95af7606a51bf79547a94fa52ddd1cb7f49","https://github.com/krb5/krb5/releases","https://lists.debian.org/debian-lts-announce/2021/09/msg00019.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MFCLW7D46E4VCREKKH453T5DA4XOLHU2/","https://security.netapp.com/advisory/ntap-20210923-0002/","https://web.mit.edu/kerberos/advisories/","https://www.oracle.com/security-alerts/cpujul2022.html","https://www.starwindsoftware.com/security/sw-20220817-0004/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37750","description":"The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field."}]},{"artifact":{"id":"392700db1d57bb1a","cpes":["cpe:2.3:a:libx11-6:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11-6:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_6:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_6:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*"],"name":"libx11-6","purl":"pkg:deb/debian/libx11-6@2%3A1.6.7-1%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=libx11","type":"deb","version":"2:1.6.7-1+deb10u2","language":"","licenses":["BSD-1-Clause","HPND","HPND-sell-variant","MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libx11-6/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libx11-6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-6:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"libx11"}]},"matchDetails":[{"fix":{"suggestedVersion":"2:1.6.7-1+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-3138","versionConstraint":"< 2:1.6.7-1+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libx11","version":"2:1.6.7-1+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-3138","fix":{"state":"fixed","versions":["2:1.6.7-1+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2:1.6.7-1+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3138","cwe":"CWE-119","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-3138","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3138","date":"2026-10-08","epss":0.01656,"percentile":0.75879}],"risk":1.2419999999999998,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-3138","description":"A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not check that the values provided for the Request, Event, or Error IDs are within the bounds of the arrays that those functions write to, using those IDs as array indexes. They trust that they were called with values provided by an Xserver adhering to the bounds specified in the X11 protocol, as all X servers provided by X.Org do. As the protocol only specifies a single byte for these values, an out-of-bounds value provided by a malicious server (or a malicious proxy-in-the-middle) can only overwrite other portions of the Display structure and not write outside the bounds of the Display structure itself, possibly causing the client to crash with this memory corruption."},"relatedVulnerabilities":[{"id":"CVE-2023-3138","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3138","cwe":"CWE-119","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-3138","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3138","date":"2026-10-08","epss":0.01656,"percentile":0.75879}],"urls":["https://access.redhat.com/security/cve/CVE-2023-3138","https://gitlab.freedesktop.org/xorg/lib/libx11/-/commit/304a654a0d57bf0f00d8998185f0360332cfa36c","https://lists.x.org/archives/xorg-announce/2023-June/003406.html","https://lists.x.org/archives/xorg-announce/2023-June/003407.html","https://security.netapp.com/advisory/ntap-20231208-0008/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-3138","description":"A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not check that the values provided for the Request, Event, or Error IDs are within the bounds of the arrays that those functions write to, using those IDs as array indexes. They trust that they were called with values provided by an Xserver adhering to the bounds specified in the X11 protocol, as all X servers provided by X.Org do. As the protocol only specifies a single byte for these values, an out-of-bounds value provided by a malicious server (or a malicious proxy-in-the-middle) can only overwrite other portions of the Display structure and not write outside the bounds of the Display structure itself, possibly causing the client to crash with this memory corruption."}]},{"artifact":{"id":"48f4592c45be3ca5","cpes":["cpe:2.3:a:libx11-data:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11-data:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_data:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_data:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*"],"name":"libx11-data","purl":"pkg:deb/debian/libx11-data@2%3A1.6.7-1%2Bdeb10u2?arch=all&distro=debian-10.10&upstream=libx11","type":"deb","version":"2:1.6.7-1+deb10u2","language":"","licenses":["BSD-1-Clause","HPND","HPND-sell-variant","MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libx11-data/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libx11-data/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-data.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-data.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-data.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-data.list"}],"upstreams":[{"name":"libx11"}]},"matchDetails":[{"fix":{"suggestedVersion":"2:1.6.7-1+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-3138","versionConstraint":"< 2:1.6.7-1+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libx11","version":"2:1.6.7-1+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-3138","fix":{"state":"fixed","versions":["2:1.6.7-1+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2:1.6.7-1+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3138","cwe":"CWE-119","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-3138","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3138","date":"2026-10-08","epss":0.01656,"percentile":0.75879}],"risk":1.2419999999999998,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-3138","description":"A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not check that the values provided for the Request, Event, or Error IDs are within the bounds of the arrays that those functions write to, using those IDs as array indexes. They trust that they were called with values provided by an Xserver adhering to the bounds specified in the X11 protocol, as all X servers provided by X.Org do. As the protocol only specifies a single byte for these values, an out-of-bounds value provided by a malicious server (or a malicious proxy-in-the-middle) can only overwrite other portions of the Display structure and not write outside the bounds of the Display structure itself, possibly causing the client to crash with this memory corruption."},"relatedVulnerabilities":[{"id":"CVE-2023-3138","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-3138","cwe":"CWE-119","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-3138","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-3138","date":"2026-10-08","epss":0.01656,"percentile":0.75879}],"urls":["https://access.redhat.com/security/cve/CVE-2023-3138","https://gitlab.freedesktop.org/xorg/lib/libx11/-/commit/304a654a0d57bf0f00d8998185f0360332cfa36c","https://lists.x.org/archives/xorg-announce/2023-June/003406.html","https://lists.x.org/archives/xorg-announce/2023-June/003407.html","https://security.netapp.com/advisory/ntap-20231208-0008/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-3138","description":"A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not check that the values provided for the Request, Event, or Error IDs are within the bounds of the arrays that those functions write to, using those IDs as array indexes. They trust that they were called with values provided by an Xserver adhering to the bounds specified in the X11 protocol, as all X servers provided by X.Org do. As the protocol only specifies a single byte for these values, an out-of-bounds value provided by a malicious server (or a malicious proxy-in-the-middle) can only overwrite other portions of the Display structure and not write outside the bounds of the Display structure itself, possibly causing the client to crash with this memory corruption."}]},{"artifact":{"id":"848b1948f834d7ce","cpes":["cpe:2.3:a:libgnutls30:libgnutls30:3.6.7-4\\+deb10u7:*:*:*:*:*:*:*"],"name":"libgnutls30","purl":"pkg:deb/debian/libgnutls30@3.6.7-4%2Bdeb10u7?arch=amd64&distro=debian-10.10&upstream=gnutls28","type":"deb","version":"3.6.7-4+deb10u7","language":"","licenses":["sha256:d35f0abecc61a3676965c20cf13a44815b05d9b4a68985fa1809b13c2aff9090"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgnutls30/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgnutls30/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gnutls28"}]},"matchDetails":[{"fix":{"suggestedVersion":"3.6.7-4+deb10u12"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-0553","versionConstraint":"< 3.6.7-4+deb10u12 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gnutls28","version":"3.6.7-4+deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-0553","fix":{"state":"fixed","versions":["3.6.7-4+deb10u12"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"3.6.7-4+deb10u12"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-0553","cwe":"CWE-203","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2024-0553","cwe":"CWE-203","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-0553","date":"2026-10-08","epss":0.01614,"percentile":0.75252}],"risk":1.2105000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-0553","description":"A vulnerability was found in GnuTLS. The response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from the response times of ciphertexts with correct PKCS#1 v1.5 padding. This issue may allow a remote attacker to perform a timing side-channel attack in the RSA-PSK key exchange, potentially leading to the leakage of sensitive data. CVE-2024-0553 is designated as an incomplete resolution for CVE-2023-5981."},"relatedVulnerabilities":[{"id":"CVE-2024-0553","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-0553","cwe":"CWE-203","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2024-0553","cwe":"CWE-203","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-0553","date":"2026-10-08","epss":0.01614,"percentile":0.75252}],"urls":["https://access.redhat.com/errata/RHSA-2024:0533","https://access.redhat.com/errata/RHSA-2024:0627","https://access.redhat.com/errata/RHSA-2024:0796","https://access.redhat.com/errata/RHSA-2024:1082","https://access.redhat.com/errata/RHSA-2024:1108","https://access.redhat.com/errata/RHSA-2024:1383","https://access.redhat.com/errata/RHSA-2024:2094","https://access.redhat.com/security/cve/CVE-2024-0553","https://bugzilla.redhat.com/show_bug.cgi?id=2258412","https://gitlab.com/gnutls/gnutls/-/issues/1522","https://lists.gnupg.org/pipermail/gnutls-help/2024-January/004841.html","http://www.openwall.com/lists/oss-security/2024/01/19/3","https://lists.debian.org/debian-lts-announce/2024/02/msg00010.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7ZEIOLORQ7N6WRPFXZSYDL2MC4LP7VFV/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GNXKVR5YNUEBNHAHM5GSYKBZX4W2HMN2/","https://security.netapp.com/advisory/ntap-20240202-0011/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-0553","description":"A vulnerability was found in GnuTLS. The response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from the response times of ciphertexts with correct PKCS#1 v1.5 padding. This issue may allow a remote attacker to perform a timing side-channel attack in the RSA-PSK key exchange, potentially leading to the leakage of sensitive data. CVE-2024-0553 is designated as an incomplete resolution for CVE-2023-5981."}]},{"artifact":{"id":"7f3e906f906bfb14","cpes":["cpe:2.3:a:libperl5.28:libperl5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*"],"name":"libperl5.28","purl":"pkg:deb/debian/libperl5.28@5.28.1-6%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=perl","type":"deb","version":"5.28.1-6+deb10u1","language":"","licenses":["Artistic","Artistic-2","Artistic-dist","BSD-3-clause","BSD-3-clause-GENERIC","BSD-3-clause-with-weird-numbering","BSD-4-clause-POWERDOG","BZIP","DONT-CHANGE-THE-GPL","Expat","GPL-1","GPL-1+","GPL-2","GPL-2+","GPL-3+-WITH-BISON-EXCEPTION","HSIEH-BSD","HSIEH-DERIVATIVE","LGPL-2.1","REGCOMP","REGCOMP,","RRA-KEEP-THIS-NOTICE","S2P","SDBM-PUBLIC-DOMAIN","TEXT-TABS","Unicode","ZLIB"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libperl5.28/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libperl5.28/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libperl5.28:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libperl5.28:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"perl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-31484","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"perl","version":"5.28.1-6+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-31484","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-31484","date":"2026-10-08","epss":0.01548,"percentile":0.7429}],"risk":1.20744,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-31484","description":"CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS."},"relatedVulnerabilities":[{"id":"CVE-2023-31484","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-31484","date":"2026-10-08","epss":0.01548,"percentile":0.7429}],"urls":["http://www.openwall.com/lists/oss-security/2023/04/29/1","http://www.openwall.com/lists/oss-security/2023/05/03/3","http://www.openwall.com/lists/oss-security/2023/05/03/5","http://www.openwall.com/lists/oss-security/2023/05/07/2","https://blog.hackeriet.no/perl-http-tiny-insecure-tls-default-affects-cpan-modules/","https://github.com/andk/cpanpm/pull/175","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BM6UW55CNFUTNGD5ZRKGUKKKFDJGMFHL/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LEGCEOKFJVBJ2QQ6S2H4NAEWTUERC7SB/","https://metacpan.org/dist/CPAN/changes","https://security.netapp.com/advisory/ntap-20240621-0007/","https://www.openwall.com/lists/oss-security/2023/04/18/14","https://lists.debian.org/debian-lts-announce/2024/10/msg00017.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-31484","description":"CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS."}]},{"artifact":{"id":"0699a5bd374035aa","cpes":["cpe:2.3:a:perl:perl:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*"],"name":"perl","purl":"pkg:deb/debian/perl@5.28.1-6%2Bdeb10u1?arch=amd64&distro=debian-10.10","type":"deb","version":"5.28.1-6+deb10u1","language":"","licenses":["Artistic","Artistic-2","Artistic-dist","BSD-3-clause","BSD-3-clause-GENERIC","BSD-3-clause-with-weird-numbering","BSD-4-clause-POWERDOG","BZIP","DONT-CHANGE-THE-GPL","Expat","GPL-1","GPL-1+","GPL-2","GPL-2+","GPL-3+-WITH-BISON-EXCEPTION","HSIEH-BSD","HSIEH-DERIVATIVE","LGPL-2.1","REGCOMP","REGCOMP,","RRA-KEEP-THIS-NOTICE","S2P","SDBM-PUBLIC-DOMAIN","TEXT-TABS","Unicode","ZLIB"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/var/lib/dpkg/info/perl.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/usr/share/doc/perl/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/perl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.list"},{"path":"/var/lib/dpkg/info/perl.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.postinst"},{"path":"/var/lib/dpkg/info/perl.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.postrm"},{"path":"/var/lib/dpkg/info/perl.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.preinst"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-31484","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"perl","version":"5.28.1-6+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-31484","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-31484","date":"2026-10-08","epss":0.01548,"percentile":0.7429}],"risk":1.20744,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-31484","description":"CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS."},"relatedVulnerabilities":[{"id":"CVE-2023-31484","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-31484","date":"2026-10-08","epss":0.01548,"percentile":0.7429}],"urls":["http://www.openwall.com/lists/oss-security/2023/04/29/1","http://www.openwall.com/lists/oss-security/2023/05/03/3","http://www.openwall.com/lists/oss-security/2023/05/03/5","http://www.openwall.com/lists/oss-security/2023/05/07/2","https://blog.hackeriet.no/perl-http-tiny-insecure-tls-default-affects-cpan-modules/","https://github.com/andk/cpanpm/pull/175","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BM6UW55CNFUTNGD5ZRKGUKKKFDJGMFHL/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LEGCEOKFJVBJ2QQ6S2H4NAEWTUERC7SB/","https://metacpan.org/dist/CPAN/changes","https://security.netapp.com/advisory/ntap-20240621-0007/","https://www.openwall.com/lists/oss-security/2023/04/18/14","https://lists.debian.org/debian-lts-announce/2024/10/msg00017.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-31484","description":"CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS."}]},{"artifact":{"id":"b9e426935a3c0ab8","cpes":["cpe:2.3:a:perl-base:perl-base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl-base:perl_base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_base:perl-base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_base:perl_base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl:perl-base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl:perl_base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*"],"name":"perl-base","purl":"pkg:deb/debian/perl-base@5.28.1-6%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=perl","type":"deb","version":"5.28.1-6+deb10u1","language":"","licenses":["Artistic","Artistic-2","Artistic-dist","BSD-3-clause","BSD-3-clause-GENERIC","BSD-3-clause-with-weird-numbering","BSD-4-clause-POWERDOG","BZIP","DONT-CHANGE-THE-GPL","Expat","GPL-1","GPL-1+","GPL-2","GPL-2+","GPL-3+-WITH-BISON-EXCEPTION","HSIEH-BSD","HSIEH-DERIVATIVE","LGPL-2.1","REGCOMP","REGCOMP,","RRA-KEEP-THIS-NOTICE","S2P","SDBM-PUBLIC-DOMAIN","TEXT-TABS","Unicode","ZLIB"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/perl/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/perl-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl-base.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/perl-base.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl-base.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/perl-base.list"}],"upstreams":[{"name":"perl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-31484","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"perl","version":"5.28.1-6+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-31484","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-31484","date":"2026-10-08","epss":0.01548,"percentile":0.7429}],"risk":1.20744,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-31484","description":"CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS."},"relatedVulnerabilities":[{"id":"CVE-2023-31484","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-31484","date":"2026-10-08","epss":0.01548,"percentile":0.7429}],"urls":["http://www.openwall.com/lists/oss-security/2023/04/29/1","http://www.openwall.com/lists/oss-security/2023/05/03/3","http://www.openwall.com/lists/oss-security/2023/05/03/5","http://www.openwall.com/lists/oss-security/2023/05/07/2","https://blog.hackeriet.no/perl-http-tiny-insecure-tls-default-affects-cpan-modules/","https://github.com/andk/cpanpm/pull/175","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BM6UW55CNFUTNGD5ZRKGUKKKFDJGMFHL/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LEGCEOKFJVBJ2QQ6S2H4NAEWTUERC7SB/","https://metacpan.org/dist/CPAN/changes","https://security.netapp.com/advisory/ntap-20240621-0007/","https://www.openwall.com/lists/oss-security/2023/04/18/14","https://lists.debian.org/debian-lts-announce/2024/10/msg00017.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-31484","description":"CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS."}]},{"artifact":{"id":"bcaa862768e40a61","cpes":["cpe:2.3:a:perl-modules-5.28:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl-modules-5.28:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_modules_5.28:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_modules_5.28:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl-modules:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl-modules:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_modules:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_modules:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*"],"name":"perl-modules-5.28","purl":"pkg:deb/debian/perl-modules-5.28@5.28.1-6%2Bdeb10u1?arch=all&distro=debian-10.10&upstream=perl","type":"deb","version":"5.28.1-6+deb10u1","language":"","licenses":["Artistic","Artistic-2","Artistic-dist","BSD-3-clause","BSD-3-clause-GENERIC","BSD-3-clause-with-weird-numbering","BSD-4-clause-POWERDOG","BZIP","DONT-CHANGE-THE-GPL","Expat","GPL-1","GPL-1+","GPL-2","GPL-2+","GPL-3+-WITH-BISON-EXCEPTION","HSIEH-BSD","HSIEH-DERIVATIVE","LGPL-2.1","REGCOMP","REGCOMP,","RRA-KEEP-THIS-NOTICE","S2P","SDBM-PUBLIC-DOMAIN","TEXT-TABS","Unicode","ZLIB"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/perl-modules-5.28/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/perl-modules-5.28/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl-modules-5.28.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl-modules-5.28.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl-modules-5.28.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl-modules-5.28.list"}],"upstreams":[{"name":"perl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-31484","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"perl","version":"5.28.1-6+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-31484","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-31484","date":"2026-10-08","epss":0.01548,"percentile":0.7429}],"risk":1.20744,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-31484","description":"CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS."},"relatedVulnerabilities":[{"id":"CVE-2023-31484","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-31484","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-31484","date":"2026-10-08","epss":0.01548,"percentile":0.7429}],"urls":["http://www.openwall.com/lists/oss-security/2023/04/29/1","http://www.openwall.com/lists/oss-security/2023/05/03/3","http://www.openwall.com/lists/oss-security/2023/05/03/5","http://www.openwall.com/lists/oss-security/2023/05/07/2","https://blog.hackeriet.no/perl-http-tiny-insecure-tls-default-affects-cpan-modules/","https://github.com/andk/cpanpm/pull/175","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BM6UW55CNFUTNGD5ZRKGUKKKFDJGMFHL/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LEGCEOKFJVBJ2QQ6S2H4NAEWTUERC7SB/","https://metacpan.org/dist/CPAN/changes","https://security.netapp.com/advisory/ntap-20240621-0007/","https://www.openwall.com/lists/oss-security/2023/04/18/14","https://lists.debian.org/debian-lts-announce/2024/10/msg00017.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-31484","description":"CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_351"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21628","versionConstraint":"< 1.8.0_351||>= 1.9, < 8.0.351||>= 12, < 17.0.5||>= 18, < 19.0.1||>= 9, < 11.0.17 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21628","fix":{"state":"fixed","versions":["1.8.0_351","8.0.351","11.0.17","17.0.5","19.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_351"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.351"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.5"},{"date":"2025-09-04","kind":"first-observed","version":"19.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.17"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2022-21628","date":"2026-10-08","epss":0.02307,"percentile":0.8283}],"risk":1.188105,"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/37QDWJBGEPP65X43NXQTXQ7KASLUHON6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3ARF4QF4N3X5GSFHXUBWARGLISGKJ33R/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3QLQ7OD33W6LT3HWI7VYDFFJLV75Y73K/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EXSBV3W6EP6B7XJ63Z2FPVBH6HAPGJ5T/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HNGMDNIHAA73BEX6XPA2IMXJSGOKKYE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PB3CIGOFG7CENUVVE4FFZT2HI5FO77XU/","https://security.gentoo.org/glsa/202401-25","https://security.netapp.com/advisory/ntap-20221028-0012/","https://www.oracle.com/security-alerts/cpuoct2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21628","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 20.3.7, 21.3.3 and 22.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"88bd54add991dd60","cpes":["cpe:2.3:a:libpcre2-8-0:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8-0:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8_0:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8_0:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2-8:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2_8:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2:libpcre2-8-0:10.32-5:*:*:*:*:*:*:*","cpe:2.3:a:libpcre2:libpcre2_8_0:10.32-5:*:*:*:*:*:*:*"],"name":"libpcre2-8-0","purl":"pkg:deb/debian/libpcre2-8-0@10.32-5?arch=amd64&distro=debian-10.10&upstream=pcre2","type":"deb","version":"10.32-5","language":"","licenses":["sha256:f65dae37239e4d61a1bdeaf2ded76b8569d012a054aa042233b78615e7a83210"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libpcre2-8-0/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libpcre2-8-0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libpcre2-8-0:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libpcre2-8-0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"pcre2"}]},"matchDetails":[{"fix":{"suggestedVersion":"10.32-5+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-20454","versionConstraint":"< 10.32-5+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"pcre2","version":"10.32-5"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-20454","fix":{"state":"fixed","versions":["10.32-5+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"10.32-5+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-20454","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-20454","date":"2026-10-08","epss":0.01561,"percentile":0.74488}],"risk":1.1707500000000002,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-20454","description":"An out-of-bounds read was discovered in PCRE before 10.34 when the pattern \\X is JIT compiled and used to match specially crafted subjects in non-UTF mode. Applications that use PCRE to parse untrusted input may be vulnerable to this flaw, which would allow an attacker to crash the application. The flaw occurs in do_extuni_no_utf in pcre2_jit_compile.c."},"relatedVulnerabilities":[{"id":"CVE-2019-20454","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"cve@mitre.org","vector":"CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.1,"impactScore":3.6,"exploitabilityScore":1.5},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-20454","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-20454","date":"2026-10-08","epss":0.01561,"percentile":0.74488}],"urls":["https://bugs.exim.org/show_bug.cgi?id=2421","https://bugs.php.net/bug.php?id=78338","https://bugzilla.redhat.com/show_bug.cgi?id=1735494","https://lists.debian.org/debian-lts-announce/2023/03/msg00014.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OQRAHYHLRNMBTPR3KXVM27NSZP3KTOPI/","https://security.gentoo.org/glsa/202006-16","https://vcs.pcre.org/pcre2?view=revision&revision=1092"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-20454","description":"An out-of-bounds read was discovered in PCRE before 10.34 when the pattern \\X is JIT compiled and used to match specially crafted subjects in non-UTF mode. Applications that use PCRE to parse untrusted input may be vulnerable to this flaw, which would allow an attacker to crash the application. The flaw occurs in do_extuni_no_utf in pcre2_jit_compile.c."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_311"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2021-35588","versionConstraint":"< 1.7.0_321||>= 1.8, < 1.8.0_311||>= 7, < 7.0.321||>= 8, < 8.0.311 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2021-35588","fix":{"state":"fixed","versions":["1.7.0_321","7.0.321","1.8.0_311","8.0.311"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.7.0_321"},{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_311"},{"date":"2025-09-04","kind":"first-observed","version":"7.0.321"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.311"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.6,"impactScore":2.9,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.1,"impactScore":1.5,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2021-35588","date":"2026-10-08","epss":0.03868,"percentile":0.89921}],"risk":1.1475066666666665,"urls":["https://lists.debian.org/debian-lts-announce/2021/11/msg00008.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6EUURAQOIJYFZHQ7DFZCO6IKDPIAWTNK/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GTYZWIXDFUV2H57YQZJWPOD3BC3I3EIQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GXTUWAWXVU37GRNIG4TPMA47THO6VAE6/","https://security.gentoo.org/glsa/202209-05","https://security.netapp.com/advisory/ntap-20211022-0004/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.oracle.com/security-alerts/cpuoct2021.html"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-35588","description":"Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Java SE: 7u311, 8u301; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 3.1 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6aee6bfbd151e227","cpes":["cpe:2.3:a:e2fsprogs:e2fsprogs:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*"],"name":"e2fsprogs","purl":"pkg:deb/debian/e2fsprogs@1.44.5-1%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1.44.5-1+deb10u3","language":"","licenses":["sha256:b7b391571e7253d4cf607e33e3b463895768fad264471e7774882974f834faa1"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/e2fsprogs/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/e2fsprogs/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/e2fsprogs.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/e2fsprogs.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/e2fsprogs.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/e2fsprogs.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/e2fsprogs.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/e2fsprogs.list"},{"path":"/var/lib/dpkg/info/e2fsprogs.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/e2fsprogs.postinst"},{"path":"/var/lib/dpkg/info/e2fsprogs.preinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/e2fsprogs.preinst"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-1304","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"e2fsprogs","version":"1.44.5-1+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1304","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1304","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1304","date":"2026-10-08","epss":0.01393,"percentile":0.71541}],"risk":1.065645,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1304","description":"An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem."},"relatedVulnerabilities":[{"id":"CVE-2022-1304","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1304","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1304","date":"2026-10-08","epss":0.01393,"percentile":0.71541}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=2069726","https://lists.debian.org/debian-lts-announce/2024/10/msg00001.html","https://security.netapp.com/advisory/ntap-20241122-0010/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1304","description":"An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem."}]},{"artifact":{"id":"3ae0e410cfe581ff","cpes":["cpe:2.3:a:libcom-err2:libcom-err2:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:libcom-err2:libcom_err2:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:libcom_err2:libcom-err2:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:libcom_err2:libcom_err2:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:libcom:libcom-err2:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:libcom:libcom_err2:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*"],"name":"libcom-err2","purl":"pkg:deb/debian/libcom-err2@1.44.5-1%2Bdeb10u3?arch=amd64&distro=debian-10.10&upstream=e2fsprogs","type":"deb","version":"1.44.5-1+deb10u3","language":"","licenses":["sha256:9e3a4384b6d8d2358d44103f62bcd948328b3f8a63a1a6baa66abeb43302d581"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcom-err2/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libcom-err2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcom-err2:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libcom-err2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"e2fsprogs"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-1304","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"e2fsprogs","version":"1.44.5-1+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1304","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1304","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1304","date":"2026-10-08","epss":0.01393,"percentile":0.71541}],"risk":1.065645,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1304","description":"An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem."},"relatedVulnerabilities":[{"id":"CVE-2022-1304","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1304","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1304","date":"2026-10-08","epss":0.01393,"percentile":0.71541}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=2069726","https://lists.debian.org/debian-lts-announce/2024/10/msg00001.html","https://security.netapp.com/advisory/ntap-20241122-0010/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1304","description":"An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem."}]},{"artifact":{"id":"63adb4b675cdf113","cpes":["cpe:2.3:a:libext2fs2:libext2fs2:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*"],"name":"libext2fs2","purl":"pkg:deb/debian/libext2fs2@1.44.5-1%2Bdeb10u3?arch=amd64&distro=debian-10.10&upstream=e2fsprogs","type":"deb","version":"1.44.5-1+deb10u3","language":"","licenses":["sha256:b7b391571e7253d4cf607e33e3b463895768fad264471e7774882974f834faa1"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libext2fs2/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libext2fs2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libext2fs2:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libext2fs2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"e2fsprogs"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-1304","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"e2fsprogs","version":"1.44.5-1+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1304","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1304","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1304","date":"2026-10-08","epss":0.01393,"percentile":0.71541}],"risk":1.065645,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1304","description":"An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem."},"relatedVulnerabilities":[{"id":"CVE-2022-1304","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1304","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1304","date":"2026-10-08","epss":0.01393,"percentile":0.71541}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=2069726","https://lists.debian.org/debian-lts-announce/2024/10/msg00001.html","https://security.netapp.com/advisory/ntap-20241122-0010/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1304","description":"An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem."}]},{"artifact":{"id":"e493cfd6333d7432","cpes":["cpe:2.3:a:libss2:libss2:1.44.5-1\\+deb10u3:*:*:*:*:*:*:*"],"name":"libss2","purl":"pkg:deb/debian/libss2@1.44.5-1%2Bdeb10u3?arch=amd64&distro=debian-10.10&upstream=e2fsprogs","type":"deb","version":"1.44.5-1+deb10u3","language":"","licenses":["sha256:6f717a1464301a641ac17e7301f1a1b221da802e8edf8cf4bc963721d487b146"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libss2/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libss2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libss2:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libss2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"e2fsprogs"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-1304","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"e2fsprogs","version":"1.44.5-1+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-1304","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1304","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1304","date":"2026-10-08","epss":0.01393,"percentile":0.71541}],"risk":1.065645,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-1304","description":"An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem."},"relatedVulnerabilities":[{"id":"CVE-2022-1304","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2022-1304","cwe":"CWE-125","type":"Secondary","source":"nvd@nist.gov"},{"cve":"CVE-2022-1304","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-1304","date":"2026-10-08","epss":0.01393,"percentile":0.71541}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=2069726","https://lists.debian.org/debian-lts-announce/2024/10/msg00001.html","https://security.netapp.com/advisory/ntap-20241122-0010/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-1304","description":"An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and possibly arbitrary code execution via a specially crafted filesystem."}]},{"artifact":{"id":"848b1948f834d7ce","cpes":["cpe:2.3:a:libgnutls30:libgnutls30:3.6.7-4\\+deb10u7:*:*:*:*:*:*:*"],"name":"libgnutls30","purl":"pkg:deb/debian/libgnutls30@3.6.7-4%2Bdeb10u7?arch=amd64&distro=debian-10.10&upstream=gnutls28","type":"deb","version":"3.6.7-4+deb10u7","language":"","licenses":["sha256:d35f0abecc61a3676965c20cf13a44815b05d9b4a68985fa1809b13c2aff9090"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgnutls30/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgnutls30/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gnutls28"}]},"matchDetails":[{"fix":{"suggestedVersion":"3.6.7-4+deb10u10"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-0361","versionConstraint":"< 3.6.7-4+deb10u10 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gnutls28","version":"3.6.7-4+deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0361","fix":{"state":"fixed","versions":["3.6.7-4+deb10u10"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"3.6.7-4+deb10u10"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0361","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0361","cwe":"CWE-203","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0361","date":"2026-10-08","epss":0.01415,"percentile":0.71933}],"risk":1.0541749999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0361","description":"A timing side-channel in the handling of RSA ClientKeyExchange messages was discovered in GnuTLS. This side-channel can be sufficient to recover the key encrypted in the RSA ciphertext across a network in a Bleichenbacher style attack. To achieve a successful decryption the attacker would need to send a large amount of specially crafted messages to the vulnerable server. By recovering the secret from the ClientKeyExchange message, the attacker would be able to decrypt the application data exchanged over that connection."},"relatedVulnerabilities":[{"id":"CVE-2023-0361","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0361","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0361","cwe":"CWE-203","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0361","date":"2026-10-08","epss":0.01415,"percentile":0.71933}],"urls":["https://access.redhat.com/security/cve/CVE-2023-0361","https://github.com/tlsfuzzer/tlsfuzzer/pull/679","https://gitlab.com/gnutls/gnutls/-/issues/1050","https://lists.debian.org/debian-lts-announce/2023/02/msg00015.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UFIA3X4IZ3CW7SRQ2UHNHNPMRIAWF2FI/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WS4KVDOG6QTALWHC2QE4Y7VPDRMLTRWQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z634YBXAJ5VLDI62IOPBVP5K6YFHAWCY/","https://security.netapp.com/advisory/ntap-20230324-0005/","https://security.netapp.com/advisory/ntap-20230725-0005/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0361","description":"A timing side-channel in the handling of RSA ClientKeyExchange messages was discovered in GnuTLS. This side-channel can be sufficient to recover the key encrypted in the RSA ciphertext across a network in a Bleichenbacher style attack. To achieve a successful decryption the attacker would need to send a large amount of specially crafted messages to the vulnerable server. By recovering the secret from the ClientKeyExchange message, the attacker would be able to decrypt the application data exchanged over that connection."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4813","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4813","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4813","date":"2026-10-08","epss":0.01926,"percentile":0.79336}],"risk":1.04967,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4813","description":"A flaw was found in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge."},"relatedVulnerabilities":[{"id":"CVE-2023-4813","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4813","date":"2026-10-08","epss":0.01926,"percentile":0.79336}],"urls":["https://access.redhat.com/errata/RHBA-2024:2413","https://access.redhat.com/errata/RHSA-2023:5453","https://access.redhat.com/errata/RHSA-2023:5455","https://access.redhat.com/errata/RHSA-2023:7409","https://access.redhat.com/security/cve/CVE-2023-4813","https://bugzilla.redhat.com/show_bug.cgi?id=2237798","http://www.openwall.com/lists/oss-security/2023/10/03/8","https://security.netapp.com/advisory/ntap-20231110-0003/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4813","description":"A flaw has been identified in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4813","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4813","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4813","date":"2026-10-08","epss":0.01926,"percentile":0.79336}],"risk":1.04967,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4813","description":"A flaw was found in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge."},"relatedVulnerabilities":[{"id":"CVE-2023-4813","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4813","date":"2026-10-08","epss":0.01926,"percentile":0.79336}],"urls":["https://access.redhat.com/errata/RHBA-2024:2413","https://access.redhat.com/errata/RHSA-2023:5453","https://access.redhat.com/errata/RHSA-2023:5455","https://access.redhat.com/errata/RHSA-2023:7409","https://access.redhat.com/security/cve/CVE-2023-4813","https://bugzilla.redhat.com/show_bug.cgi?id=2237798","http://www.openwall.com/lists/oss-security/2023/10/03/8","https://security.netapp.com/advisory/ntap-20231110-0003/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4813","description":"A flaw has been identified in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4813","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4813","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4813","date":"2026-10-08","epss":0.01926,"percentile":0.79336}],"risk":1.04967,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4813","description":"A flaw was found in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge."},"relatedVulnerabilities":[{"id":"CVE-2023-4813","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4813","date":"2026-10-08","epss":0.01926,"percentile":0.79336}],"urls":["https://access.redhat.com/errata/RHBA-2024:2413","https://access.redhat.com/errata/RHSA-2023:5453","https://access.redhat.com/errata/RHSA-2023:5455","https://access.redhat.com/errata/RHSA-2023:7409","https://access.redhat.com/security/cve/CVE-2023-4813","https://bugzilla.redhat.com/show_bug.cgi?id=2237798","http://www.openwall.com/lists/oss-security/2023/10/03/8","https://security.netapp.com/advisory/ntap-20231110-0003/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4813","description":"A flaw has been identified in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4813","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4813","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4813","date":"2026-10-08","epss":0.01926,"percentile":0.79336}],"risk":1.04967,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4813","description":"A flaw was found in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge."},"relatedVulnerabilities":[{"id":"CVE-2023-4813","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4813","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4813","date":"2026-10-08","epss":0.01926,"percentile":0.79336}],"urls":["https://access.redhat.com/errata/RHBA-2024:2413","https://access.redhat.com/errata/RHSA-2023:5453","https://access.redhat.com/errata/RHSA-2023:5455","https://access.redhat.com/errata/RHSA-2023:7409","https://access.redhat.com/security/cve/CVE-2023-4813","https://bugzilla.redhat.com/show_bug.cgi?id=2237798","http://www.openwall.com/lists/oss-security/2023/10/03/8","https://security.netapp.com/advisory/ntap-20231110-0003/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4813","description":"A flaw has been identified in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge."}]},{"artifact":{"id":"dfdab1b7031e1625","cpes":["cpe:2.3:a:openssh-client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh-client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*"],"name":"openssh-client","purl":"pkg:deb/debian/openssh-client@1%3A7.9p1-10%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=openssh","type":"deb","version":"1:7.9p1-10+deb10u2","language":"","licenses":["BSD-2-clause","BSD-3-clause","Beer-ware","Expat-with-advertising-restriction","Mazieres-BSD-style","OpenSSH","Powell-BSD-style","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssh-client/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/openssh-client/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.list"},{"path":"/var/lib/dpkg/info/openssh-client.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postinst"},{"path":"/var/lib/dpkg/info/openssh-client.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postrm"},{"path":"/var/lib/dpkg/info/openssh-client.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.preinst"},{"path":"/var/lib/dpkg/info/openssh-client.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.prerm"}],"upstreams":[{"name":"openssh"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-6110","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssh","version":"1:7.9p1-10+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-6110","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2019-6110","cwe":"CWE-838","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-6110","cwe":"CWE-838","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-6110","date":"2026-10-08","epss":0.20906,"percentile":0.97507}],"risk":1.0453000000000001,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-6110","description":"In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker) can manipulate the client output, for example to use ANSI control codes to hide additional files being transferred."},"relatedVulnerabilities":[{"id":"CVE-2019-6110","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":6.8,"impactScore":5.2,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:H/Au:N/C:P/I:P/A:N","metrics":{"baseScore":4,"impactScore":5,"exploitabilityScore":5},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":6.8,"impactScore":5.2,"exploitabilityScore":1.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-6110","cwe":"CWE-838","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2019-6110","cwe":"CWE-838","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2019-6110","date":"2026-10-08","epss":0.20906,"percentile":0.97507}],"urls":["https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf","https://cvsweb.openbsd.org/src/usr.bin/ssh/progressmeter.c","https://cvsweb.openbsd.org/src/usr.bin/ssh/scp.c","https://security.gentoo.org/glsa/201903-16","https://security.netapp.com/advisory/ntap-20190213-0001/","https://sintonen.fi/advisories/scp-client-multiple-vulnerabilities.txt","https://www.exploit-db.com/exploits/46193/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-6110","description":"In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker) can manipulate the client output, for example to use ANSI control codes to hide additional files being transferred."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-32004","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32004","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32004","cwe":"CWE-114","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32004","date":"2026-10-08","epss":0.01351,"percentile":0.70675}],"risk":1.033515,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32004","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, an attacker can prepare a local repository in such a way that, when cloned, will execute arbitrary code during the operation. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid cloning repositories from untrusted sources."},"relatedVulnerabilities":[{"id":"CVE-2024-32004","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":6.1,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32004","cwe":"CWE-114","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32004","date":"2026-10-08","epss":0.01351,"percentile":0.70675}],"urls":["http://www.openwall.com/lists/oss-security/2024/05/14/2","https://git-scm.com/docs/git-clone","https://github.com/git/git/commit/f4aa8c8bb11dae6e769cd930565173808cbb69c8","https://github.com/git/git/security/advisories/GHSA-xfc6-vwr8-r389","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S4CK4IYTXEOBZTEM5K3T6LWOIZ3S44AR/","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32004","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, an attacker can prepare a local repository in such a way that, when cloned, will execute arbitrary code during the operation. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid cloning repositories from untrusted sources."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-32004","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32004","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32004","cwe":"CWE-114","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32004","date":"2026-10-08","epss":0.01351,"percentile":0.70675}],"risk":1.033515,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32004","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, an attacker can prepare a local repository in such a way that, when cloned, will execute arbitrary code during the operation. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid cloning repositories from untrusted sources."},"relatedVulnerabilities":[{"id":"CVE-2024-32004","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":6.1,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32004","cwe":"CWE-114","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32004","date":"2026-10-08","epss":0.01351,"percentile":0.70675}],"urls":["http://www.openwall.com/lists/oss-security/2024/05/14/2","https://git-scm.com/docs/git-clone","https://github.com/git/git/commit/f4aa8c8bb11dae6e769cd930565173808cbb69c8","https://github.com/git/git/security/advisories/GHSA-xfc6-vwr8-r389","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S4CK4IYTXEOBZTEM5K3T6LWOIZ3S44AR/","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32004","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, an attacker can prepare a local repository in such a way that, when cloned, will execute arbitrary code during the operation. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid cloning repositories from untrusted sources."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_482"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-6021","versionConstraint":"< 1.8.0_482||>= 1.9, < 8.0.482 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-6021","fix":{"state":"fixed","versions":["1.8.0_482","8.0.482"],"available":[{"date":"2026-01-27","kind":"first-observed","version":"1.8.0_482"},{"date":"2026-01-27","kind":"first-observed","version":"8.0.482"}]},"cvss":[{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-6021","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2025-6021","cwe":"CWE-787","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2025-6021","date":"2026-10-08","epss":0.01367,"percentile":0.71018}],"risk":1.02525,"urls":["https://access.redhat.com/errata/RHSA-2025:10630","https://access.redhat.com/errata/RHSA-2025:10698","https://access.redhat.com/errata/RHSA-2025:10699","https://access.redhat.com/errata/RHSA-2025:11580","https://access.redhat.com/errata/RHSA-2025:11673","https://access.redhat.com/errata/RHSA-2025:12098","https://access.redhat.com/errata/RHSA-2025:12099","https://access.redhat.com/errata/RHSA-2025:12199","https://access.redhat.com/errata/RHSA-2025:12237","https://access.redhat.com/errata/RHSA-2025:12239","https://access.redhat.com/errata/RHSA-2025:12240","https://access.redhat.com/errata/RHSA-2025:12241","https://access.redhat.com/errata/RHSA-2025:13267","https://access.redhat.com/errata/RHSA-2025:13289","https://access.redhat.com/errata/RHSA-2025:13325","https://access.redhat.com/errata/RHSA-2025:13335","https://access.redhat.com/errata/RHSA-2025:13336","https://access.redhat.com/errata/RHSA-2025:14059","https://access.redhat.com/errata/RHSA-2025:14396","https://access.redhat.com/errata/RHSA-2025:15308","https://access.redhat.com/errata/RHSA-2025:15672","https://access.redhat.com/errata/RHSA-2025:19020","https://access.redhat.com/errata/RHSA-2026:7519","https://access.redhat.com/security/cve/CVE-2025-6021","https://bugzilla.redhat.com/show_bug.cgi?id=2372406","https://gitlab.gnome.org/GNOME/libxml2/-/issues/926","https://lists.debian.org/debian-lts-announce/2025/07/msg00014.html","https://cert-portal.siemens.com/productcert/html/ssa-032379.html"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-6021","description":"A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer size calculations can lead to a stack-based buffer overflow. This issue can result in memory corruption or a denial of service when processing crafted input."},"relatedVulnerabilities":[]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33599","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33599","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"},{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-33599","date":"2026-10-08","epss":0.0131,"percentile":0.69775}],"risk":1.0218,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33599","description":"nscd: Stack-based buffer overflow in netgroup cache  If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then a subsequent client request for netgroup data may result in a stack-based buffer overflow.  This flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33599","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"},{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-33599","date":"2026-10-08","epss":0.0131,"percentile":0.69775}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0011/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0005","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33599","description":"nscd: Stack-based buffer overflow in netgroup cache\n\nIf the Name Service Cache Daemon's (nscd) fixed size cache is exhausted\nby client requests then a subsequent client request for netgroup data\nmay result in a stack-based buffer overflow.  This flaw was introduced\nin glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33599","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33599","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"},{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-33599","date":"2026-10-08","epss":0.0131,"percentile":0.69775}],"risk":1.0218,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33599","description":"nscd: Stack-based buffer overflow in netgroup cache  If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then a subsequent client request for netgroup data may result in a stack-based buffer overflow.  This flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33599","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"},{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-33599","date":"2026-10-08","epss":0.0131,"percentile":0.69775}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0011/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0005","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33599","description":"nscd: Stack-based buffer overflow in netgroup cache\n\nIf the Name Service Cache Daemon's (nscd) fixed size cache is exhausted\nby client requests then a subsequent client request for netgroup data\nmay result in a stack-based buffer overflow.  This flaw was introduced\nin glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33599","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33599","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"},{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-33599","date":"2026-10-08","epss":0.0131,"percentile":0.69775}],"risk":1.0218,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33599","description":"nscd: Stack-based buffer overflow in netgroup cache  If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then a subsequent client request for netgroup data may result in a stack-based buffer overflow.  This flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33599","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"},{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-33599","date":"2026-10-08","epss":0.0131,"percentile":0.69775}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0011/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0005","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33599","description":"nscd: Stack-based buffer overflow in netgroup cache\n\nIf the Name Service Cache Daemon's (nscd) fixed size cache is exhausted\nby client requests then a subsequent client request for netgroup data\nmay result in a stack-based buffer overflow.  This flaw was introduced\nin glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33599","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33599","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"},{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-33599","date":"2026-10-08","epss":0.0131,"percentile":0.69775}],"risk":1.0218,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33599","description":"nscd: Stack-based buffer overflow in netgroup cache  If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then a subsequent client request for netgroup data may result in a stack-based buffer overflow.  This flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33599","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"},{"cve":"CVE-2024-33599","cwe":"CWE-121","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-33599","date":"2026-10-08","epss":0.0131,"percentile":0.69775}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0011/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0005","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33599","description":"nscd: Stack-based buffer overflow in netgroup cache\n\nIf the Name Service Cache Daemon's (nscd) fixed size cache is exhausted\nby client requests then a subsequent client request for netgroup data\nmay result in a stack-based buffer overflow.  This flaw was introduced\nin glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"848b1948f834d7ce","cpes":["cpe:2.3:a:libgnutls30:libgnutls30:3.6.7-4\\+deb10u7:*:*:*:*:*:*:*"],"name":"libgnutls30","purl":"pkg:deb/debian/libgnutls30@3.6.7-4%2Bdeb10u7?arch=amd64&distro=debian-10.10&upstream=gnutls28","type":"deb","version":"3.6.7-4+deb10u7","language":"","licenses":["sha256:d35f0abecc61a3676965c20cf13a44815b05d9b4a68985fa1809b13c2aff9090"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgnutls30/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgnutls30/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gnutls28"}]},"matchDetails":[{"fix":{"suggestedVersion":"3.6.7-4+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-4209","versionConstraint":"< 3.6.7-4+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gnutls28","version":"3.6.7-4+deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-4209","fix":{"state":"fixed","versions":["3.6.7-4+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"3.6.7-4+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-4209","cwe":"CWE-476","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-4209","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-4209","date":"2026-10-08","epss":0.01748,"percentile":0.77139}],"risk":1.0050999999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-4209","description":"A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing zero-length input may cause undefined behavior. This flaw leads to a denial of service after authentication in rare circumstances."},"relatedVulnerabilities":[{"id":"CVE-2021-4209","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-4209","cwe":"CWE-476","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-4209","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-4209","date":"2026-10-08","epss":0.01748,"percentile":0.77139}],"urls":["https://access.redhat.com/security/cve/CVE-2021-4209","https://bugzilla.redhat.com/show_bug.cgi?id=2044156","https://gitlab.com/gnutls/gnutls/-/commit/3db352734472d851318944db13be73da61300568","https://gitlab.com/gnutls/gnutls/-/issues/1306","https://gitlab.com/gnutls/gnutls/-/merge_requests/1503","https://security.netapp.com/advisory/ntap-20220915-0005/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-4209","description":"A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing zero-length input may cause undefined behavior. This flaw leads to a denial of service after authentication in rare circumstances."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_351"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21626","versionConstraint":"< 1.8.0_351||>= 1.9, < 8.0.351||>= 9, < 11.0.17 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21626","fix":{"state":"fixed","versions":["1.8.0_351","8.0.351","11.0.17"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_351"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.351"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.17"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21626","cwe":"CWE-693","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21626","date":"2026-10-08","epss":0.01949,"percentile":0.79611}],"risk":1.003735,"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3ARF4QF4N3X5GSFHXUBWARGLISGKJ33R/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3QLQ7OD33W6LT3HWI7VYDFFJLV75Y73K/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HNGMDNIHAA73BEX6XPA2IMXJSGOKKYE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PB3CIGOFG7CENUVVE4FFZT2HI5FO77XU/","https://security.gentoo.org/glsa/202401-25","https://security.netapp.com/advisory/ntap-20221028-0012/","https://www.oracle.com/security-alerts/cpuoct2022.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21626","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1; Oracle GraalVM Enterprise Edition: 20.3.7, 21.3.3 and 22.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u7"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-28321","versionConstraint":"< 7.64.0-4+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-28321","fix":{"state":"fixed","versions":["7.64.0-4+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-28321","date":"2026-10-08","epss":0.01806,"percentile":0.77908}],"risk":0.9842700000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-28321","description":"An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as \"Subject Alternative Name\" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match, but the wildcard check in curl could still check for `x*`, which would match even though the IDN name most likely contained nothing even resembling an `x`."},"relatedVulnerabilities":[{"id":"CVE-2023-28321","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-28321","date":"2026-10-08","epss":0.01806,"percentile":0.77908}],"urls":["http://seclists.org/fulldisclosure/2023/Jul/47","http://seclists.org/fulldisclosure/2023/Jul/48","http://seclists.org/fulldisclosure/2023/Jul/52","https://hackerone.com/reports/1950627","https://lists.debian.org/debian-lts-announce/2023/10/msg00016.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F4I75RDGX5ULSSCBE5BF3P5I5SFO7ULQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2LIWHWKOVH24COGGBCVOWDXXIUPKOMK/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230609-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-28321","description":"An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as \"Subject Alternative Name\" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match, but the wildcard check in curl could still check for `x*`, which would match even though the IDN name most likely contained nothing even resembling an `x`."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-28321","versionConstraint":"< 7.64.0-4+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-28321","fix":{"state":"fixed","versions":["7.64.0-4+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-28321","date":"2026-10-08","epss":0.01806,"percentile":0.77908}],"risk":0.9842700000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-28321","description":"An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as \"Subject Alternative Name\" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match, but the wildcard check in curl could still check for `x*`, which would match even though the IDN name most likely contained nothing even resembling an `x`."},"relatedVulnerabilities":[{"id":"CVE-2023-28321","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-28321","date":"2026-10-08","epss":0.01806,"percentile":0.77908}],"urls":["http://seclists.org/fulldisclosure/2023/Jul/47","http://seclists.org/fulldisclosure/2023/Jul/48","http://seclists.org/fulldisclosure/2023/Jul/52","https://hackerone.com/reports/1950627","https://lists.debian.org/debian-lts-announce/2023/10/msg00016.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F4I75RDGX5ULSSCBE5BF3P5I5SFO7ULQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2LIWHWKOVH24COGGBCVOWDXXIUPKOMK/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230609-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-28321","description":"An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as \"Subject Alternative Name\" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match, but the wildcard check in curl could still check for `x*`, which would match even though the IDN name most likely contained nothing even resembling an `x`."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u7"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-28321","versionConstraint":"< 7.64.0-4+deb10u7 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-28321","fix":{"state":"fixed","versions":["7.64.0-4+deb10u7"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u7"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-28321","date":"2026-10-08","epss":0.01806,"percentile":0.77908}],"risk":0.9842700000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-28321","description":"An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as \"Subject Alternative Name\" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match, but the wildcard check in curl could still check for `x*`, which would match even though the IDN name most likely contained nothing even resembling an `x`."},"relatedVulnerabilities":[{"id":"CVE-2023-28321","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-28321","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-28321","date":"2026-10-08","epss":0.01806,"percentile":0.77908}],"urls":["http://seclists.org/fulldisclosure/2023/Jul/47","http://seclists.org/fulldisclosure/2023/Jul/48","http://seclists.org/fulldisclosure/2023/Jul/52","https://hackerone.com/reports/1950627","https://lists.debian.org/debian-lts-announce/2023/10/msg00016.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F4I75RDGX5ULSSCBE5BF3P5I5SFO7ULQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2LIWHWKOVH24COGGBCVOWDXXIUPKOMK/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230609-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-28321","description":"An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as \"Subject Alternative Name\" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match, but the wildcard check in curl could still check for `x*`, which would match even though the IDN name most likely contained nothing even resembling an `x`."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-23916","versionConstraint":"< 7.64.0-4+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-23916","fix":{"state":"fixed","versions":["7.64.0-4+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-23916","date":"2026-10-08","epss":0.01703,"percentile":0.76556}],"risk":0.9792249999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-23916","description":"An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the \"chained\" HTTP compression algorithms, meaning that a server response can be compressed multiple times and potentially with differentalgorithms. The number of acceptable \"links\" in this \"decompression chain\" wascapped, but the cap was implemented on a per-header basis allowing a maliciousserver to insert a virtually unlimited number of compression steps simply byusing many headers. The use of such a decompression chain could result in a \"malloc bomb\", making curl end up spending enormous amounts of allocated heap memory, or trying to and returning out of memory errors."},"relatedVulnerabilities":[{"id":"CVE-2023-23916","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-23916","date":"2026-10-08","epss":0.01703,"percentile":0.76556}],"urls":["https://hackerone.com/reports/1826048","https://lists.debian.org/debian-lts-announce/2023/02/msg00035.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BQKE6TXYDHOTFHLTBZ5X73GTKI7II5KO/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230309-0006/","https://www.debian.org/security/2023/dsa-5365"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-23916","description":"An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the \"chained\" HTTP compression algorithms, meaning that a server response can be compressed multiple times and potentially with differentalgorithms. The number of acceptable \"links\" in this \"decompression chain\" wascapped, but the cap was implemented on a per-header basis allowing a maliciousserver to insert a virtually unlimited number of compression steps simply byusing many headers. The use of such a decompression chain could result in a \"malloc bomb\", making curl end up spending enormous amounts of allocated heap memory, or trying to and returning out of memory errors."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-23916","versionConstraint":"< 7.64.0-4+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-23916","fix":{"state":"fixed","versions":["7.64.0-4+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-23916","date":"2026-10-08","epss":0.01703,"percentile":0.76556}],"risk":0.9792249999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-23916","description":"An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the \"chained\" HTTP compression algorithms, meaning that a server response can be compressed multiple times and potentially with differentalgorithms. The number of acceptable \"links\" in this \"decompression chain\" wascapped, but the cap was implemented on a per-header basis allowing a maliciousserver to insert a virtually unlimited number of compression steps simply byusing many headers. The use of such a decompression chain could result in a \"malloc bomb\", making curl end up spending enormous amounts of allocated heap memory, or trying to and returning out of memory errors."},"relatedVulnerabilities":[{"id":"CVE-2023-23916","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-23916","date":"2026-10-08","epss":0.01703,"percentile":0.76556}],"urls":["https://hackerone.com/reports/1826048","https://lists.debian.org/debian-lts-announce/2023/02/msg00035.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BQKE6TXYDHOTFHLTBZ5X73GTKI7II5KO/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230309-0006/","https://www.debian.org/security/2023/dsa-5365"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-23916","description":"An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the \"chained\" HTTP compression algorithms, meaning that a server response can be compressed multiple times and potentially with differentalgorithms. The number of acceptable \"links\" in this \"decompression chain\" wascapped, but the cap was implemented on a per-header basis allowing a maliciousserver to insert a virtually unlimited number of compression steps simply byusing many headers. The use of such a decompression chain could result in a \"malloc bomb\", making curl end up spending enormous amounts of allocated heap memory, or trying to and returning out of memory errors."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-23916","versionConstraint":"< 7.64.0-4+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-23916","fix":{"state":"fixed","versions":["7.64.0-4+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-23916","date":"2026-10-08","epss":0.01703,"percentile":0.76556}],"risk":0.9792249999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-23916","description":"An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the \"chained\" HTTP compression algorithms, meaning that a server response can be compressed multiple times and potentially with differentalgorithms. The number of acceptable \"links\" in this \"decompression chain\" wascapped, but the cap was implemented on a per-header basis allowing a maliciousserver to insert a virtually unlimited number of compression steps simply byusing many headers. The use of such a decompression chain could result in a \"malloc bomb\", making curl end up spending enormous amounts of allocated heap memory, or trying to and returning out of memory errors."},"relatedVulnerabilities":[{"id":"CVE-2023-23916","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-23916","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-23916","date":"2026-10-08","epss":0.01703,"percentile":0.76556}],"urls":["https://hackerone.com/reports/1826048","https://lists.debian.org/debian-lts-announce/2023/02/msg00035.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BQKE6TXYDHOTFHLTBZ5X73GTKI7II5KO/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230309-0006/","https://www.debian.org/security/2023/dsa-5365"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-23916","description":"An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the \"chained\" HTTP compression algorithms, meaning that a server response can be compressed multiple times and potentially with differentalgorithms. The number of acceptable \"links\" in this \"decompression chain\" wascapped, but the cap was implemented on a per-header basis allowing a maliciousserver to insert a virtually unlimited number of compression steps simply byusing many headers. The use of such a decompression chain could result in a \"malloc bomb\", making curl end up spending enormous amounts of allocated heap memory, or trying to and returning out of memory errors."}]},{"artifact":{"id":"dd6e91cb036cd97c","cpes":["cpe:2.3:a:libncursesw6:libncursesw6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libncursesw6","purl":"pkg:deb/debian/libncursesw6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libncursesw6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-29458","versionConstraint":"< 6.1+20181013-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-29458","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-29458","date":"2026-10-08","epss":0.01341,"percentile":0.70476}],"risk":0.9789299999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-29458","description":"ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library."},"relatedVulnerabilities":[{"id":"CVE-2022-29458","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:P","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-29458","date":"2026-10-08","epss":0.01341,"percentile":0.70476}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","https://lists.debian.org/debian-lts-announce/2022/10/msg00037.html","https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00014.html","https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00016.html","https://support.apple.com/kb/HT213488"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-29458","description":"ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library."}]},{"artifact":{"id":"32ae0288f40dd7ec","cpes":["cpe:2.3:a:libtinfo6:libtinfo6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libtinfo6","purl":"pkg:deb/debian/libtinfo6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libtinfo6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-29458","versionConstraint":"< 6.1+20181013-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-29458","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-29458","date":"2026-10-08","epss":0.01341,"percentile":0.70476}],"risk":0.9789299999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-29458","description":"ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library."},"relatedVulnerabilities":[{"id":"CVE-2022-29458","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:P","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-29458","date":"2026-10-08","epss":0.01341,"percentile":0.70476}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","https://lists.debian.org/debian-lts-announce/2022/10/msg00037.html","https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00014.html","https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00016.html","https://support.apple.com/kb/HT213488"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-29458","description":"ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library."}]},{"artifact":{"id":"a8f604f9c5ac808b","cpes":["cpe:2.3:a:ncurses-base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-base","purl":"pkg:deb/debian/ncurses-base@6.1%2B20181013-2%2Bdeb10u2?arch=all&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-29458","versionConstraint":"< 6.1+20181013-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-29458","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-29458","date":"2026-10-08","epss":0.01341,"percentile":0.70476}],"risk":0.9789299999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-29458","description":"ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library."},"relatedVulnerabilities":[{"id":"CVE-2022-29458","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:P","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-29458","date":"2026-10-08","epss":0.01341,"percentile":0.70476}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","https://lists.debian.org/debian-lts-announce/2022/10/msg00037.html","https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00014.html","https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00016.html","https://support.apple.com/kb/HT213488"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-29458","description":"ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library."}]},{"artifact":{"id":"9954ccfd24462fc8","cpes":["cpe:2.3:a:ncurses-bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-bin","purl":"pkg:deb/debian/ncurses-bin@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u3"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-29458","versionConstraint":"< 6.1+20181013-2+deb10u3 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-29458","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u3"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u3"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-29458","date":"2026-10-08","epss":0.01341,"percentile":0.70476}],"risk":0.9789299999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-29458","description":"ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library."},"relatedVulnerabilities":[{"id":"CVE-2022-29458","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:P","metrics":{"baseScore":5.8,"impactScore":5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2022-29458","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-29458","date":"2026-10-08","epss":0.01341,"percentile":0.70476}],"urls":["http://seclists.org/fulldisclosure/2022/Oct/28","http://seclists.org/fulldisclosure/2022/Oct/41","https://lists.debian.org/debian-lts-announce/2022/10/msg00037.html","https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00014.html","https://lists.gnu.org/archive/html/bug-ncurses/2022-04/msg00016.html","https://support.apple.com/kb/HT213488"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-29458","description":"ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library."}]},{"artifact":{"id":"d55bfe42f054b394","cpes":["cpe:2.3:a:libexpat1:libexpat1:2.2.6-2\\+deb10u1:*:*:*:*:*:*:*"],"name":"libexpat1","purl":"pkg:deb/debian/libexpat1@2.2.6-2%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=expat","type":"deb","version":"2.2.6-2+deb10u1","language":"","licenses":["MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libexpat1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libexpat1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libexpat1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"expat"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2013-0340","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"expat","version":"2.2.6-2+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2013-0340","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2013-0340","cwe":"CWE-611","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2013-0340","date":"2026-10-08","epss":0.19433,"percentile":0.97303}],"risk":0.9716500000000001,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2013-0340","description":"expat 2.1.0 and earlier does not properly handle entities expansion unless an application developer uses the XML_SetEntityDeclHandler function, which allows remote attackers to cause a denial of service (resource consumption), send HTTP requests to intranet servers, or read arbitrary files via a crafted XML document, aka an XML External Entity (XXE) issue.  NOTE: it could be argued that because expat already provides the ability to disable external entity expansion, the responsibility for resolving this issue lies with application developers; according to this argument, this entry should be REJECTed, and each affected application would need its own CVE."},"relatedVulnerabilities":[{"id":"CVE-2013-0340","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2013-0340","cwe":"CWE-611","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2013-0340","date":"2026-10-08","epss":0.19433,"percentile":0.97303}],"urls":["http://openwall.com/lists/oss-security/2013/02/22/3","http://seclists.org/fulldisclosure/2021/Oct/61","http://seclists.org/fulldisclosure/2021/Oct/62","http://seclists.org/fulldisclosure/2021/Oct/63","http://seclists.org/fulldisclosure/2021/Sep/33","http://seclists.org/fulldisclosure/2021/Sep/34","http://seclists.org/fulldisclosure/2021/Sep/35","http://seclists.org/fulldisclosure/2021/Sep/38","http://seclists.org/fulldisclosure/2021/Sep/39","http://seclists.org/fulldisclosure/2021/Sep/40","http://securitytracker.com/id?1028213","http://www.openwall.com/lists/oss-security/2013/04/12/6","http://www.openwall.com/lists/oss-security/2021/10/07/4","http://www.osvdb.org/90634","http://www.securityfocus.com/bid/58233","https://github.com/libexpat/libexpat/blob/R_2_4_1/expat/Changes","https://lists.apache.org/thread.html/r41eca5f4f09e74436cbb05dec450fc2bef37b5d3e966aa7cc5fada6d%40%3Cannounce.apache.org%3E","https://lists.apache.org/thread.html/rfb2c193360436e230b85547e85a41bea0916916f96c501f5b6fc4702%40%3Cusers.openoffice.apache.org%3E","https://security.gentoo.org/glsa/201701-21","https://support.apple.com/kb/HT212804","https://support.apple.com/kb/HT212805","https://support.apple.com/kb/HT212807","https://support.apple.com/kb/HT212814","https://support.apple.com/kb/HT212815","https://support.apple.com/kb/HT212819"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2013-0340","description":"expat before version 2.4.0 does not properly handle entities expansion unless an application developer uses the XML_SetEntityDeclHandler function, which allows remote attackers to cause a denial of service (resource consumption), send HTTP requests to intranet servers, or read arbitrary files via a crafted XML document, aka an XML External Entity (XXE) issue.  NOTE: it could be argued that because expat already provides the ability to disable external entity expansion, the responsibility for resolving this issue lies with application developers; according to this argument, this entry should be REJECTed, and each affected application would need its own CVE."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u8"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-46218","versionConstraint":"< 7.64.0-4+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-46218","fix":{"state":"fixed","versions":["7.64.0-4+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-46218","cwe":"CWE-178","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-46218","date":"2026-10-08","epss":0.01685,"percentile":0.76307}],"risk":0.9688749999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-46218","description":"This flaw allows a malicious HTTP server to set \"super cookies\" in curl that are then passed back to more origins than what is otherwise allowed or possible. This allows a site to set cookies that then would get sent to different and unrelated sites and domains.  It could do this by exploiting a mixed case flaw in curl's function that verifies a given cookie domain against the Public Suffix List (PSL). For example a cookie could be set with `domain=co.UK` when the URL used a lower case hostname `curl.co.uk`, even though `co.uk` is listed as a PSL domain."},"relatedVulnerabilities":[{"id":"CVE-2023-46218","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-46218","cwe":"CWE-178","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-46218","date":"2026-10-08","epss":0.01685,"percentile":0.76307}],"urls":["https://curl.se/docs/CVE-2023-46218.html","https://hackerone.com/reports/2212193","https://lists.debian.org/debian-lts-announce/2023/12/msg00015.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3ZX3VW67N4ACRAPMV2QS2LVYGD7H2MVE/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UOGXU25FMMT2X6UUITQ7EZZYMJ42YWWD/","https://security.netapp.com/advisory/ntap-20240125-0007/","https://www.debian.org/security/2023/dsa-5587","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-093430.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://cert-portal.siemens.com/productcert/html/ssa-331112.html","https://curl.se/docs/CVE-2023-46218.json"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-46218","description":"This flaw allows a malicious HTTP server to set \"super cookies\" in curl that\nare then passed back to more origins than what is otherwise allowed or\npossible. This allows a site to set cookies that then would get sent to\ndifferent and unrelated sites and domains.\n\nIt could do this by exploiting a mixed case flaw in curl's function that\nverifies a given cookie domain against the Public Suffix List (PSL). For\nexample a cookie could be set with `domain=co.UK` when the URL used a lower\ncase hostname `curl.co.uk`, even though `co.uk` is listed as a PSL domain."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-46218","versionConstraint":"< 7.64.0-4+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-46218","fix":{"state":"fixed","versions":["7.64.0-4+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-46218","cwe":"CWE-178","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-46218","date":"2026-10-08","epss":0.01685,"percentile":0.76307}],"risk":0.9688749999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-46218","description":"This flaw allows a malicious HTTP server to set \"super cookies\" in curl that are then passed back to more origins than what is otherwise allowed or possible. This allows a site to set cookies that then would get sent to different and unrelated sites and domains.  It could do this by exploiting a mixed case flaw in curl's function that verifies a given cookie domain against the Public Suffix List (PSL). For example a cookie could be set with `domain=co.UK` when the URL used a lower case hostname `curl.co.uk`, even though `co.uk` is listed as a PSL domain."},"relatedVulnerabilities":[{"id":"CVE-2023-46218","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-46218","cwe":"CWE-178","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-46218","date":"2026-10-08","epss":0.01685,"percentile":0.76307}],"urls":["https://curl.se/docs/CVE-2023-46218.html","https://hackerone.com/reports/2212193","https://lists.debian.org/debian-lts-announce/2023/12/msg00015.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3ZX3VW67N4ACRAPMV2QS2LVYGD7H2MVE/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UOGXU25FMMT2X6UUITQ7EZZYMJ42YWWD/","https://security.netapp.com/advisory/ntap-20240125-0007/","https://www.debian.org/security/2023/dsa-5587","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-093430.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://cert-portal.siemens.com/productcert/html/ssa-331112.html","https://curl.se/docs/CVE-2023-46218.json"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-46218","description":"This flaw allows a malicious HTTP server to set \"super cookies\" in curl that\nare then passed back to more origins than what is otherwise allowed or\npossible. This allows a site to set cookies that then would get sent to\ndifferent and unrelated sites and domains.\n\nIt could do this by exploiting a mixed case flaw in curl's function that\nverifies a given cookie domain against the Public Suffix List (PSL). For\nexample a cookie could be set with `domain=co.UK` when the URL used a lower\ncase hostname `curl.co.uk`, even though `co.uk` is listed as a PSL domain."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-46218","versionConstraint":"< 7.64.0-4+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-46218","fix":{"state":"fixed","versions":["7.64.0-4+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-46218","cwe":"CWE-178","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-46218","date":"2026-10-08","epss":0.01685,"percentile":0.76307}],"risk":0.9688749999999999,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-46218","description":"This flaw allows a malicious HTTP server to set \"super cookies\" in curl that are then passed back to more origins than what is otherwise allowed or possible. This allows a site to set cookies that then would get sent to different and unrelated sites and domains.  It could do this by exploiting a mixed case flaw in curl's function that verifies a given cookie domain against the Public Suffix List (PSL). For example a cookie could be set with `domain=co.UK` when the URL used a lower case hostname `curl.co.uk`, even though `co.uk` is listed as a PSL domain."},"relatedVulnerabilities":[{"id":"CVE-2023-46218","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":6.5,"impactScore":2.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-46218","cwe":"CWE-178","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-46218","date":"2026-10-08","epss":0.01685,"percentile":0.76307}],"urls":["https://curl.se/docs/CVE-2023-46218.html","https://hackerone.com/reports/2212193","https://lists.debian.org/debian-lts-announce/2023/12/msg00015.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3ZX3VW67N4ACRAPMV2QS2LVYGD7H2MVE/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UOGXU25FMMT2X6UUITQ7EZZYMJ42YWWD/","https://security.netapp.com/advisory/ntap-20240125-0007/","https://www.debian.org/security/2023/dsa-5587","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-093430.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://cert-portal.siemens.com/productcert/html/ssa-331112.html","https://curl.se/docs/CVE-2023-46218.json"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-46218","description":"This flaw allows a malicious HTTP server to set \"super cookies\" in curl that\nare then passed back to more origins than what is otherwise allowed or\npossible. This allows a site to set cookies that then would get sent to\ndifferent and unrelated sites and domains.\n\nIt could do this by exploiting a mixed case flaw in curl's function that\nverifies a given cookie domain against the Public Suffix List (PSL). For\nexample a cookie could be set with `domain=co.UK` when the URL used a lower\ncase hostname `curl.co.uk`, even though `co.uk` is listed as a PSL domain."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_372"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21930","versionConstraint":"< 1.8.0_372||>= 1.9, < 8.0.372||>= 12, < 17.0.7||>= 18, < 20.0.1||>= 9, < 11.0.19 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21930","fix":{"state":"fixed","versions":["1.8.0_372","8.0.372","11.0.19","17.0.7","20.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_372"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.372"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"20.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.19"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-21930","date":"2026-10-08","epss":0.01295,"percentile":0.6947}],"risk":0.964775,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230427-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5430","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpuapr2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-04-18"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21930","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE).  Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and  22.3.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-27774","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27774","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27774","date":"2026-10-08","epss":0.0176,"percentile":0.7731}],"risk":0.9416000000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27774","description":"An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers."},"relatedVulnerabilities":[{"id":"CVE-2022-27774","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:S/C:P/I:N/A:N","metrics":{"baseScore":3.5,"impactScore":2.9,"exploitabilityScore":6.9},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27774","date":"2026-10-08","epss":0.0176,"percentile":0.7731}],"urls":["https://hackerone.com/reports/1543773","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2022-27774.json"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27774","description":"An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27774","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27774","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27774","date":"2026-10-08","epss":0.0176,"percentile":0.7731}],"risk":0.9416000000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27774","description":"An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers."},"relatedVulnerabilities":[{"id":"CVE-2022-27774","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:S/C:P/I:N/A:N","metrics":{"baseScore":3.5,"impactScore":2.9,"exploitabilityScore":6.9},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27774","date":"2026-10-08","epss":0.0176,"percentile":0.7731}],"urls":["https://hackerone.com/reports/1543773","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2022-27774.json"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27774","description":"An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-27774","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-27774","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27774","date":"2026-10-08","epss":0.0176,"percentile":0.7731}],"risk":0.9416000000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-27774","description":"An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers."},"relatedVulnerabilities":[{"id":"CVE-2022-27774","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:S/C:P/I:N/A:N","metrics":{"baseScore":3.5,"impactScore":2.9,"exploitabilityScore":6.9},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.7,"impactScore":3.6,"exploitabilityScore":2.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2022-27774","cwe":"CWE-522","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-27774","date":"2026-10-08","epss":0.0176,"percentile":0.7731}],"urls":["https://hackerone.com/reports/1543773","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220609-0008/","https://www.debian.org/security/2022/dsa-5197","https://advisory.splunk.com/advisories/SVD-2023-0809","https://curl.se/docs/CVE-2022-27774.json"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-27774","description":"An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_462"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-30749","versionConstraint":"< 1.8.0_462||>= 1.9, < 8.0.462||>= 12, < 17.0.16||>= 18, < 21.0.8||>= 22, < 24.0.2||>= 9, < 11.0.28 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-30749","fix":{"state":"fixed","versions":["1.8.0_462","8.0.462","11.0.28","17.0.16","21.0.8","24.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_462"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.462"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.16"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.8"},{"date":"2025-09-04","kind":"first-observed","version":"24.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.28"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2025-30749","date":"2026-10-08","epss":0.01183,"percentile":0.66835}],"risk":0.92274,"urls":["https://www.oracle.com/security-alerts/cpujul2025.html","https://lists.debian.org/debian-lts-announce/2025/07/msg00011.html","https://lists.debian.org/debian-lts-announce/2025/08/msg00014.html"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-30749","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D).  Supported versions that are affected are Oracle Java SE: 8u451, 8u451-perf, 11.0.27, 17.0.15, 21.0.7, 24.0.1; Oracle GraalVM for JDK: 17.0.15, 21.0.7 and  24.0.1; Oracle GraalVM Enterprise Edition: 21.3.14. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in takeover of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_351"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21619","versionConstraint":"< 1.8.0_351||>= 1.9, < 8.0.351||>= 12, < 17.0.5||>= 18, < 19.0.1||>= 9, < 11.0.17 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21619","fix":{"state":"fixed","versions":["1.8.0_351","8.0.351","11.0.17","17.0.5","19.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_351"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.351"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.5"},{"date":"2025-09-04","kind":"first-observed","version":"19.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.17"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21619","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21619","date":"2026-10-08","epss":0.02667,"percentile":0.85299}],"risk":0.8934449999999998,"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/37QDWJBGEPP65X43NXQTXQ7KASLUHON6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3ARF4QF4N3X5GSFHXUBWARGLISGKJ33R/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3QLQ7OD33W6LT3HWI7VYDFFJLV75Y73K/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EXSBV3W6EP6B7XJ63Z2FPVBH6HAPGJ5T/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HNGMDNIHAA73BEX6XPA2IMXJSGOKKYE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PB3CIGOFG7CENUVVE4FFZT2HI5FO77XU/","https://security.gentoo.org/glsa/202401-25","https://security.netapp.com/advisory/ntap-20221028-0012/","https://www.oracle.com/security-alerts/cpuoct2022.html"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21619","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 20.3.7, 21.3.3 and 22.2.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 3.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3997","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3997","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3997","cwe":"CWE-674","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3997","cwe":"CWE-674","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3997","date":"2026-10-08","epss":0.01694,"percentile":0.76418}],"risk":0.8893500000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3997","description":"A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of service at boot time when too many nested directories are created in /tmp."},"relatedVulnerabilities":[{"id":"CVE-2021-3997","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3997","cwe":"CWE-674","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3997","cwe":"CWE-674","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3997","date":"2026-10-08","epss":0.01694,"percentile":0.76418}],"urls":["https://access.redhat.com/security/cve/CVE-2021-3997","https://bugzilla.redhat.com/show_bug.cgi?id=2024639","https://github.com/systemd/systemd/commit/5b1cf7a9be37e20133c0208005274ce4a5b5c6a1","https://security.gentoo.org/glsa/202305-15","https://www.openwall.com/lists/oss-security/2022/01/10/2"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3997","description":"A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of service at boot time when too many nested directories are created in /tmp."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3997","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3997","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3997","cwe":"CWE-674","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3997","cwe":"CWE-674","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3997","date":"2026-10-08","epss":0.01694,"percentile":0.76418}],"risk":0.8893500000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3997","description":"A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of service at boot time when too many nested directories are created in /tmp."},"relatedVulnerabilities":[{"id":"CVE-2021-3997","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3997","cwe":"CWE-674","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3997","cwe":"CWE-674","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3997","date":"2026-10-08","epss":0.01694,"percentile":0.76418}],"urls":["https://access.redhat.com/security/cve/CVE-2021-3997","https://bugzilla.redhat.com/show_bug.cgi?id=2024639","https://github.com/systemd/systemd/commit/5b1cf7a9be37e20133c0208005274ce4a5b5c6a1","https://security.gentoo.org/glsa/202305-15","https://www.openwall.com/lists/oss-security/2022/01/10/2"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3997","description":"A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of service at boot time when too many nested directories are created in /tmp."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-27535","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27535","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27535","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27535","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27535","date":"2026-10-08","epss":0.01607,"percentile":0.75157}],"risk":0.8758150000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27535","description":"An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subsequent transfers. Previously created connections are kept in a connection pool for reuse if they match the current setup. However, certain FTP settings such as CURLOPT_FTP_ACCOUNT, CURLOPT_FTP_ALTERNATIVE_TO_USER, CURLOPT_FTP_SSL_CCC, and CURLOPT_USE_SSL were not included in the configuration match checks, causing them to match too easily. This could lead to libcurl using the wrong credentials when performing a transfer, potentially allowing unauthorized access to sensitive information."},"relatedVulnerabilities":[{"id":"CVE-2023-27535","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27535","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27535","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27535","date":"2026-10-08","epss":0.01607,"percentile":0.75157}],"urls":["https://hackerone.com/reports/1892780","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27535","description":"An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subsequent transfers. Previously created connections are kept in a connection pool for reuse if they match the current setup. However, certain FTP settings such as CURLOPT_FTP_ACCOUNT, CURLOPT_FTP_ALTERNATIVE_TO_USER, CURLOPT_FTP_SSL_CCC, and CURLOPT_USE_SSL were not included in the configuration match checks, causing them to match too easily. This could lead to libcurl using the wrong credentials when performing a transfer, potentially allowing unauthorized access to sensitive information."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27535","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27535","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27535","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27535","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27535","date":"2026-10-08","epss":0.01607,"percentile":0.75157}],"risk":0.8758150000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27535","description":"An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subsequent transfers. Previously created connections are kept in a connection pool for reuse if they match the current setup. However, certain FTP settings such as CURLOPT_FTP_ACCOUNT, CURLOPT_FTP_ALTERNATIVE_TO_USER, CURLOPT_FTP_SSL_CCC, and CURLOPT_USE_SSL were not included in the configuration match checks, causing them to match too easily. This could lead to libcurl using the wrong credentials when performing a transfer, potentially allowing unauthorized access to sensitive information."},"relatedVulnerabilities":[{"id":"CVE-2023-27535","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27535","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27535","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27535","date":"2026-10-08","epss":0.01607,"percentile":0.75157}],"urls":["https://hackerone.com/reports/1892780","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27535","description":"An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subsequent transfers. Previously created connections are kept in a connection pool for reuse if they match the current setup. However, certain FTP settings such as CURLOPT_FTP_ACCOUNT, CURLOPT_FTP_ALTERNATIVE_TO_USER, CURLOPT_FTP_SSL_CCC, and CURLOPT_USE_SSL were not included in the configuration match checks, causing them to match too easily. This could lead to libcurl using the wrong credentials when performing a transfer, potentially allowing unauthorized access to sensitive information."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27535","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27535","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27535","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27535","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27535","date":"2026-10-08","epss":0.01607,"percentile":0.75157}],"risk":0.8758150000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27535","description":"An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subsequent transfers. Previously created connections are kept in a connection pool for reuse if they match the current setup. However, certain FTP settings such as CURLOPT_FTP_ACCOUNT, CURLOPT_FTP_ALTERNATIVE_TO_USER, CURLOPT_FTP_SSL_CCC, and CURLOPT_USE_SSL were not included in the configuration match checks, causing them to match too easily. This could lead to libcurl using the wrong credentials when performing a transfer, potentially allowing unauthorized access to sensitive information."},"relatedVulnerabilities":[{"id":"CVE-2023-27535","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27535","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27535","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27535","date":"2026-10-08","epss":0.01607,"percentile":0.75157}],"urls":["https://hackerone.com/reports/1892780","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27535","description":"An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subsequent transfers. Previously created connections are kept in a connection pool for reuse if they match the current setup. However, certain FTP settings such as CURLOPT_FTP_ACCOUNT, CURLOPT_FTP_ALTERNATIVE_TO_USER, CURLOPT_FTP_SSL_CCC, and CURLOPT_USE_SSL were not included in the configuration match checks, causing them to match too easily. This could lead to libcurl using the wrong credentials when performing a transfer, potentially allowing unauthorized access to sensitive information."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4806","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4806","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4806","date":"2026-10-08","epss":0.01606,"percentile":0.75144}],"risk":0.8752700000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4806","description":"A flaw was found in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name should return a large number of IPv6 and IPv4, and the call to the getaddrinfo function should have the AF_INET6 address family with AI_CANONNAME, AI_ALL and AI_V4MAPPED as flags."},"relatedVulnerabilities":[{"id":"CVE-2023-4806","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4806","date":"2026-10-08","epss":0.01606,"percentile":0.75144}],"urls":["https://access.redhat.com/errata/RHSA-2023:5453","https://access.redhat.com/errata/RHSA-2023:5455","https://access.redhat.com/errata/RHSA-2023:7409","https://access.redhat.com/security/cve/CVE-2023-4806","https://bugzilla.redhat.com/show_bug.cgi?id=2237782","http://www.openwall.com/lists/oss-security/2023/10/03/4","http://www.openwall.com/lists/oss-security/2023/10/03/5","http://www.openwall.com/lists/oss-security/2023/10/03/6","http://www.openwall.com/lists/oss-security/2023/10/03/8","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4DBUQRRPB47TC3NJOUIBVWUGFHBJAFDL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DFG4P76UHHZEWQ26FWBXG76N2QLKKPZA/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NDAQWHTSVOCOZ5K6KPIWKRT3JX4RTZUR/","https://security.gentoo.org/glsa/202310-03","https://security.netapp.com/advisory/ntap-20240125-0008/","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-831302.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4806","description":"A flaw has been identified in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name should return a large number of IPv6 and IPv4, and the call to the getaddrinfo function should have the AF_INET6 address family with AI_CANONNAME, AI_ALL and AI_V4MAPPED as flags."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4806","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4806","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4806","date":"2026-10-08","epss":0.01606,"percentile":0.75144}],"risk":0.8752700000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4806","description":"A flaw was found in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name should return a large number of IPv6 and IPv4, and the call to the getaddrinfo function should have the AF_INET6 address family with AI_CANONNAME, AI_ALL and AI_V4MAPPED as flags."},"relatedVulnerabilities":[{"id":"CVE-2023-4806","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4806","date":"2026-10-08","epss":0.01606,"percentile":0.75144}],"urls":["https://access.redhat.com/errata/RHSA-2023:5453","https://access.redhat.com/errata/RHSA-2023:5455","https://access.redhat.com/errata/RHSA-2023:7409","https://access.redhat.com/security/cve/CVE-2023-4806","https://bugzilla.redhat.com/show_bug.cgi?id=2237782","http://www.openwall.com/lists/oss-security/2023/10/03/4","http://www.openwall.com/lists/oss-security/2023/10/03/5","http://www.openwall.com/lists/oss-security/2023/10/03/6","http://www.openwall.com/lists/oss-security/2023/10/03/8","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4DBUQRRPB47TC3NJOUIBVWUGFHBJAFDL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DFG4P76UHHZEWQ26FWBXG76N2QLKKPZA/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NDAQWHTSVOCOZ5K6KPIWKRT3JX4RTZUR/","https://security.gentoo.org/glsa/202310-03","https://security.netapp.com/advisory/ntap-20240125-0008/","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-831302.