Vulnerabilities
Vulnerable Software
Debian:  >> Debian Linux  >> 10.0  Security Vulnerabilities
Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function.
CVSS Score
7.5
EPSS Score
0.04
Published
2022-01-26
Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
CVSS Score
5.5
EPSS Score
0.015
Published
2022-01-26
Nullptr dereference when a null char is present in a proto symbol. The symbol is parsed incorrectly, leading to an unchecked call into the proto file's name during generation of the resulting error message. Since the symbol is incorrectly parsed, the file is nullptr. We recommend upgrading to version 3.15.0 or greater.
CVSS Score
6.5
EPSS Score
0.027
Published
2022-01-26
CVE-2021-22600
Known exploited
A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or deny service. We recommend upgrading kernel past the effected versions or rebuilding past ec6af094ea28f0f2dda1a6a33b14cd57e36a9755
CVSS Score
6.6
EPSS Score
0.059
Published
2022-01-26
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVSS Score
8.4
EPSS Score
0.016
Published
2022-01-26
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVSS Score
6.1
EPSS Score
0.013
Published
2022-01-26
In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.
CVSS Score
9.1
EPSS Score
0.02
Published
2022-01-26
Access of Memory Location Before Start of Buffer in GitHub repository vim/vim prior to 8.2.
CVSS Score
8.4
EPSS Score
0.006
Published
2022-01-25
A buffer overflow vulnerability in CDataList of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execution using a crafted JWW document.
CVSS Score
7.8
EPSS Score
0.019
Published
2022-01-25
In LibreCAD 2.2.0, a NULL pointer dereference in the HATCH handling of libdxfrw allows an attacker to crash the application using a crafted DXF document.
CVSS Score
5.5
EPSS Score
0.009
Published
2022-01-25


Contact Us

Shodan ® - All rights reserved