Skip to main content

Vendor/product archive

netapp / hci_bootstrap_os CVEs

Beta · best-effort

27 CVEs tagged to netapp / hci_bootstrap_os1 Critical, 12 High, 12 Medium, 2 Low, 0 Unrated.

CVE-2024-33602

Published May 6, 2024

nscd: netgroup cache assumes NSS callback uses in-buffer strings The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the NSS callback does not store all…

CVSS 7.4 · High

CVE-2024-33599

Published May 6, 2024

nscd: Stack-based buffer overflow in netgroup cache If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then a subsequent client request fo…

CVSS 8.1 · High

CVE-2022-30115

Published Jun 2, 2022

Using its HSTS support, curl can be instructed to use HTTPS directly insteadof using an insecure clear-text HTTP step even when HTTP is provided in theURL. This mechanism could be…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2022-27780

Published Jun 2, 2022

The curl URL parser wrongly accepts percent-encoded URL separators like '/'when decoding the host name part of a URL, making it a *different* URL usingthe wrong host name when it…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2022-27779

Published Jun 2, 2022

libcurl wrongly allows cookies to be set for Top Level Domains (TLDs) if thehost name is provided with a trailing dot.curl can be told to receive and send cookies. curl's "cookie…

CVSS 5.3 · Medium
Showing 1-25 of 27 CVEsPage 1 of 2