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4806","description":"A flaw has been identified in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name should return a large number of IPv6 and IPv4, and the call to the getaddrinfo function should have the AF_INET6 address family with AI_CANONNAME, AI_ALL and AI_V4MAPPED as flags."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4806","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4806","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4806","date":"2026-10-08","epss":0.01606,"percentile":0.75144}],"risk":0.8752700000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4806","description":"A flaw was found in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name should return a large number of IPv6 and IPv4, and the call to the getaddrinfo function should have the AF_INET6 address family with AI_CANONNAME, AI_ALL and AI_V4MAPPED as flags."},"relatedVulnerabilities":[{"id":"CVE-2023-4806","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4806","date":"2026-10-08","epss":0.01606,"percentile":0.75144}],"urls":["https://access.redhat.com/errata/RHSA-2023:5453","https://access.redhat.com/errata/RHSA-2023:5455","https://access.redhat.com/errata/RHSA-2023:7409","https://access.redhat.com/security/cve/CVE-2023-4806","https://bugzilla.redhat.com/show_bug.cgi?id=2237782","http://www.openwall.com/lists/oss-security/2023/10/03/4","http://www.openwall.com/lists/oss-security/2023/10/03/5","http://www.openwall.com/lists/oss-security/2023/10/03/6","http://www.openwall.com/lists/oss-security/2023/10/03/8","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4DBUQRRPB47TC3NJOUIBVWUGFHBJAFDL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DFG4P76UHHZEWQ26FWBXG76N2QLKKPZA/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NDAQWHTSVOCOZ5K6KPIWKRT3JX4RTZUR/","https://security.gentoo.org/glsa/202310-03","https://security.netapp.com/advisory/ntap-20240125-0008/","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-831302.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4806","description":"A flaw has been identified in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name should return a large number of IPv6 and IPv4, and the call to the getaddrinfo function should have the AF_INET6 address family with AI_CANONNAME, AI_ALL and AI_V4MAPPED as flags."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4806","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4806","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4806","date":"2026-10-08","epss":0.01606,"percentile":0.75144}],"risk":0.8752700000000002,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4806","description":"A flaw was found in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name should return a large number of IPv6 and IPv4, and the call to the getaddrinfo function should have the AF_INET6 address family with AI_CANONNAME, AI_ALL and AI_V4MAPPED as flags."},"relatedVulnerabilities":[{"id":"CVE-2023-4806","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-4806","cwe":"CWE-416","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4806","date":"2026-10-08","epss":0.01606,"percentile":0.75144}],"urls":["https://access.redhat.com/errata/RHSA-2023:5453","https://access.redhat.com/errata/RHSA-2023:5455","https://access.redhat.com/errata/RHSA-2023:7409","https://access.redhat.com/security/cve/CVE-2023-4806","https://bugzilla.redhat.com/show_bug.cgi?id=2237782","http://www.openwall.com/lists/oss-security/2023/10/03/4","http://www.openwall.com/lists/oss-security/2023/10/03/5","http://www.openwall.com/lists/oss-security/2023/10/03/6","http://www.openwall.com/lists/oss-security/2023/10/03/8","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4DBUQRRPB47TC3NJOUIBVWUGFHBJAFDL/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DFG4P76UHHZEWQ26FWBXG76N2QLKKPZA/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NDAQWHTSVOCOZ5K6KPIWKRT3JX4RTZUR/","https://security.gentoo.org/glsa/202310-03","https://security.netapp.com/advisory/ntap-20240125-0008/","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-831302.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4806","description":"A flaw has been identified in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name should return a large number of IPv6 and IPv4, and the call to the getaddrinfo function should have the AF_INET6 address family with AI_CANONNAME, AI_ALL and AI_V4MAPPED as flags."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u8"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-23946","versionConstraint":"< 1:2.20.1-2+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-23946","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23946","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2023-23946","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-23946","date":"2026-10-08","epss":0.01144,"percentile":0.65738}],"risk":0.8580000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-23946","description":"Git, a revision control system, is vulnerable to path traversal prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8. By feeding a crafted input to `git apply`, a path outside the working tree can be overwritten as the user who is running `git apply`. A fix has been prepared and will appear in v2.39.2, v2.38.4, v2.37.6, v2.36.5, v2.35.7, v2.34.7, v2.33.7, v2.32.6, v2.31.7, and v2.30.8. As a workaround, use `git apply --stat` to inspect a patch before applying; avoid applying one that creates a symbolic link and then creates a file beyond the symbolic link."},"relatedVulnerabilities":[{"id":"CVE-2023-23946","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":6.2,"impactScore":3.6,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23946","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2023-23946","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-23946","date":"2026-10-08","epss":0.01144,"percentile":0.65738}],"urls":["https://github.com/git/git/commit/c867e4fa180bec4750e9b54eb10f459030dbebfd","https://github.com/git/git/security/advisories/GHSA-r87m-v37r-cwfh","https://security.gentoo.org/glsa/202312-15"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-23946","description":"Git, a revision control system, is vulnerable to path traversal prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8. By feeding a crafted input to `git apply`, a path outside the working tree can be overwritten as the user who is running `git apply`. A fix has been prepared and will appear in v2.39.2, v2.38.4, v2.37.6, v2.36.5, v2.35.7, v2.34.7, v2.33.7, v2.32.6, v2.31.7, and v2.30.8. As a workaround, use `git apply --stat` to inspect a patch before applying; avoid applying one that creates a symbolic link and then creates a file beyond the symbolic link."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-23946","versionConstraint":"< 1:2.20.1-2+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-23946","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23946","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2023-23946","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-23946","date":"2026-10-08","epss":0.01144,"percentile":0.65738}],"risk":0.8580000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-23946","description":"Git, a revision control system, is vulnerable to path traversal prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8. By feeding a crafted input to `git apply`, a path outside the working tree can be overwritten as the user who is running `git apply`. A fix has been prepared and will appear in v2.39.2, v2.38.4, v2.37.6, v2.36.5, v2.35.7, v2.34.7, v2.33.7, v2.32.6, v2.31.7, and v2.30.8. As a workaround, use `git apply --stat` to inspect a patch before applying; avoid applying one that creates a symbolic link and then creates a file beyond the symbolic link."},"relatedVulnerabilities":[{"id":"CVE-2023-23946","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":6.2,"impactScore":3.6,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-23946","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2023-23946","cwe":"CWE-22","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-23946","date":"2026-10-08","epss":0.01144,"percentile":0.65738}],"urls":["https://github.com/git/git/commit/c867e4fa180bec4750e9b54eb10f459030dbebfd","https://github.com/git/git/security/advisories/GHSA-r87m-v37r-cwfh","https://security.gentoo.org/glsa/202312-15"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-23946","description":"Git, a revision control system, is vulnerable to path traversal prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8. By feeding a crafted input to `git apply`, a path outside the working tree can be overwritten as the user who is running `git apply`. A fix has been prepared and will appear in v2.39.2, v2.38.4, v2.37.6, v2.36.5, v2.35.7, v2.34.7, v2.33.7, v2.32.6, v2.31.7, and v2.30.8. As a workaround, use `git apply --stat` to inspect a patch before applying; avoid applying one that creates a symbolic link and then creates a file beyond the symbolic link."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-27536","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27536","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27536","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27536","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27536","date":"2026-10-08","epss":0.01566,"percentile":0.74564}],"risk":0.8534700000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27536","description":"An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION option. This vulnerability affects krb5/kerberos/negotiate/GSSAPI transfers and could potentially result in unauthorized access to sensitive information. The safest option is to not reuse connections if the CURLOPT_GSSAPI_DELEGATION option has been changed."},"relatedVulnerabilities":[{"id":"CVE-2023-27536","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27536","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27536","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27536","date":"2026-10-08","epss":0.01566,"percentile":0.74564}],"urls":["https://hackerone.com/reports/1895135","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27536","description":"An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION option. This vulnerability affects krb5/kerberos/negotiate/GSSAPI transfers and could potentially result in unauthorized access to sensitive information. The safest option is to not reuse connections if the CURLOPT_GSSAPI_DELEGATION option has been changed."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27536","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27536","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27536","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27536","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27536","date":"2026-10-08","epss":0.01566,"percentile":0.74564}],"risk":0.8534700000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27536","description":"An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION option. This vulnerability affects krb5/kerberos/negotiate/GSSAPI transfers and could potentially result in unauthorized access to sensitive information. The safest option is to not reuse connections if the CURLOPT_GSSAPI_DELEGATION option has been changed."},"relatedVulnerabilities":[{"id":"CVE-2023-27536","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27536","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27536","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27536","date":"2026-10-08","epss":0.01566,"percentile":0.74564}],"urls":["https://hackerone.com/reports/1895135","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27536","description":"An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION option. This vulnerability affects krb5/kerberos/negotiate/GSSAPI transfers and could potentially result in unauthorized access to sensitive information. The safest option is to not reuse connections if the CURLOPT_GSSAPI_DELEGATION option has been changed."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27536","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27536","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27536","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27536","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27536","date":"2026-10-08","epss":0.01566,"percentile":0.74564}],"risk":0.8534700000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27536","description":"An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION option. This vulnerability affects krb5/kerberos/negotiate/GSSAPI transfers and could potentially result in unauthorized access to sensitive information. The safest option is to not reuse connections if the CURLOPT_GSSAPI_DELEGATION option has been changed."},"relatedVulnerabilities":[{"id":"CVE-2023-27536","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27536","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27536","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27536","date":"2026-10-08","epss":0.01566,"percentile":0.74564}],"urls":["https://hackerone.com/reports/1895135","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/36NBD5YLJXXEDZLDGNFCERWRYJQ6LAQW/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27536","description":"An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION option. This vulnerability affects krb5/kerberos/negotiate/GSSAPI transfers and could potentially result in unauthorized access to sensitive information. The safest option is to not reuse connections if the CURLOPT_GSSAPI_DELEGATION option has been changed."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_422"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21147","versionConstraint":"< 1.8.0_422||>= 1.9, < 8.0.422||>= 12, < 17.0.12||>= 18, < 21.0.4||>= 22, < 22.0.2||>= 9, < 11.0.24 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21147","fix":{"state":"fixed","versions":["1.8.0_422","8.0.422","11.0.24","17.0.12","21.0.4","22.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_422"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.422"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.12"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.4"},{"date":"2025-09-04","kind":"first-observed","version":"22.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.24"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-21147","cwe":"CWE-200","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-21147","date":"2026-10-08","epss":0.01136,"percentile":0.65525}],"risk":0.8463200000000001,"urls":["https://security.netapp.com/advisory/ntap-20240719-0008/","https://www.oracle.com/security-alerts/cpujul2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-07-16"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21147","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and  21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"11266fe42a39668b","cpes":["cpe:2.3:a:libgssapi-krb5-2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5-2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgssapi-krb5-2","purl":"pkg:deb/debian/libgssapi-krb5-2@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgssapi-krb5-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libgssapi-krb5-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-26461","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-26461","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26461","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-26461","date":"2026-10-08","epss":0.01128,"percentile":0.65338}],"risk":0.8460000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-26461","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c."},"relatedVulnerabilities":[{"id":"CVE-2024-26461","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26461","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-26461","date":"2026-10-08","epss":0.01128,"percentile":0.65338}],"urls":["https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_2.md","https://security.netapp.com/advisory/ntap-20240415-0011/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-26461","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c."}]},{"artifact":{"id":"ccf5186a66741b60","cpes":["cpe:2.3:a:libk5crypto3:libk5crypto3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libk5crypto3","purl":"pkg:deb/debian/libk5crypto3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libk5crypto3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libk5crypto3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-26461","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-26461","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26461","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-26461","date":"2026-10-08","epss":0.01128,"percentile":0.65338}],"risk":0.8460000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-26461","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c."},"relatedVulnerabilities":[{"id":"CVE-2024-26461","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26461","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-26461","date":"2026-10-08","epss":0.01128,"percentile":0.65338}],"urls":["https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_2.md","https://security.netapp.com/advisory/ntap-20240415-0011/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-26461","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c."}]},{"artifact":{"id":"9d7689846a6700a5","cpes":["cpe:2.3:a:libkrb5-3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5-3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5-3","purl":"pkg:deb/debian/libkrb5-3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5-3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5-3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-26461","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-26461","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26461","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-26461","date":"2026-10-08","epss":0.01128,"percentile":0.65338}],"risk":0.8460000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-26461","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c."},"relatedVulnerabilities":[{"id":"CVE-2024-26461","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26461","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-26461","date":"2026-10-08","epss":0.01128,"percentile":0.65338}],"urls":["https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_2.md","https://security.netapp.com/advisory/ntap-20240415-0011/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-26461","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c."}]},{"artifact":{"id":"a14f851bc531224e","cpes":["cpe:2.3:a:libkrb5support0:libkrb5support0:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5support0","purl":"pkg:deb/debian/libkrb5support0@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5support0/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5support0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-26461","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-26461","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26461","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-26461","date":"2026-10-08","epss":0.01128,"percentile":0.65338}],"risk":0.8460000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-26461","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c."},"relatedVulnerabilities":[{"id":"CVE-2024-26461","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26461","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-26461","date":"2026-10-08","epss":0.01128,"percentile":0.65338}],"urls":["https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_2.md","https://security.netapp.com/advisory/ntap-20240415-0011/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-26461","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_372"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21967","versionConstraint":"< 1.8.0_372||>= 1.9, < 8.0.372||>= 12, < 17.0.7||>= 18, < 20.0.1||>= 9, < 11.0.19 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21967","fix":{"state":"fixed","versions":["1.8.0_372","8.0.372","11.0.19","17.0.7","20.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_372"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.372"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"20.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.19"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-21967","date":"2026-10-08","epss":0.01536,"percentile":0.74076}],"risk":0.8371200000000001,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230427-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5430","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpuapr2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-04-18"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21967","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE).  Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and  22.3.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.9 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H)."},"relatedVulnerabilities":[]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-0466","versionConstraint":"< 1.1.1n-0+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0466","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0466","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-0466","date":"2026-10-08","epss":0.01625,"percentile":0.75423}],"risk":0.8368750000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0466","description":"The function X509_VERIFY_PARAM_add0_policy() is documented to implicitly enable the certificate policy check when doing certificate verification. However the implementation of the function does not enable the check which allows certificates with invalid or incorrect policies to pass the certificate verification.  As suddenly enabling the policy check could break existing deployments it was decided to keep the existing behavior of the X509_VERIFY_PARAM_add0_policy() function.  Instead the applications that require OpenSSL to perform certificate policy check need to use X509_VERIFY_PARAM_set1_policies() or explicitly enable the policy check by calling X509_VERIFY_PARAM_set_flags() with the X509_V_FLAG_POLICY_CHECK flag argument.  Certificate policy checks are disabled by default in OpenSSL and are not commonly used by applications."},"relatedVulnerabilities":[{"id":"CVE-2023-0466","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0466","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-0466","date":"2026-10-08","epss":0.01625,"percentile":0.75423}],"urls":["http://www.openwall.com/lists/oss-security/2023/09/28/4","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=0d16b7e99aafc0b4a6d729eec65a411a7e025f0a","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=51e8a84ce742db0f6c70510d0159dad8f7825908","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=73398dea26de9899fb4baa94098ad0a61f435c72","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fc814a30fc4f0bc54fcea7d9a7462f5457aab061","https://lists.debian.org/debian-lts-announce/2023/06/msg00011.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230414-0001/","https://www.debian.org/security/2023/dsa-5417","https://www.openssl.org/news/secadv/20230328.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0466","description":"The function X509_VERIFY_PARAM_add0_policy() is documented to\nimplicitly enable the certificate policy check when doing certificate\nverification. However the implementation of the function does not\nenable the check which allows certificates with invalid or incorrect\npolicies to pass the certificate verification.\n\nAs suddenly enabling the policy check could break existing deployments it was\ndecided to keep the existing behavior of the X509_VERIFY_PARAM_add0_policy()\nfunction.\n\nInstead the applications that require OpenSSL to perform certificate\npolicy check need to use X509_VERIFY_PARAM_set1_policies() or explicitly\nenable the policy check by calling X509_VERIFY_PARAM_set_flags() with\nthe X509_V_FLAG_POLICY_CHECK flag argument.\n\nCertificate policy checks are disabled by default in OpenSSL and are not\ncommonly used by applications."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-0466","versionConstraint":"< 1.1.1n-0+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0466","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0466","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-0466","date":"2026-10-08","epss":0.01625,"percentile":0.75423}],"risk":0.8368750000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0466","description":"The function X509_VERIFY_PARAM_add0_policy() is documented to implicitly enable the certificate policy check when doing certificate verification. However the implementation of the function does not enable the check which allows certificates with invalid or incorrect policies to pass the certificate verification.  As suddenly enabling the policy check could break existing deployments it was decided to keep the existing behavior of the X509_VERIFY_PARAM_add0_policy() function.  Instead the applications that require OpenSSL to perform certificate policy check need to use X509_VERIFY_PARAM_set1_policies() or explicitly enable the policy check by calling X509_VERIFY_PARAM_set_flags() with the X509_V_FLAG_POLICY_CHECK flag argument.  Certificate policy checks are disabled by default in OpenSSL and are not commonly used by applications."},"relatedVulnerabilities":[{"id":"CVE-2023-0466","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0466","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-0466","date":"2026-10-08","epss":0.01625,"percentile":0.75423}],"urls":["http://www.openwall.com/lists/oss-security/2023/09/28/4","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=0d16b7e99aafc0b4a6d729eec65a411a7e025f0a","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=51e8a84ce742db0f6c70510d0159dad8f7825908","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=73398dea26de9899fb4baa94098ad0a61f435c72","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=fc814a30fc4f0bc54fcea7d9a7462f5457aab061","https://lists.debian.org/debian-lts-announce/2023/06/msg00011.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230414-0001/","https://www.debian.org/security/2023/dsa-5417","https://www.openssl.org/news/secadv/20230328.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0466","description":"The function X509_VERIFY_PARAM_add0_policy() is documented to\nimplicitly enable the certificate policy check when doing certificate\nverification. However the implementation of the function does not\nenable the check which allows certificates with invalid or incorrect\npolicies to pass the certificate verification.\n\nAs suddenly enabling the policy check could break existing deployments it was\ndecided to keep the existing behavior of the X509_VERIFY_PARAM_add0_policy()\nfunction.\n\nInstead the applications that require OpenSSL to perform certificate\npolicy check need to use X509_VERIFY_PARAM_set1_policies() or explicitly\nenable the policy check by calling X509_VERIFY_PARAM_set_flags() with\nthe X509_V_FLAG_POLICY_CHECK flag argument.\n\nCertificate policy checks are disabled by default in OpenSSL and are not\ncommonly used by applications."}]},{"artifact":{"id":"16faa100e8d6ebcf","cpes":["cpe:2.3:a:libssh2-1:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2-1:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2_1:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2_1:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2:libssh2-1:1.8.0-2.1:*:*:*:*:*:*:*","cpe:2.3:a:libssh2:libssh2_1:1.8.0-2.1:*:*:*:*:*:*:*"],"name":"libssh2-1","purl":"pkg:deb/debian/libssh2-1@1.8.0-2.1?arch=amd64&distro=debian-10.10&upstream=libssh2","type":"deb","version":"1.8.0-2.1","language":"","licenses":["BSD3"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssh2-1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssh2-1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssh2-1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssh2-1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"libssh2"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0-2.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-22218","versionConstraint":"< 1.8.0-2.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libssh2","version":"1.8.0-2.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-22218","fix":{"state":"fixed","versions":["1.8.0-2.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.8.0-2.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-22218","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-22218","date":"2026-10-08","epss":0.01099,"percentile":0.64628}],"risk":0.8242499999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-22218","description":"An issue was discovered in function _libssh2_packet_add in libssh2 1.10.0 allows attackers to access out of bounds memory."},"relatedVulnerabilities":[{"id":"CVE-2020-22218","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-22218","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-22218","date":"2026-10-08","epss":0.01099,"percentile":0.64628}],"urls":["https://github.com/libssh2/libssh2/pull/476","https://lists.debian.org/debian-lts-announce/2023/09/msg00006.html","https://security.netapp.com/advisory/ntap-20231006-0002/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-22218","description":"An issue was discovered in function _libssh2_packet_add in libssh2 1.10.0 allows attackers to access out of bounds memory."}]},{"artifact":{"id":"a1b8aa953f7aceb6","cpes":["cpe:2.3:a:libssl1.1:libssl1.1:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"libssl1.1","purl":"pkg:deb/debian/libssl1.1@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openssl","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libssl1.1/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libssl1.1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libssl1.1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openssl"}]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-0465","versionConstraint":"< 1.1.1n-0+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0465","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0465","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0465","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0465","date":"2026-10-08","epss":0.01583,"percentile":0.74801}],"risk":0.815245,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0465","description":"Applications that use a non-default option when verifying certificates may be vulnerable to an attack from a malicious CA to circumvent certain checks.  Invalid certificate policies in leaf certificates are silently ignored by OpenSSL and other certificate policy checks are skipped for that certificate. A malicious CA could use this to deliberately assert invalid certificate policies in order to circumvent policy checking on the certificate altogether.  Policy processing is disabled by default but can be enabled by passing the `-policy' argument to the command line utilities or by calling the `X509_VERIFY_PARAM_set1_policies()' function."},"relatedVulnerabilities":[{"id":"CVE-2023-0465","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0465","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0465","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0465","date":"2026-10-08","epss":0.01583,"percentile":0.74801}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=10325176f3d3e98c6e2b3bf5ab1e3b334de6947a","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=1dd43e0709fece299b15208f36cc7c76209ba0bb","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=b013765abfa80036dc779dd0e50602c57bb3bf95","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=facfb1ab745646e97a1920977ae4a9965ea61d5c","https://lists.debian.org/debian-lts-announce/2023/06/msg00011.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230414-0001/","https://www.debian.org/security/2023/dsa-5417","https://www.openssl.org/news/secadv/20230328.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0465","description":"Applications that use a non-default option when verifying certificates may be\nvulnerable to an attack from a malicious CA to circumvent certain checks.\n\nInvalid certificate policies in leaf certificates are silently ignored by\nOpenSSL and other certificate policy checks are skipped for that certificate.\nA malicious CA could use this to deliberately assert invalid certificate policies\nin order to circumvent policy checking on the certificate altogether.\n\nPolicy processing is disabled by default but can be enabled by passing\nthe `-policy' argument to the command line utilities or by calling the\n`X509_VERIFY_PARAM_set1_policies()' function."}]},{"artifact":{"id":"a4f13be387109c83","cpes":["cpe:2.3:a:openssl:openssl:1.1.1d-0\\+deb10u6:*:*:*:*:*:*:*"],"name":"openssl","purl":"pkg:deb/debian/openssl@1.1.1d-0%2Bdeb10u6?arch=amd64&distro=debian-10.10","type":"deb","version":"1.1.1d-0+deb10u6","language":"","licenses":["OpenSSL"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/openssl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.list"},{"path":"/var/lib/dpkg/info/openssl.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/openssl.postinst"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1.1.1n-0+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-0465","versionConstraint":"< 1.1.1n-0+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssl","version":"1.1.1d-0+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-0465","fix":{"state":"fixed","versions":["1.1.1n-0+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1.1.1n-0+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0465","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0465","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0465","date":"2026-10-08","epss":0.01583,"percentile":0.74801}],"risk":0.815245,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-0465","description":"Applications that use a non-default option when verifying certificates may be vulnerable to an attack from a malicious CA to circumvent certain checks.  Invalid certificate policies in leaf certificates are silently ignored by OpenSSL and other certificate policy checks are skipped for that certificate. A malicious CA could use this to deliberately assert invalid certificate policies in order to circumvent policy checking on the certificate altogether.  Policy processing is disabled by default but can be enabled by passing the `-policy' argument to the command line utilities or by calling the `X509_VERIFY_PARAM_set1_policies()' function."},"relatedVulnerabilities":[{"id":"CVE-2023-0465","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-0465","cwe":"CWE-295","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2023-0465","cwe":"CWE-295","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-0465","date":"2026-10-08","epss":0.01583,"percentile":0.74801}],"urls":["https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=10325176f3d3e98c6e2b3bf5ab1e3b334de6947a","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=1dd43e0709fece299b15208f36cc7c76209ba0bb","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=b013765abfa80036dc779dd0e50602c57bb3bf95","https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=facfb1ab745646e97a1920977ae4a9965ea61d5c","https://lists.debian.org/debian-lts-announce/2023/06/msg00011.html","https://security.gentoo.org/glsa/202402-08","https://security.netapp.com/advisory/ntap-20230414-0001/","https://www.debian.org/security/2023/dsa-5417","https://www.openssl.org/news/secadv/20230328.txt"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-0465","description":"Applications that use a non-default option when verifying certificates may be\nvulnerable to an attack from a malicious CA to circumvent certain checks.\n\nInvalid certificate policies in leaf certificates are silently ignored by\nOpenSSL and other certificate policy checks are skipped for that certificate.\nA malicious CA could use this to deliberately assert invalid certificate policies\nin order to circumvent policy checking on the certificate altogether.\n\nPolicy processing is disabled by default but can be enabled by passing\nthe `-policy' argument to the command line utilities or by calling the\n`X509_VERIFY_PARAM_set1_policies()' function."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-35252","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-35252","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-35252","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2022-35252","date":"2026-10-08","epss":0.0243,"percentile":0.83755}],"risk":0.8140499999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-35252","description":"When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a\"sister site\" to deny service to all siblings."},"relatedVulnerabilities":[{"id":"CVE-2022-35252","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-35252","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2022-35252","date":"2026-10-08","epss":0.0243,"percentile":0.83755}],"urls":["http://seclists.org/fulldisclosure/2023/Jan/20","http://seclists.org/fulldisclosure/2023/Jan/21","https://hackerone.com/reports/1613943","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220930-0005/","https://support.apple.com/kb/HT213603","https://support.apple.com/kb/HT213604"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-35252","description":"When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a\"sister site\" to deny service to all siblings."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-35252","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-35252","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-35252","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2022-35252","date":"2026-10-08","epss":0.0243,"percentile":0.83755}],"risk":0.8140499999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-35252","description":"When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a\"sister site\" to deny service to all siblings."},"relatedVulnerabilities":[{"id":"CVE-2022-35252","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-35252","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2022-35252","date":"2026-10-08","epss":0.0243,"percentile":0.83755}],"urls":["http://seclists.org/fulldisclosure/2023/Jan/20","http://seclists.org/fulldisclosure/2023/Jan/21","https://hackerone.com/reports/1613943","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220930-0005/","https://support.apple.com/kb/HT213603","https://support.apple.com/kb/HT213604"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-35252","description":"When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a\"sister site\" to deny service to all siblings."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-35252","versionConstraint":"< 7.64.0-4+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-35252","fix":{"state":"fixed","versions":["7.64.0-4+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-35252","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2022-35252","date":"2026-10-08","epss":0.0243,"percentile":0.83755}],"risk":0.8140499999999998,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-35252","description":"When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a\"sister site\" to deny service to all siblings."},"relatedVulnerabilities":[{"id":"CVE-2022-35252","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-35252","cwe":"CWE-20","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2022-35252","date":"2026-10-08","epss":0.0243,"percentile":0.83755}],"urls":["http://seclists.org/fulldisclosure/2023/Jan/20","http://seclists.org/fulldisclosure/2023/Jan/21","https://hackerone.com/reports/1613943","https://lists.debian.org/debian-lts-announce/2023/01/msg00028.html","https://security.gentoo.org/glsa/202212-01","https://security.netapp.com/advisory/ntap-20220930-0005/","https://support.apple.com/kb/HT213603","https://support.apple.com/kb/HT213604"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-35252","description":"When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a\"sister site\" to deny service to all siblings."}]},{"artifact":{"id":"ca588797ccd6a954","cpes":["cpe:2.3:a:less:less:487-0.1\\+b1:*:*:*:*:*:*:*"],"name":"less","purl":"pkg:deb/debian/less@487-0.1%2Bb1?arch=amd64&distro=debian-10.10&upstream=less%40487-0.1","type":"deb","version":"487-0.1+b1","language":"","licenses":["sha256:7b2258b0cec49135ac8d7f8dfe73d842bfedda3f11c0516cb07616f6be466b5d"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/less/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/less/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/less.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/less.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.list"},{"path":"/var/lib/dpkg/info/less.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.postinst"},{"path":"/var/lib/dpkg/info/less.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.postrm"},{"path":"/var/lib/dpkg/info/less.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.prerm"}],"upstreams":[{"name":"less","version":"487-0.1"}]},"matchDetails":[{"fix":{"suggestedVersion":"487-0.1+deb10u1"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-48624","versionConstraint":"< 487-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"less","version":"487-0.1+b1"},"namespace":"debian:distro:debian:10"}},{"fix":{"suggestedVersion":"487-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-48624","versionConstraint":"< 487-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"less","version":"487-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-48624","fix":{"state":"fixed","versions":["487-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"487-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-48624","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-48624","date":"2026-10-08","epss":0.01059,"percentile":0.6349}],"risk":0.810135,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-48624","description":"close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE."},"relatedVulnerabilities":[{"id":"CVE-2022-48624","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-48624","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-48624","date":"2026-10-08","epss":0.01059,"percentile":0.6349}],"urls":["https://github.com/gwsw/less/commit/c6ac6de49698be84d264a0c4c0c40bb870b10144","https://github.com/gwsw/less/compare/v605...v606","https://greenwoodsoftware.com/less/","https://lists.debian.org/debian-lts-announce/2024/05/msg00018.html","https://security.netapp.com/advisory/ntap-20240605-0010/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-48624","description":"close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE."}]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"fix":{"suggestedVersion":"241-7~deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-26604","versionConstraint":"< 241-7~deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-26604","fix":{"state":"fixed","versions":["241-7~deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"241-7~deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-26604","cwe":"CWE-269","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-26604","date":"2026-10-08","epss":0.01051,"percentile":0.63235}],"risk":0.8040150000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-26604","description":"systemd before 247 does not adequately block local privilege escalation for some Sudo configurations, e.g., plausible sudoers files in which the \"systemctl status\" command may be executed. Specifically, systemd does not set LESSSECURE to 1, and thus other programs may be launched from the less program. This presents a substantial security risk when running systemctl from Sudo, because less executes as root when the terminal size is too small to show the complete systemctl output."},"relatedVulnerabilities":[{"id":"CVE-2023-26604","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-26604","cwe":"CWE-269","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-26604","date":"2026-10-08","epss":0.01051,"percentile":0.63235}],"urls":["http://packetstormsecurity.com/files/174130/systemd-246-Local-Root-Privilege-Escalation.html","https://blog.compass-security.com/2012/10/dangerous-sudoers-entries-part-2-insecure-functionality/","https://github.com/systemd/systemd/blob/main/NEWS#L4335-L4340","https://lists.debian.org/debian-lts-announce/2023/03/msg00032.html","https://medium.com/%40zenmoviefornotification/saidov-maxim-cve-2023-26604-c1232a526ba7","https://security.netapp.com/advisory/ntap-20230505-0009/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-26604","description":"systemd before 247 does not adequately block local privilege escalation for some Sudo configurations, e.g., plausible sudoers files in which the \"systemctl status\" command may be executed. Specifically, systemd does not set LESSSECURE to 1, and thus other programs may be launched from the less program. This presents a substantial security risk when running systemctl from Sudo, because less executes as root when the terminal size is too small to show the complete systemctl output."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"fix":{"suggestedVersion":"241-7~deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-26604","versionConstraint":"< 241-7~deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-26604","fix":{"state":"fixed","versions":["241-7~deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"241-7~deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-26604","cwe":"CWE-269","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-26604","date":"2026-10-08","epss":0.01051,"percentile":0.63235}],"risk":0.8040150000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-26604","description":"systemd before 247 does not adequately block local privilege escalation for some Sudo configurations, e.g., plausible sudoers files in which the \"systemctl status\" command may be executed. Specifically, systemd does not set LESSSECURE to 1, and thus other programs may be launched from the less program. This presents a substantial security risk when running systemctl from Sudo, because less executes as root when the terminal size is too small to show the complete systemctl output."},"relatedVulnerabilities":[{"id":"CVE-2023-26604","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-26604","cwe":"CWE-269","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-26604","date":"2026-10-08","epss":0.01051,"percentile":0.63235}],"urls":["http://packetstormsecurity.com/files/174130/systemd-246-Local-Root-Privilege-Escalation.html","https://blog.compass-security.com/2012/10/dangerous-sudoers-entries-part-2-insecure-functionality/","https://github.com/systemd/systemd/blob/main/NEWS#L4335-L4340","https://lists.debian.org/debian-lts-announce/2023/03/msg00032.html","https://medium.com/%40zenmoviefornotification/saidov-maxim-cve-2023-26604-c1232a526ba7","https://security.netapp.com/advisory/ntap-20230505-0009/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-26604","description":"systemd before 247 does not adequately block local privilege escalation for some Sudo configurations, e.g., plausible sudoers files in which the \"systemctl status\" command may be executed. Specifically, systemd does not set LESSSECURE to 1, and thus other programs may be launched from the less program. This presents a substantial security risk when running systemctl from Sudo, because less executes as root when the terminal size is too small to show the complete systemctl output."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33601","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33601","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":7.3,"impactScore":3.4,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33601","cwe":"CWE-617","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33601","date":"2026-10-08","epss":0.01075,"percentile":0.63946}],"risk":0.7954999999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33601","description":"nscd: netgroup cache may terminate daemon on memory allocation failure  The Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or xrealloc and these functions may terminate the process due to a memory allocation failure resulting in a denial of service to the clients.  The flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33601","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":7.3,"impactScore":3.4,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33601","cwe":"CWE-617","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33601","date":"2026-10-08","epss":0.01075,"percentile":0.63946}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0014/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0007","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33601","description":"nscd: netgroup cache may terminate daemon on memory allocation failure\n\nThe Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or\nxrealloc and these functions may terminate the process due to a memory\nallocation failure resulting in a denial of service to the clients.  The\nflaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33601","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33601","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":7.3,"impactScore":3.4,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33601","cwe":"CWE-617","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33601","date":"2026-10-08","epss":0.01075,"percentile":0.63946}],"risk":0.7954999999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33601","description":"nscd: netgroup cache may terminate daemon on memory allocation failure  The Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or xrealloc and these functions may terminate the process due to a memory allocation failure resulting in a denial of service to the clients.  The flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33601","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":7.3,"impactScore":3.4,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33601","cwe":"CWE-617","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33601","date":"2026-10-08","epss":0.01075,"percentile":0.63946}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0014/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0007","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33601","description":"nscd: netgroup cache may terminate daemon on memory allocation failure\n\nThe Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or\nxrealloc and these functions may terminate the process due to a memory\nallocation failure resulting in a denial of service to the clients.  The\nflaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33601","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33601","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":7.3,"impactScore":3.4,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33601","cwe":"CWE-617","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33601","date":"2026-10-08","epss":0.01075,"percentile":0.63946}],"risk":0.7954999999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33601","description":"nscd: netgroup cache may terminate daemon on memory allocation failure  The Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or xrealloc and these functions may terminate the process due to a memory allocation failure resulting in a denial of service to the clients.  The flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33601","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":7.3,"impactScore":3.4,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33601","cwe":"CWE-617","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33601","date":"2026-10-08","epss":0.01075,"percentile":0.63946}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0014/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0007","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33601","description":"nscd: netgroup cache may terminate daemon on memory allocation failure\n\nThe Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or\nxrealloc and these functions may terminate the process due to a memory\nallocation failure resulting in a denial of service to the clients.  The\nflaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33601","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33601","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":7.3,"impactScore":3.4,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33601","cwe":"CWE-617","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33601","date":"2026-10-08","epss":0.01075,"percentile":0.63946}],"risk":0.7954999999999999,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33601","description":"nscd: netgroup cache may terminate daemon on memory allocation failure  The Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or xrealloc and these functions may terminate the process due to a memory allocation failure resulting in a denial of service to the clients.  The flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33601","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":7.3,"impactScore":3.4,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33601","cwe":"CWE-617","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33601","date":"2026-10-08","epss":0.01075,"percentile":0.63946}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0014/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0007","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33601","description":"nscd: netgroup cache may terminate daemon on memory allocation failure\n\nThe Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or\nxrealloc and these functions may terminate the process due to a memory\nallocation failure resulting in a denial of service to the clients.  The\nflaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-32465","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32465","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32465","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32465","date":"2026-10-08","epss":0.01026,"percentile":0.62502}],"risk":0.7848900000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32465","description":"Git is a revision control system. The Git project recommends to avoid working in untrusted repositories, and instead to clone it first with `git clone --no-local` to obtain a clean copy. Git has specific protections to make that a safe operation even with an untrusted source repository, but vulnerabilities allow those protections to be bypassed. In the context of cloning local repositories owned by other users, this vulnerability has been covered in CVE-2024-32004. But there are circumstances where the fixes for CVE-2024-32004 are not enough: For example, when obtaining a `.zip` file containing a full copy of a Git repository, it should not be trusted by default to be safe, as e.g. hooks could be configured to run within the context of that repository. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid using Git in repositories that have been obtained via archives from untrusted sources."},"relatedVulnerabilities":[{"id":"CVE-2024-32465","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":6.1,"exploitabilityScore":0.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32465","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32465","date":"2026-10-08","epss":0.01026,"percentile":0.62502}],"urls":["http://www.openwall.com/lists/oss-security/2024/05/14/2","https://git-scm.com/docs/git#_security","https://git-scm.com/docs/git-clone","https://github.com/git/git/commit/7b70e9efb18c2cc3f219af399bd384c5801ba1d7","https://github.com/git/git/security/advisories/GHSA-vm9j-46j9-qvq4","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S4CK4IYTXEOBZTEM5K3T6LWOIZ3S44AR/","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32465","description":"Git is a revision control system. The Git project recommends to avoid working in untrusted repositories, and instead to clone it first with `git clone --no-local` to obtain a clean copy. Git has specific protections to make that a safe operation even with an untrusted source repository, but vulnerabilities allow those protections to be bypassed. In the context of cloning local repositories owned by other users, this vulnerability has been covered in CVE-2024-32004. But there are circumstances where the fixes for CVE-2024-32004 are not enough: For example, when obtaining a `.zip` file containing a full copy of a Git repository, it should not be trusted by default to be safe, as e.g. hooks could be configured to run within the context of that repository. