gnu

1,205 tracked vulnerabilities.

CVE-2021-28237 CRITICAL
LibreDWG v0.12.3 - Heap-Based Buffer Overflow in decode_preR13
Dec 02, 2021
CVSS 9.8
EPSS 0.00
CVE-2021-28236 HIGH
LibreDWG v0.12.3 - Memory Corruption
Dec 02, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-44227 HIGH
GNU Mailman < 2.1.38 - Cross-Site Request Forgery via Admin Request
Dec 02, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-37322 HIGH
GNU Binutils < 2.32 - Use After Free
Nov 18, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-43332 MEDIUM
GNU Mailman <2.1.36 - Info Disclosure
Nov 12, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-43331 MEDIUM
GNU Mailman < 2.1.36 - Cross-Site Scripting via User Options Page
Nov 12, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-43414 HIGH
GNU Hurd <0.9 - Privilege Escalation
Nov 07, 2021
CVSS 7.0
EPSS 0.00
CVE-2021-43413 HIGH
GNU Hurd <0.9 - Privilege Escalation
Nov 07, 2021
CVSS 8.8
EPSS 0.01
CVE-2021-43412 HIGH
GNU Hurd < 0.9.20210404-9 - Use-After-Free via Fake Notification Messages
Nov 07, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-43411 HIGH
GNU Hurd <0.9 - Privilege Escalation
Nov 07, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-43396 HIGH
GNU C Library 2.34 - Info Disclosure
Nov 04, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-42097 HIGH
GNU Mailman < 2.1.35 - Cross-Site Request Forgery via Shared csrf_token
Oct 21, 2021
CVSS 8.0
EPSS 0.01
CVE-2021-42096 MEDIUM
GNU Mailman < 2.1.35 - Privilege Escalation via CSRF Token Brute-Force Attack
Oct 21, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-39537 HIGH
ncurses < 6.2.1 - Heap-Based Buffer Overflow in _nc_captoinfo
Sep 20, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-39530 HIGH
libredwg < 0.10.1.3751 - Heap-Based Buffer Overflow in bit_wcs2nlen
Sep 20, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-39528 HIGH
libredwg < 0.10.1.3751 - Double Free in dwg_free_MATERIAL_private
Sep 20, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-39527 HIGH
libredwg < 0.10.1.3751 - Heap-Based Buffer Overflow in appinfo_private()
Sep 20, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-39525 HIGH
libredwg < 0.10.1.3751 - Heap-Based Buffer Overflow in bit_read_fixed()
Sep 20, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-39523 MEDIUM
libredwg < 0.10.1.3751 - Denial of Service via NULL Pointer Dereference in check_POLYLINE_handles
Sep 20, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-39522 HIGH
libredwg < 0.10.1.3751 - Heap-Based Buffer Overflow in bit_wcs2len()
Sep 20, 2021
CVSS 8.8
EPSS 0.00
CVE-2021-39521 MEDIUM
libredwg < 0.10.1.3751 - Denial of Service via NULL Pointer Dereference in bit_read_BB
Sep 20, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-40491 MEDIUM
GNU Inetutils <2.2 - Info Disclosure
Sep 03, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-38604 HIGH
GNU C Library < 2.34 - Null Pointer Dereference
Aug 12, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-38185 HIGH
GNU cpio < 2.13 - Remote Code Execution via Pattern File Integer Overflow
Aug 08, 2021
CVSS 7.8
EPSS 0.26
CVE-2021-35942 CRITICAL
GNU C Library <2.33 - Memory Corruption
Jul 22, 2021
CVSS 9.1
EPSS 0.01