Skip to main content

Vendor/product archive

netapp / h300s_firmware CVEs

Beta · best-effort

276 CVEs tagged to netapp / h300s_firmware16 Critical, 165 High, 88 Medium, 7 Low, 0 Unrated.

CVE-2021-4197

Published Mar 23, 2022

An unprivileged write to the file handler flaw in the Linux kernel's control groups and namespaces subsystem was found in the way users have access to some less privileged process…

CVSS 7.8 · High

CVE-2022-0635

Published Mar 23, 2022

Versions affected: BIND 9.18.0 When a vulnerable version of named receives a series of specific queries, the named process will eventually terminate due to a failed assertion chec…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2022-0396

Published Mar 23, 2022

BIND 9.16.11 -> 9.16.26, 9.17.0 -> 9.18.0 and versions 9.16.11-S1 -> 9.16.26-S1 of the BIND Supported Preview Edition. Specifically crafted TCP streams can cause connections to BI…

CVSS 5.3 · Medium

CVE-2022-27666

Published Mar 23, 2022

A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to ov…

CVSS 7.8 · High
evidence mentions
2
Buzz score
17.5

CVE-2021-45868

Published Mar 18, 2022

In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c us…

CVSS 5.5 · Medium

CVE-2022-27223

Published Mar 16, 2022

In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.

CVSS 8.8 · High

CVE-2022-26966

Published Mar 12, 2022

An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitive information from heap memory via crafted frame lengths fr…

CVSS 5.5 · Medium

CVE-2021-3739

Published Mar 10, 2022

A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw a…

CVSS 7.1 · High

CVE-2022-0646

Published Feb 18, 2022

A flaw use after free in the Linux kernel Management Component Transport Protocol (MCTP) subsystem was found in the way user triggers cancel_work_sync after the unregister_netdev…

CVSS 7.8 · High

CVE-2021-4090

Published Feb 18, 2022

An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4_decode_bitmap4 in fs/nfsd/nfs…

CVSS 7.1 · High

CVE-2022-25265

Published Feb 16, 2022

In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approximately 2003 (e.g., with GCC 3.2.2 and Linux kernel 2.4.20).…

CVSS 7.8 · High
Showing 151-175 of 276 CVEsPage 7 of 12