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid using Git in repositories that have been obtained via archives from untrusted sources."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-32465","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32465","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32465","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32465","date":"2026-10-08","epss":0.01026,"percentile":0.62502}],"risk":0.7848900000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32465","description":"Git is a revision control system. The Git project recommends to avoid working in untrusted repositories, and instead to clone it first with `git clone --no-local` to obtain a clean copy. Git has specific protections to make that a safe operation even with an untrusted source repository, but vulnerabilities allow those protections to be bypassed. In the context of cloning local repositories owned by other users, this vulnerability has been covered in CVE-2024-32004. But there are circumstances where the fixes for CVE-2024-32004 are not enough: For example, when obtaining a `.zip` file containing a full copy of a Git repository, it should not be trusted by default to be safe, as e.g. hooks could be configured to run within the context of that repository. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid using Git in repositories that have been obtained via archives from untrusted sources."},"relatedVulnerabilities":[{"id":"CVE-2024-32465","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","metrics":{"baseScore":7.3,"impactScore":6.1,"exploitabilityScore":0.7},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32465","cwe":"CWE-22","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32465","date":"2026-10-08","epss":0.01026,"percentile":0.62502}],"urls":["http://www.openwall.com/lists/oss-security/2024/05/14/2","https://git-scm.com/docs/git#_security","https://git-scm.com/docs/git-clone","https://github.com/git/git/commit/7b70e9efb18c2cc3f219af399bd384c5801ba1d7","https://github.com/git/git/security/advisories/GHSA-vm9j-46j9-qvq4","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S4CK4IYTXEOBZTEM5K3T6LWOIZ3S44AR/","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32465","description":"Git is a revision control system. The Git project recommends to avoid working in untrusted repositories, and instead to clone it first with `git clone --no-local` to obtain a clean copy. Git has specific protections to make that a safe operation even with an untrusted source repository, but vulnerabilities allow those protections to be bypassed. In the context of cloning local repositories owned by other users, this vulnerability has been covered in CVE-2024-32004. But there are circumstances where the fixes for CVE-2024-32004 are not enough: For example, when obtaining a `.zip` file containing a full copy of a Git repository, it should not be trusted by default to be safe, as e.g. hooks could be configured to run within the context of that repository. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid using Git in repositories that have been obtained via archives from untrusted sources."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_372"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21954","versionConstraint":"< 1.8.0_372||>= 1.9, < 8.0.372||>= 12, < 17.0.7||>= 9, < 11.0.19 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21954","fix":{"state":"fixed","versions":["1.8.0_372","8.0.372","11.0.19","17.0.7"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_372"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.372"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.19"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-21954","date":"2026-10-08","epss":0.01433,"percentile":0.72273}],"risk":0.7809850000000002,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230427-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5430","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpuapr2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-04-18"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21954","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and  22.3.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 5.9 (Confidentiality impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-24765","versionConstraint":"< 1:2.20.1-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-24765","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-24765","cwe":"CWE-427","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-24765","date":"2026-10-08","epss":0.0101,"percentile":0.62045}],"risk":0.77265,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-24765","description":"Git for Windows is a fork of Git containing Windows-specific patches. This vulnerability affects users working on multi-user machines, where untrusted parties have write access to the same hard disk. Those untrusted parties could create the folder `C:\\.git`, which would be picked up by Git operations run supposedly outside a repository while searching for a Git directory. Git would then respect any config in said Git directory. Git Bash users who set `GIT_PS1_SHOWDIRTYSTATE` are vulnerable as well. Users who installed posh-gitare vulnerable simply by starting a PowerShell. Users of IDEs such as Visual Studio are vulnerable: simply creating a new project would already read and respect the config specified in `C:\\.git\\config`. Users of the Microsoft fork of Git are vulnerable simply by starting a Git Bash. The problem has been patched in Git for Windows v2.35.2. Users unable to upgrade may create the folder `.git` on all drives where Git commands are run, and remove read/write access from those folders as a workaround. Alternatively, define or extend `GIT_CEILING_DIRECTORIES` to cover the _parent_ directory of the user profile, e.g. `C:\\Users` if the user profile is located in `C:\\Users\\my-user-name`."},"relatedVulnerabilities":[{"id":"CVE-2022-24765","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:C/I:C/A:C","metrics":{"baseScore":6.9,"impactScore":10.1,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":6,"impactScore":5.2,"exploitabilityScore":0.8},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-24765","cwe":"CWE-427","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-24765","date":"2026-10-08","epss":0.0101,"percentile":0.62045}],"urls":["http://seclists.org/fulldisclosure/2022/May/31","http://www.openwall.com/lists/oss-security/2022/04/12/7","https://git-scm.com/book/en/v2/Appendix-A%3A-Git-in-Other-Environments-Git-in-Bash","https://git-scm.com/docs/git#Documentation/git.txt-codeGITCEILINGDIRECTORIEScode","https://github.com/git-for-windows/git/security/advisories/GHSA-vw2c-22j4-2fh2","https://lists.debian.org/debian-lts-announce/2022/12/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5PTN5NYEHYN2OQSHSAMCNICZNK2U4QH6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BENQYTDGUL6TF3UALY6GSIEXIHUIYNWM/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DDI325LOO2XBDDKLINOAQJEG6MHAURZE/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DIKWISWUDFT2FAITYIA6372BVLH3OOOC/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVOLER2PIGMHPQMDGG4RDE2KZB74QLA2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SLP42KIZ6HACTVZMZLJLFJQ4W2XYT27M/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TRZG5CDUQ27OWTPC5MQOR4UASNXHWEZS/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UDZRZAL7QULOB6V7MKT66MOMWJLBJPX4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YROCMBWYFKRSS64PO6FUNM6L7LKBUKVW/","https://security.gentoo.org/glsa/202312-15","https://support.apple.com/kb/HT213261"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-24765","description":"Git for Windows is a fork of Git containing Windows-specific patches. This vulnerability affects users working on multi-user machines, where untrusted parties have write access to the same hard disk. Those untrusted parties could create the folder `C:\\.git`, which would be picked up by Git operations run supposedly outside a repository while searching for a Git directory. Git would then respect any config in said Git directory. Git Bash users who set `GIT_PS1_SHOWDIRTYSTATE` are vulnerable as well. Users who installed posh-gitare vulnerable simply by starting a PowerShell. Users of IDEs such as Visual Studio are vulnerable: simply creating a new project would already read and respect the config specified in `C:\\.git\\config`. Users of the Microsoft fork of Git are vulnerable simply by starting a Git Bash. The problem has been patched in Git for Windows v2.35.2. Users unable to upgrade may create the folder `.git` on all drives where Git commands are run, and remove read/write access from those folders as a workaround. Alternatively, define or extend `GIT_CEILING_DIRECTORIES` to cover the _parent_ directory of the user profile, e.g. `C:\\Users` if the user profile is located in `C:\\Users\\my-user-name`."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-24765","versionConstraint":"< 1:2.20.1-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-24765","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-24765","cwe":"CWE-427","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-24765","date":"2026-10-08","epss":0.0101,"percentile":0.62045}],"risk":0.77265,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-24765","description":"Git for Windows is a fork of Git containing Windows-specific patches. This vulnerability affects users working on multi-user machines, where untrusted parties have write access to the same hard disk. Those untrusted parties could create the folder `C:\\.git`, which would be picked up by Git operations run supposedly outside a repository while searching for a Git directory. Git would then respect any config in said Git directory. Git Bash users who set `GIT_PS1_SHOWDIRTYSTATE` are vulnerable as well. Users who installed posh-gitare vulnerable simply by starting a PowerShell. Users of IDEs such as Visual Studio are vulnerable: simply creating a new project would already read and respect the config specified in `C:\\.git\\config`. Users of the Microsoft fork of Git are vulnerable simply by starting a Git Bash. The problem has been patched in Git for Windows v2.35.2. Users unable to upgrade may create the folder `.git` on all drives where Git commands are run, and remove read/write access from those folders as a workaround. Alternatively, define or extend `GIT_CEILING_DIRECTORIES` to cover the _parent_ directory of the user profile, e.g. `C:\\Users` if the user profile is located in `C:\\Users\\my-user-name`."},"relatedVulnerabilities":[{"id":"CVE-2022-24765","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:C/I:C/A:C","metrics":{"baseScore":6.9,"impactScore":10.1,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":6,"impactScore":5.2,"exploitabilityScore":0.8},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-24765","cwe":"CWE-427","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2022-24765","date":"2026-10-08","epss":0.0101,"percentile":0.62045}],"urls":["http://seclists.org/fulldisclosure/2022/May/31","http://www.openwall.com/lists/oss-security/2022/04/12/7","https://git-scm.com/book/en/v2/Appendix-A%3A-Git-in-Other-Environments-Git-in-Bash","https://git-scm.com/docs/git#Documentation/git.txt-codeGITCEILINGDIRECTORIEScode","https://github.com/git-for-windows/git/security/advisories/GHSA-vw2c-22j4-2fh2","https://lists.debian.org/debian-lts-announce/2022/12/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5PTN5NYEHYN2OQSHSAMCNICZNK2U4QH6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BENQYTDGUL6TF3UALY6GSIEXIHUIYNWM/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DDI325LOO2XBDDKLINOAQJEG6MHAURZE/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DIKWISWUDFT2FAITYIA6372BVLH3OOOC/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVOLER2PIGMHPQMDGG4RDE2KZB74QLA2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SLP42KIZ6HACTVZMZLJLFJQ4W2XYT27M/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TRZG5CDUQ27OWTPC5MQOR4UASNXHWEZS/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UDZRZAL7QULOB6V7MKT66MOMWJLBJPX4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YROCMBWYFKRSS64PO6FUNM6L7LKBUKVW/","https://security.gentoo.org/glsa/202312-15","https://support.apple.com/kb/HT213261"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-24765","description":"Git for Windows is a fork of Git containing Windows-specific patches. This vulnerability affects users working on multi-user machines, where untrusted parties have write access to the same hard disk. Those untrusted parties could create the folder `C:\\.git`, which would be picked up by Git operations run supposedly outside a repository while searching for a Git directory. Git would then respect any config in said Git directory. Git Bash users who set `GIT_PS1_SHOWDIRTYSTATE` are vulnerable as well. Users who installed posh-gitare vulnerable simply by starting a PowerShell. Users of IDEs such as Visual Studio are vulnerable: simply creating a new project would already read and respect the config specified in `C:\\.git\\config`. Users of the Microsoft fork of Git are vulnerable simply by starting a Git Bash. The problem has been patched in Git for Windows v2.35.2. Users unable to upgrade may create the folder `.git` on all drives where Git commands are run, and remove read/write access from those folders as a workaround. Alternatively, define or extend `GIT_CEILING_DIRECTORIES` to cover the _parent_ directory of the user profile, e.g. `C:\\Users` if the user profile is located in `C:\\Users\\my-user-name`."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-32021","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32021","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32021","cwe":"CWE-547","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32021","date":"2026-10-08","epss":0.01023,"percentile":0.62406}],"risk":0.74679,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32021","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the filesystem appears as a file during the check, and then a symlink during the operation, this will allow the adversary to bypass the check and create hardlinks in the destination objects directory to arbitrary, user-readable files. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4."},"relatedVulnerabilities":[{"id":"CVE-2024-32021","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:L","metrics":{"baseScore":3.9,"impactScore":2.8,"exploitabilityScore":0.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32021","cwe":"CWE-547","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32021","date":"2026-10-08","epss":0.01023,"percentile":0.62406}],"urls":["http://www.openwall.com/lists/oss-security/2024/05/14/2","https://github.com/git/git/security/advisories/GHSA-mvxm-9j2h-qjx7","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S4CK4IYTXEOBZTEM5K3T6LWOIZ3S44AR/","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32021","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning\nwill be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the filesystem appears as a file during the check, and then a symlink during the operation, this will allow the adversary to bypass the check and create hardlinks in the destination objects directory to arbitrary, user-readable files. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u9"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-32021","versionConstraint":"< 1:2.20.1-2+deb10u9 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32021","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u9"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u9"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32021","cwe":"CWE-547","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32021","date":"2026-10-08","epss":0.01023,"percentile":0.62406}],"risk":0.74679,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32021","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the filesystem appears as a file during the check, and then a symlink during the operation, this will allow the adversary to bypass the check and create hardlinks in the destination objects directory to arbitrary, user-readable files. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4."},"relatedVulnerabilities":[{"id":"CVE-2024-32021","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.1,"impactScore":5.2,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:L","metrics":{"baseScore":3.9,"impactScore":2.8,"exploitabilityScore":0.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32021","cwe":"CWE-547","type":"Secondary","source":"security-advisories@github.com"}],"epss":[{"cve":"CVE-2024-32021","date":"2026-10-08","epss":0.01023,"percentile":0.62406}],"urls":["http://www.openwall.com/lists/oss-security/2024/05/14/2","https://github.com/git/git/security/advisories/GHSA-mvxm-9j2h-qjx7","https://lists.debian.org/debian-lts-announce/2024/06/msg00018.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/S4CK4IYTXEOBZTEM5K3T6LWOIZ3S44AR/","https://lists.debian.org/debian-lts-announce/2024/09/msg00009.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32021","description":"Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning\nwill be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the filesystem appears as a file during the check, and then a symlink during the operation, this will allow the adversary to bypass the check and create hardlinks in the destination objects directory to arbitrary, user-readable files. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u8"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-28322","versionConstraint":"< 7.64.0-4+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-28322","fix":{"state":"fixed","versions":["7.64.0-4+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28322","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2023-28322","date":"2026-10-08","epss":0.02211,"percentile":0.82062}],"risk":0.7406849999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-28322","description":"An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously wasused to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the second transfer. The problem exists in the logic for a reused handle when it is (expected to be) changed from a PUT to a POST."},"relatedVulnerabilities":[{"id":"CVE-2023-28322","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28322","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2023-28322","date":"2026-10-08","epss":0.02211,"percentile":0.82062}],"urls":["http://seclists.org/fulldisclosure/2023/Jul/47","http://seclists.org/fulldisclosure/2023/Jul/48","http://seclists.org/fulldisclosure/2023/Jul/52","https://hackerone.com/reports/1954658","https://lists.debian.org/debian-lts-announce/2023/12/msg00015.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F4I75RDGX5ULSSCBE5BF3P5I5SFO7ULQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2LIWHWKOVH24COGGBCVOWDXXIUPKOMK/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230609-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-28322","description":"An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously wasused to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the second transfer. The problem exists in the logic for a reused handle when it is (expected to be) changed from a PUT to a POST."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-28322","versionConstraint":"< 7.64.0-4+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-28322","fix":{"state":"fixed","versions":["7.64.0-4+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28322","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2023-28322","date":"2026-10-08","epss":0.02211,"percentile":0.82062}],"risk":0.7406849999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-28322","description":"An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously wasused to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the second transfer. The problem exists in the logic for a reused handle when it is (expected to be) changed from a PUT to a POST."},"relatedVulnerabilities":[{"id":"CVE-2023-28322","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28322","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2023-28322","date":"2026-10-08","epss":0.02211,"percentile":0.82062}],"urls":["http://seclists.org/fulldisclosure/2023/Jul/47","http://seclists.org/fulldisclosure/2023/Jul/48","http://seclists.org/fulldisclosure/2023/Jul/52","https://hackerone.com/reports/1954658","https://lists.debian.org/debian-lts-announce/2023/12/msg00015.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F4I75RDGX5ULSSCBE5BF3P5I5SFO7ULQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2LIWHWKOVH24COGGBCVOWDXXIUPKOMK/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230609-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-28322","description":"An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously wasused to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the second transfer. The problem exists in the logic for a reused handle when it is (expected to be) changed from a PUT to a POST."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-28322","versionConstraint":"< 7.64.0-4+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-28322","fix":{"state":"fixed","versions":["7.64.0-4+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28322","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2023-28322","date":"2026-10-08","epss":0.02211,"percentile":0.82062}],"risk":0.7406849999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-28322","description":"An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously wasused to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the second transfer. The problem exists in the logic for a reused handle when it is (expected to be) changed from a PUT to a POST."},"relatedVulnerabilities":[{"id":"CVE-2023-28322","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-28322","cwe":"CWE-200","type":"Secondary","source":"support@hackerone.com"}],"epss":[{"cve":"CVE-2023-28322","date":"2026-10-08","epss":0.02211,"percentile":0.82062}],"urls":["http://seclists.org/fulldisclosure/2023/Jul/47","http://seclists.org/fulldisclosure/2023/Jul/48","http://seclists.org/fulldisclosure/2023/Jul/52","https://hackerone.com/reports/1954658","https://lists.debian.org/debian-lts-announce/2023/12/msg00015.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F4I75RDGX5ULSSCBE5BF3P5I5SFO7ULQ/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2LIWHWKOVH24COGGBCVOWDXXIUPKOMK/","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230609-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-28322","description":"An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously wasused to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the second transfer. The problem exists in the logic for a reused handle when it is (expected to be) changed from a PUT to a POST."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_482"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2026-21945","versionConstraint":"< 1.8.0_482||>= 1.9, < 8.0.482||>= 12, < 17.0.18||>= 18, < 21.0.10||>= 22, < 25.0.2||>= 9, < 11.0.30 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2026-21945","fix":{"state":"fixed","versions":["1.8.0_482","8.0.482","11.0.30","17.0.18","21.0.10","25.0.2"],"available":[{"date":"2026-01-27","kind":"first-observed","version":"1.8.0_482"},{"date":"2026-01-27","kind":"first-observed","version":"8.0.482"},{"date":"2026-01-27","kind":"first-observed","version":"17.0.18"},{"date":"2026-01-27","kind":"first-observed","version":"21.0.10"},{"date":"2026-01-27","kind":"first-observed","version":"25.0.2"},{"date":"2026-01-27","kind":"first-observed","version":"11.0.30"}]},"cvss":[{"type":"Secondary","source":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2026-21945","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"cve":"CVE-2026-21945","cwe":"CWE-295","type":"Secondary","source":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c"}],"epss":[{"cve":"CVE-2026-21945","date":"2026-10-08","epss":0.0097,"percentile":0.60726}],"risk":0.7275,"urls":["https://www.oracle.com/security-alerts/cpujan2026.html","https://access.redhat.com/errata/RHSA-2026:0847","https://access.redhat.com/errata/RHSA-2026:0848","https://access.redhat.com/errata/RHSA-2026:0895","https://access.redhat.com/errata/RHSA-2026:0897","https://access.redhat.com/errata/RHSA-2026:0899","https://access.redhat.com/errata/RHSA-2026:0901","https://access.redhat.com/errata/RHSA-2026:0927","https://access.redhat.com/errata/RHSA-2026:0928","https://access.redhat.com/errata/RHSA-2026:0931","https://access.redhat.com/errata/RHSA-2026:0932","https://access.redhat.com/errata/RHSA-2026:0933","https://access.redhat.com/errata/RHSA-2026:1606","https://access.redhat.com/errata/RHSA-2026:4832","https://access.redhat.com/security/cve/CVE-2026-21945","https://bugzilla.redhat.com/show_bug.cgi?id=2429927","https://cert-portal.siemens.com/productcert/html/ssa-032379.html","https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-21945.json"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2026-21945","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security).  Supported versions that are affected are Oracle Java SE: 8u471, 8u471-b50, 8u471-perf, 11.0.29, 17.0.17, 21.0.9, 25.0.1; Oracle GraalVM for JDK: 17.0.17 and  21.0.9; Oracle GraalVM Enterprise Edition: 21.3.16. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.5 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_392"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-22081","versionConstraint":"< 1.8.0_392||>= 1.9, < 8.0.392||>= 12, < 17.0.9||>= 18, < 21.0.1||>= 9, < 11.0.22 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-22081","fix":{"state":"fixed","versions":["1.8.0_392","8.0.392","11.0.22","17.0.9","21.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_392"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.392"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.9"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.22"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-22081","date":"2026-10-08","epss":0.01412,"percentile":0.71878}],"risk":0.72718,"urls":["https://lists.debian.org/debian-lts-announce/2023/10/msg00041.html","https://security.netapp.com/advisory/ntap-20231027-0006/","https://www.debian.org/security/2023/dsa-5537","https://www.debian.org/security/2023/dsa-5548","https://www.oracle.com/security-alerts/cpuoct2023.html","https://security.netapp.com/advisory/ntap-20241108-0002/","https://openjdk.org/groups/vulnerability/advisories/2023-10-17"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-22081","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE).  Supported versions that are affected are Oracle Java SE: 8u381, 8u381-perf, 11.0.20, 17.0.8, 21; Oracle GraalVM for JDK: 17.0.8, 21; Oracle GraalVM Enterprise Edition: 20.3.11, 21.3.7 and  22.3.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 5.3 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-3843","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-3843","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-3843","cwe":"CWE-266","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2019-3843","cwe":"CWE-269","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-3843","date":"2026-10-08","epss":0.0094,"percentile":0.59747}],"risk":0.7191000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-3843","description":"It was discovered that a systemd service that uses DynamicUser property can create a SUID/SGID binary that would be allowed to run as the transient service UID/GID even after the service is terminated. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the UID/GID will be recycled."},"relatedVulnerabilities":[{"id":"CVE-2019-3843","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":4.6,"impactScore":6.5,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":4.5,"impactScore":3.4,"exploitabilityScore":1.1},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-3843","cwe":"CWE-266","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2019-3843","cwe":"CWE-269","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-3843","date":"2026-10-08","epss":0.0094,"percentile":0.59747}],"urls":["http://www.securityfocus.com/bid/108116","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3843","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5JXQAKSTMABZ46EVCRMW62DHWYHTTFES/","https://security.netapp.com/advisory/ntap-20190619-0002/","https://usn.ubuntu.com/4269-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-3843","description":"It was discovered that a systemd service that uses DynamicUser property can create a SUID/SGID binary that would be allowed to run as the transient service UID/GID even after the service is terminated. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the UID/GID will be recycled."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-3843","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-3843","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-3843","cwe":"CWE-266","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2019-3843","cwe":"CWE-269","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-3843","date":"2026-10-08","epss":0.0094,"percentile":0.59747}],"risk":0.7191000000000001,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-3843","description":"It was discovered that a systemd service that uses DynamicUser property can create a SUID/SGID binary that would be allowed to run as the transient service UID/GID even after the service is terminated. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the UID/GID will be recycled."},"relatedVulnerabilities":[{"id":"CVE-2019-3843","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":4.6,"impactScore":6.5,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":4.5,"impactScore":3.4,"exploitabilityScore":1.1},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-3843","cwe":"CWE-266","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2019-3843","cwe":"CWE-269","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-3843","date":"2026-10-08","epss":0.0094,"percentile":0.59747}],"urls":["http://www.securityfocus.com/bid/108116","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3843","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5JXQAKSTMABZ46EVCRMW62DHWYHTTFES/","https://security.netapp.com/advisory/ntap-20190619-0002/","https://usn.ubuntu.com/4269-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-3843","description":"It was discovered that a systemd service that uses DynamicUser property can create a SUID/SGID binary that would be allowed to run as the transient service UID/GID even after the service is terminated. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the UID/GID will be recycled."}]},{"artifact":{"id":"dd6e91cb036cd97c","cpes":["cpe:2.3:a:libncursesw6:libncursesw6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libncursesw6","purl":"pkg:deb/debian/libncursesw6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libncursesw6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-29491","versionConstraint":"< 6.1+20181013-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-29491","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29491","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-29491","date":"2026-10-08","epss":0.00931,"percentile":0.59426}],"risk":0.712215,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-29491","description":"ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable."},"relatedVulnerabilities":[{"id":"CVE-2023-29491","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29491","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-29491","date":"2026-10-08","epss":0.00931,"percentile":0.59426}],"urls":["http://ncurses.scripts.mit.edu/?p=ncurses.git%3Ba=commit%3Bh=eb51b1ea1f75a0ec17c9c5937cb28df1e8eeec56","http://www.openwall.com/lists/oss-security/2023/04/19/10","http://www.openwall.com/lists/oss-security/2023/04/19/11","https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/","https://security.netapp.com/advisory/ntap-20230517-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845","https://www.openwall.com/lists/oss-security/2023/04/12/5","https://www.openwall.com/lists/oss-security/2023/04/13/4","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-29491","description":"ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable."}]},{"artifact":{"id":"32ae0288f40dd7ec","cpes":["cpe:2.3:a:libtinfo6:libtinfo6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libtinfo6","purl":"pkg:deb/debian/libtinfo6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libtinfo6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-29491","versionConstraint":"< 6.1+20181013-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-29491","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29491","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-29491","date":"2026-10-08","epss":0.00931,"percentile":0.59426}],"risk":0.712215,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-29491","description":"ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable."},"relatedVulnerabilities":[{"id":"CVE-2023-29491","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29491","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-29491","date":"2026-10-08","epss":0.00931,"percentile":0.59426}],"urls":["http://ncurses.scripts.mit.edu/?p=ncurses.git%3Ba=commit%3Bh=eb51b1ea1f75a0ec17c9c5937cb28df1e8eeec56","http://www.openwall.com/lists/oss-security/2023/04/19/10","http://www.openwall.com/lists/oss-security/2023/04/19/11","https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/","https://security.netapp.com/advisory/ntap-20230517-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845","https://www.openwall.com/lists/oss-security/2023/04/12/5","https://www.openwall.com/lists/oss-security/2023/04/13/4","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-29491","description":"ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable."}]},{"artifact":{"id":"a8f604f9c5ac808b","cpes":["cpe:2.3:a:ncurses-base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-base","purl":"pkg:deb/debian/ncurses-base@6.1%2B20181013-2%2Bdeb10u2?arch=all&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-29491","versionConstraint":"< 6.1+20181013-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-29491","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29491","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-29491","date":"2026-10-08","epss":0.00931,"percentile":0.59426}],"risk":0.712215,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-29491","description":"ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable."},"relatedVulnerabilities":[{"id":"CVE-2023-29491","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29491","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-29491","date":"2026-10-08","epss":0.00931,"percentile":0.59426}],"urls":["http://ncurses.scripts.mit.edu/?p=ncurses.git%3Ba=commit%3Bh=eb51b1ea1f75a0ec17c9c5937cb28df1e8eeec56","http://www.openwall.com/lists/oss-security/2023/04/19/10","http://www.openwall.com/lists/oss-security/2023/04/19/11","https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/","https://security.netapp.com/advisory/ntap-20230517-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845","https://www.openwall.com/lists/oss-security/2023/04/12/5","https://www.openwall.com/lists/oss-security/2023/04/13/4","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-29491","description":"ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable."}]},{"artifact":{"id":"9954ccfd24462fc8","cpes":["cpe:2.3:a:ncurses-bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-bin","purl":"pkg:deb/debian/ncurses-bin@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"fix":{"suggestedVersion":"6.1+20181013-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-29491","versionConstraint":"< 6.1+20181013-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-29491","fix":{"state":"fixed","versions":["6.1+20181013-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"6.1+20181013-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29491","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-29491","date":"2026-10-08","epss":0.00931,"percentile":0.59426}],"risk":0.712215,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-29491","description":"ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable."},"relatedVulnerabilities":[{"id":"CVE-2023-29491","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-29491","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-29491","date":"2026-10-08","epss":0.00931,"percentile":0.59426}],"urls":["http://ncurses.scripts.mit.edu/?p=ncurses.git%3Ba=commit%3Bh=eb51b1ea1f75a0ec17c9c5937cb28df1e8eeec56","http://www.openwall.com/lists/oss-security/2023/04/19/10","http://www.openwall.com/lists/oss-security/2023/04/19/11","https://lists.debian.org/debian-lts-announce/2023/12/msg00004.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/","https://security.netapp.com/advisory/ntap-20230517-0009/","https://support.apple.com/kb/HT213843","https://support.apple.com/kb/HT213844","https://support.apple.com/kb/HT213845","https://www.openwall.com/lists/oss-security/2023/04/12/5","https://www.openwall.com/lists/oss-security/2023/04/13/4","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-29491","description":"ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory corruption via malformed data in a terminfo database file that is found in $HOME/.terminfo or reached via the TERMINFO or TERM environment variable."}]},{"artifact":{"id":"f2a2af9c9a7c48e8","cpes":["cpe:2.3:a:bsdutils:bsdutils:1\\:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"bsdutils","purl":"pkg:deb/debian/bsdutils@1%3A2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux%402.33.1-0.1","type":"deb","version":"1:2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/bsdutils/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/bsdutils/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/bsdutils.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/bsdutils.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/bsdutils.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/bsdutils.list"}],"upstreams":[{"name":"util-linux","version":"2.33.1-0.1"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"4c321df8375fa5f7","cpes":["cpe:2.3:a:fdisk:fdisk:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"fdisk","purl":"pkg:deb/debian/fdisk@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/fdisk/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/fdisk/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/fdisk.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/fdisk.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/fdisk.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/fdisk.list"}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"d20eac8952a5e6b5","cpes":["cpe:2.3:a:libblkid1:libblkid1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libblkid1","purl":"pkg:deb/debian/libblkid1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libblkid1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libblkid1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libblkid1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libblkid1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"54c2753ee170e0ea","cpes":["cpe:2.3:a:libfdisk1:libfdisk1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libfdisk1","purl":"pkg:deb/debian/libfdisk1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libfdisk1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libfdisk1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libfdisk1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libfdisk1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"c6f6118ba99c54cb","cpes":["cpe:2.3:a:libmount1:libmount1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libmount1","purl":"pkg:deb/debian/libmount1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libmount1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libmount1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libmount1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libmount1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"a95e9a21c0932258","cpes":["cpe:2.3:a:libsmartcols1:libsmartcols1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libsmartcols1","purl":"pkg:deb/debian/libsmartcols1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsmartcols1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsmartcols1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsmartcols1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsmartcols1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"cc943ca139d0e67b","cpes":["cpe:2.3:a:libuuid1:libuuid1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libuuid1","purl":"pkg:deb/debian/libuuid1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libuuid1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libuuid1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libuuid1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libuuid1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"0cd3087f123a0ab4","cpes":["cpe:2.3:a:mount:mount:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"mount","purl":"pkg:deb/debian/mount@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/mount/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/mount/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/mount.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/mount.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/mount.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/mount.list"}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"3d071e40c62fe471","cpes":["cpe:2.3:a:util-linux:util-linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util-linux:util_linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util_linux:util-linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util_linux:util_linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util:util-linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util:util_linux:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"util-linux","purl":"pkg:deb/debian/util-linux@2.33.1-0.1?arch=amd64&distro=debian-10.10","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/util-linux/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/util-linux/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/util-linux.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/util-linux.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/util-linux.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.list"},{"path":"/var/lib/dpkg/info/util-linux.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.postinst"},{"path":"/var/lib/dpkg/info/util-linux.postrm","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.postrm"},{"path":"/var/lib/dpkg/info/util-linux.prerm","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-28085","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-28085","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"risk":0.7062299999999999,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."},"relatedVulnerabilities":[{"id":"CVE-2024-28085","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.3,"impactScore":1.5,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-28085","cwe":"CWE-150","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-28085","date":"2026-10-08","epss":0.02242,"percentile":0.82321}],"urls":["http://www.openwall.com/lists/oss-security/2024/03/27/5","http://www.openwall.com/lists/oss-security/2024/03/27/6","http://www.openwall.com/lists/oss-security/2024/03/27/7","http://www.openwall.com/lists/oss-security/2024/03/27/8","http://www.openwall.com/lists/oss-security/2024/03/27/9","http://www.openwall.com/lists/oss-security/2024/03/28/1","http://www.openwall.com/lists/oss-security/2024/03/28/2","http://www.openwall.com/lists/oss-security/2024/03/28/3","https://github.com/skyler-ferrante/CVE-2024-28085","https://github.com/util-linux/util-linux/security/advisories/GHSA-xv2h-c6ww-mrjq","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://mirrors.edge.kernel.org/pub/linux/utils/util-linux/","https://people.rit.edu/sjf5462/6831711781/wall_2_27_2024.txt","https://security.netapp.com/advisory/ntap-20240531-0003/","https://www.openwall.com/lists/oss-security/2024/03/27/5","http://seclists.org/fulldisclosure/2024/Mar/35","https://cert-portal.siemens.com/productcert/html/ssa-082556.html","https://cert-portal.siemens.com/productcert/html/ssa-202008.html","https://github.com/util-linux/util-linux/discussions/2868"],"severity":"Low","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-28085","description":"wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover."}]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-3844","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-3844","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-3844","cwe":"CWE-268","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2019-3844","date":"2026-10-08","epss":0.00915,"percentile":0.58931}],"risk":0.699975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-3844","description":"It was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries, which would allow to create binaries owned by the service transient group with the setgid bit set. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the GID will be recycled."},"relatedVulnerabilities":[{"id":"CVE-2019-3844","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":4.6,"impactScore":6.5,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":4.5,"impactScore":3.4,"exploitabilityScore":1.1},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-3844","cwe":"CWE-268","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2019-3844","date":"2026-10-08","epss":0.00915,"percentile":0.58931}],"urls":["http://www.securityfocus.com/bid/108096","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3844","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://security.netapp.com/advisory/ntap-20190619-0002/","https://usn.ubuntu.com/4269-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-3844","description":"It was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries, which would allow to create binaries owned by the service transient group with the setgid bit set. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the GID will be recycled."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-3844","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-3844","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-3844","cwe":"CWE-268","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2019-3844","date":"2026-10-08","epss":0.00915,"percentile":0.58931}],"risk":0.699975,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-3844","description":"It was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries, which would allow to create binaries owned by the service transient group with the setgid bit set. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the GID will be recycled."},"relatedVulnerabilities":[{"id":"CVE-2019-3844","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","metrics":{"baseScore":4.6,"impactScore":6.5,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":4.5,"impactScore":3.4,"exploitabilityScore":1.1},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-3844","cwe":"CWE-268","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2019-3844","date":"2026-10-08","epss":0.00915,"percentile":0.58931}],"urls":["http://www.securityfocus.com/bid/108096","https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3844","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://security.netapp.com/advisory/ntap-20190619-0002/","https://usn.ubuntu.com/4269-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-3844","description":"It was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries, which would allow to create binaries owned by the service transient group with the setgid bit set. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the GID will be recycled."}]},{"artifact":{"id":"848b1948f834d7ce","cpes":["cpe:2.3:a:libgnutls30:libgnutls30:3.6.7-4\\+deb10u7:*:*:*:*:*:*:*"],"name":"libgnutls30","purl":"pkg:deb/debian/libgnutls30@3.6.7-4%2Bdeb10u7?arch=amd64&distro=debian-10.10&upstream=gnutls28","type":"deb","version":"3.6.7-4+deb10u7","language":"","licenses":["sha256:d35f0abecc61a3676965c20cf13a44815b05d9b4a68985fa1809b13c2aff9090"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgnutls30/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgnutls30/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgnutls30:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gnutls28"}]},"matchDetails":[{"fix":{"suggestedVersion":"3.6.7-4+deb10u11"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-5981","versionConstraint":"< 3.6.7-4+deb10u11 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gnutls28","version":"3.6.7-4+deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-5981","fix":{"state":"fixed","versions":["3.6.7-4+deb10u11"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"3.6.7-4+deb10u11"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-5981","cwe":"CWE-208","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-5981","cwe":"CWE-203","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-5981","date":"2026-10-08","epss":0.01267,"percentile":0.68897}],"risk":0.6905150000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-5981","description":"A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding."},"relatedVulnerabilities":[{"id":"CVE-2023-5981","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-5981","cwe":"CWE-208","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-5981","cwe":"CWE-203","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-5981","date":"2026-10-08","epss":0.01267,"percentile":0.68897}],"urls":["https://access.redhat.com/errata/RHSA-2024:0155","https://access.redhat.com/errata/RHSA-2024:0319","https://access.redhat.com/errata/RHSA-2024:0399","https://access.redhat.com/errata/RHSA-2024:0451","https://access.redhat.com/errata/RHSA-2024:0533","https://access.redhat.com/errata/RHSA-2024:1383","https://access.redhat.com/errata/RHSA-2024:2094","https://access.redhat.com/security/cve/CVE-2023-5981","https://bugzilla.redhat.com/show_bug.cgi?id=2248445","https://gnutls.org/security-new.html#GNUTLS-SA-2023-10-23","http://www.openwall.com/lists/oss-security/2024/01/19/3","https://lists.debian.org/debian-lts-announce/2023/11/msg00016.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7ZEIOLORQ7N6WRPFXZSYDL2MC4LP7VFV/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GNXKVR5YNUEBNHAHM5GSYKBZX4W2HMN2/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-5981","description":"A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-39253","versionConstraint":"< 1:2.20.1-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-39253","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-39253","cwe":"CWE-200","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39253","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-39253","date":"2026-10-08","epss":0.01304,"percentile":0.69655}],"risk":0.6846,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-39253","description":"Git is an open source, scalable, distributed revision control system. Versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 are subject to exposure of sensitive information to a malicious actor. When performing a local clone (where the source and target of the clone are on the same volume), Git copies the contents of the source's `$GIT_DIR/objects` directory into the destination by either creating hardlinks to the source contents, or copying them (if hardlinks are disabled via `--no-hardlinks`). A malicious actor could convince a victim to clone a repository with a symbolic link pointing at sensitive information on the victim's machine. This can be done either by having the victim clone a malicious repository on the same machine, or having them clone a malicious repository embedded as a bare repository via a submodule from any source, provided they clone with the `--recurse-submodules` option. Git does not create symbolic links in the `$GIT_DIR/objects` directory. The problem has been patched in the versions published on 2022-10-18, and backported to v2.30.x. Potential workarounds: Avoid cloning untrusted repositories using the `--local` optimization when on a shared machine, either by passing the `--no-local` option to `git clone` or cloning from a URL that uses the `file://` scheme. Alternatively, avoid cloning repositories from untrusted sources with `--recurse-submodules` or run `git config --global protocol.file.allow user`."},"relatedVulnerabilities":[{"id":"CVE-2022-39253","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-39253","cwe":"CWE-200","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39253","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-39253","date":"2026-10-08","epss":0.01304,"percentile":0.69655}],"urls":["http://seclists.org/fulldisclosure/2022/Nov/1","http://www.openwall.com/lists/oss-security/2023/02/14/5","http://www.openwall.com/lists/oss-security/2024/05/14/2","https://github.com/git/git/security/advisories/GHSA-3wp6-j8xr-qw85","https://lists.debian.org/debian-lts-announce/2022/12/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7B6JPKX5CGGLAHXJVQMIZNNEEB72FHD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JMQWGMDLX6KTVWW5JZLVPI7ICAK72TN7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OHNO2FB55CPX47BAXMBWUBGWHO6N6ZZH/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UKFHE4KVD7EKS5J3KTDFVBEKU3CLXGVV/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VFYXCTLOSESYIP72BUYD6ECDIMUM4WMB/","https://security.gentoo.org/glsa/202312-15","https://support.apple.com/kb/HT213496"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-39253","description":"Git is an open source, scalable, distributed revision control system. Versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 are subject to exposure of sensitive information to a malicious actor. When performing a local clone (where the source and target of the clone are on the same volume), Git copies the contents of the source's `$GIT_DIR/objects` directory into the destination by either creating hardlinks to the source contents, or copying them (if hardlinks are disabled via `--no-hardlinks`). A malicious actor could convince a victim to clone a repository with a symbolic link pointing at sensitive information on the victim's machine. This can be done either by having the victim clone a malicious repository on the same machine, or having them clone a malicious repository embedded as a bare repository via a submodule from any source, provided they clone with the `--recurse-submodules` option. Git does not create symbolic links in the `$GIT_DIR/objects` directory. The problem has been patched in the versions published on 2022-10-18, and backported to v2.30.x. Potential workarounds: Avoid cloning untrusted repositories using the `--local` optimization when on a shared machine, either by passing the `--no-local` option to `git clone` or cloning from a URL that uses the `file://` scheme. Alternatively, avoid cloning repositories from untrusted sources with `--recurse-submodules` or run `git config --global protocol.file.allow user`."