Skip to main content

Vendor/product archive

oracle / communications_cloud_native_core_policy CVEs

Beta · best-effort

119 CVEs tagged to oracle / communications_cloud_native_core_policy5 Critical, 65 High, 45 Medium, 4 Low, 0 Unrated.

CVE-2022-22963

Published Apr 1, 2022

In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as a…

CVSS 9.8 · Critical
evidence mentions
17
Buzz score
77.3
KEV listedPublic PoC observed

CVE-2022-0322

Published Mar 25, 2022

A flaw was found in the sctp_make_strreset_req function in net/sctp/sm_make_chunk.c in the SCTP network protocol in the Linux kernel with a local user privilege access. In this fl…

CVSS 5.5 · Medium

CVE-2021-4002

Published Mar 3, 2022

A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment w…

CVSS 4.4 · Medium

CVE-2022-25636

Published Feb 24, 2022

net/netfilter/nf_dup_netdev.c in the Linux kernel 5.4 through 5.6.10 allows local users to gain privileges because of a heap out-of-bounds write. This is related to nf_tables_offl…

CVSS 7.8 · High

CVE-2021-3773

Published Feb 16, 2022

A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5

CVE-2022-23181

Published Jan 27, 2022

The fix for bug CVE-2020-9484 introduced a time of check, time of use vulnerability into Apache Tomcat 10.1.0-M1 to 10.1.0-M8, 10.0.0-M5 to 10.0.14, 9.0.35 to 9.0.56 and 8.5.55 to…

CVSS 7.0 · High

CVE-2021-22569

Published Jan 10, 2022

An issue in protobuf-java allowed the interleaving of com.google.protobuf.UnknownFieldSet fields in such a way that would be processed out of order. A small malicious payload can…

CVSS 7.5 · High
Showing 1-25 of 119 CVEsPage 1 of 5