Skip to main content

Vendor/product archive

netapp / h500s_firmware CVEs

Beta · best-effort

275 CVEs tagged to netapp / h500s_firmware16 Critical, 164 High, 88 Medium, 7 Low, 0 Unrated.

CVE-2022-0635

Published Mar 23, 2022

Versions affected: BIND 9.18.0 When a vulnerable version of named receives a series of specific queries, the named process will eventually terminate due to a failed assertion chec…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2022-0396

Published Mar 23, 2022

BIND 9.16.11 -> 9.16.26, 9.17.0 -> 9.18.0 and versions 9.16.11-S1 -> 9.16.26-S1 of the BIND Supported Preview Edition. Specifically crafted TCP streams can cause connections to BI…

CVSS 5.3 · Medium

CVE-2022-27666

Published Mar 23, 2022

A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to ov…

CVSS 7.8 · High
evidence mentions
2
Buzz score
17.5

CVE-2021-45868

Published Mar 18, 2022

In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c us…

CVSS 5.5 · Medium

CVE-2022-27223

Published Mar 16, 2022

In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.

CVSS 8.8 · High

CVE-2022-26966

Published Mar 12, 2022

An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitive information from heap memory via crafted frame lengths fr…

CVSS 5.5 · Medium

CVE-2021-3739

Published Mar 10, 2022

A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw a…

CVSS 7.1 · High

CVE-2022-0646

Published Feb 18, 2022

A flaw use after free in the Linux kernel Management Component Transport Protocol (MCTP) subsystem was found in the way user triggers cancel_work_sync after the unregister_netdev…

CVSS 7.8 · High

CVE-2021-4090

Published Feb 18, 2022

An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4_decode_bitmap4 in fs/nfsd/nfs…

CVSS 7.1 · High

CVE-2022-25265

Published Feb 16, 2022

In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approximately 2003 (e.g., with GCC 3.2.2 and Linux kernel 2.4.20).…

CVSS 7.8 · High
Showing 151-175 of 275 CVEsPage 7 of 11