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-39253","versionConstraint":"< 1:2.20.1-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-39253","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-39253","cwe":"CWE-200","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39253","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-39253","date":"2026-10-08","epss":0.01304,"percentile":0.69655}],"risk":0.6846,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-39253","description":"Git is an open source, scalable, distributed revision control system. Versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 are subject to exposure of sensitive information to a malicious actor. When performing a local clone (where the source and target of the clone are on the same volume), Git copies the contents of the source's `$GIT_DIR/objects` directory into the destination by either creating hardlinks to the source contents, or copying them (if hardlinks are disabled via `--no-hardlinks`). A malicious actor could convince a victim to clone a repository with a symbolic link pointing at sensitive information on the victim's machine. This can be done either by having the victim clone a malicious repository on the same machine, or having them clone a malicious repository embedded as a bare repository via a submodule from any source, provided they clone with the `--recurse-submodules` option. Git does not create symbolic links in the `$GIT_DIR/objects` directory. The problem has been patched in the versions published on 2022-10-18, and backported to v2.30.x. Potential workarounds: Avoid cloning untrusted repositories using the `--local` optimization when on a shared machine, either by passing the `--no-local` option to `git clone` or cloning from a URL that uses the `file://` scheme. Alternatively, avoid cloning repositories from untrusted sources with `--recurse-submodules` or run `git config --global protocol.file.allow user`."},"relatedVulnerabilities":[{"id":"CVE-2022-39253","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-39253","cwe":"CWE-200","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-39253","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-39253","date":"2026-10-08","epss":0.01304,"percentile":0.69655}],"urls":["http://seclists.org/fulldisclosure/2022/Nov/1","http://www.openwall.com/lists/oss-security/2023/02/14/5","http://www.openwall.com/lists/oss-security/2024/05/14/2","https://github.com/git/git/security/advisories/GHSA-3wp6-j8xr-qw85","https://lists.debian.org/debian-lts-announce/2022/12/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7B6JPKX5CGGLAHXJVQMIZNNEEB72FHD/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JMQWGMDLX6KTVWW5JZLVPI7ICAK72TN7/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OHNO2FB55CPX47BAXMBWUBGWHO6N6ZZH/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UKFHE4KVD7EKS5J3KTDFVBEKU3CLXGVV/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VFYXCTLOSESYIP72BUYD6ECDIMUM4WMB/","https://security.gentoo.org/glsa/202312-15","https://support.apple.com/kb/HT213496"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-39253","description":"Git is an open source, scalable, distributed revision control system. Versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 are subject to exposure of sensitive information to a malicious actor. When performing a local clone (where the source and target of the clone are on the same volume), Git copies the contents of the source's `$GIT_DIR/objects` directory into the destination by either creating hardlinks to the source contents, or copying them (if hardlinks are disabled via `--no-hardlinks`). A malicious actor could convince a victim to clone a repository with a symbolic link pointing at sensitive information on the victim's machine. This can be done either by having the victim clone a malicious repository on the same machine, or having them clone a malicious repository embedded as a bare repository via a submodule from any source, provided they clone with the `--recurse-submodules` option. Git does not create symbolic links in the `$GIT_DIR/objects` directory. The problem has been patched in the versions published on 2022-10-18, and backported to v2.30.x. Potential workarounds: Avoid cloning untrusted repositories using the `--local` optimization when on a shared machine, either by passing the `--no-local` option to `git clone` or cloning from a URL that uses the `file://` scheme. Alternatively, avoid cloning repositories from untrusted sources with `--recurse-submodules` or run `git config --global protocol.file.allow user`."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_402"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-20918","versionConstraint":"< 1.8.0_402||>= 1.9, < 8.0.402||>= 12, < 17.0.10||>= 18, < 21.0.2||>= 9, < 11.0.22 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-20918","fix":{"state":"fixed","versions":["1.8.0_402","8.0.402","11.0.22","17.0.10","21.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_402"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.402"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.10"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.22"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-20918","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-20918","date":"2026-10-08","epss":0.00918,"percentile":0.5903}],"risk":0.68391,"urls":["https://lists.debian.org/debian-lts-announce/2024/01/msg00023.html","https://security.netapp.com/advisory/ntap-20240201-0002/","https://www.oracle.com/security-alerts/cpujan2024.html","https://security.netapp.com/advisory/ntap-20241108-0002/","https://openjdk.org/groups/vulnerability/advisories/2024-01-16"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-20918","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and  22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_402"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-20952","versionConstraint":"< 1.8.0_402||>= 1.9, < 8.0.402||>= 12, < 17.0.10||>= 18, < 21.0.2||>= 9, < 11.0.22 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-20952","fix":{"state":"fixed","versions":["1.8.0_402","8.0.402","11.0.22","17.0.10","21.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_402"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.402"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.10"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.22"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-20952","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"cve":"CVE-2024-20952","cwe":"CWE-416","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-20952","date":"2026-10-08","epss":0.00918,"percentile":0.5903}],"risk":0.68391,"urls":["https://lists.debian.org/debian-lts-announce/2024/01/msg00023.html","https://security.netapp.com/advisory/ntap-20240201-0002/","https://www.oracle.com/security-alerts/cpujan2024.html","https://security.netapp.com/advisory/ntap-20241108-0002/","https://openjdk.org/groups/vulnerability/advisories/2024-01-16"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-20952","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security).  Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and  22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_492"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2026-34282","versionConstraint":"< 1.8.0_492||>= 1.9, < 8.0.492||>= 12, < 17.0.19||>= 18, < 21.0.11||>= 22, < 25.0.3||>= 26, < 26.0.1||>= 9, < 11.0.31 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2026-34282","fix":{"state":"fixed","versions":["1.8.0_492","8.0.492","11.0.31","17.0.19","21.0.11","25.0.3","26.0.1"],"available":[{"date":"2026-04-24","kind":"first-observed","version":"1.8.0_492"},{"date":"2026-04-24","kind":"first-observed","version":"8.0.492"},{"date":"2026-04-24","kind":"first-observed","version":"17.0.19"},{"date":"2026-04-24","kind":"first-observed","version":"21.0.11"},{"date":"2026-04-24","kind":"first-observed","version":"25.0.3"},{"date":"2026-04-24","kind":"first-observed","version":"26.0.1"},{"date":"2026-04-24","kind":"first-observed","version":"11.0.31"}]},"cvss":[{"type":"Secondary","source":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2026-34282","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"cve":"CVE-2026-34282","cwe":"CWE-835","type":"Secondary","source":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c"}],"epss":[{"cve":"CVE-2026-34282","date":"2026-10-08","epss":0.00891,"percentile":0.58162}],"risk":0.6682499999999999,"urls":["https://www.oracle.com/security-alerts/cpuapr2026.html","https://access.redhat.com/errata/RHSA-2026:11403","https://access.redhat.com/errata/RHSA-2026:11655","https://access.redhat.com/errata/RHSA-2026:11822","https://access.redhat.com/errata/RHSA-2026:11829","https://access.redhat.com/errata/RHSA-2026:11902","https://access.redhat.com/errata/RHSA-2026:22328","https://access.redhat.com/errata/RHSA-2026:9254","https://access.redhat.com/errata/RHSA-2026:9686","https://access.redhat.com/errata/RHSA-2026:9687","https://access.redhat.com/errata/RHSA-2026:9688","https://access.redhat.com/errata/RHSA-2026:9689","https://access.redhat.com/errata/RHSA-2026:9691","https://access.redhat.com/errata/RHSA-2026:9693","https://access.redhat.com/errata/RHSA-2026:9694","https://access.redhat.com/security/cve/CVE-2026-34282","https://bugzilla.redhat.com/show_bug.cgi?id=2460044","https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-34282.json"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2026-34282","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking).  Supported versions that are affected are Oracle Java SE: 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalVM for JDK: 17.0.18 and  21.0.10; Oracle GraalVM Enterprise Edition: 21.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 7.5 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)."},"relatedVulnerabilities":[]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33600","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33600","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33600","cwe":"CWE-476","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33600","date":"2026-10-08","epss":0.01216,"percentile":0.67686}],"risk":0.6627200000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33600","description":"nscd: Null pointer crashes after notfound response  If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference.  This flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33600","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33600","cwe":"CWE-476","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33600","date":"2026-10-08","epss":0.01216,"percentile":0.67686}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0013/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0006","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33600","description":"nscd: Null pointer crashes after notfound response\n\nIf the Name Service Cache Daemon's (nscd) cache fails to add a not-found\nnetgroup response to the cache, the client request can result in a null\npointer dereference.  This flaw was introduced in glibc 2.15 when the\ncache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33600","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33600","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33600","cwe":"CWE-476","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33600","date":"2026-10-08","epss":0.01216,"percentile":0.67686}],"risk":0.6627200000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33600","description":"nscd: Null pointer crashes after notfound response  If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference.  This flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33600","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33600","cwe":"CWE-476","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33600","date":"2026-10-08","epss":0.01216,"percentile":0.67686}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0013/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0006","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33600","description":"nscd: Null pointer crashes after notfound response\n\nIf the Name Service Cache Daemon's (nscd) cache fails to add a not-found\nnetgroup response to the cache, the client request can result in a null\npointer dereference.  This flaw was introduced in glibc 2.15 when the\ncache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33600","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33600","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33600","cwe":"CWE-476","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33600","date":"2026-10-08","epss":0.01216,"percentile":0.67686}],"risk":0.6627200000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33600","description":"nscd: Null pointer crashes after notfound response  If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference.  This flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33600","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33600","cwe":"CWE-476","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33600","date":"2026-10-08","epss":0.01216,"percentile":0.67686}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0013/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0006","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33600","description":"nscd: Null pointer crashes after notfound response\n\nIf the Name Service Cache Daemon's (nscd) cache fails to add a not-found\nnetgroup response to the cache, the client request can result in a null\npointer dereference.  This flaw was introduced in glibc 2.15 when the\ncache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33600","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33600","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33600","cwe":"CWE-476","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33600","date":"2026-10-08","epss":0.01216,"percentile":0.67686}],"risk":0.6627200000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33600","description":"nscd: Null pointer crashes after notfound response  If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference.  This flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33600","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33600","cwe":"CWE-476","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33600","date":"2026-10-08","epss":0.01216,"percentile":0.67686}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0013/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0006","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33600","description":"nscd: Null pointer crashes after notfound response\n\nIf the Name Service Cache Daemon's (nscd) cache fails to add a not-found\nnetgroup response to the cache, the client request can result in a null\npointer dereference.  This flaw was introduced in glibc 2.15 when the\ncache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"7f3e906f906bfb14","cpes":["cpe:2.3:a:libperl5.28:libperl5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*"],"name":"libperl5.28","purl":"pkg:deb/debian/libperl5.28@5.28.1-6%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=perl","type":"deb","version":"5.28.1-6+deb10u1","language":"","licenses":["Artistic","Artistic-2","Artistic-dist","BSD-3-clause","BSD-3-clause-GENERIC","BSD-3-clause-with-weird-numbering","BSD-4-clause-POWERDOG","BZIP","DONT-CHANGE-THE-GPL","Expat","GPL-1","GPL-1+","GPL-2","GPL-2+","GPL-3+-WITH-BISON-EXCEPTION","HSIEH-BSD","HSIEH-DERIVATIVE","LGPL-2.1","REGCOMP","REGCOMP,","RRA-KEEP-THIS-NOTICE","S2P","SDBM-PUBLIC-DOMAIN","TEXT-TABS","Unicode","ZLIB"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libperl5.28/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libperl5.28/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libperl5.28:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libperl5.28:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"perl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-16156","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"perl","version":"5.28.1-6+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-16156","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-16156","cwe":"CWE-347","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-16156","date":"2026-10-08","epss":0.00858,"percentile":0.57186}],"risk":0.65637,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-16156","description":"CPAN 2.28 allows Signature Verification Bypass."},"relatedVulnerabilities":[{"id":"CVE-2020-16156","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-16156","cwe":"CWE-347","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-16156","date":"2026-10-08","epss":0.00858,"percentile":0.57186}],"urls":["http://blogs.perl.org/users/neilb/2021/11/addressing-cpan-vulnerabilities-related-to-checksums.html","https://blog.hackeriet.no/cpan-signature-verification-vulnerabilities/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SD6RYOJII7HRJ6WVORFNVTYNOFY5JDXN/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SZ32AJIV4RHJMLWLU5QULGKMMIHYOMDC/","https://metacpan.org/pod/distribution/CPAN/scripts/cpan","https://lists.debian.org/debian-lts-announce/2024/10/msg00017.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-16156","description":"CPAN 2.28 allows Signature Verification Bypass."}]},{"artifact":{"id":"0699a5bd374035aa","cpes":["cpe:2.3:a:perl:perl:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*"],"name":"perl","purl":"pkg:deb/debian/perl@5.28.1-6%2Bdeb10u1?arch=amd64&distro=debian-10.10","type":"deb","version":"5.28.1-6+deb10u1","language":"","licenses":["Artistic","Artistic-2","Artistic-dist","BSD-3-clause","BSD-3-clause-GENERIC","BSD-3-clause-with-weird-numbering","BSD-4-clause-POWERDOG","BZIP","DONT-CHANGE-THE-GPL","Expat","GPL-1","GPL-1+","GPL-2","GPL-2+","GPL-3+-WITH-BISON-EXCEPTION","HSIEH-BSD","HSIEH-DERIVATIVE","LGPL-2.1","REGCOMP","REGCOMP,","RRA-KEEP-THIS-NOTICE","S2P","SDBM-PUBLIC-DOMAIN","TEXT-TABS","Unicode","ZLIB"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/var/lib/dpkg/info/perl.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/usr/share/doc/perl/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/perl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.list"},{"path":"/var/lib/dpkg/info/perl.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.postinst"},{"path":"/var/lib/dpkg/info/perl.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.postrm"},{"path":"/var/lib/dpkg/info/perl.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl.preinst"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2020-16156","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"perl","version":"5.28.1-6+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-16156","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-16156","cwe":"CWE-347","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-16156","date":"2026-10-08","epss":0.00858,"percentile":0.57186}],"risk":0.65637,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-16156","description":"CPAN 2.28 allows Signature Verification Bypass."},"relatedVulnerabilities":[{"id":"CVE-2020-16156","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-16156","cwe":"CWE-347","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-16156","date":"2026-10-08","epss":0.00858,"percentile":0.57186}],"urls":["http://blogs.perl.org/users/neilb/2021/11/addressing-cpan-vulnerabilities-related-to-checksums.html","https://blog.hackeriet.no/cpan-signature-verification-vulnerabilities/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SD6RYOJII7HRJ6WVORFNVTYNOFY5JDXN/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SZ32AJIV4RHJMLWLU5QULGKMMIHYOMDC/","https://metacpan.org/pod/distribution/CPAN/scripts/cpan","https://lists.debian.org/debian-lts-announce/2024/10/msg00017.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-16156","description":"CPAN 2.28 allows Signature Verification Bypass."}]},{"artifact":{"id":"b9e426935a3c0ab8","cpes":["cpe:2.3:a:perl-base:perl-base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl-base:perl_base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_base:perl-base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_base:perl_base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl:perl-base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl:perl_base:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*"],"name":"perl-base","purl":"pkg:deb/debian/perl-base@5.28.1-6%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=perl","type":"deb","version":"5.28.1-6+deb10u1","language":"","licenses":["Artistic","Artistic-2","Artistic-dist","BSD-3-clause","BSD-3-clause-GENERIC","BSD-3-clause-with-weird-numbering","BSD-4-clause-POWERDOG","BZIP","DONT-CHANGE-THE-GPL","Expat","GPL-1","GPL-1+","GPL-2","GPL-2+","GPL-3+-WITH-BISON-EXCEPTION","HSIEH-BSD","HSIEH-DERIVATIVE","LGPL-2.1","REGCOMP","REGCOMP,","RRA-KEEP-THIS-NOTICE","S2P","SDBM-PUBLIC-DOMAIN","TEXT-TABS","Unicode","ZLIB"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/perl/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/perl-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl-base.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/perl-base.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl-base.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/perl-base.list"}],"upstreams":[{"name":"perl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-16156","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"perl","version":"5.28.1-6+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-16156","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-16156","cwe":"CWE-347","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-16156","date":"2026-10-08","epss":0.00858,"percentile":0.57186}],"risk":0.65637,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-16156","description":"CPAN 2.28 allows Signature Verification Bypass."},"relatedVulnerabilities":[{"id":"CVE-2020-16156","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-16156","cwe":"CWE-347","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-16156","date":"2026-10-08","epss":0.00858,"percentile":0.57186}],"urls":["http://blogs.perl.org/users/neilb/2021/11/addressing-cpan-vulnerabilities-related-to-checksums.html","https://blog.hackeriet.no/cpan-signature-verification-vulnerabilities/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SD6RYOJII7HRJ6WVORFNVTYNOFY5JDXN/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SZ32AJIV4RHJMLWLU5QULGKMMIHYOMDC/","https://metacpan.org/pod/distribution/CPAN/scripts/cpan","https://lists.debian.org/debian-lts-announce/2024/10/msg00017.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-16156","description":"CPAN 2.28 allows Signature Verification Bypass."}]},{"artifact":{"id":"bcaa862768e40a61","cpes":["cpe:2.3:a:perl-modules-5.28:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl-modules-5.28:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_modules_5.28:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_modules_5.28:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl-modules:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl-modules:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_modules:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl_modules:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl:perl-modules-5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:perl:perl_modules_5.28:5.28.1-6\\+deb10u1:*:*:*:*:*:*:*"],"name":"perl-modules-5.28","purl":"pkg:deb/debian/perl-modules-5.28@5.28.1-6%2Bdeb10u1?arch=all&distro=debian-10.10&upstream=perl","type":"deb","version":"5.28.1-6+deb10u1","language":"","licenses":["Artistic","Artistic-2","Artistic-dist","BSD-3-clause","BSD-3-clause-GENERIC","BSD-3-clause-with-weird-numbering","BSD-4-clause-POWERDOG","BZIP","DONT-CHANGE-THE-GPL","Expat","GPL-1","GPL-1+","GPL-2","GPL-2+","GPL-3+-WITH-BISON-EXCEPTION","HSIEH-BSD","HSIEH-DERIVATIVE","LGPL-2.1","REGCOMP","REGCOMP,","RRA-KEEP-THIS-NOTICE","S2P","SDBM-PUBLIC-DOMAIN","TEXT-TABS","Unicode","ZLIB"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/perl-modules-5.28/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/perl-modules-5.28/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl-modules-5.28.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl-modules-5.28.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/perl-modules-5.28.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/perl-modules-5.28.list"}],"upstreams":[{"name":"perl"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-16156","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"perl","version":"5.28.1-6+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-16156","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-16156","cwe":"CWE-347","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-16156","date":"2026-10-08","epss":0.00858,"percentile":0.57186}],"risk":0.65637,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-16156","description":"CPAN 2.28 allows Signature Verification Bypass."},"relatedVulnerabilities":[{"id":"CVE-2020-16156","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-16156","cwe":"CWE-347","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-16156","date":"2026-10-08","epss":0.00858,"percentile":0.57186}],"urls":["http://blogs.perl.org/users/neilb/2021/11/addressing-cpan-vulnerabilities-related-to-checksums.html","https://blog.hackeriet.no/cpan-signature-verification-vulnerabilities/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SD6RYOJII7HRJ6WVORFNVTYNOFY5JDXN/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SZ32AJIV4RHJMLWLU5QULGKMMIHYOMDC/","https://metacpan.org/pod/distribution/CPAN/scripts/cpan","https://lists.debian.org/debian-lts-announce/2024/10/msg00017.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-16156","description":"CPAN 2.28 allows Signature Verification Bypass."}]},{"artifact":{"id":"6ccd8697c0beb710","cpes":["cpe:2.3:a:curl:curl:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"curl","purl":"pkg:deb/debian/curl@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/curl/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/curl/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/curl.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/curl.list"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-27538","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27538","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27538","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27538","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27538","date":"2026-10-08","epss":0.01246,"percentile":0.68399}],"risk":0.65415,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27538","description":"An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified, which should have prevented reuse. libcurl maintains a pool of previously used connections to reuse them for subsequent transfers if the configurations match. However, two SSH settings were omitted from the configuration check, allowing them to match easily, potentially leading to the reuse of an inappropriate connection."},"relatedVulnerabilities":[{"id":"CVE-2023-27538","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.7,"impactScore":5.2,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27538","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27538","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27538","date":"2026-10-08","epss":0.01246,"percentile":0.68399}],"urls":["https://hackerone.com/reports/1898475","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27538","description":"An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified, which should have prevented reuse. libcurl maintains a pool of previously used connections to reuse them for subsequent transfers if the configurations match. However, two SSH settings were omitted from the configuration check, allowing them to match easily, potentially leading to the reuse of an inappropriate connection."}]},{"artifact":{"id":"3adccfce02e26e3e","cpes":["cpe:2.3:a:libcurl3-gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3-gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3_gnutls:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3-gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libcurl3:libcurl3_gnutls:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl3-gnutls","purl":"pkg:deb/debian/libcurl3-gnutls@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl3-gnutls/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libcurl3-gnutls/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libcurl3-gnutls:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27538","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27538","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27538","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27538","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27538","date":"2026-10-08","epss":0.01246,"percentile":0.68399}],"risk":0.65415,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27538","description":"An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified, which should have prevented reuse. libcurl maintains a pool of previously used connections to reuse them for subsequent transfers if the configurations match. However, two SSH settings were omitted from the configuration check, allowing them to match easily, potentially leading to the reuse of an inappropriate connection."},"relatedVulnerabilities":[{"id":"CVE-2023-27538","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.7,"impactScore":5.2,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27538","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27538","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27538","date":"2026-10-08","epss":0.01246,"percentile":0.68399}],"urls":["https://hackerone.com/reports/1898475","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27538","description":"An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified, which should have prevented reuse. libcurl maintains a pool of previously used connections to reuse them for subsequent transfers if the configurations match. However, two SSH settings were omitted from the configuration check, allowing them to match easily, potentially leading to the reuse of an inappropriate connection."}]},{"artifact":{"id":"af03801f530228cd","cpes":["cpe:2.3:a:libcurl4:libcurl4:7.64.0-4\\+deb10u2:*:*:*:*:*:*:*"],"name":"libcurl4","purl":"pkg:deb/debian/libcurl4@7.64.0-4%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=curl","type":"deb","version":"7.64.0-4+deb10u2","language":"","licenses":["BSD-3-Clause","BSD-4-Clause","ISC","curl","other","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libcurl4/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libcurl4/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libcurl4:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"curl"}]},"matchDetails":[{"fix":{"suggestedVersion":"7.64.0-4+deb10u6"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-27538","versionConstraint":"< 7.64.0-4+deb10u6 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"curl","version":"7.64.0-4+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-27538","fix":{"state":"fixed","versions":["7.64.0-4+deb10u6"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"7.64.0-4+deb10u6"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27538","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27538","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27538","date":"2026-10-08","epss":0.01246,"percentile":0.68399}],"risk":0.65415,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-27538","description":"An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified, which should have prevented reuse. libcurl maintains a pool of previously used connections to reuse them for subsequent transfers if the configurations match. However, two SSH settings were omitted from the configuration check, allowing them to match easily, potentially leading to the reuse of an inappropriate connection."},"relatedVulnerabilities":[{"id":"CVE-2023-27538","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H","metrics":{"baseScore":7.7,"impactScore":5.2,"exploitabilityScore":2.6},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-27538","cwe":"CWE-305","type":"Secondary","source":"support@hackerone.com"},{"cve":"CVE-2023-27538","cwe":"CWE-287","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-27538","date":"2026-10-08","epss":0.01246,"percentile":0.68399}],"urls":["https://hackerone.com/reports/1898475","https://lists.debian.org/debian-lts-announce/2023/04/msg00025.html","https://security.gentoo.org/glsa/202310-12","https://security.netapp.com/advisory/ntap-20230420-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-27538","description":"An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified, which should have prevented reuse. libcurl maintains a pool of previously used connections to reuse them for subsequent transfers if the configurations match. However, two SSH settings were omitted from the configuration check, allowing them to match easily, potentially leading to the reuse of an inappropriate connection."}]},{"artifact":{"id":"dfdab1b7031e1625","cpes":["cpe:2.3:a:openssh-client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh-client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*"],"name":"openssh-client","purl":"pkg:deb/debian/openssh-client@1%3A7.9p1-10%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=openssh","type":"deb","version":"1:7.9p1-10+deb10u2","language":"","licenses":["BSD-2-clause","BSD-3-clause","Beer-ware","Expat-with-advertising-restriction","Mazieres-BSD-style","OpenSSH","Powell-BSD-style","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssh-client/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/openssh-client/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.list"},{"path":"/var/lib/dpkg/info/openssh-client.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postinst"},{"path":"/var/lib/dpkg/info/openssh-client.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postrm"},{"path":"/var/lib/dpkg/info/openssh-client.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.preinst"},{"path":"/var/lib/dpkg/info/openssh-client.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.prerm"}],"upstreams":[{"name":"openssh"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-15778","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssh","version":"1:7.9p1-10+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-15778","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2020-15778","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-15778","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-15778","date":"2026-10-08","epss":0.12996,"percentile":0.96239}],"risk":0.6498,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-15778","description":"scp in OpenSSH through 8.3p1 allows command injection in the scp.c toremote function, as demonstrated by backtick characters in the destination argument. NOTE: the vendor reportedly has stated that they intentionally omit validation of \"anomalous argument transfers\" because that could \"stand a great chance of breaking existing workflows.\""},"relatedVulnerabilities":[{"id":"CVE-2020-15778","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.6},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","metrics":{"baseScore":6.8,"impactScore":6.5,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-15778","cwe":"CWE-78","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-15778","cwe":"CWE-78","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-15778","date":"2026-10-08","epss":0.12996,"percentile":0.96239}],"urls":["https://access.redhat.com/errata/RHSA-2024:3166","https://github.com/cpandya2909/CVE-2020-15778/","https://news.ycombinator.com/item?id=25005567","https://security.gentoo.org/glsa/202212-06","https://security.netapp.com/advisory/ntap-20200731-0007/","https://www.openssh.com/security.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-15778","description":"scp in OpenSSH through 8.3p1 allows command injection in the scp.c toremote function, as demonstrated by backtick characters in the destination argument. NOTE: the vendor reportedly has stated that they intentionally omit validation of \"anomalous argument transfers\" because that could \"stand a great chance of breaking existing workflows.\""}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_452"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-21587","versionConstraint":"< 1.8.0_452||>= 1.9, < 8.0.452||>= 12, < 17.0.15||>= 18, < 21.0.7||>= 22, < 24.0.1||>= 9, < 11.0.27 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-21587","fix":{"state":"fixed","versions":["1.8.0_452","8.0.452","11.0.27","17.0.15","21.0.7","24.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_452"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.452"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.15"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"24.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.27"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-21587","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2025-21587","date":"2026-10-08","epss":0.00818,"percentile":0.55865}],"risk":0.60941,"urls":["https://www.oracle.com/security-alerts/cpuapr2025.html","https://lists.debian.org/debian-lts-announce/2025/05/msg00026.html","https://security.netapp.com/advisory/ntap-20250502-0005/"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-21587","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE).  Supported versions that are affected are Oracle Java SE:8u441, 8u441-perf, 11.0.26, 17.0.14, 21.0.6, 24; Oracle GraalVM for JDK:17.0.14, 21.0.6, 24; Oracle GraalVM Enterprise Edition:20.3.17 and  21.3.13. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"77ef9f927b15ea5e","cpes":["cpe:2.3:a:libgcrypt20:libgcrypt20:1.8.4-5\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgcrypt20","purl":"pkg:deb/debian/libgcrypt20@1.8.4-5%2Bdeb10u1?arch=amd64&distro=debian-10.10","type":"deb","version":"1.8.4-5+deb10u1","language":"","licenses":["sha256:26c21767c3a769ed688e2fe3d890963bd0992b5a53ee9cd18babd680e665f131"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgcrypt20/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgcrypt20/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgcrypt20:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgcrypt20:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-2236","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libgcrypt20","version":"1.8.4-5+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-2236","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2236","cwe":"CWE-385","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2024-2236","date":"2026-10-08","epss":0.01114,"percentile":0.65005}],"risk":0.6071300000000001,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-2236","description":"A timing-based side-channel flaw was found in libgcrypt's RSA implementation. This issue may allow a remote attacker to initiate a Bleichenbacher-style attack, which can lead to the decryption of RSA ciphertexts."},"relatedVulnerabilities":[{"id":"CVE-2024-2236","cvss":[{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-2236","cwe":"CWE-385","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2024-2236","date":"2026-10-08","epss":0.01114,"percentile":0.65005}],"urls":["https://access.redhat.com/errata/RHSA-2024:9404","https://access.redhat.com/errata/RHSA-2025:3530","https://access.redhat.com/errata/RHSA-2025:3534","https://access.redhat.com/security/cve/CVE-2024-2236","https://bugzilla.redhat.com/show_bug.cgi?id=2245218","https://bugzilla.redhat.com/show_bug.cgi?id=2268268"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-2236","description":"A timing-based side-channel flaw was found in libgcrypt's RSA implementation. This issue may allow a remote attacker to initiate a Bleichenbacher-style attack, which can lead to the decryption of RSA ciphertexts."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3999","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3999","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3999","date":"2026-10-08","epss":0.00746,"percentile":0.53392}],"risk":0.57069,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3999","description":"A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system."},"relatedVulnerabilities":[{"id":"CVE-2021-3999","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3999","date":"2026-10-08","epss":0.00746,"percentile":0.53392}],"urls":["https://access.redhat.com/security/cve/CVE-2021-3999","https://bugzilla.redhat.com/show_bug.cgi?id=2024637","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security-tracker.debian.org/tracker/CVE-2021-3999","https://security.netapp.com/advisory/ntap-20221104-0001/","https://sourceware.org/bugzilla/show_bug.cgi?id=28769","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Bh=23e0e8f5f1fb5ed150253d986ecccdc90c2dcd5e","https://www.openwall.com/lists/oss-security/2022/01/24/4"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3999","description":"A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3999","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3999","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3999","date":"2026-10-08","epss":0.00746,"percentile":0.53392}],"risk":0.57069,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3999","description":"A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system."},"relatedVulnerabilities":[{"id":"CVE-2021-3999","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3999","date":"2026-10-08","epss":0.00746,"percentile":0.53392}],"urls":["https://access.redhat.com/security/cve/CVE-2021-3999","https://bugzilla.redhat.com/show_bug.cgi?id=2024637","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security-tracker.debian.org/tracker/CVE-2021-3999","https://security.netapp.com/advisory/ntap-20221104-0001/","https://sourceware.org/bugzilla/show_bug.cgi?id=28769","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Bh=23e0e8f5f1fb5ed150253d986ecccdc90c2dcd5e","https://www.openwall.com/lists/oss-security/2022/01/24/4"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3999","description":"A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3999","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3999","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3999","date":"2026-10-08","epss":0.00746,"percentile":0.53392}],"risk":0.57069,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3999","description":"A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system."},"relatedVulnerabilities":[{"id":"CVE-2021-3999","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3999","date":"2026-10-08","epss":0.00746,"percentile":0.53392}],"urls":["https://access.redhat.com/security/cve/CVE-2021-3999","https://bugzilla.redhat.com/show_bug.cgi?id=2024637","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security-tracker.debian.org/tracker/CVE-2021-3999","https://security.netapp.com/advisory/ntap-20221104-0001/","https://sourceware.org/bugzilla/show_bug.cgi?id=28769","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Bh=23e0e8f5f1fb5ed150253d986ecccdc90c2dcd5e","https://www.openwall.com/lists/oss-security/2022/01/24/4"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3999","description":"A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-3999","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-3999","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3999","date":"2026-10-08","epss":0.00746,"percentile":0.53392}],"risk":0.57069,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-3999","description":"A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system."},"relatedVulnerabilities":[{"id":"CVE-2021-3999","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2021-3999","cwe":"CWE-193","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-3999","date":"2026-10-08","epss":0.00746,"percentile":0.53392}],"urls":["https://access.redhat.com/security/cve/CVE-2021-3999","https://bugzilla.redhat.com/show_bug.cgi?id=2024637","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security-tracker.debian.org/tracker/CVE-2021-3999","https://security.netapp.com/advisory/ntap-20221104-0001/","https://sourceware.org/bugzilla/show_bug.cgi?id=28769","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Bh=23e0e8f5f1fb5ed150253d986ecccdc90c2dcd5e","https://www.openwall.com/lists/oss-security/2022/01/24/4"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-3999","description":"A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when the size of the buffer is exactly 1. A local attacker who can control the input buffer and size passed to getcwd() in a setuid program could use this flaw to potentially execute arbitrary code and escalate their privileges on the system."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_402"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-20926","versionConstraint":"< 1.8.0_402||>= 1.9, < 8.0.402||>= 9, < 11.0.22 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-20926","fix":{"state":"fixed","versions":["1.8.0_402","8.0.402","11.0.22"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_402"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.402"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.22"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-20926","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"cve":"CVE-2024-20926","cwe":"CWE-502","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"cve":"CVE-2024-20926","cwe":"CWE-693","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-20926","date":"2026-10-08","epss":0.01035,"percentile":0.62783}],"risk":0.564075,"urls":["https://lists.debian.org/debian-lts-announce/2024/01/msg00023.html","https://security.netapp.com/advisory/ntap-20240201-0002/","https://www.oracle.com/security-alerts/cpujan2024.html","https://security.netapp.com/advisory/ntap-20241108-0002/","https://openjdk.org/groups/vulnerability/advisories/2024-01-16"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-20926","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Scripting).  Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21; Oracle GraalVM for JDK: 17.0.9; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and  22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 5.9 (Confidentiality impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"dd6e91cb036cd97c","cpes":["cpe:2.3:a:libncursesw6:libncursesw6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libncursesw6","purl":"pkg:deb/debian/libncursesw6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libncursesw6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libncursesw6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-50495","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-50495","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-50495","date":"2026-10-08","epss":0.00954,"percentile":0.60184}],"risk":0.54855,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-50495","description":"NCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry()."},"relatedVulnerabilities":[{"id":"CVE-2023-50495","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-50495","date":"2026-10-08","epss":0.00954,"percentile":0.60184}],"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/","https://lists.gnu.org/archive/html/bug-ncurses/2023-04/msg00020.html","https://lists.gnu.org/archive/html/bug-ncurses/2023-04/msg00029.html","https://security.netapp.com/advisory/ntap-20240119-0008/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-50495","description":"NCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry()."}]},{"artifact":{"id":"32ae0288f40dd7ec","cpes":["cpe:2.3:a:libtinfo6:libtinfo6:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"libtinfo6","purl":"pkg:deb/debian/libtinfo6@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libtinfo6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libtinfo6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libtinfo6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-50495","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-50495","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-50495","date":"2026-10-08","epss":0.00954,"percentile":0.60184}],"risk":0.54855,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-50495","description":"NCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry()."},"relatedVulnerabilities":[{"id":"CVE-2023-50495","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-50495","date":"2026-10-08","epss":0.00954,"percentile":0.60184}],"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/","https://lists.gnu.org/archive/html/bug-ncurses/2023-04/msg00020.html","https://lists.gnu.org/archive/html/bug-ncurses/2023-04/msg00029.html","https://security.netapp.com/advisory/ntap-20240119-0008/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-50495","description":"NCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry()."}]},{"artifact":{"id":"a8f604f9c5ac808b","cpes":["cpe:2.3:a:ncurses-base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_base:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_base:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-base","purl":"pkg:deb/debian/ncurses-base@6.1%2B20181013-2%2Bdeb10u2?arch=all&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-base.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-base.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-50495","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-50495","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-50495","date":"2026-10-08","epss":0.00954,"percentile":0.60184}],"risk":0.54855,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-50495","description":"NCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry()."},"relatedVulnerabilities":[{"id":"CVE-2023-50495","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-50495","date":"2026-10-08","epss":0.00954,"percentile":0.60184}],"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/","https://lists.gnu.org/archive/html/bug-ncurses/2023-04/msg00020.html","https://lists.gnu.org/archive/html/bug-ncurses/2023-04/msg00029.html","https://security.netapp.com/advisory/ntap-20240119-0008/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-50495","description":"NCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry()."}]},{"artifact":{"id":"9954ccfd24462fc8","cpes":["cpe:2.3:a:ncurses-bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses-bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses_bin:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses-bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:ncurses:ncurses_bin:6.1\\+20181013-2\\+deb10u2:*:*:*:*:*:*:*"],"name":"ncurses-bin","purl":"pkg:deb/debian/ncurses-bin@6.1%2B20181013-2%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=ncurses","type":"deb","version":"6.1+20181013-2+deb10u2","language":"","licenses":["sha256:5e8ee902c8906ddb7779fd36dc9979cb08b51fbebf7c0b1a9aeb78af382af590"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/ncurses-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/ncurses-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/ncurses-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/ncurses-bin.list"}],"upstreams":[{"name":"ncurses"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-50495","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"ncurses","version":"6.1+20181013-2+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-50495","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-50495","date":"2026-10-08","epss":0.00954,"percentile":0.60184}],"risk":0.54855,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-50495","description":"NCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry()."},"relatedVulnerabilities":[{"id":"CVE-2023-50495","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-50495","date":"2026-10-08","epss":0.00954,"percentile":0.60184}],"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/","https://lists.gnu.org/archive/html/bug-ncurses/2023-04/msg00020.html","https://lists.gnu.org/archive/html/bug-ncurses/2023-04/msg00029.html","https://security.netapp.com/advisory/ntap-20240119-0008/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LU4MYMKFEZQ5VSCVLRIZGDQOUW3T44GT/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-50495","description":"NCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry()."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_462"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-50106","versionConstraint":"< 1.8.0_462||>= 1.9, < 8.0.462||>= 12, < 17.0.16||>= 18, < 21.0.8||>= 22, < 24.0.2||>= 9, < 11.0.28 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-50106","fix":{"state":"fixed","versions":["1.8.0_462","8.0.462","11.0.28","17.0.16","21.0.8","24.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_462"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.462"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.16"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.8"},{"date":"2025-09-04","kind":"first-observed","version":"24.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.28"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2025-50106","date":"2026-10-08","epss":0.00699,"percentile":0.51669}],"risk":0.54522,"urls":["https://www.oracle.com/security-alerts/cpujul2025.html","https://lists.debian.org/debian-lts-announce/2025/07/msg00011.html","https://lists.debian.org/debian-lts-announce/2025/08/msg00014.html"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-50106","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D).  Supported versions that are affected are Oracle Java SE: 8u451, 8u451-perf, 11.0.27, 17.0.15, 21.0.7, 24.0.1; Oracle GraalVM for JDK: 17.0.15, 21.0.7 and  24.0.1; Oracle GraalVM Enterprise Edition: 21.3.14. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in takeover of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_362"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21830","versionConstraint":"< 1.8.0_362||>= 1.9, < 8.0.362 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21830","fix":{"state":"fixed","versions":["1.8.0_362","8.0.362"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_362"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.362"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-21830","date":"2026-10-08","epss":0.01058,"percentile":0.63446}],"risk":0.5448700000000001,"urls":["https://security.gentoo.org/glsa/202401-25","https://www.oracle.com/security-alerts/cpujan2023.html","https://www.oracle.com/security-alerts/cpujul2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-01-17"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21830","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization).  Supported versions that are affected are Oracle Java SE: 8u351, 8u351-perf; Oracle GraalVM Enterprise Edition: 20.3.8 and  21.3.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 5.3 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_351"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2022-21624","versionConstraint":"< 1.8.0_351||>= 1.9, < 8.0.351||>= 12, < 17.0.5||>= 18, < 19.0.1||>= 9, < 11.0.17 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2022-21624","fix":{"state":"fixed","versions":["1.8.0_351","8.0.351","11.0.17","17.0.5","19.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_351"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.351"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.5"},{"date":"2025-09-04","kind":"first-observed","version":"19.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.17"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-21624","cwe":"CWE-502","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2022-21624","date":"2026-10-08","epss":0.01573,"percentile":0.74666}],"risk":0.526955,"urls":["https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/37QDWJBGEPP65X43NXQTXQ7KASLUHON6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3ARF4QF4N3X5GSFHXUBWARGLISGKJ33R/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3QLQ7OD33W6LT3HWI7VYDFFJLV75Y73K/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EXSBV3W6EP6B7XJ63Z2FPVBH6HAPGJ5T/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HNGMDNIHAA73BEX6XPA2IMXJSGOKKYE6/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PB3CIGOFG7CENUVVE4FFZT2HI5FO77XU/","https://security.gentoo.org/glsa/202401-25","https://security.netapp.com/advisory/ntap-20221028-0012/","https://www.oracle.com/security-alerts/cpuoct2022.html"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-21624","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 20.3.7, 21.3.3 and 22.2.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 3.