Skip to main content

Vendor/product archive

netapp / h410s CVEs

Beta · best-effort

280 CVEs tagged to netapp / h410s23 Critical, 170 High, 80 Medium, 7 Low, 0 Unrated.

CVE-2022-34918

Published Jul 4, 2022

An issue was discovered in the Linux kernel through 5.18.9. A type confusion bug in nft_set_elem_init (leading to a buffer overflow) could be used by a local attacker to escalate…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2022-2274

Published Jul 1, 2022

The OpenSSL 3.0.4 release introduced a serious bug in the RSA implementation for X86_64 CPUs supporting the AVX512IFMA instructions. This issue makes the RSA implementation with 2…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5

CVE-2022-1998

Published Jun 9, 2022

A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local…

CVSS 7.8 · High

CVE-2022-32250

Published Jun 2, 2022

net/netfilter/nf_tables_api.c in the Linux kernel through 5.18.1 allows a local user (able to create user/net namespaces) to escalate privileges to root because an incorrect NFT_S…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2022-30115

Published Jun 2, 2022

Using its HSTS support, curl can be instructed to use HTTPS directly insteadof using an insecure clear-text HTTP step even when HTTP is provided in theURL. This mechanism could be…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2022-27780

Published Jun 2, 2022

The curl URL parser wrongly accepts percent-encoded URL separators like '/'when decoding the host name part of a URL, making it a *different* URL usingthe wrong host name when it…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2022-27779

Published Jun 2, 2022

libcurl wrongly allows cookies to be set for Top Level Domains (TLDs) if thehost name is provided with a trailing dot.curl can be told to receive and send cookies. curl's "cookie…

CVSS 5.3 · Medium

CVE-2022-1652

Published Jun 2, 2022

Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a special…

CVSS 7.8 · High

CVE-2022-1882

Published May 26, 2022

A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the pipe post_one_notification() after free_pipe_info() that is…

CVSS 7.8 · High

CVE-2022-1734

Published May 18, 2022

A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in drivers/nfc/nfcmrvl/main.c can lead to use after free both read or write when non synchronized between cleanup rout…

CVSS 7.0 · High

CVE-2022-29581

Published May 17, 2022

Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege escalation to root. This issue affects: Linux Kernel version…

CVSS 7.8 · High

CVE-2022-1679

Published May 16, 2022

A use-after-free flaw was found in the Linux kernel’s Atheros wireless adapter driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messa…

CVSS 7.8 · High
Showing 126-150 of 280 CVEsPage 6 of 12