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_492"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2026-22016","versionConstraint":"< 1.8.0_492||>= 1.9, < 8.0.492||>= 12, < 17.0.19||>= 18, < 21.0.11||>= 22, < 25.0.3||>= 26, < 26.0.1||>= 9, < 11.0.31 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2026-22016","fix":{"state":"fixed","versions":["1.8.0_492","8.0.492","11.0.31","17.0.19","21.0.11","25.0.3","26.0.1"],"available":[{"date":"2026-04-24","kind":"first-observed","version":"1.8.0_492"},{"date":"2026-04-24","kind":"first-observed","version":"8.0.492"},{"date":"2026-04-24","kind":"first-observed","version":"17.0.19"},{"date":"2026-04-24","kind":"first-observed","version":"21.0.11"},{"date":"2026-04-24","kind":"first-observed","version":"25.0.3"},{"date":"2026-04-24","kind":"first-observed","version":"26.0.1"},{"date":"2026-04-24","kind":"first-observed","version":"11.0.31"}]},"cvss":[{"type":"Secondary","source":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2026-22016","cwe":"CWE-200","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"cve":"CVE-2026-22016","cwe":"CWE-502","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"},{"cve":"CVE-2026-22016","cwe":"CWE-611","type":"Secondary","source":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c"}],"epss":[{"cve":"CVE-2026-22016","date":"2026-10-08","epss":0.00702,"percentile":0.51804}],"risk":0.5265000000000001,"urls":["https://www.oracle.com/security-alerts/cpuapr2026.html","https://access.redhat.com/errata/RHSA-2026:11403","https://access.redhat.com/errata/RHSA-2026:11655","https://access.redhat.com/errata/RHSA-2026:11822","https://access.redhat.com/errata/RHSA-2026:11829","https://access.redhat.com/errata/RHSA-2026:11902","https://access.redhat.com/errata/RHSA-2026:22139","https://access.redhat.com/errata/RHSA-2026:22328","https://access.redhat.com/errata/RHSA-2026:9254","https://access.redhat.com/errata/RHSA-2026:9682","https://access.redhat.com/errata/RHSA-2026:9683","https://access.redhat.com/errata/RHSA-2026:9684","https://access.redhat.com/errata/RHSA-2026:9686","https://access.redhat.com/errata/RHSA-2026:9687","https://access.redhat.com/errata/RHSA-2026:9688","https://access.redhat.com/errata/RHSA-2026:9689","https://access.redhat.com/errata/RHSA-2026:9691","https://access.redhat.com/errata/RHSA-2026:9693","https://access.redhat.com/errata/RHSA-2026:9694","https://access.redhat.com/security/cve/CVE-2026-22016","https://bugzilla.redhat.com/show_bug.cgi?id=2460039","https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-22016.json"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2026-22016","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP).  Supported versions that are affected are Oracle Java SE: 8u481, 8u481-b50, 8u481-perf, 11.0.30, 17.0.18, 21.0.10, 25.0.2, 26; Oracle GraalVM for JDK: 17.0.18 and  21.0.10; Oracle GraalVM Enterprise Edition: 21.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 7.5 (Confidentiality impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_482"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-47219","versionConstraint":"< 1.8.0_482||>= 1.9, < 8.0.482 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-47219","fix":{"state":"fixed","versions":["1.8.0_482","8.0.482"],"available":[{"date":"2026-01-27","kind":"first-observed","version":"1.8.0_482"},{"date":"2026-01-27","kind":"first-observed","version":"8.0.482"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":8.1,"impactScore":5.9,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-47219","cwe":"CWE-125","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2025-47219","date":"2026-10-08","epss":0.00668,"percentile":0.50372}],"risk":0.5210400000000001,"urls":["https://github.com/atredispartners/advisories/blob/master/2025/ATREDIS-2025-0003.md","https://gstreamer.freedesktop.org/security/","https://cert-portal.siemens.com/productcert/html/ssa-032379.html"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-47219","description":"In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_trak function may read past the end of a heap buffer while parsing an MP4 file, possibly leading to information disclosure."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_472"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-53066","versionConstraint":"< 1.8.0_472||>= 1.9, < 8.0.472||>= 12, < 17.0.17||>= 18, < 21.0.9||>= 22, < 25.0.1||>= 9, < 11.0.29 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-53066","fix":{"state":"fixed","versions":["1.8.0_472","8.0.472","11.0.29","17.0.17","21.0.9","25.0.1"],"available":[{"date":"2025-10-23","kind":"first-observed","version":"1.8.0_472"},{"date":"2025-10-23","kind":"first-observed","version":"8.0.472"},{"date":"2025-10-23","kind":"first-observed","version":"17.0.17"},{"date":"2025-10-23","kind":"first-observed","version":"21.0.9"},{"date":"2025-10-23","kind":"first-observed","version":"25.0.1"},{"date":"2025-10-23","kind":"first-observed","version":"11.0.29"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-53066","cwe":"CWE-200","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2025-53066","date":"2026-10-08","epss":0.00694,"percentile":0.51454}],"risk":0.5205,"urls":["https://www.oracle.com/security-alerts/cpuoct2025.html","https://lists.debian.org/debian-lts-announce/2025/10/msg00026.html","https://cert-portal.siemens.com/productcert/html/ssa-032379.html"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-53066","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP).  Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and  21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 7.5 (Confidentiality impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"ca588797ccd6a954","cpes":["cpe:2.3:a:less:less:487-0.1\\+b1:*:*:*:*:*:*:*"],"name":"less","purl":"pkg:deb/debian/less@487-0.1%2Bb1?arch=amd64&distro=debian-10.10&upstream=less%40487-0.1","type":"deb","version":"487-0.1+b1","language":"","licenses":["sha256:7b2258b0cec49135ac8d7f8dfe73d842bfedda3f11c0516cb07616f6be466b5d"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/less/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/less/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/less.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/less.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.list"},{"path":"/var/lib/dpkg/info/less.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.postinst"},{"path":"/var/lib/dpkg/info/less.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.postrm"},{"path":"/var/lib/dpkg/info/less.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/less.prerm"}],"upstreams":[{"name":"less","version":"487-0.1"}]},"matchDetails":[{"fix":{"suggestedVersion":"487-0.1+deb10u1"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2024-32487","versionConstraint":"< 487-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"less","version":"487-0.1+b1"},"namespace":"debian:distro:debian:10"}},{"fix":{"suggestedVersion":"487-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-32487","versionConstraint":"< 487-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"less","version":"487-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-32487","fix":{"state":"fixed","versions":["487-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"487-0.1+deb10u1"}]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","metrics":{"baseScore":8.6,"impactScore":6.1,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32487","cwe":"CWE-96","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-32487","date":"2026-10-08","epss":0.00628,"percentile":0.48456}],"risk":0.50554,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-32487","description":"less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases."},"relatedVulnerabilities":[{"id":"CVE-2024-32487","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H","metrics":{"baseScore":8.6,"impactScore":6.1,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-32487","cwe":"CWE-96","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-32487","date":"2026-10-08","epss":0.00628,"percentile":0.48456}],"urls":["http://www.openwall.com/lists/oss-security/2024/04/15/1","https://github.com/gwsw/less/commit/007521ac3c95bc76e3d59c6dbfe75d06c8075c33","https://lists.debian.org/debian-lts-announce/2024/05/msg00018.html","https://security.netapp.com/advisory/ntap-20240605-0009/","https://www.openwall.com/lists/oss-security/2024/04/12/5","https://www.openwall.com/lists/oss-security/2024/04/13/2"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-32487","description":"less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_441"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-21502","versionConstraint":"< 1.8.0_441||>= 1.9, < 8.0.441||>= 12, < 17.0.14||>= 18, < 21.0.6||>= 22, < 23.0.2||>= 9, < 11.0.26 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-21502","fix":{"state":"fixed","versions":["1.8.0_441","8.0.441","11.0.26","17.0.14","21.0.6","23.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_441"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.441"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.14"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.6"},{"date":"2025-09-04","kind":"first-observed","version":"23.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.26"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-21502","cwe":"CWE-863","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2025-21502","date":"2026-10-08","epss":0.01007,"percentile":0.61919}],"risk":0.49343,"urls":["https://www.oracle.com/security-alerts/cpujan2025.html","http://www.openwall.com/lists/oss-security/2025/01/25/6","https://lists.debian.org/debian-lts-announce/2025/01/msg00031.html","https://lists.debian.org/debian-lts-announce/2025/02/msg00004.html","https://security.netapp.com/advisory/ntap-20250124-0009/"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-21502","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u431-perf, 11.0.25, 17.0.13, 21.0.5, 23.0.1; Oracle GraalVM for JDK: 17.0.13, 21.0.5, 23.0.1; Oracle GraalVM Enterprise Edition: 20.3.16 and  21.3.12. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 4.8 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_382"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-22049","versionConstraint":"< 1.8.0_382||>= 1.9, < 8.0.382||>= 12, < 17.0.8||>= 18, < 20.0.2||>= 9, < 11.0.20 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-22049","fix":{"state":"fixed","versions":["1.8.0_382","8.0.382","11.0.20","17.0.8","20.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_382"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.382"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.8"},{"date":"2025-09-04","kind":"first-observed","version":"20.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.20"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-22049","date":"2026-10-08","epss":0.01469,"percentile":0.72949}],"risk":0.4921149999999999,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230725-0006/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.debian.org/security/2023/dsa-5458","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpujul2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-07-18"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-22049","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (component: Libraries).  Supported versions that are affected are Oracle Java SE: 8u371, 8u371-perf, 11.0.19, 17.0.7, 20.0.1; Oracle GraalVM Enterprise Edition: 20.3.10, 21.3.6, 22.3.2; Oracle GraalVM for JDK: 17.0.7 and  20.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 3.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_402"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-20921","versionConstraint":"< 1.8.0_402||>= 1.9, < 8.0.402||>= 12, < 17.0.10||>= 18, < 21.0.2||>= 9, < 11.0.22 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-20921","fix":{"state":"fixed","versions":["1.8.0_402","8.0.402","11.0.22","17.0.10","21.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_402"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.402"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.10"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.22"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-20921","cwe":"CWE-276","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-20921","date":"2026-10-08","epss":0.00864,"percentile":0.57356}],"risk":0.4708800000000001,"urls":["https://www.oracle.com/security-alerts/cpujan2024.html","https://security.netapp.com/advisory/ntap-20240201-0002/","https://security.netapp.com/advisory/ntap-20241108-0002/","https://openjdk.org/groups/vulnerability/advisories/2024-01-16"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-20921","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and  22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 5.9 (Confidentiality impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cf463751d00983f9","cpes":["cpe:2.3:a:login:login:1\\:4.5-1.1:*:*:*:*:*:*:*"],"name":"login","purl":"pkg:deb/debian/login@1%3A4.5-1.1?arch=amd64&distro=debian-10.10&upstream=shadow","type":"deb","version":"1:4.5-1.1","language":"","licenses":["sha256:56ca9c00cdef4d69b35d2013465c539eb9e09a80fec538d0f6dc91423dbaa1d3"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/login/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/login/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/login.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/login.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/login.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/login.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/login.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/login.list"},{"path":"/var/lib/dpkg/info/login.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/login.postinst"},{"path":"/var/lib/dpkg/info/login.preinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/login.preinst"}],"upstreams":[{"name":"shadow"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2018-7169","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"shadow","version":"1:4.5-1.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2018-7169","fix":{"state":"wont-fix","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2018-7169","cwe":"CWE-732","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-7169","date":"2026-10-08","epss":0.01566,"percentile":0.74554}],"risk":0.4698,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2018-7169","description":"An issue was discovered in shadow 4.5. newgidmap (in shadow-utils) is setuid and allows an unprivileged user to be placed in a user namespace where setgroups(2) is permitted. This allows an attacker to remove themselves from a supplementary group, which may allow access to certain filesystem paths if the administrator has used \"group blacklisting\" (e.g., chmod g-rwx) to restrict access to paths. This flaw effectively reverts a security feature in the kernel (in particular, the /proc/self/setgroups knob) to prevent this sort of privilege escalation."},"relatedVulnerabilities":[{"id":"CVE-2018-7169","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-7169","cwe":"CWE-732","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-7169","date":"2026-10-08","epss":0.01566,"percentile":0.74554}],"urls":["https://bugs.launchpad.net/ubuntu/+source/shadow/+bug/1729357","https://security.gentoo.org/glsa/201805-09"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2018-7169","description":"An issue was discovered in shadow 4.5. newgidmap (in shadow-utils) is setuid and allows an unprivileged user to be placed in a user namespace where setgroups(2) is permitted. This allows an attacker to remove themselves from a supplementary group, which may allow access to certain filesystem paths if the administrator has used \"group blacklisting\" (e.g., chmod g-rwx) to restrict access to paths. This flaw effectively reverts a security feature in the kernel (in particular, the /proc/self/setgroups knob) to prevent this sort of privilege escalation."}]},{"artifact":{"id":"f3e570eadb5c4e69","cpes":["cpe:2.3:a:passwd:passwd:1\\:4.5-1.1:*:*:*:*:*:*:*"],"name":"passwd","purl":"pkg:deb/debian/passwd@1%3A4.5-1.1?arch=amd64&distro=debian-10.10&upstream=shadow","type":"deb","version":"1:4.5-1.1","language":"","licenses":["sha256:56ca9c00cdef4d69b35d2013465c539eb9e09a80fec538d0f6dc91423dbaa1d3"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/passwd/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/passwd/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/passwd.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/passwd.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/passwd.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/passwd.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/passwd.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/passwd.list"},{"path":"/var/lib/dpkg/info/passwd.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/passwd.postinst"},{"path":"/var/lib/dpkg/info/passwd.preinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/passwd.preinst"}],"upstreams":[{"name":"shadow"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2018-7169","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"shadow","version":"1:4.5-1.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2018-7169","fix":{"state":"wont-fix","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2018-7169","cwe":"CWE-732","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-7169","date":"2026-10-08","epss":0.01566,"percentile":0.74554}],"risk":0.4698,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2018-7169","description":"An issue was discovered in shadow 4.5. newgidmap (in shadow-utils) is setuid and allows an unprivileged user to be placed in a user namespace where setgroups(2) is permitted. This allows an attacker to remove themselves from a supplementary group, which may allow access to certain filesystem paths if the administrator has used \"group blacklisting\" (e.g., chmod g-rwx) to restrict access to paths. This flaw effectively reverts a security feature in the kernel (in particular, the /proc/self/setgroups knob) to prevent this sort of privilege escalation."},"relatedVulnerabilities":[{"id":"CVE-2018-7169","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-7169","cwe":"CWE-732","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-7169","date":"2026-10-08","epss":0.01566,"percentile":0.74554}],"urls":["https://bugs.launchpad.net/ubuntu/+source/shadow/+bug/1729357","https://security.gentoo.org/glsa/201805-09"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2018-7169","description":"An issue was discovered in shadow 4.5. newgidmap (in shadow-utils) is setuid and allows an unprivileged user to be placed in a user namespace where setgroups(2) is permitted. This allows an attacker to remove themselves from a supplementary group, which may allow access to certain filesystem paths if the administrator has used \"group blacklisting\" (e.g., chmod g-rwx) to restrict access to paths. This flaw effectively reverts a security feature in the kernel (in particular, the /proc/self/setgroups knob) to prevent this sort of privilege escalation."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-27618","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-27618","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-27618","date":"2026-10-08","epss":0.00887,"percentile":0.58052}],"risk":0.465675,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-27618","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228."},"relatedVulnerabilities":[{"id":"CVE-2020-27618","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.1,"impactScore":2.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-27618","date":"2026-10-08","epss":0.00887,"percentile":0.58052}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210401-0006/","https://sourceware.org/bugzilla/show_bug.cgi?id=19519#c21","https://sourceware.org/bugzilla/show_bug.cgi?id=26224","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-27618","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-27618","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-27618","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-27618","date":"2026-10-08","epss":0.00887,"percentile":0.58052}],"risk":0.465675,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-27618","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228."},"relatedVulnerabilities":[{"id":"CVE-2020-27618","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.1,"impactScore":2.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-27618","date":"2026-10-08","epss":0.00887,"percentile":0.58052}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210401-0006/","https://sourceware.org/bugzilla/show_bug.cgi?id=19519#c21","https://sourceware.org/bugzilla/show_bug.cgi?id=26224","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-27618","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-27618","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-27618","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-27618","date":"2026-10-08","epss":0.00887,"percentile":0.58052}],"risk":0.465675,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-27618","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228."},"relatedVulnerabilities":[{"id":"CVE-2020-27618","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.1,"impactScore":2.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-27618","date":"2026-10-08","epss":0.00887,"percentile":0.58052}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210401-0006/","https://sourceware.org/bugzilla/show_bug.cgi?id=19519#c21","https://sourceware.org/bugzilla/show_bug.cgi?id=26224","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-27618","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-27618","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-27618","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-27618","date":"2026-10-08","epss":0.00887,"percentile":0.58052}],"risk":0.465675,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-27618","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228."},"relatedVulnerabilities":[{"id":"CVE-2020-27618","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.1,"impactScore":2.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Primary","source":"nvd@nist.gov"},{"cve":"CVE-2020-27618","cwe":"CWE-835","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2020-27618","date":"2026-10-08","epss":0.00887,"percentile":0.58052}],"urls":["https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202107-07","https://security.netapp.com/advisory/ntap-20210401-0006/","https://sourceware.org/bugzilla/show_bug.cgi?id=19519#c21","https://sourceware.org/bugzilla/show_bug.cgi?id=26224","https://www.oracle.com/security-alerts/cpuapr2022.html","https://www.oracle.com/security-alerts/cpujan2022.html"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-27618","description":"The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228."}]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-7008","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-7008","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-7008","cwe":"CWE-300","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-7008","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-7008","date":"2026-10-08","epss":0.00849,"percentile":0.56847}],"risk":0.462705,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-7008","description":"A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept records of DNSSEC-signed domains even when they have no signature, allowing man-in-the-middles (or the upstream DNS resolver) to manipulate records."},"relatedVulnerabilities":[{"id":"CVE-2023-7008","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-7008","cwe":"CWE-300","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-7008","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-7008","date":"2026-10-08","epss":0.00849,"percentile":0.56847}],"urls":["https://access.redhat.com/errata/RHSA-2024:2463","https://access.redhat.com/errata/RHSA-2024:3203","https://access.redhat.com/security/cve/CVE-2023-7008","https://bugzilla.redhat.com/show_bug.cgi?id=2222261","https://bugzilla.redhat.com/show_bug.cgi?id=2222672","https://github.com/systemd/systemd/issues/25676","https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4GMDEG5PKONWNHOEYSUDRT6JEOISRMN2/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QHNBXGKJWISJETTTDTZKTBFIBJUOSLKL/","https://security.netapp.com/advisory/ntap-20241122-0004/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-7008","description":"A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept records of DNSSEC-signed domains even when they have no signature, allowing man-in-the-middles (or the upstream DNS resolver) to manipulate records."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-7008","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-7008","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-7008","cwe":"CWE-300","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-7008","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-7008","date":"2026-10-08","epss":0.00849,"percentile":0.56847}],"risk":0.462705,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-7008","description":"A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept records of DNSSEC-signed domains even when they have no signature, allowing man-in-the-middles (or the upstream DNS resolver) to manipulate records."},"relatedVulnerabilities":[{"id":"CVE-2023-7008","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-7008","cwe":"CWE-300","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-7008","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-7008","date":"2026-10-08","epss":0.00849,"percentile":0.56847}],"urls":["https://access.redhat.com/errata/RHSA-2024:2463","https://access.redhat.com/errata/RHSA-2024:3203","https://access.redhat.com/security/cve/CVE-2023-7008","https://bugzilla.redhat.com/show_bug.cgi?id=2222261","https://bugzilla.redhat.com/show_bug.cgi?id=2222672","https://github.com/systemd/systemd/issues/25676","https://lists.debian.org/debian-lts-announce/2024/09/msg00001.html","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4GMDEG5PKONWNHOEYSUDRT6JEOISRMN2/","https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QHNBXGKJWISJETTTDTZKTBFIBJUOSLKL/","https://security.netapp.com/advisory/ntap-20241122-0004/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-7008","description":"A vulnerability was found in systemd-resolved. This issue may allow systemd-resolved to accept records of DNSSEC-signed domains even when they have no signature, allowing man-in-the-middles (or the upstream DNS resolver) to manipulate records."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_422"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21140","versionConstraint":"< 1.8.0_422||>= 1.9, < 8.0.422||>= 12, < 17.0.12||>= 18, < 21.0.4||>= 22, < 22.0.2||>= 9, < 11.0.24 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21140","fix":{"state":"fixed","versions":["1.8.0_422","8.0.422","11.0.24","17.0.12","21.0.4","22.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_422"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.422"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.12"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.4"},{"date":"2025-09-04","kind":"first-observed","version":"22.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.24"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-21140","cwe":"CWE-200","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-21140","date":"2026-10-08","epss":0.0094,"percentile":0.59747}],"risk":0.4606,"urls":["https://security.netapp.com/advisory/ntap-20240719-0008/","https://www.oracle.com/security-alerts/cpujul2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-07-16"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21140","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and  21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 4.8 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_412"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21011","versionConstraint":"< 1.8.0_412||>= 1.9, < 8.0.412||>= 12, < 17.0.11||>= 18, < 21.0.3||>= 22, < 22.0.1||>= 9, < 11.0.23 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21011","fix":{"state":"fixed","versions":["1.8.0_412","8.0.412","11.0.23","17.0.11","21.0.3","22.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_412"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.412"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.11"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.3"},{"date":"2025-09-04","kind":"first-observed","version":"22.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.23"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-21011","cwe":"CWE-770","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-21011","date":"2026-10-08","epss":0.01372,"percentile":0.7112}],"risk":0.4596199999999999,"urls":["https://lists.debian.org/debian-lts-announce/2024/04/msg00014.html","https://security.netapp.com/advisory/ntap-20240426-0004/","https://www.oracle.com/security-alerts/cpuapr2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-04-16"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21011","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u401, 8u401-perf, 11.0.22, 17.0.10, 21.0.2, 22; Oracle GraalVM for JDK: 17.0.10, 21.0.2, 22;   Oracle GraalVM Enterprise Edition: 20.3.13 and  21.3.9. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 3.7 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_362"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21843","versionConstraint":"< 1.8.0_362||>= 1.9, < 8.0.362||>= 12, < 13.0.14||>= 14, < 15.0.10||>= 16, < 17.0.5||>= 18, < 19.0.2||>= 9, < 11.0.18 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21843","fix":{"state":"fixed","versions":["1.8.0_362","8.0.362","11.0.18","13.0.14","15.0.10","17.0.5","19.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_362"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.362"},{"date":"2025-09-04","kind":"first-observed","version":"13.0.14"},{"date":"2025-09-04","kind":"first-observed","version":"15.0.10"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.5"},{"date":"2025-09-04","kind":"first-observed","version":"19.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.18"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-21843","date":"2026-10-08","epss":0.01369,"percentile":0.71043}],"risk":0.458615,"urls":["https://security.gentoo.org/glsa/202401-25","https://www.oracle.com/security-alerts/cpujan2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-01-17"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21843","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Sound).  Supported versions that are affected are Oracle Java SE: 8u351, 8u351-perf, 11.0.17, 17.0.5, 19.0.1; Oracle GraalVM Enterprise Edition: 20.3.8, 21.3.4 and  22.3.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 3.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_392"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-22067","versionConstraint":"< 1.8.0_392||>= 1.9, < 8.0.392 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-22067","fix":{"state":"fixed","versions":["1.8.0_392","8.0.392"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_392"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.392"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-22067","cwe":"CWE-863","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-22067","date":"2026-10-08","epss":0.00888,"percentile":0.58075}],"risk":0.45732000000000006,"urls":["https://security.netapp.com/advisory/ntap-20231027-0006/","https://www.debian.org/security/2023/dsa-5537","https://www.oracle.com/security-alerts/cpuoct2023.html","https://security.netapp.com/advisory/ntap-20241108-0002/","https://openjdk.org/groups/vulnerability/advisories/2023-10-17"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-22067","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: CORBA).  Supported versions that are affected are Oracle Java SE: 8u381, 8u381-perf; Oracle GraalVM Enterprise Edition: 20.3.11 and  21.3.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via CORBA to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 5.3 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_432"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21235","versionConstraint":"< 1.8.0_432||>= 1.9, < 8.0.432||>= 12, < 17.0.13||>= 18, < 21.0.5||>= 22, < 23.0.1||>= 9, < 11.0.25 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21235","fix":{"state":"fixed","versions":["1.8.0_432","8.0.432","11.0.25","17.0.13","21.0.5","23.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_432"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.432"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.13"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.5"},{"date":"2025-09-04","kind":"first-observed","version":"23.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.25"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2024-21235","date":"2026-10-08","epss":0.00929,"percentile":0.59384}],"risk":0.45521,"urls":["https://www.oracle.com/security-alerts/cpuoct2024.html","https://lists.debian.org/debian-lts-announce/2024/10/msg00018.html","https://lists.debian.org/debian-lts-announce/2024/10/msg00020.html","https://openjdk.org/groups/vulnerability/advisories/2024-10-15"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21235","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u421, 8u421-perf, 11.0.24, 17.0.12, 21.0.4, 23;   Oracle GraalVM for JDK: 17.0.12, 21.0.4, 23;   Oracle GraalVM Enterprise Edition: 20.3.15 and  21.3.11. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 4.8 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"6dfc3f112760f32d","cpes":["cpe:2.3:a:libsystemd0:libsystemd0:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libsystemd0","purl":"pkg:deb/debian/libsystemd0@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsystemd0/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsystemd0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsystemd0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-4415","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-4415","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4415","cwe":"CWE-200","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2022-4415","date":"2026-10-08","epss":0.00847,"percentile":0.56791}],"risk":0.44467500000000004,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-4415","description":"A vulnerability was found in systemd. This security flaw can cause a local information leak due to systemd-coredump not respecting the fs.suid_dumpable kernel setting."},"relatedVulnerabilities":[{"id":"CVE-2022-4415","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4415","cwe":"CWE-200","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2022-4415","date":"2026-10-08","epss":0.00847,"percentile":0.56791}],"urls":["https://github.com/systemd/systemd/commit/b7641425659243c09473cd8fb3aef2c0d4a3eb9c","https://www.openwall.com/lists/oss-security/2022/12/21/3","http://seclists.org/fulldisclosure/2025/Jun/9","https://security.netapp.com/advisory/ntap-20230216-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-4415","description":"A vulnerability was found in systemd. This security flaw can cause a local information leak due to systemd-coredump not respecting the fs.suid_dumpable kernel setting."}]},{"artifact":{"id":"63cc7f404cf2f01e","cpes":["cpe:2.3:a:libudev1:libudev1:241-7\\~deb10u7:*:*:*:*:*:*:*"],"name":"libudev1","purl":"pkg:deb/debian/libudev1@241-7~deb10u7?arch=amd64&distro=debian-10.10&upstream=systemd","type":"deb","version":"241-7~deb10u7","language":"","licenses":["CC0-1.0","Expat","GPL-2","GPL-2+","LGPL-2.1","LGPL-2.1+","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libudev1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libudev1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libudev1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libudev1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"systemd"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-4415","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"systemd","version":"241-7~deb10u7"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-4415","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4415","cwe":"CWE-200","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2022-4415","date":"2026-10-08","epss":0.00847,"percentile":0.56791}],"risk":0.44467500000000004,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-4415","description":"A vulnerability was found in systemd. This security flaw can cause a local information leak due to systemd-coredump not respecting the fs.suid_dumpable kernel setting."},"relatedVulnerabilities":[{"id":"CVE-2022-4415","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-4415","cwe":"CWE-200","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2022-4415","date":"2026-10-08","epss":0.00847,"percentile":0.56791}],"urls":["https://github.com/systemd/systemd/commit/b7641425659243c09473cd8fb3aef2c0d4a3eb9c","https://www.openwall.com/lists/oss-security/2022/12/21/3","http://seclists.org/fulldisclosure/2025/Jun/9","https://security.netapp.com/advisory/ntap-20230216-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-4415","description":"A vulnerability was found in systemd. This security flaw can cause a local information leak due to systemd-coredump not respecting the fs.suid_dumpable kernel setting."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_382"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-22045","versionConstraint":"< 1.8.0_382||>= 1.9, < 8.0.382||>= 12, < 17.0.8||>= 18, < 20.0.2||>= 9, < 11.0.20 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-22045","fix":{"state":"fixed","versions":["1.8.0_382","8.0.382","11.0.20","17.0.8","20.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_382"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.382"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.8"},{"date":"2025-09-04","kind":"first-observed","version":"20.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.20"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-22045","date":"2026-10-08","epss":0.01319,"percentile":0.69967}],"risk":0.44186499999999995,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230725-0006/","https://www.debian.org/security/2023/dsa-5458","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpujul2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-07-18"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-22045","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u371, 8u371-perf, 11.0.19, 17.0.7, 20.0.1; Oracle GraalVM Enterprise Edition: 20.3.10, 21.3.6, 22.3.2; Oracle GraalVM for JDK: 17.0.7 and  20.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK.  Successful attacks of this vulnerability can result in  unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 3.7 (Confidentiality impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_412"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21068","versionConstraint":"< 1.8.0_412||>= 1.9, < 8.0.412||>= 12, < 17.0.11||>= 18, < 21.0.3||>= 22, < 22.0.1||>= 9, < 11.0.23 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21068","fix":{"state":"fixed","versions":["1.8.0_412","8.0.412","11.0.23","17.0.11","21.0.3","22.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_412"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.412"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.11"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.3"},{"date":"2025-09-04","kind":"first-observed","version":"22.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.23"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2024-21068","date":"2026-10-08","epss":0.013,"percentile":0.6958}],"risk":0.43549999999999994,"urls":["https://lists.debian.org/debian-lts-announce/2024/04/msg00014.html","https://security.netapp.com/advisory/ntap-20240426-0004/","https://www.oracle.com/security-alerts/cpuapr2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-04-16"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21068","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u401-perf, 11.0.22, 17.0.10, 21.0.2, 22; Oracle GraalVM for JDK: 17.0.10, 21.0.2 and  22; Oracle GraalVM Enterprise Edition: 21.3.9. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 3.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_402"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-20919","versionConstraint":"< 1.8.0_402||>= 1.9, < 8.0.402||>= 12, < 17.0.10||>= 18, < 21.0.2||>= 9, < 11.0.22 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-20919","fix":{"state":"fixed","versions":["1.8.0_402","8.0.402","11.0.22","17.0.10","21.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_402"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.402"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.10"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.22"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2024-20919","date":"2026-10-08","epss":0.00799,"percentile":0.55199}],"risk":0.43545500000000004,"urls":["https://www.oracle.com/security-alerts/cpujan2024.html","https://security.netapp.com/advisory/ntap-20240201-0002/","https://security.netapp.com/advisory/ntap-20241108-0002/","https://openjdk.org/groups/vulnerability/advisories/2024-01-16"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-20919","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and  22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 5.9 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_412"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21085","versionConstraint":"< 1.8.0_412||>= 1.9, < 8.0.412||>= 9, < 11.0.23 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21085","fix":{"state":"fixed","versions":["1.8.0_412","8.0.412","11.0.23"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_412"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.412"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.23"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2024-21085","date":"2026-10-08","epss":0.01286,"percentile":0.69287}],"risk":0.43080999999999997,"urls":["https://lists.debian.org/debian-lts-announce/2024/04/msg00014.html","https://security.netapp.com/advisory/ntap-20240426-0004/","https://www.oracle.com/security-alerts/cpuapr2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-04-16"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21085","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Concurrency).  Supported versions that are affected are Oracle Java SE: 8u401, 8u401-perf, 11.0.22; Oracle GraalVM Enterprise Edition: 20.3.13 and  21.3.9. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 3.7 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"dfdab1b7031e1625","cpes":["cpe:2.3:a:openssh-client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh-client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*"],"name":"openssh-client","purl":"pkg:deb/debian/openssh-client@1%3A7.9p1-10%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=openssh","type":"deb","version":"1:7.9p1-10+deb10u2","language":"","licenses":["BSD-2-clause","BSD-3-clause","Beer-ware","Expat-with-advertising-restriction","Mazieres-BSD-style","OpenSSH","Powell-BSD-style","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssh-client/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/openssh-client/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.list"},{"path":"/var/lib/dpkg/info/openssh-client.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postinst"},{"path":"/var/lib/dpkg/info/openssh-client.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postrm"},{"path":"/var/lib/dpkg/info/openssh-client.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.preinst"},{"path":"/var/lib/dpkg/info/openssh-client.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.prerm"}],"upstreams":[{"name":"openssh"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2007-2768","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssh","version":"1:7.9p1-10+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2007-2768","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2007-2768","cwe":"CWE-200","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2007-2768","date":"2026-10-08","epss":0.08615,"percentile":0.94971}],"risk":0.4307500000000001,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2007-2768","description":"OpenSSH, when using OPIE (One-Time Passwords in Everything) for PAM, allows remote attackers to determine the existence of certain user accounts, which displays a different response if the user account exists and is configured to use one-time passwords (OTP), a similar issue to CVE-2007-2243."},"relatedVulnerabilities":[{"id":"CVE-2007-2768","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:M/Au:N/C:P/I:N/A:N","metrics":{"baseScore":4.3,"impactScore":2.9,"exploitabilityScore":8.6},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2007-2768","cwe":"CWE-200","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2007-2768","date":"2026-10-08","epss":0.08615,"percentile":0.94971}],"urls":["http://archives.neohapsis.com/archives/fulldisclosure/2007-04/0635.html","http://www.osvdb.org/34601","https://security.netapp.com/advisory/ntap-20191107-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2007-2768","description":"OpenSSH, when using OPIE (One-Time Passwords in Everything) for PAM, allows remote attackers to determine the existence of certain user accounts, which displays a different response if the user account exists and is configured to use one-time passwords (OTP), a similar issue to CVE-2007-2243."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_422"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21145","versionConstraint":"< 1.8.0_422||>= 1.9, < 8.0.422||>= 12, < 17.0.12||>= 18, < 21.0.4||>= 22, < 22.0.2||>= 9, < 11.0.24 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21145","fix":{"state":"fixed","versions":["1.8.0_422","8.0.422","11.0.24","17.0.12","21.0.4","22.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_422"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.422"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.12"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.4"},{"date":"2025-09-04","kind":"first-observed","version":"22.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.24"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-21145","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-21145","date":"2026-10-08","epss":0.00864,"percentile":0.57346}],"risk":0.42335999999999996,"urls":["https://security.netapp.com/advisory/ntap-20240719-0008/","https://www.oracle.com/security-alerts/cpujul2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-07-16"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21145","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D).  Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and  21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 4.8 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_422"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21138","versionConstraint":"< 1.8.0_422||>= 1.9, < 8.0.422||>= 12, < 17.0.12||>= 18, < 21.0.4||>= 22, < 22.0.2||>= 9, < 11.0.24 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21138","fix":{"state":"fixed","versions":["1.8.0_422","8.0.422","11.0.24","17.0.12","21.0.4","22.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_422"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.422"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.12"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.4"},{"date":"2025-09-04","kind":"first-observed","version":"22.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.24"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2024-21138","date":"2026-10-08","epss":0.01257,"percentile":0.68668}],"risk":0.421095,"urls":["https://security.netapp.com/advisory/ntap-20240719-0008/","https://www.oracle.com/security-alerts/cpujul2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-07-16"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21138","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and  21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 3.7 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"11266fe42a39668b","cpes":["cpe:2.3:a:libgssapi-krb5-2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5-2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5_2:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi-krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi_krb5:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi-krb5-2:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libgssapi:libgssapi_krb5_2:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgssapi-krb5-2","purl":"pkg:deb/debian/libgssapi-krb5-2@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgssapi-krb5-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libgssapi-krb5-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libgssapi-krb5-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-26458","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-26458","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26458","cwe":"CWE-401","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-26458","date":"2026-10-08","epss":0.00815,"percentile":0.55761}],"risk":0.41972499999999996,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-26458","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c."},"relatedVulnerabilities":[{"id":"CVE-2024-26458","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26458","cwe":"CWE-401","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-26458","date":"2026-10-08","epss":0.00815,"percentile":0.55761}],"urls":["https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_1.md","https://security.netapp.com/advisory/ntap-20240415-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-26458","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c."}]},{"artifact":{"id":"ccf5186a66741b60","cpes":["cpe:2.3:a:libk5crypto3:libk5crypto3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libk5crypto3","purl":"pkg:deb/debian/libk5crypto3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libk5crypto3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libk5crypto3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libk5crypto3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-26458","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-26458","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26458","cwe":"CWE-401","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-26458","date":"2026-10-08","epss":0.00815,"percentile":0.55761}],"risk":0.41972499999999996,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-26458","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c."},"relatedVulnerabilities":[{"id":"CVE-2024-26458","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26458","cwe":"CWE-401","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-26458","date":"2026-10-08","epss":0.00815,"percentile":0.55761}],"urls":["https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_1.md","https://security.netapp.com/advisory/ntap-20240415-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-26458","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c."}]},{"artifact":{"id":"9d7689846a6700a5","cpes":["cpe:2.3:a:libkrb5-3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5-3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5_3:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5-3:1.17-3\\+deb10u1:*:*:*:*:*:*:*","cpe:2.3:a:libkrb5:libkrb5_3:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5-3","purl":"pkg:deb/debian/libkrb5-3@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5-3/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5-3/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5-3:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-26458","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-26458","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26458","cwe":"CWE-401","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-26458","date":"2026-10-08","epss":0.00815,"percentile":0.55761}],"risk":0.41972499999999996,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-26458","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c."},"relatedVulnerabilities":[{"id":"CVE-2024-26458","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26458","cwe":"CWE-401","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-26458","date":"2026-10-08","epss":0.00815,"percentile":0.55761}],"urls":["https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_1.md","https://security.netapp.com/advisory/ntap-20240415-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-26458","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c."}]},{"artifact":{"id":"a14f851bc531224e","cpes":["cpe:2.3:a:libkrb5support0:libkrb5support0:1.17-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"libkrb5support0","purl":"pkg:deb/debian/libkrb5support0@1.17-3%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=krb5","type":"deb","version":"1.17-3+deb10u1","language":"","licenses":["sha256:4a2d321ab57260e8de4b67bde8cff76c07d28be69c2d8b22dfc2bfa42f5c41b9"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libkrb5support0/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libkrb5support0/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libkrb5support0:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"krb5"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-26458","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"krb5","version":"1.17-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-26458","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26458","cwe":"CWE-401","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-26458","date":"2026-10-08","epss":0.00815,"percentile":0.55761}],"risk":0.41972499999999996,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-26458","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c."},"relatedVulnerabilities":[{"id":"CVE-2024-26458","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":1.5,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-26458","cwe":"CWE-401","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2024-26458","date":"2026-10-08","epss":0.00815,"percentile":0.55761}],"urls":["https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_1.md","https://security.netapp.com/advisory/ntap-20240415-0010/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-26458","description":"Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c."}]},{"artifact":{"id":"5d3dd7a14588fc04","cpes":["cpe:2.3:a:patch:patch:2.7.6-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"patch","purl":"pkg:deb/debian/patch@2.7.6-3%2Bdeb10u1?arch=amd64&distro=debian-10.10","type":"deb","version":"2.7.6-3+deb10u1","language":"","licenses":["sha256:8c70d7b0af209abe627c97cd21883931b891c820d0a4affcc10b789a23538a0d"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/patch/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/patch/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/patch.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/patch.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/patch.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/patch.list"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2018-6951","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"patch","version":"2.7.6-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2018-6951","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2018-6951","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-6951","date":"2026-10-08","epss":0.08359,"percentile":0.94832}],"risk":0.41795,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2018-6951","description":"An issue was discovered in GNU patch through 2.7.6. There is a segmentation fault, associated with a NULL pointer dereference, leading to a denial of service in the intuit_diff_type function in pch.c, aka a \"mangled rename\" issue."},"relatedVulnerabilities":[{"id":"CVE-2018-6951","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-6951","cwe":"CWE-476","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-6951","date":"2026-10-08","epss":0.08359,"percentile":0.94832}],"urls":["http://www.securityfocus.com/bid/103044","https://git.savannah.gnu.org/cgit/patch.git/commit/?id=f290f48a621867084884bfff87f8093c15195e6a","https://savannah.gnu.org/bugs/index.php?53132","https://security.gentoo.org/glsa/201904-17","https://usn.ubuntu.com/3624-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2018-6951","description":"An issue was discovered in GNU patch through 2.7.6. There is a segmentation fault, associated with a NULL pointer dereference, leading to a denial of service in the intuit_diff_type function in pch.c, aka a \"mangled rename\" issue."}]},{"artifact":{"id":"5d3dd7a14588fc04","cpes":["cpe:2.3:a:patch:patch:2.7.6-3\\+deb10u1:*:*:*:*:*:*:*"],"name":"patch","purl":"pkg:deb/debian/patch@2.7.6-3%2Bdeb10u1?arch=amd64&distro=debian-10.10","type":"deb","version":"2.7.6-3+deb10u1","language":"","licenses":["sha256:8c70d7b0af209abe627c97cd21883931b891c820d0a4affcc10b789a23538a0d"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/patch/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/patch/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/patch.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/patch.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/patch.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/patch.list"}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2018-6952","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"patch","version":"2.7.6-3+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2018-6952","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2018-6952","cwe":"CWE-415","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-6952","date":"2026-10-08","epss":0.0819,"percentile":0.94738}],"risk":0.40950000000000003,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2018-6952","description":"A double free exists in the another_hunk function in pch.c in GNU patch through 2.7.6."},"relatedVulnerabilities":[{"id":"CVE-2018-6952","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.0","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2018-6952","cwe":"CWE-415","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2018-6952","date":"2026-10-08","epss":0.0819,"percentile":0.94738}],"urls":["http://www.securityfocus.com/bid/103047","https://access.redhat.com/errata/RHSA-2019:2033","https://savannah.gnu.org/bugs/index.php?53133","https://security.gentoo.org/glsa/201904-17"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2018-6952","description":"A double free exists in the another_hunk function in pch.c in GNU patch through 2.7.6."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_372"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21937","versionConstraint":"< 1.8.0_372||>= 1.9, < 8.0.372||>= 12, < 17.0.7||>= 18, < 20.0.1||>= 9, < 11.0.19 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21937","fix":{"state":"fixed","versions":["1.8.0_372","8.0.372","11.0.19","17.0.7","20.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_372"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.372"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"20.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.19"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-21937","date":"2026-10-08","epss":0.01218,"percentile":0.67723}],"risk":0.40802999999999995,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230427-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5430","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpuapr2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-04-18"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21937","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking).  Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and  22.3.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 3.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_372"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21938","versionConstraint":"< 1.8.0_372||>= 1.9, < 8.0.372||>= 12, < 17.0.7||>= 18, < 20.0.1||>= 9, < 11.0.19 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21938","fix":{"state":"fixed","versions":["1.8.0_372","8.0.372","11.0.19","17.0.7","20.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_372"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.372"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"20.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.19"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2023-21938","date":"2026-10-08","epss":0.01218,"percentile":0.67723}],"risk":0.40802999999999995,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230427-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5430","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpuapr2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-04-18"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21938","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries).  Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 20.3.8, 21.3.4 and  22.3.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 3.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-10029","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-10029","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-10029","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-10029","date":"2026-10-08","epss":0.00764,"percentile":0.5403}],"risk":0.40109999999999996,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-10029","description":"The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to sysdeps/ieee754/ldbl-96/e_rem_pio2l.c."},"relatedVulnerabilities":[{"id":"CVE-2020-10029","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.1,"impactScore":2.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-10029","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-10029","date":"2026-10-08","epss":0.00764,"percentile":0.5403}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00033.html","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/23N76M3EDP2GIW4GOIQRYTKRE7PPBRB2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JZTFUD5VH2GU3YOXA2KBQSBIDZRDWNZ3/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VU5JJGENOK7K4X5RYAA5PL647C6HD22E/","https://security.gentoo.org/glsa/202006-04","https://security.netapp.com/advisory/ntap-20200327-0003/","https://sourceware.org/bugzilla/show_bug.cgi?id=25487","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Ba=commit%3Bh=9333498794cde1d5cca518badf79533a24114b6f","https://usn.ubuntu.com/4416-1/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-10029","description":"The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to sysdeps/ieee754/ldbl-96/e_rem_pio2l.c."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-10029","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-10029","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-10029","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-10029","date":"2026-10-08","epss":0.00764,"percentile":0.5403}],"risk":0.40109999999999996,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-10029","description":"The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to sysdeps/ieee754/ldbl-96/e_rem_pio2l.c."},"relatedVulnerabilities":[{"id":"CVE-2020-10029","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.1,"impactScore":2.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-10029","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-10029","date":"2026-10-08","epss":0.00764,"percentile":0.5403}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00033.html","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/23N76M3EDP2GIW4GOIQRYTKRE7PPBRB2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JZTFUD5VH2GU3YOXA2KBQSBIDZRDWNZ3/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VU5JJGENOK7K4X5RYAA5PL647C6HD22E/","https://security.gentoo.org/glsa/202006-04","https://security.netapp.com/advisory/ntap-20200327-0003/","https://sourceware.org/bugzilla/show_bug.cgi?id=25487","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Ba=commit%3Bh=9333498794cde1d5cca518badf79533a24114b6f","https://usn.ubuntu.com/4416-1/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-10029","description":"The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to sysdeps/ieee754/ldbl-96/e_rem_pio2l.c."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-10029","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-10029","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-10029","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-10029","date":"2026-10-08","epss":0.00764,"percentile":0.5403}],"risk":0.40109999999999996,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-10029","description":"The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to sysdeps/ieee754/ldbl-96/e_rem_pio2l.c."},"relatedVulnerabilities":[{"id":"CVE-2020-10029","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.1,"impactScore":2.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-10029","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-10029","date":"2026-10-08","epss":0.00764,"percentile":0.5403}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00033.html","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/23N76M3EDP2GIW4GOIQRYTKRE7PPBRB2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JZTFUD5VH2GU3YOXA2KBQSBIDZRDWNZ3/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VU5JJGENOK7K4X5RYAA5PL647C6HD22E/","https://security.gentoo.org/glsa/202006-04","https://security.netapp.com/advisory/ntap-20200327-0003/","https://sourceware.org/bugzilla/show_bug.cgi?id=25487","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Ba=commit%3Bh=9333498794cde1d5cca518badf79533a24114b6f","https://usn.ubuntu.com/4416-1/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-10029","description":"The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to sysdeps/ieee754/ldbl-96/e_rem_pio2l.c."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-10029","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-10029","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-10029","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-10029","date":"2026-10-08","epss":0.00764,"percentile":0.5403}],"risk":0.40109999999999996,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-10029","description":"The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to sysdeps/ieee754/ldbl-96/e_rem_pio2l.c."},"relatedVulnerabilities":[{"id":"CVE-2020-10029","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":2.1,"impactScore":2.9,"exploitabilityScore":4},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-10029","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-10029","date":"2026-10-08","epss":0.00764,"percentile":0.5403}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00033.html","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/23N76M3EDP2GIW4GOIQRYTKRE7PPBRB2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JZTFUD5VH2GU3YOXA2KBQSBIDZRDWNZ3/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VU5JJGENOK7K4X5RYAA5PL647C6HD22E/","https://security.gentoo.org/glsa/202006-04","https://security.netapp.com/advisory/ntap-20200327-0003/","https://sourceware.org/bugzilla/show_bug.cgi?id=25487","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Ba=commit%3Bh=9333498794cde1d5cca518badf79533a24114b6f","https://usn.ubuntu.com/4416-1/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-10029","description":"The GNU C Library (aka glibc or libc6) before 2.32 could overflow an on-stack buffer during range reduction if an input to an 80-bit long double function contains a non-canonical bit pattern, a seen when passing a 0x5d414141414141410000 value to sinl on x86 targets. This is related to sysdeps/ieee754/ldbl-96/e_rem_pio2l.c."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-1751","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-1751","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1751","date":"2026-10-08","epss":0.00537,"percentile":0.43484}],"risk":0.389325,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-1751","description":"An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability."},"relatedVulnerabilities":[{"id":"CVE-2020-1751","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:P/I:P/A:C","metrics":{"baseScore":5.9,"impactScore":8.6,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.1,"impactScore":3.6,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1751","date":"2026-10-08","epss":0.00537,"percentile":0.43484}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1751","https://security.gentoo.org/glsa/202006-04","https://security.netapp.com/advisory/ntap-20200430-0002/","https://sourceware.org/bugzilla/show_bug.cgi?id=25423","https://usn.ubuntu.com/4416-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-1751","description":"An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-1751","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-1751","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1751","date":"2026-10-08","epss":0.00537,"percentile":0.43484}],"risk":0.389325,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-1751","description":"An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability."},"relatedVulnerabilities":[{"id":"CVE-2020-1751","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:P/I:P/A:C","metrics":{"baseScore":5.9,"impactScore":8.6,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.1,"impactScore":3.6,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1751","date":"2026-10-08","epss":0.00537,"percentile":0.43484}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1751","https://security.gentoo.org/glsa/202006-04","https://security.netapp.com/advisory/ntap-20200430-0002/","https://sourceware.org/bugzilla/show_bug.cgi?id=25423","https://usn.ubuntu.com/4416-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-1751","description":"An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-1751","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-1751","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1751","date":"2026-10-08","epss":0.00537,"percentile":0.43484}],"risk":0.389325,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-1751","description":"An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability."},"relatedVulnerabilities":[{"id":"CVE-2020-1751","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:P/I:P/A:C","metrics":{"baseScore":5.9,"impactScore":8.6,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.1,"impactScore":3.6,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1751","date":"2026-10-08","epss":0.00537,"percentile":0.43484}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1751","https://security.gentoo.org/glsa/202006-04","https://security.netapp.com/advisory/ntap-20200430-0002/","https://sourceware.org/bugzilla/show_bug.cgi?id=25423","https://usn.ubuntu.com/4416-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-1751","description":"An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-1751","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-1751","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1751","date":"2026-10-08","epss":0.00537,"percentile":0.43484}],"risk":0.389325,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-1751","description":"An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability."},"relatedVulnerabilities":[{"id":"CVE-2020-1751","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:P/I:P/A:C","metrics":{"baseScore":5.9,"impactScore":8.6,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.1,"impactScore":3.6,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1751","cwe":"CWE-787","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1751","date":"2026-10-08","epss":0.00537,"percentile":0.43484}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1751","https://security.gentoo.org/glsa/202006-04","https://security.netapp.com/advisory/ntap-20200430-0002/","https://sourceware.org/bugzilla/show_bug.cgi?id=25423","https://usn.ubuntu.com/4416-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-1751","description":"An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-1752","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-1752","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1752","date":"2026-10-08","epss":0.00535,"percentile":0.43349}],"risk":0.38787499999999997,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-1752","description":"A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32."},"relatedVulnerabilities":[{"id":"CVE-2020-1752","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:P/I:P/A:P","metrics":{"baseScore":3.7,"impactScore":6.5,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1752","date":"2026-10-08","epss":0.00535,"percentile":0.43349}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1752","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202101-20","https://security.netapp.com/advisory/ntap-20200511-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=25414","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Bh=ddc650e9b3dc916eab417ce9f79e67337b05035c","https://usn.ubuntu.com/4416-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-1752","description":"A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-1752","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-1752","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1752","date":"2026-10-08","epss":0.00535,"percentile":0.43349}],"risk":0.38787499999999997,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-1752","description":"A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32."},"relatedVulnerabilities":[{"id":"CVE-2020-1752","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:P/I:P/A:P","metrics":{"baseScore":3.7,"impactScore":6.5,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1752","date":"2026-10-08","epss":0.00535,"percentile":0.43349}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1752","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202101-20","https://security.netapp.com/advisory/ntap-20200511-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=25414","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Bh=ddc650e9b3dc916eab417ce9f79e67337b05035c","https://usn.ubuntu.com/4416-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-1752","description":"A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-1752","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-1752","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1752","date":"2026-10-08","epss":0.00535,"percentile":0.43349}],"risk":0.38787499999999997,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-1752","description":"A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32."},"relatedVulnerabilities":[{"id":"CVE-2020-1752","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:P/I:P/A:P","metrics":{"baseScore":3.7,"impactScore":6.5,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1752","date":"2026-10-08","epss":0.00535,"percentile":0.43349}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1752","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202101-20","https://security.netapp.com/advisory/ntap-20200511-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=25414","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Bh=ddc650e9b3dc916eab417ce9f79e67337b05035c","https://usn.ubuntu.com/4416-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-1752","description":"A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.28-10+deb10u2"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2020-1752","versionConstraint":"< 2.28-10+deb10u2 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2020-1752","fix":{"state":"fixed","versions":["2.28-10+deb10u2"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.28-10+deb10u2"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1752","date":"2026-10-08","epss":0.00535,"percentile":0.43349}],"risk":0.38787499999999997,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2020-1752","description":"A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32."},"relatedVulnerabilities":[{"id":"CVE-2020-1752","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:P/I:P/A:P","metrics":{"baseScore":3.7,"impactScore":6.5,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7,"impactScore":5.9,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2020-1752","cwe":"CWE-416","type":"Secondary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2020-1752","date":"2026-10-08","epss":0.00535,"percentile":0.43349}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1752","https://lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3E","https://lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3E","https://lists.debian.org/debian-lts-announce/2022/10/msg00021.html","https://security.gentoo.org/glsa/202101-20","https://security.netapp.com/advisory/ntap-20200511-0005/","https://sourceware.org/bugzilla/show_bug.cgi?id=25414","https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Bh=ddc650e9b3dc916eab417ce9f79e67337b05035c","https://usn.ubuntu.com/4416-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2020-1752","description":"A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially lead to arbitrary code execution. This was fixed in version 2.32."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_432"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21217","versionConstraint":"< 1.8.0_432||>= 1.9, < 8.0.432||>= 12, < 17.0.13||>= 18, < 21.0.5||>= 22, < 23.0.1||>= 9, < 11.0.25 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21217","fix":{"state":"fixed","versions":["1.8.0_432","8.0.432","11.0.25","17.0.13","21.0.5","23.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_432"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.432"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.13"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.5"},{"date":"2025-09-04","kind":"first-observed","version":"23.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.25"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-21217","cwe":"CWE-502","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-21217","date":"2026-10-08","epss":0.01149,"percentile":0.659}],"risk":0.38491499999999995,"urls":["https://www.oracle.com/security-alerts/cpuoct2024.html","https://lists.debian.org/debian-lts-announce/2024/10/msg00018.html","https://lists.debian.org/debian-lts-announce/2024/10/msg00020.html","https://openjdk.org/groups/vulnerability/advisories/2024-10-15"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21217","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization).  Supported versions that are affected are Oracle Java SE: 8u421, 8u421-perf, 11.0.24, 17.0.12, 21.0.4, 23; Oracle GraalVM for JDK: 17.0.12, 21.0.4, 23; Oracle GraalVM Enterprise Edition: 20.3.15 and  21.3.11. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 3.7 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_482"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2026-21932","versionConstraint":"< 1.8.0_482||>= 1.9, < 8.0.482||>= 12, < 17.0.18||>= 18, < 21.0.10||>= 22, < 25.0.2||>= 9, < 11.0.30 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2026-21932","fix":{"state":"fixed","versions":["1.8.0_482","8.0.482","11.0.30","17.0.18","21.0.10","25.0.2"],"available":[{"date":"2026-01-27","kind":"first-observed","version":"1.8.0_482"},{"date":"2026-01-27","kind":"first-observed","version":"8.0.482"},{"date":"2026-01-27","kind":"first-observed","version":"17.0.18"},{"date":"2026-01-27","kind":"first-observed","version":"21.0.10"},{"date":"2026-01-27","kind":"first-observed","version":"25.0.2"},{"date":"2026-01-27","kind":"first-observed","version":"11.0.30"}]},"cvss":[{"type":"Secondary","source":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":4,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":4,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2026-21932","cwe":"CWE-1287","type":"Secondary","source":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c"}],"epss":[{"cve":"CVE-2026-21932","date":"2026-10-08","epss":0.00513,"percentile":0.41882}],"risk":0.382185,"urls":["https://www.oracle.com/security-alerts/cpujan2026.html","https://access.redhat.com/errata/RHSA-2026:0849","https://access.redhat.com/errata/RHSA-2026:0896","https://access.redhat.com/errata/RHSA-2026:0898","https://access.redhat.com/errata/RHSA-2026:0900","https://access.redhat.com/errata/RHSA-2026:1606","https://access.redhat.com/security/cve/CVE-2026-21932","https://bugzilla.redhat.com/show_bug.cgi?id=2429925","https://cert-portal.siemens.com/productcert/html/ssa-032379.html","https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-21932.json"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2026-21932","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: AWT, JavaFX).  Supported versions that are affected are Oracle Java SE: 8u471, 8u471-b50, 8u471-perf, 11.0.29, 17.0.17, 21.0.9, 25.0.1; Oracle GraalVM for JDK: 17.0.17 and  21.0.9; Oracle GraalVM Enterprise Edition: 21.3.16. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 7.4 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"ba5663119246d2af","cpes":["cpe:2.3:a:gcc-8-base:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8-base:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8_base:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8_base:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc-8:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc_8:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc:gcc-8-base:8.3.0-6:*:*:*:*:*:*:*","cpe:2.3:a:gcc:gcc_8_base:8.3.0-6:*:*:*:*:*:*:*"],"name":"gcc-8-base","purl":"pkg:deb/debian/gcc-8-base@8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8","type":"deb","version":"8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/gcc-8-base/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gcc-8-base:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gcc-8-base:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4039","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4039","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4039","cwe":"CWE-693","type":"Secondary","source":"arm-security@arm.com"},{"cve":"CVE-2023-4039","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4039","date":"2026-10-08","epss":0.00764,"percentile":0.54043}],"risk":0.37436,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4039","description":"**DISPUTED**A failure in the -fstack-protector feature in GCC-based toolchains  that target AArch64 allows an attacker to exploit an existing buffer  overflow in dynamically-sized local variables in your application  without this being detected. This stack-protector failure only applies  to C99-style dynamically-sized local variables or those created using  alloca(). The stack-protector operates as intended for statically-sized  local variables.  The default behavior when the stack-protector  detects an overflow is to terminate your application, resulting in  controlled loss of availability. An attacker who can exploit a buffer  overflow without triggering the stack-protector might be able to change  program flow control to cause an uncontrolled loss of availability or to  go further and affect confidentiality or integrity. NOTE: The GCC project argues that this is a missed hardening bug and not a vulnerability by itself."},"relatedVulnerabilities":[{"id":"CVE-2023-4039","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"arm-security@arm.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4039","cwe":"CWE-693","type":"Secondary","source":"arm-security@arm.com"},{"cve":"CVE-2023-4039","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4039","date":"2026-10-08","epss":0.00764,"percentile":0.54043}],"urls":["https://developer.arm.com/Arm%20Security%20Center/GCC%20Stack%20Protector%20Vulnerability%20AArch64","https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-x7ch-h5rf-w2mf"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4039","description":"**DISPUTED**A failure in the -fstack-protector feature in GCC-based toolchains \nthat target AArch64 allows an attacker to exploit an existing buffer \noverflow in dynamically-sized local variables in your application \nwithout this being detected. This stack-protector failure only applies \nto C99-style dynamically-sized local variables or those created using \nalloca(). The stack-protector operates as intended for statically-sized \nlocal variables.\n\nThe default behavior when the stack-protector \ndetects an overflow is to terminate your application, resulting in \ncontrolled loss of availability. An attacker who can exploit a buffer \noverflow without triggering the stack-protector might be able to change \nprogram flow control to cause an uncontrolled loss of availability or to\n go further and affect confidentiality or integrity. NOTE: The GCC project argues that this is a missed hardening bug and not a vulnerability by itself."}]},{"artifact":{"id":"ffc1d39eff5a666e","cpes":["cpe:2.3:a:libgcc1:libgcc1:1\\:8.3.0-6:*:*:*:*:*:*:*"],"name":"libgcc1","purl":"pkg:deb/debian/libgcc1@1%3A8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8%408.3.0-6","type":"deb","version":"1:8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgcc1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgcc1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgcc1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8","version":"8.3.0-6"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4039","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4039","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4039","cwe":"CWE-693","type":"Secondary","source":"arm-security@arm.com"},{"cve":"CVE-2023-4039","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4039","date":"2026-10-08","epss":0.00764,"percentile":0.54043}],"risk":0.37436,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4039","description":"**DISPUTED**A failure in the -fstack-protector feature in GCC-based toolchains  that target AArch64 allows an attacker to exploit an existing buffer  overflow in dynamically-sized local variables in your application  without this being detected. This stack-protector failure only applies  to C99-style dynamically-sized local variables or those created using  alloca(). The stack-protector operates as intended for statically-sized  local variables.  The default behavior when the stack-protector  detects an overflow is to terminate your application, resulting in  controlled loss of availability. An attacker who can exploit a buffer  overflow without triggering the stack-protector might be able to change  program flow control to cause an uncontrolled loss of availability or to  go further and affect confidentiality or integrity. NOTE: The GCC project argues that this is a missed hardening bug and not a vulnerability by itself."},"relatedVulnerabilities":[{"id":"CVE-2023-4039","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"arm-security@arm.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4039","cwe":"CWE-693","type":"Secondary","source":"arm-security@arm.com"},{"cve":"CVE-2023-4039","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4039","date":"2026-10-08","epss":0.00764,"percentile":0.54043}],"urls":["https://developer.arm.com/Arm%20Security%20Center/GCC%20Stack%20Protector%20Vulnerability%20AArch64","https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-x7ch-h5rf-w2mf"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4039","description":"**DISPUTED**A failure in the -fstack-protector feature in GCC-based toolchains \nthat target AArch64 allows an attacker to exploit an existing buffer \noverflow in dynamically-sized local variables in your application \nwithout this being detected. This stack-protector failure only applies \nto C99-style dynamically-sized local variables or those created using \nalloca(). The stack-protector operates as intended for statically-sized \nlocal variables.\n\nThe default behavior when the stack-protector \ndetects an overflow is to terminate your application, resulting in \ncontrolled loss of availability. An attacker who can exploit a buffer \noverflow without triggering the stack-protector might be able to change \nprogram flow control to cause an uncontrolled loss of availability or to\n go further and affect confidentiality or integrity. NOTE: The GCC project argues that this is a missed hardening bug and not a vulnerability by itself."}]},{"artifact":{"id":"0ebb89f70b0c2511","cpes":["cpe:2.3:a:libstdc\\+\\+6:libstdc\\+\\+6:8.3.0-6:*:*:*:*:*:*:*"],"name":"libstdc++6","purl":"pkg:deb/debian/libstdc%2B%2B6@8.3.0-6?arch=amd64&distro=debian-10.10&upstream=gcc-8","type":"deb","version":"8.3.0-6","language":"","licenses":["sha256:9865be517c31de50eb2b36a8957ccd97942807974afad2515578101d1168887a"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gcc-8-base/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libstdc++6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libstdc++6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libstdc++6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"gcc-8"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-4039","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gcc-8","version":"8.3.0-6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-4039","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4039","cwe":"CWE-693","type":"Secondary","source":"arm-security@arm.com"},{"cve":"CVE-2023-4039","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4039","date":"2026-10-08","epss":0.00764,"percentile":0.54043}],"risk":0.37436,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-4039","description":"**DISPUTED**A failure in the -fstack-protector feature in GCC-based toolchains  that target AArch64 allows an attacker to exploit an existing buffer  overflow in dynamically-sized local variables in your application  without this being detected. This stack-protector failure only applies  to C99-style dynamically-sized local variables or those created using  alloca(). The stack-protector operates as intended for statically-sized  local variables.  The default behavior when the stack-protector  detects an overflow is to terminate your application, resulting in  controlled loss of availability. An attacker who can exploit a buffer  overflow without triggering the stack-protector might be able to change  program flow control to cause an uncontrolled loss of availability or to  go further and affect confidentiality or integrity. NOTE: The GCC project argues that this is a missed hardening bug and not a vulnerability by itself."},"relatedVulnerabilities":[{"id":"CVE-2023-4039","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"arm-security@arm.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","metrics":{"baseScore":4.8,"impactScore":2.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-4039","cwe":"CWE-693","type":"Secondary","source":"arm-security@arm.com"},{"cve":"CVE-2023-4039","cwe":"NVD-CWE-Other","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-4039","date":"2026-10-08","epss":0.00764,"percentile":0.54043}],"urls":["https://developer.arm.com/Arm%20Security%20Center/GCC%20Stack%20Protector%20Vulnerability%20AArch64","https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-x7ch-h5rf-w2mf"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-4039","description":"**DISPUTED**A failure in the -fstack-protector feature in GCC-based toolchains \nthat target AArch64 allows an attacker to exploit an existing buffer \noverflow in dynamically-sized local variables in your application \nwithout this being detected. This stack-protector failure only applies \nto C99-style dynamically-sized local variables or those created using \nalloca(). The stack-protector operates as intended for statically-sized \nlocal variables.\n\nThe default behavior when the stack-protector \ndetects an overflow is to terminate your application, resulting in \ncontrolled loss of availability. An attacker who can exploit a buffer \noverflow without triggering the stack-protector might be able to change \nprogram flow control to cause an uncontrolled loss of availability or to\n go further and affect confidentiality or integrity. NOTE: The GCC project argues that this is a missed hardening bug and not a vulnerability by itself."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u8"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2023-22490","versionConstraint":"< 1:2.20.1-2+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-22490","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-22490","cwe":"CWE-59","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2023-22490","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-22490","date":"2026-10-08","epss":0.0071,"percentile":0.52097}],"risk":0.37275,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-22490","description":"Git is a revision control system. Using a specially-crafted repository, Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8 can be tricked into using its local clone optimization even when using a non-local transport. Though Git will abort local clones whose source `$GIT_DIR/objects` directory contains symbolic links, the `objects` directory itself may still be a symbolic link. These two may be combined to include arbitrary files based on known paths on the victim's filesystem within the malicious repository's working copy, allowing for data exfiltration in a similar manner as CVE-2022-39253.  A fix has been prepared and will appear in v2.39.2 v2.38.4 v2.37.6 v2.36.5 v2.35.7 v2.34.7 v2.33.7 v2.32.6, v2.31.7 and v2.30.8. If upgrading is impractical, two short-term workarounds are available. Avoid cloning repositories from untrusted sources with `--recurse-submodules`. Instead, consider cloning repositories without recursively cloning their submodules, and instead run `git submodule update` at each layer. Before doing so, inspect each new `.gitmodules` file to ensure that it does not contain suspicious module URLs."},"relatedVulnerabilities":[{"id":"CVE-2023-22490","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-22490","cwe":"CWE-59","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2023-22490","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-22490","date":"2026-10-08","epss":0.0071,"percentile":0.52097}],"urls":["https://github.com/git/git/commit/c867e4fa180bec4750e9b54eb10f459030dbebfd","https://github.com/git/git/security/advisories/GHSA-3wp6-j8xr-qw85","https://github.com/git/git/security/advisories/GHSA-gw92-x3fm-3g3q","https://security.gentoo.org/glsa/202312-15"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-22490","description":"Git is a revision control system. Using a specially-crafted repository, Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8 can be tricked into using its local clone optimization even when using a non-local transport. Though Git will abort local clones whose source `$GIT_DIR/objects` directory contains symbolic links, the `objects` directory itself may still be a symbolic link. These two may be combined to include arbitrary files based on known paths on the victim's filesystem within the malicious repository's working copy, allowing for data exfiltration in a similar manner as CVE-2022-39253.\n\nA fix has been prepared and will appear in v2.39.2 v2.38.4 v2.37.6 v2.36.5 v2.35.7 v2.34.7 v2.33.7 v2.32.6, v2.31.7 and v2.30.8. If upgrading is impractical, two short-term workarounds are available. Avoid cloning repositories from untrusted sources with `--recurse-submodules`. Instead, consider cloning repositories without recursively cloning their submodules, and instead run `git submodule update` at each layer. Before doing so, inspect each new `.gitmodules` file to ensure that it does not contain suspicious module URLs."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u8"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-22490","versionConstraint":"< 1:2.20.1-2+deb10u8 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-22490","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u8"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u8"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-22490","cwe":"CWE-59","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2023-22490","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-22490","date":"2026-10-08","epss":0.0071,"percentile":0.52097}],"risk":0.37275,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-22490","description":"Git is a revision control system. Using a specially-crafted repository, Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8 can be tricked into using its local clone optimization even when using a non-local transport. Though Git will abort local clones whose source `$GIT_DIR/objects` directory contains symbolic links, the `objects` directory itself may still be a symbolic link. These two may be combined to include arbitrary files based on known paths on the victim's filesystem within the malicious repository's working copy, allowing for data exfiltration in a similar manner as CVE-2022-39253.  A fix has been prepared and will appear in v2.39.2 v2.38.4 v2.37.6 v2.36.5 v2.35.7 v2.34.7 v2.33.7 v2.32.6, v2.31.7 and v2.30.8. If upgrading is impractical, two short-term workarounds are available. Avoid cloning repositories from untrusted sources with `--recurse-submodules`. Instead, consider cloning repositories without recursively cloning their submodules, and instead run `git submodule update` at each layer. Before doing so, inspect each new `.gitmodules` file to ensure that it does not contain suspicious module URLs."},"relatedVulnerabilities":[{"id":"CVE-2023-22490","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-22490","cwe":"CWE-59","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2023-22490","cwe":"CWE-59","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-22490","date":"2026-10-08","epss":0.0071,"percentile":0.52097}],"urls":["https://github.com/git/git/commit/c867e4fa180bec4750e9b54eb10f459030dbebfd","https://github.com/git/git/security/advisories/GHSA-3wp6-j8xr-qw85","https://github.com/git/git/security/advisories/GHSA-gw92-x3fm-3g3q","https://security.gentoo.org/glsa/202312-15"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-22490","description":"Git is a revision control system. Using a specially-crafted repository, Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8 can be tricked into using its local clone optimization even when using a non-local transport. Though Git will abort local clones whose source `$GIT_DIR/objects` directory contains symbolic links, the `objects` directory itself may still be a symbolic link. These two may be combined to include arbitrary files based on known paths on the victim's filesystem within the malicious repository's working copy, allowing for data exfiltration in a similar manner as CVE-2022-39253.\n\nA fix has been prepared and will appear in v2.39.2 v2.38.4 v2.37.6 v2.36.5 v2.35.7 v2.34.7 v2.33.7 v2.32.6, v2.31.7 and v2.30.8. If upgrading is impractical, two short-term workarounds are available. Avoid cloning repositories from untrusted sources with `--recurse-submodules`. Instead, consider cloning repositories without recursively cloning their submodules, and instead run `git submodule update` at each layer. Before doing so, inspect each new `.gitmodules` file to ensure that it does not contain suspicious module URLs."}]},{"artifact":{"id":"392700db1d57bb1a","cpes":["cpe:2.3:a:libx11-6:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11-6:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_6:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_6:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*"],"name":"libx11-6","purl":"pkg:deb/debian/libx11-6@2%3A1.6.7-1%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=libx11","type":"deb","version":"2:1.6.7-1+deb10u2","language":"","licenses":["BSD-1-Clause","HPND","HPND-sell-variant","MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libx11-6/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libx11-6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-6:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"libx11"}]},"matchDetails":[{"fix":{"suggestedVersion":"2:1.6.7-1+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-43787","versionConstraint":"< 2:1.6.7-1+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libx11","version":"2:1.6.7-1+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-43787","fix":{"state":"fixed","versions":["2:1.6.7-1+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2:1.6.7-1+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-43787","cwe":"CWE-122","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-43787","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-43787","date":"2026-10-08","epss":0.00475,"percentile":0.39086}],"risk":0.363375,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-43787","description":"A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges."},"relatedVulnerabilities":[{"id":"CVE-2023-43787","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-43787","cwe":"CWE-122","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-43787","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-43787","date":"2026-10-08","epss":0.00475,"percentile":0.39086}],"urls":["https://access.redhat.com/errata/RHSA-2024:2145","https://access.redhat.com/errata/RHSA-2024:2973","https://access.redhat.com/security/cve/CVE-2023-43787","https://bugzilla.redhat.com/show_bug.cgi?id=2242254","http://www.openwall.com/lists/oss-security/2024/01/24/9","https://jfrog.com/blog/xorg-libx11-vulns-cve-2023-43786-cve-2023-43787-part-two/","https://lists.debian.org/debian-lts-announce/2023/10/msg00005.html","https://security.netapp.com/advisory/ntap-20231103-0006/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-43787","description":"A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges."}]},{"artifact":{"id":"48f4592c45be3ca5","cpes":["cpe:2.3:a:libx11-data:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11-data:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_data:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_data:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*"],"name":"libx11-data","purl":"pkg:deb/debian/libx11-data@2%3A1.6.7-1%2Bdeb10u2?arch=all&distro=debian-10.10&upstream=libx11","type":"deb","version":"2:1.6.7-1+deb10u2","language":"","licenses":["BSD-1-Clause","HPND","HPND-sell-variant","MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libx11-data/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libx11-data/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-data.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-data.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-data.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-data.list"}],"upstreams":[{"name":"libx11"}]},"matchDetails":[{"fix":{"suggestedVersion":"2:1.6.7-1+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-43787","versionConstraint":"< 2:1.6.7-1+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libx11","version":"2:1.6.7-1+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-43787","fix":{"state":"fixed","versions":["2:1.6.7-1+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2:1.6.7-1+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-43787","cwe":"CWE-122","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-43787","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-43787","date":"2026-10-08","epss":0.00475,"percentile":0.39086}],"risk":0.363375,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-43787","description":"A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges."},"relatedVulnerabilities":[{"id":"CVE-2023-43787","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-43787","cwe":"CWE-122","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-43787","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-43787","date":"2026-10-08","epss":0.00475,"percentile":0.39086}],"urls":["https://access.redhat.com/errata/RHSA-2024:2145","https://access.redhat.com/errata/RHSA-2024:2973","https://access.redhat.com/security/cve/CVE-2023-43787","https://bugzilla.redhat.com/show_bug.cgi?id=2242254","http://www.openwall.com/lists/oss-security/2024/01/24/9","https://jfrog.com/blog/xorg-libx11-vulns-cve-2023-43786-cve-2023-43787-part-two/","https://lists.debian.org/debian-lts-announce/2023/10/msg00005.html","https://security.netapp.com/advisory/ntap-20231103-0006/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-43787","description":"A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_422"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21144","versionConstraint":"< 1.8.0_422||>= 1.9, < 8.0.422||>= 9, < 11.0.24 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21144","fix":{"state":"fixed","versions":["1.8.0_422","8.0.422","11.0.24"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_422"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.422"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.24"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2024-21144","date":"2026-10-08","epss":0.01056,"percentile":0.63382}],"risk":0.35375999999999996,"urls":["https://security.netapp.com/advisory/ntap-20240719-0007/","https://www.oracle.com/security-alerts/cpujul2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-07-16"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21144","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Concurrency).  Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23; Oracle GraalVM Enterprise Edition: 20.3.14 and  21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 3.7 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_502"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2026-47057","versionConstraint":"< 1.8.0_502||>= 1.9, < 8.0.502||>= 9, < 11.0.32 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2026-47057","fix":{"state":"fixed","versions":["1.8.0_502","8.0.502","11.0.32"],"available":[{"date":"2026-08-15","kind":"first-observed","version":"1.8.0_502"},{"date":"2026-08-15","kind":"first-observed","version":"8.0.502"},{"date":"2026-08-15","kind":"first-observed","version":"11.0.32"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2026-47057","cwe":"CWE-400","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2026-47057","date":"2026-10-08","epss":0.0047,"percentile":0.38691}],"risk":0.35250000000000004,"urls":["https://www.oracle.com/security-alerts/cpujul2026.html","https://openjdk.org/groups/vulnerability/advisories/2026-07-21"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2026-47057","description":"Vulnerability in Oracle Java SE (component: Scripting).  Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf and  11.0.31. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Java SE. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 7.5 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)."},"relatedVulnerabilities":[]},{"artifact":{"id":"392700db1d57bb1a","cpes":["cpe:2.3:a:libx11-6:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11-6:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_6:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_6:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11-6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11_6:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*"],"name":"libx11-6","purl":"pkg:deb/debian/libx11-6@2%3A1.6.7-1%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=libx11","type":"deb","version":"2:1.6.7-1+deb10u2","language":"","licenses":["BSD-1-Clause","HPND","HPND-sell-variant","MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libx11-6/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libx11-6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-6:amd64.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"libx11"}]},"matchDetails":[{"fix":{"suggestedVersion":"2:1.6.7-1+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-43785","versionConstraint":"< 2:1.6.7-1+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libx11","version":"2:1.6.7-1+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-43785","fix":{"state":"fixed","versions":["2:1.6.7-1+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2:1.6.7-1+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-43785","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-43785","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-43785","date":"2026-10-08","epss":0.00669,"percentile":0.5042}],"risk":0.351225,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-43785","description":"A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an out-of-bounds read error and read the contents of memory on the system."},"relatedVulnerabilities":[{"id":"CVE-2023-43785","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-43785","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-43785","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-43785","date":"2026-10-08","epss":0.00669,"percentile":0.5042}],"urls":["https://access.redhat.com/errata/RHSA-2024:2145","https://access.redhat.com/errata/RHSA-2024:2973","https://access.redhat.com/security/cve/CVE-2023-43785","https://bugzilla.redhat.com/show_bug.cgi?id=2242252","https://lists.debian.org/debian-lts-announce/2023/10/msg00004.html","https://security.netapp.com/advisory/ntap-20231103-0006/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-43785","description":"A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an out-of-bounds read error and read the contents of memory on the system."}]},{"artifact":{"id":"48f4592c45be3ca5","cpes":["cpe:2.3:a:libx11-data:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11-data:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_data:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11_data:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11-data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:libx11:libx11_data:2\\:1.6.7-1\\+deb10u2:*:*:*:*:*:*:*"],"name":"libx11-data","purl":"pkg:deb/debian/libx11-data@2%3A1.6.7-1%2Bdeb10u2?arch=all&distro=debian-10.10&upstream=libx11","type":"deb","version":"2:1.6.7-1+deb10u2","language":"","licenses":["BSD-1-Clause","HPND","HPND-sell-variant","MIT"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libx11-data/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/libx11-data/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-data.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-data.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libx11-data.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/libx11-data.list"}],"upstreams":[{"name":"libx11"}]},"matchDetails":[{"fix":{"suggestedVersion":"2:1.6.7-1+deb10u4"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2023-43785","versionConstraint":"< 2:1.6.7-1+deb10u4 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libx11","version":"2:1.6.7-1+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2023-43785","fix":{"state":"fixed","versions":["2:1.6.7-1+deb10u4"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2:1.6.7-1+deb10u4"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-43785","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-43785","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-43785","date":"2026-10-08","epss":0.00669,"percentile":0.5042}],"risk":0.351225,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2023-43785","description":"A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an out-of-bounds read error and read the contents of memory on the system."},"relatedVulnerabilities":[{"id":"CVE-2023-43785","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":6.5,"impactScore":3.6,"exploitabilityScore":2.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-43785","cwe":"CWE-787","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2023-43785","cwe":"CWE-125","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2023-43785","date":"2026-10-08","epss":0.00669,"percentile":0.5042}],"urls":["https://access.redhat.com/errata/RHSA-2024:2145","https://access.redhat.com/errata/RHSA-2024:2973","https://access.redhat.com/security/cve/CVE-2023-43785","https://bugzilla.redhat.com/show_bug.cgi?id=2242252","https://lists.debian.org/debian-lts-announce/2023/10/msg00004.html","https://security.netapp.com/advisory/ntap-20231103-0006/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-43785","description":"A vulnerability was found in libX11 due to a boundary condition within the _XkbReadKeySyms() function. This flaw allows a local user to trigger an out-of-bounds read error and read the contents of memory on the system."}]},{"artifact":{"id":"1cfe6e2be5a9442c","cpes":["cpe:2.3:a:libldap-2.4-2:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4-2:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4_2:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4_2:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-2.4:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_2.4:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap-2.4-2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap_2.4_2:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*"],"name":"libldap-2.4-2","purl":"pkg:deb/debian/libldap-2.4-2@2.4.47%2Bdfsg-3%2Bdeb10u6?arch=amd64&distro=debian-10.10&upstream=openldap","type":"deb","version":"2.4.47+dfsg-3+deb10u6","language":"","licenses":["sha256:0690f1ee382f98e95b446743db55395641d5e258de65939e9cb1c660d67a43a8"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libldap-2.4-2/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libldap-2.4-2/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-2.4-2:amd64.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-2.4-2:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"openldap"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2017-17740","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openldap","version":"2.4.47+dfsg-3+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2017-17740","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2017-17740","cwe":"CWE-119","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2017-17740","date":"2026-10-08","epss":0.07022,"percentile":0.94018}],"risk":0.3511,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2017-17740","description":"contrib/slapd-modules/nops/nops.c in OpenLDAP through 2.4.45, when both the nops module and the memberof overlay are enabled, attempts to free a buffer that was allocated on the stack, which allows remote attackers to cause a denial of service (slapd crash) via a member MODDN operation."},"relatedVulnerabilities":[{"id":"CVE-2017-17740","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2017-17740","cwe":"CWE-119","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2017-17740","date":"2026-10-08","epss":0.07022,"percentile":0.94018}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00053.html","http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00058.html","http://www.openldap.org/its/index.cgi/Incoming?id=8759","https://kc.mcafee.com/corporate/index?page=content&id=SB10365","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2017-17740","description":"contrib/slapd-modules/nops/nops.c in OpenLDAP through 2.4.45, when both the nops module and the memberof overlay are enabled, attempts to free a buffer that was allocated on the stack, which allows remote attackers to cause a denial of service (slapd crash) via a member MODDN operation."}]},{"artifact":{"id":"e69f561869ff04f0","cpes":["cpe:2.3:a:libldap-common:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap-common:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_common:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap_common:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap-common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*","cpe:2.3:a:libldap:libldap_common:2.4.47\\+dfsg-3\\+deb10u6:*:*:*:*:*:*:*"],"name":"libldap-common","purl":"pkg:deb/debian/libldap-common@2.4.47%2Bdfsg-3%2Bdeb10u6?arch=all&distro=debian-10.10&upstream=openldap","type":"deb","version":"2.4.47+dfsg-3+deb10u6","language":"","licenses":["sha256:0690f1ee382f98e95b446743db55395641d5e258de65939e9cb1c660d67a43a8"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libldap-common/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libldap-common/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libldap-common.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libldap-common.list"}],"upstreams":[{"name":"openldap"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2017-17740","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openldap","version":"2.4.47+dfsg-3+deb10u6"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2017-17740","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2017-17740","cwe":"CWE-119","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2017-17740","date":"2026-10-08","epss":0.07022,"percentile":0.94018}],"risk":0.3511,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2017-17740","description":"contrib/slapd-modules/nops/nops.c in OpenLDAP through 2.4.45, when both the nops module and the memberof overlay are enabled, attempts to free a buffer that was allocated on the stack, which allows remote attackers to cause a denial of service (slapd crash) via a member MODDN operation."},"relatedVulnerabilities":[{"id":"CVE-2017-17740","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:N/I:N/A:P","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2017-17740","cwe":"CWE-119","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2017-17740","date":"2026-10-08","epss":0.07022,"percentile":0.94018}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00053.html","http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00058.html","http://www.openldap.org/its/index.cgi/Incoming?id=8759","https://kc.mcafee.com/corporate/index?page=content&id=SB10365","https://www.oracle.com/security-alerts/cpuapr2022.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2017-17740","description":"contrib/slapd-modules/nops/nops.c in OpenLDAP through 2.4.45, when both the nops module and the memberof overlay are enabled, attempts to free a buffer that was allocated on the stack, which allows remote attackers to cause a denial of service (slapd crash) via a member MODDN operation."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_372"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2023-21968","versionConstraint":"< 1.8.0_372||>= 1.9, < 8.0.372||>= 12, < 17.0.7||>= 18, < 20.0.1||>= 9, < 11.0.19 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2023-21968","fix":{"state":"fixed","versions":["1.8.0_372","8.0.372","11.0.19","17.0.7","20.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_372"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.372"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"20.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.19"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2023-21968","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2023-21968","date":"2026-10-08","epss":0.01044,"percentile":0.63066}],"risk":0.34973999999999994,"urls":["https://lists.debian.org/debian-lts-announce/2023/09/msg00018.html","https://security.netapp.com/advisory/ntap-20230427-0008/","https://security.netapp.com/advisory/ntap-20240621-0006/","https://www.couchbase.com/alerts/","https://www.debian.org/security/2023/dsa-5430","https://www.debian.org/security/2023/dsa-5478","https://www.oracle.com/security-alerts/cpuapr2023.html","https://openjdk.org/groups/vulnerability/advisories/2023-04-18"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2023-21968","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries).  Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and  22.3.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.1 Base Score 3.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_422"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21131","versionConstraint":"< 1.8.0_422||>= 1.9, < 8.0.422||>= 12, < 17.0.12||>= 18, < 21.0.4||>= 22, < 22.0.2||>= 9, < 11.0.24 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21131","fix":{"state":"fixed","versions":["1.8.0_422","8.0.422","11.0.24","17.0.12","21.0.4","22.0.2"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_422"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.422"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.12"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.4"},{"date":"2025-09-04","kind":"first-observed","version":"22.0.2"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.24"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"epss":[{"cve":"CVE-2024-21131","date":"2026-10-08","epss":0.0104,"percentile":0.62929}],"risk":0.3484,"urls":["https://security.netapp.com/advisory/ntap-20240719-0008/","https://www.oracle.com/security-alerts/cpujul2024.html","https://openjdk.org/groups/vulnerability/advisories/2024-07-16"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21131","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot).  Supported versions that are affected are Oracle Java SE: 8u411, 8u411-perf, 11.0.23, 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM for JDK: 17.0.11, 21.0.3, 22.0.1; Oracle GraalVM Enterprise Edition: 20.3.14 and  21.3.10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 3.7 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"f2a2af9c9a7c48e8","cpes":["cpe:2.3:a:bsdutils:bsdutils:1\\:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"bsdutils","purl":"pkg:deb/debian/bsdutils@1%3A2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux%402.33.1-0.1","type":"deb","version":"1:2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/bsdutils/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/bsdutils/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/bsdutils.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/bsdutils.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/bsdutils.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/bsdutils.list"}],"upstreams":[{"name":"util-linux","version":"2.33.1-0.1"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"4c321df8375fa5f7","cpes":["cpe:2.3:a:fdisk:fdisk:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"fdisk","purl":"pkg:deb/debian/fdisk@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/fdisk/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/fdisk/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/fdisk.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/fdisk.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/fdisk.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/fdisk.list"}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"d20eac8952a5e6b5","cpes":["cpe:2.3:a:libblkid1:libblkid1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libblkid1","purl":"pkg:deb/debian/libblkid1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libblkid1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libblkid1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libblkid1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libblkid1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"54c2753ee170e0ea","cpes":["cpe:2.3:a:libfdisk1:libfdisk1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libfdisk1","purl":"pkg:deb/debian/libfdisk1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libfdisk1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libfdisk1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libfdisk1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libfdisk1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"c6f6118ba99c54cb","cpes":["cpe:2.3:a:libmount1:libmount1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libmount1","purl":"pkg:deb/debian/libmount1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libmount1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libmount1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libmount1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libmount1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"a95e9a21c0932258","cpes":["cpe:2.3:a:libsmartcols1:libsmartcols1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libsmartcols1","purl":"pkg:deb/debian/libsmartcols1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libsmartcols1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libsmartcols1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libsmartcols1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libsmartcols1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"cc943ca139d0e67b","cpes":["cpe:2.3:a:libuuid1:libuuid1:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"libuuid1","purl":"pkg:deb/debian/libuuid1@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libuuid1/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libuuid1/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libuuid1:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libuuid1:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"0cd3087f123a0ab4","cpes":["cpe:2.3:a:mount:mount:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"mount","purl":"pkg:deb/debian/mount@2.33.1-0.1?arch=amd64&distro=debian-10.10&upstream=util-linux","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/mount/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/mount/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/mount.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/mount.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/mount.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/mount.list"}],"upstreams":[{"name":"util-linux"}]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"3d071e40c62fe471","cpes":["cpe:2.3:a:util-linux:util-linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util-linux:util_linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util_linux:util-linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util_linux:util_linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util:util-linux:2.33.1-0.1:*:*:*:*:*:*:*","cpe:2.3:a:util:util_linux:2.33.1-0.1:*:*:*:*:*:*:*"],"name":"util-linux","purl":"pkg:deb/debian/util-linux@2.33.1-0.1?arch=amd64&distro=debian-10.10","type":"deb","version":"2.33.1-0.1","language":"","licenses":["BSD-2-clause","BSD-3-clause","BSD-4-clause","GPL-2","GPL-2+","GPL-3","GPL-3+","LGPL","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","MIT","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/util-linux/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/util-linux/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/util-linux.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/util-linux.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/util-linux.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.list"},{"path":"/var/lib/dpkg/info/util-linux.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.postinst"},{"path":"/var/lib/dpkg/info/util-linux.postrm","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.postrm"},{"path":"/var/lib/dpkg/info/util-linux.prerm","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/util-linux.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"2.33.1-0.1+deb10u1"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2021-37600","versionConstraint":"< 2.33.1-0.1+deb10u1 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"util-linux","version":"2.33.1-0.1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2021-37600","fix":{"state":"fixed","versions":["2.33.1-0.1+deb10u1"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"2.33.1-0.1+deb10u1"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"risk":0.34702500000000003,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."},"relatedVulnerabilities":[{"id":"CVE-2021-37600","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","metrics":{"baseScore":5.5,"impactScore":3.6,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:N/I:N/A:P","metrics":{"baseScore":1.2,"impactScore":2.9,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2021-37600","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2021-37600","date":"2026-10-08","epss":0.00661,"percentile":0.50077}],"urls":["https://github.com/karelzak/util-linux/commit/1c9143d0c1f979c3daf10e1c37b5b1e916c22a1c","https://github.com/karelzak/util-linux/issues/1395","https://lists.debian.org/debian-lts-announce/2024/04/msg00005.html","https://security.gentoo.org/glsa/202401-08","https://security.netapp.com/advisory/ntap-20210902-0002/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2021-37600","description":"An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments."}]},{"artifact":{"id":"bacadd6976d20809","cpes":["cpe:2.3:a:git:git:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git","purl":"pkg:deb/debian/git@1%3A2.20.1-2%2Bdeb10u3?arch=amd64&distro=debian-10.10","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.list"},{"path":"/var/lib/dpkg/info/git.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postinst"},{"path":"/var/lib/dpkg/info/git.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.postrm"},{"path":"/var/lib/dpkg/info/git.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.preinst"},{"path":"/var/lib/dpkg/info/git.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git.prerm"}],"upstreams":[]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u5"},"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2022-29187","versionConstraint":"< 1:2.20.1-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-29187","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29187","cwe":"CWE-282","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-29187","cwe":"CWE-427","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-29187","cwe":"CWE-427","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-29187","date":"2026-10-08","epss":0.00449,"percentile":0.37058}],"risk":0.34348500000000004,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-29187","description":"Git is a distributed revision control system. Git prior to versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and 2.30.5, is vulnerable to privilege escalation in all platforms. An unsuspecting user could still be affected by the issue reported in CVE-2022-24765, for example when navigating as root into a shared tmp directory that is owned by them, but where an attacker could create a git repository. Versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and 2.30.5 contain a patch for this issue. The simplest way to avoid being affected by the exploit described in the example is to avoid running git as root (or an Administrator in Windows), and if needed to reduce its use to a minimum. While a generic workaround is not possible, a system could be hardened from the exploit described in the example by removing any such repository if it exists already and creating one as root to block any future attacks."},"relatedVulnerabilities":[{"id":"CVE-2022-29187","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:C/I:C/A:C","metrics":{"baseScore":6.9,"impactScore":10.1,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29187","cwe":"CWE-282","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-29187","cwe":"CWE-427","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-29187","cwe":"CWE-427","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-29187","date":"2026-10-08","epss":0.00449,"percentile":0.37058}],"urls":["http://seclists.org/fulldisclosure/2022/Nov/1","http://www.openwall.com/lists/oss-security/2022/07/14/1","https://github.blog/2022-04-12-git-security-vulnerability-announced","https://github.com/git/git/security/advisories/GHSA-j342-m5hw-rr3v","https://lists.debian.org/debian-lts-announce/2022/12/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DDI325LOO2XBDDKLINOAQJEG6MHAURZE/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DIKWISWUDFT2FAITYIA6372BVLH3OOOC/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVOLER2PIGMHPQMDGG4RDE2KZB74QLA2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TRZG5CDUQ27OWTPC5MQOR4UASNXHWEZS/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UDZRZAL7QULOB6V7MKT66MOMWJLBJPX4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YROCMBWYFKRSS64PO6FUNM6L7LKBUKVW/","https://lore.kernel.org/git/xmqqv8s2fefi.fsf%40gitster.g/T/#u","https://security.gentoo.org/glsa/202312-15","https://security.gentoo.org/glsa/202401-17","https://support.apple.com/kb/HT213496"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-29187","description":"Git is a distributed revision control system. Git prior to versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and 2.30.5, is vulnerable to privilege escalation in all platforms. An unsuspecting user could still be affected by the issue reported in CVE-2022-24765, for example when navigating as root into a shared tmp directory that is owned by them, but where an attacker could create a git repository. Versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and 2.30.5 contain a patch for this issue. The simplest way to avoid being affected by the exploit described in the example is to avoid running git as root (or an Administrator in Windows), and if needed to reduce its use to a minimum. While a generic workaround is not possible, a system could be hardened from the exploit described in the example by removing any such repository if it exists already and creating one as root to block any future attacks."}]},{"artifact":{"id":"567c82bf90ab3546","cpes":["cpe:2.3:a:git-man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git-man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git_man:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git-man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*","cpe:2.3:a:git:git_man:1\\:2.20.1-2\\+deb10u3:*:*:*:*:*:*:*"],"name":"git-man","purl":"pkg:deb/debian/git-man@1%3A2.20.1-2%2Bdeb10u3?arch=all&distro=debian-10.10&upstream=git","type":"deb","version":"1:2.20.1-2+deb10u3","language":"","licenses":["Apache-2.0","Artistic","BSD-2-clause","Boost","EDL-1.0","Expat","GPL","GPL-1+","GPL-2","GPL-2+","ISC","LGPL-2","LGPL-2+","LGPL-2.1","LGPL-2.1+","dlmalloc","mingw-runtime"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/git-man/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/git-man/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/git-man.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/git-man.list"}],"upstreams":[{"name":"git"}]},"matchDetails":[{"fix":{"suggestedVersion":"1:2.20.1-2+deb10u5"},"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2022-29187","versionConstraint":"< 1:2.20.1-2+deb10u5 (deb)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"git","version":"1:2.20.1-2+deb10u3"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2022-29187","fix":{"state":"fixed","versions":["1:2.20.1-2+deb10u5"],"available":[{"date":"2026-02-27","kind":"first-observed","version":"1:2.20.1-2+deb10u5"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29187","cwe":"CWE-282","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-29187","cwe":"CWE-427","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-29187","cwe":"CWE-427","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-29187","date":"2026-10-08","epss":0.00449,"percentile":0.37058}],"risk":0.34348500000000004,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2022-29187","description":"Git is a distributed revision control system. Git prior to versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and 2.30.5, is vulnerable to privilege escalation in all platforms. An unsuspecting user could still be affected by the issue reported in CVE-2022-24765, for example when navigating as root into a shared tmp directory that is owned by them, but where an attacker could create a git repository. Versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and 2.30.5 contain a patch for this issue. The simplest way to avoid being affected by the exploit described in the example is to avoid running git as root (or an Administrator in Windows), and if needed to reduce its use to a minimum. While a generic workaround is not possible, a system could be hardened from the exploit described in the example by removing any such repository if it exists already and creating one as root to block any future attacks."},"relatedVulnerabilities":[{"id":"CVE-2022-29187","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:M/Au:N/C:C/I:C/A:C","metrics":{"baseScore":6.9,"impactScore":10.1,"exploitabilityScore":3.4},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"security-advisories@github.com","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.8,"impactScore":5.9,"exploitabilityScore":1.9},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2022-29187","cwe":"CWE-282","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-29187","cwe":"CWE-427","type":"Secondary","source":"security-advisories@github.com"},{"cve":"CVE-2022-29187","cwe":"CWE-427","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2022-29187","date":"2026-10-08","epss":0.00449,"percentile":0.37058}],"urls":["http://seclists.org/fulldisclosure/2022/Nov/1","http://www.openwall.com/lists/oss-security/2022/07/14/1","https://github.blog/2022-04-12-git-security-vulnerability-announced","https://github.com/git/git/security/advisories/GHSA-j342-m5hw-rr3v","https://lists.debian.org/debian-lts-announce/2022/12/msg00025.html","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DDI325LOO2XBDDKLINOAQJEG6MHAURZE/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DIKWISWUDFT2FAITYIA6372BVLH3OOOC/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HVOLER2PIGMHPQMDGG4RDE2KZB74QLA2/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TRZG5CDUQ27OWTPC5MQOR4UASNXHWEZS/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UDZRZAL7QULOB6V7MKT66MOMWJLBJPX4/","https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YROCMBWYFKRSS64PO6FUNM6L7LKBUKVW/","https://lore.kernel.org/git/xmqqv8s2fefi.fsf%40gitster.g/T/#u","https://security.gentoo.org/glsa/202312-15","https://security.gentoo.org/glsa/202401-17","https://support.apple.com/kb/HT213496"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2022-29187","description":"Git is a distributed revision control system. Git prior to versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and 2.30.5, is vulnerable to privilege escalation in all platforms. An unsuspecting user could still be affected by the issue reported in CVE-2022-24765, for example when navigating as root into a shared tmp directory that is owned by them, but where an attacker could create a git repository. Versions 2.37.1, 2.36.2, 2.35.4, 2.34.4, 2.33.4, 2.32.3, 2.31.4, and 2.30.5 contain a patch for this issue. The simplest way to avoid being affected by the exploit described in the example is to avoid running git as root (or an Administrator in Windows), and if needed to reduce its use to a minimum. While a generic workaround is not possible, a system could be hardened from the exploit described in the example by removing any such repository if it exists already and creating one as root to block any future attacks."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_482"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-6052","versionConstraint":"< 1.8.0_482||>= 1.9, < 8.0.482 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-6052","fix":{"state":"fixed","versions":["1.8.0_482","8.0.482"],"available":[{"date":"2026-01-27","kind":"first-observed","version":"1.8.0_482"},{"date":"2026-01-27","kind":"first-observed","version":"8.0.482"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-6052","cwe":"CWE-190","type":"Secondary","source":"secalert@redhat.com"}],"epss":[{"cve":"CVE-2025-6052","date":"2026-10-08","epss":0.00522,"percentile":0.42451}],"risk":0.34191,"urls":["https://access.redhat.com/security/cve/CVE-2025-6052","https://bugzilla.redhat.com/show_bug.cgi?id=2372666","https://cert-portal.siemens.com/productcert/html/ssa-032379.html","https://cert-portal.siemens.com/productcert/html/ssa-253495.html","https://openjdk.org/groups/vulnerability/advisories/2026-01-20","https://www.oracle.com/security-alerts/cpuapr2026.html","https://www.oracle.com/security-alerts/cpujan2026.html"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-6052","description":"A flaw was found in how GLib’s GString manages memory when adding data to strings. If a string is already very large, combining it with more input can cause a hidden overflow in the size calculation. This makes the system think it has enough memory when it doesn’t. As a result, data may be written past the end of the allocated memory, leading to crashes or memory corruption."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_432"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2024-21208","versionConstraint":"< 1.8.0_432||>= 1.9, < 8.0.432||>= 12, < 17.0.13||>= 18, < 21.0.5||>= 22, < 23.0.1||>= 9, < 11.0.25 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2024-21208","fix":{"state":"fixed","versions":["1.8.0_432","8.0.432","11.0.25","17.0.13","21.0.5","23.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_432"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.432"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.13"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.5"},{"date":"2025-09-04","kind":"first-observed","version":"23.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.25"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","metrics":{"baseScore":3.7,"impactScore":1.5,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-21208","cwe":"CWE-203","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2024-21208","date":"2026-10-08","epss":0.01012,"percentile":0.62079}],"risk":0.33902,"urls":["https://www.oracle.com/security-alerts/cpuoct2024.html","https://lists.debian.org/debian-lts-announce/2024/10/msg00020.html","https://security.netapp.com/advisory/ntap-20241018-0010/","https://openjdk.org/groups/vulnerability/advisories/2024-10-15"],"severity":"Low","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-21208","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking).  Supported versions that are affected are Oracle Java SE: 8u421, 8u421-perf, 11.0.24, 17.0.12, 21.0.4, 23; Oracle GraalVM for JDK: 17.0.12, 21.0.4, 23; Oracle GraalVM Enterprise Edition: 20.3.15 and  21.3.11. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 3.7 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_452"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-30698","versionConstraint":"< 1.8.0_452||>= 1.9, < 8.0.452||>= 12, < 17.0.15||>= 18, < 21.0.7||>= 22, < 24.0.1||>= 9, < 11.0.27 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-30698","fix":{"state":"fixed","versions":["1.8.0_452","8.0.452","11.0.27","17.0.15","21.0.7","24.0.1"],"available":[{"date":"2025-09-04","kind":"first-observed","version":"1.8.0_452"},{"date":"2025-09-04","kind":"first-observed","version":"8.0.452"},{"date":"2025-09-04","kind":"first-observed","version":"17.0.15"},{"date":"2025-09-04","kind":"first-observed","version":"21.0.7"},{"date":"2025-09-04","kind":"first-observed","version":"24.0.1"},{"date":"2025-09-04","kind":"first-observed","version":"11.0.27"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L","metrics":{"baseScore":5.6,"impactScore":3.4,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-30698","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2025-30698","date":"2026-10-08","epss":0.00616,"percentile":0.47883}],"risk":0.32648,"urls":["https://www.oracle.com/security-alerts/cpuapr2025.html","https://lists.debian.org/debian-lts-announce/2025/05/msg00026.html","https://security.netapp.com/advisory/ntap-20250502-0005/"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-30698","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D).  Supported versions that are affected are Oracle Java SE: 8u441, 8u441-perf, 11.0.26, 17.0.14, 21.0.6, 24; Oracle GraalVM for JDK: 17.0.14, 21.0.6, 24; Oracle GraalVM Enterprise Edition: 20.3.17 and  21.3.13. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data as well as  unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 5.6 (Confidentiality, Integrity and Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)."},"relatedVulnerabilities":[]},{"artifact":{"id":"7f936fc60378589a","cpes":["cpe:2.3:a:gpgv:gpgv:2.2.12-1\\+deb10u1:*:*:*:*:*:*:*"],"name":"gpgv","purl":"pkg:deb/debian/gpgv@2.2.12-1%2Bdeb10u1?arch=amd64&distro=debian-10.10&upstream=gnupg2","type":"deb","version":"2.2.12-1+deb10u1","language":"","licenses":["BSD-3-clause","CC0-1.0","Expat","GPL-3","GPL-3+","LGPL-2.1","LGPL-2.1+","LGPL-3","LGPL-3+","RFC-Reference","TinySCHEME","permissive"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/gpgv/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/gpgv/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gpgv.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gpgv.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/gpgv.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/gpgv.list"}],"upstreams":[{"name":"gnupg2"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2019-14855","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"gnupg2","version":"2.2.12-1+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-14855","fix":{"state":"wont-fix","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2019-14855","cwe":"CWE-326","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2019-14855","cwe":"CWE-326","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-14855","date":"2026-10-08","epss":0.01077,"percentile":0.63983}],"risk":0.3231,"urls":[],"severity":"Low","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-14855","description":"A flaw was found in the way certificate signatures could be forged using collisions found in the SHA-1 algorithm. An attacker could use this weakness to create forged certificate signatures. This issue affects GnuPG versions before 2.2.18."},"relatedVulnerabilities":[{"id":"CVE-2019-14855","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","metrics":{"baseScore":5,"impactScore":2.9,"exploitabilityScore":10},"version":"2.0","vendorMetadata":{}},{"type":"Secondary","source":"secalert@redhat.com","vector":"CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N","metrics":{"baseScore":5.3,"impactScore":3.6,"exploitabilityScore":1.7},"version":"3.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-14855","cwe":"CWE-326","type":"Secondary","source":"secalert@redhat.com"},{"cve":"CVE-2019-14855","cwe":"CWE-326","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-14855","date":"2026-10-08","epss":0.01077,"percentile":0.63983}],"urls":["https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14855","https://dev.gnupg.org/T4755","https://lists.gnupg.org/pipermail/gnupg-announce/2019q4/000442.html","https://rwc.iacr.org/2020/slides/Leurent.pdf","https://usn.ubuntu.com/4516-1/"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-14855","description":"A flaw was found in the way certificate signatures could be forged using collisions found in the SHA-1 algorithm. An attacker could use this weakness to create forged certificate signatures. This issue affects GnuPG versions before 2.2.18."}]},{"artifact":{"id":"2d52d7c9fca553cc","cpes":["cpe:2.3:a:libc-bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_bin:libc_bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-bin:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_bin:2.28-10:*:*:*:*:*:*:*"],"name":"libc-bin","purl":"pkg:deb/debian/libc-bin@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-bin/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc-bin/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-bin.list","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.list"},{"path":"/var/lib/dpkg/info/libc-bin.postinst","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.postinst"},{"path":"/var/lib/dpkg/info/libc-bin.triggers","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc-bin.triggers"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33602","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33602","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33602","cwe":"CWE-466","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33602","date":"2026-10-08","epss":0.00403,"percentile":0.32448}],"risk":0.300235,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33602","description":"nscd: netgroup cache assumes NSS callback uses in-buffer strings  The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the NSS callback does not store all strings in the provided buffer. The flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33602","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33602","cwe":"CWE-466","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33602","date":"2026-10-08","epss":0.00403,"percentile":0.32448}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0012/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0008","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33602","description":"nscd: netgroup cache assumes NSS callback uses in-buffer strings\n\nThe Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory\nwhen the NSS callback does not store all strings in the provided buffer.\nThe flaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"fe0324c22198dabb","cpes":["cpe:2.3:a:libc-l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc-l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc_l10n:libc_l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc-l10n:2.28-10:*:*:*:*:*:*:*","cpe:2.3:a:libc:libc_l10n:2.28-10:*:*:*:*:*:*:*"],"name":"libc-l10n","purl":"pkg:deb/debian/libc-l10n@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc-l10n/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/libc-l10n/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc-l10n.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/libc-l10n.list"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33602","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33602","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33602","cwe":"CWE-466","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33602","date":"2026-10-08","epss":0.00403,"percentile":0.32448}],"risk":0.300235,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33602","description":"nscd: netgroup cache assumes NSS callback uses in-buffer strings  The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the NSS callback does not store all strings in the provided buffer. The flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33602","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33602","cwe":"CWE-466","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33602","date":"2026-10-08","epss":0.00403,"percentile":0.32448}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0012/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0008","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33602","description":"nscd: netgroup cache assumes NSS callback uses in-buffer strings\n\nThe Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory\nwhen the NSS callback does not store all strings in the provided buffer.\nThe flaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"4d00fd0f941e584e","cpes":["cpe:2.3:a:libc6:libc6:2.28-10:*:*:*:*:*:*:*"],"name":"libc6","purl":"pkg:deb/debian/libc6@2.28-10?arch=amd64&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libc6/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libc6/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.conffiles","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libc6:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libc6:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33602","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33602","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33602","cwe":"CWE-466","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33602","date":"2026-10-08","epss":0.00403,"percentile":0.32448}],"risk":0.300235,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33602","description":"nscd: netgroup cache assumes NSS callback uses in-buffer strings  The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the NSS callback does not store all strings in the provided buffer. The flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33602","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33602","cwe":"CWE-466","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33602","date":"2026-10-08","epss":0.00403,"percentile":0.32448}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0012/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0008","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33602","description":"nscd: netgroup cache assumes NSS callback uses in-buffer strings\n\nThe Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory\nwhen the NSS callback does not store all strings in the provided buffer.\nThe flaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"c1d71c418353daa4","cpes":["cpe:2.3:a:locales:locales:2.28-10:*:*:*:*:*:*:*"],"name":"locales","purl":"pkg:deb/debian/locales@2.28-10?arch=all&distro=debian-10.10&upstream=glibc","type":"deb","version":"2.28-10","language":"","licenses":["sha256:40c7e1f2118531f038ca22999bd976901254e1bc5cd1b0f0211bdd064c599987"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/locales/copyright","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/usr/share/doc/locales/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.conffiles","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.md5sums","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/locales.config","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.config"},{"path":"/var/lib/dpkg/info/locales.list","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.list"},{"path":"/var/lib/dpkg/info/locales.postinst","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postinst"},{"path":"/var/lib/dpkg/info/locales.postrm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.postrm"},{"path":"/var/lib/dpkg/info/locales.prerm","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.prerm"},{"path":"/var/lib/dpkg/info/locales.templates","layerID":"sha256:cf7a8ba4ff712bbd56186159d396d273b95ad2d56454737cfaedb08c2bd98cec","accessPath":"/var/lib/dpkg/info/locales.templates"}],"upstreams":[{"name":"glibc"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2024-33602","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"glibc","version":"2.28-10"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2024-33602","fix":{"state":"not-fixed","versions":[]},"cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33602","cwe":"CWE-466","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33602","date":"2026-10-08","epss":0.00403,"percentile":0.32448}],"risk":0.300235,"urls":[],"severity":"High","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2024-33602","description":"nscd: netgroup cache assumes NSS callback uses in-buffer strings  The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the NSS callback does not store all strings in the provided buffer. The flaw was introduced in glibc 2.15 when the cache was added to nscd.  This vulnerability is only present in the nscd binary."},"relatedVulnerabilities":[{"id":"CVE-2024-33602","cvss":[{"type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","metrics":{"baseScore":7.4,"impactScore":5.9,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2024-33602","cwe":"CWE-466","type":"Secondary","source":"3ff69d7a-14f2-4f67-a097-88dee7810d18"}],"epss":[{"cve":"CVE-2024-33602","date":"2026-10-08","epss":0.00403,"percentile":0.32448}],"urls":["http://www.openwall.com/lists/oss-security/2024/07/22/5","https://lists.debian.org/debian-lts-announce/2024/06/msg00026.html","https://security.netapp.com/advisory/ntap-20240524-0012/","https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0008","https://cert-portal.siemens.com/productcert/html/ssa-082556.html"],"severity":"High","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2024-33602","description":"nscd: netgroup cache assumes NSS callback uses in-buffer strings\n\nThe Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory\nwhen the NSS callback does not store all strings in the provided buffer.\nThe flaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_502"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2026-41254","versionConstraint":"< 1.8.0_502||>= 1.9, < 8.0.502||>= 12, < 17.0.20||>= 18, < 21.0.12||>= 22, < 25.0.4||>= 26, < 26.0.2||>= 9, < 11.0.32 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2026-41254","fix":{"state":"fixed","versions":["1.8.0_502","8.0.502","11.0.32","17.0.20","21.0.12","25.0.4","26.0.2"],"available":[{"date":"2026-08-15","kind":"first-observed","version":"1.8.0_502"},{"date":"2026-08-15","kind":"first-observed","version":"8.0.502"},{"date":"2026-08-15","kind":"first-observed","version":"17.0.20"},{"date":"2026-08-15","kind":"first-observed","version":"21.0.12"},{"date":"2026-08-15","kind":"first-observed","version":"25.0.4"},{"date":"2026-08-15","kind":"first-observed","version":"26.0.2"},{"date":"2026-08-15","kind":"first-observed","version":"11.0.32"}]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","metrics":{"baseScore":7.5,"impactScore":3.6,"exploitabilityScore":3.9},"version":"3.1","vendorMetadata":{}},{"type":"Secondary","source":"cve@mitre.org","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L","metrics":{"baseScore":4,"impactScore":2.6,"exploitabilityScore":1.5},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2026-41254","cwe":"CWE-696","type":"Secondary","source":"cve@mitre.org"},{"cve":"CVE-2026-41254","cwe":"CWE-190","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2026-41254","date":"2026-10-08","epss":0.00442,"percentile":0.36363}],"risk":0.292825,"urls":["https://abhinavagarwal07.github.io/posts/lcms2-cubesize-overflow/","https://github.com/mm2/Little-CMS/commit/da6110b1d14abc394633a388209abd5ebedd7ab0","https://github.com/mm2/Little-CMS/commit/e0641b1828d0a1af5ecb1b11fe22f24fceefd4bc","https://github.com/mm2/Little-CMS/security/advisories/GHSA-4xp6-rcgg-m9qq","https://www.openwall.com/lists/oss-security/2026/04/17/16","https://lists.debian.org/debian-lts-announce/2026/05/msg00014.html","https://github.com/mm2/Little-CMS/commit/e0641b1828d0a1af5ecb1b11fe22f24fceefd4bc#commitcomment-183284136","https://openjdk.org/groups/vulnerability/advisories/2026-07-21"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2026-41254","description":"Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplication."},"relatedVulnerabilities":[]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_472"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2025-53057","versionConstraint":"< 1.8.0_472||>= 1.9, < 8.0.472||>= 12, < 17.0.17||>= 18, < 21.0.9||>= 22, < 25.0.1||>= 9, < 11.0.29 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2025-53057","fix":{"state":"fixed","versions":["1.8.0_472","8.0.472","11.0.29","17.0.17","21.0.9","25.0.1"],"available":[{"date":"2025-10-23","kind":"first-observed","version":"1.8.0_472"},{"date":"2025-10-23","kind":"first-observed","version":"8.0.472"},{"date":"2025-10-23","kind":"first-observed","version":"17.0.17"},{"date":"2025-10-23","kind":"first-observed","version":"21.0.9"},{"date":"2025-10-23","kind":"first-observed","version":"25.0.1"},{"date":"2025-10-23","kind":"first-observed","version":"11.0.29"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","metrics":{"baseScore":5.9,"impactScore":3.6,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2025-53057","cwe":"CWE-284","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2025-53057","date":"2026-10-08","epss":0.00534,"percentile":0.43314}],"risk":0.29103,"urls":["https://www.oracle.com/security-alerts/cpuoct2025.html","https://lists.debian.org/debian-lts-announce/2025/10/msg00026.html","https://cert-portal.siemens.com/productcert/html/ssa-032379.html"],"severity":"Medium","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2025-53057","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security).  Supported versions that are affected are Oracle Java SE: 8u461, 8u461-perf, 11.0.28, 17.0.16, 21.0.8, 25; Oracle GraalVM for JDK: 17.0.16 and  21.0.8; Oracle GraalVM Enterprise Edition: 21.3.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 5.9 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"dfdab1b7031e1625","cpes":["cpe:2.3:a:openssh-client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh-client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh_client:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh-client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*","cpe:2.3:a:openssh:openssh_client:1\\:7.9p1-10\\+deb10u2:*:*:*:*:*:*:*"],"name":"openssh-client","purl":"pkg:deb/debian/openssh-client@1%3A7.9p1-10%2Bdeb10u2?arch=amd64&distro=debian-10.10&upstream=openssh","type":"deb","version":"1:7.9p1-10+deb10u2","language":"","licenses":["BSD-2-clause","BSD-3-clause","Beer-ware","Expat-with-advertising-restriction","Mazieres-BSD-style","OpenSSH","Powell-BSD-style","public-domain"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/openssh-client/copyright","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/usr/share/doc/openssh-client/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.conffiles","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.conffiles","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.md5sums","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.md5sums","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/openssh-client.list","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.list"},{"path":"/var/lib/dpkg/info/openssh-client.postinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postinst"},{"path":"/var/lib/dpkg/info/openssh-client.postrm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.postrm"},{"path":"/var/lib/dpkg/info/openssh-client.preinst","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.preinst"},{"path":"/var/lib/dpkg/info/openssh-client.prerm","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/info/openssh-client.prerm"}],"upstreams":[{"name":"openssh"}]},"matchDetails":[{"type":"exact-indirect-match","found":{"vulnerabilityID":"CVE-2008-3234","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"openssh","version":"1:7.9p1-10+deb10u2"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2008-3234","fix":{"state":"not-fixed","versions":[]},"cvss":[],"cwes":[{"cve":"CVE-2008-3234","cwe":"CWE-264","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2008-3234","date":"2026-10-08","epss":0.05773,"percentile":0.92898}],"risk":0.28865,"urls":[],"severity":"Negligible","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2008-3234","description":"sshd in OpenSSH 4 on Debian GNU/Linux, and the 20070303 OpenSSH snapshot, allows remote authenticated users to obtain access to arbitrary SELinux roles by appending a :/ (colon slash) sequence, followed by the role name, to the username."},"relatedVulnerabilities":[{"id":"CVE-2008-3234","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"AV:N/AC:L/Au:S/C:P/I:P/A:P","metrics":{"baseScore":6.5,"impactScore":6.5,"exploitabilityScore":8},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2008-3234","cwe":"CWE-264","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2008-3234","date":"2026-10-08","epss":0.05773,"percentile":0.92898}],"urls":["http://www.securityfocus.com/bid/30276","https://exchange.xforce.ibmcloud.com/vulnerabilities/44037","https://www.exploit-db.com/exploits/6094"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2008-3234","description":"sshd in OpenSSH 4 on Debian GNU/Linux, and the 20070303 OpenSSH snapshot, allows remote authenticated users to obtain access to arbitrary SELinux roles by appending a :/ (colon slash) sequence, followed by the role name, to the username."}]},{"artifact":{"id":"cd98f8a6f1af133b","cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"name":"openjdk","purl":"pkg:generic/oracle/openjdk@1.8.0_292-b10","type":"binary","version":"1.8.0_292-b10","language":"","licenses":[],"metadata":{"release":{"fullVersion":"1.8.0_292-b10","javaVersion":"1.8.0_292","semanticVersion":"8.0.292+1"}},"locations":[{"path":"/opt/java/openjdk/release","layerID":"sha256:3f948fda930d995409da0214e9b9bc4d711c170e13d9c2b40161e81b6319addb","accessPath":"/opt/java/openjdk/release"}],"upstreams":[],"metadataType":"JavaVMInstallationMetadata"},"matchDetails":[{"fix":{"suggestedVersion":"1.8.0_502"},"type":"cpe-match","found":{"cpes":["cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*"],"vulnerabilityID":"CVE-2026-47058","versionConstraint":"< 1.8.0_502||>= 1.9, < 8.0.502||>= 9, < 11.0.32 (jvm)"},"matcher":"stock-matcher","searchedBy":{"cpes":["cpe:2.3:a:oracle:openjdk:1.8.0:update292:*:*:*:*:*:*"],"package":{"name":"openjdk","version":"1.8.0_292-b10"},"namespace":"nvd:cpe"}}],"vulnerability":{"id":"CVE-2026-47058","fix":{"state":"fixed","versions":["1.8.0_502","8.0.502","11.0.32"],"available":[{"date":"2026-08-15","kind":"first-observed","version":"1.8.0_502"},{"date":"2026-08-15","kind":"first-observed","version":"8.0.502"},{"date":"2026-08-15","kind":"first-observed","version":"11.0.32"}]},"cvss":[{"type":"Secondary","source":"secalert_us@oracle.com","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N","metrics":{"baseScore":7.4,"impactScore":5.2,"exploitabilityScore":2.3},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2026-47058","cwe":"CWE-502","type":"Secondary","source":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"epss":[{"cve":"CVE-2026-47058","date":"2026-10-08","epss":0.00387,"percentile":0.30702}],"risk":0.288315,"urls":["https://www.oracle.com/security-alerts/cpujul2026.html","https://openjdk.org/groups/vulnerability/advisories/2026-07-21"],"severity":"High","namespace":"nvd:cpe","advisories":[],"dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2026-47058","description":"Vulnerability in Oracle Java SE (component: Scripting).  Supported versions that are affected are Oracle Java SE: 8u491, 8u491-perf and  11.0.31. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE.  Successful attacks of this vulnerability can result in  unauthorized creation, deletion or modification access to critical data or all Oracle Java SE accessible data as well as  unauthorized access to critical data or complete access to all Oracle Java SE accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N)."},"relatedVulnerabilities":[]},{"artifact":{"id":"77ef9f927b15ea5e","cpes":["cpe:2.3:a:libgcrypt20:libgcrypt20:1.8.4-5\\+deb10u1:*:*:*:*:*:*:*"],"name":"libgcrypt20","purl":"pkg:deb/debian/libgcrypt20@1.8.4-5%2Bdeb10u1?arch=amd64&distro=debian-10.10","type":"deb","version":"1.8.4-5+deb10u1","language":"","licenses":["sha256:26c21767c3a769ed688e2fe3d890963bd0992b5a53ee9cd18babd680e665f131"],"locations":[{"path":"/var/lib/dpkg/status","layerID":"sha256:3dee86c3d2306a72661b3a6b9062fb8ee8d2cdb68ce9d3538f29ed8d402f5308","accessPath":"/var/lib/dpkg/status","annotations":{"evidence":"primary"}},{"path":"/usr/share/doc/libgcrypt20/copyright","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/usr/share/doc/libgcrypt20/copyright","annotations":{"evidence":"supporting"}},{"path":"/var/lib/dpkg/info/libgcrypt20:amd64.md5sums","layerID":"sha256:4e006334a6fdea37622f72b21eb75fe1484fc4f20ce8b8526187d6f7bd90a6fe","accessPath":"/var/lib/dpkg/info/libgcrypt20:amd64.md5sums","annotations":{"evidence":"supporting"}}],"upstreams":[]},"matchDetails":[{"type":"exact-direct-match","found":{"vulnerabilityID":"CVE-2019-13627","versionConstraint":"none (unknown)"},"matcher":"dpkg-matcher","searchedBy":{"distro":{"type":"debian","version":"10.10"},"package":{"name":"libgcrypt20","version":"1.8.4-5+deb10u1"},"namespace":"debian:distro:debian:10"}}],"vulnerability":{"id":"CVE-2019-13627","fix":{"state":"wont-fix","versions":[]},"cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":6.3,"impactScore":5.2,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-13627","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-13627","date":"2026-10-08","epss":0.0051,"percentile":0.41667}],"risk":0.28815,"urls":[],"severity":"Medium","namespace":"debian:distro:debian:10","advisories":[],"dataSource":"https://security-tracker.debian.org/tracker/CVE-2019-13627","description":"It was discovered that there was a ECDSA timing attack in the libgcrypt20 cryptographic library. Version affected: 1.8.4-5, 1.7.6-2+deb9u3, and 1.6.3-2+deb8u4. Versions fixed: 1.8.5-2 and 1.6.3-2+deb8u7."},"relatedVulnerabilities":[{"id":"CVE-2019-13627","cvss":[{"type":"Primary","source":"nvd@nist.gov","vector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N","metrics":{"baseScore":6.3,"impactScore":5.2,"exploitabilityScore":1.1},"version":"3.1","vendorMetadata":{}},{"type":"Primary","source":"nvd@nist.gov","vector":"AV:L/AC:H/Au:N/C:P/I:P/A:N","metrics":{"baseScore":2.6,"impactScore":5,"exploitabilityScore":2},"version":"2.0","vendorMetadata":{}}],"cwes":[{"cve":"CVE-2019-13627","cwe":"CWE-203","type":"Primary","source":"nvd@nist.gov"}],"epss":[{"cve":"CVE-2019-13627","date":"2026-10-08","epss":0.0051,"percentile":0.41667}],"urls":["http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00060.html","http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00018.html","http://www.openwall.com/lists/oss-security/2019/10/02/2","https://github.com/gpg/libgcrypt/releases/tag/libgcrypt-1.8.5","https://lists.debian.org/debian-lts-announce/2019/09/msg00024.html","https://lists.debian.org/debian-lts-announce/2020/01/msg00001.html","https://minerva.crocs.fi.muni.cz/","https://security-tracker.debian.org/tracker/CVE-2019-13627","https://security.gentoo.org/glsa/202003-32","https://usn.ubuntu.com/4236-1/","https://usn.ubuntu.com/4236-2/","https://usn.ubuntu.com/4236-3/"],"severity":"Medium","namespace":"nvd:cpe","dataSource":"https://nvd.nist.gov/vuln/detail/CVE-2019-13627","description":"It was discovered that there was a ECDSA timing attack in the libgcrypt20 cryptographic library. Version affected: 1.8.4-5, 1.7.6-2+deb9u3, and 1.6.3-2+deb8u4. Versions fixed: 1.8.5-2 and 1.6.3-2+deb8u7."}]}],"grade":"F","score":"0.00","as_of":"2026-10-10T00:08:05.520Z","grype_db_version":"2026-10-09T06:32:32.000Z"}