Vulnerabilities > Linuxfoundation

DATE CVE VULNERABILITY TITLE RISK
2021-12-17 CVE-2021-36779 Missing Authentication for Critical Function vulnerability in Linuxfoundation Longhorn
A Missing Authentication for Critical Function vulnerability in SUSE Longhorn allows any workload in the cluster to execute any binary present in the image on the host without authentication.
low complexity
linuxfoundation CWE-306
critical
9.6
2021-12-17 CVE-2021-36780 Missing Authentication for Critical Function vulnerability in Linuxfoundation Longhorn
A Missing Authentication for Critical Function vulnerability in longhorn of SUSE Longhorn allows attackers to connect to a longhorn-engine replica instance granting it the ability to read and write data to and from a replica that they should not have access to.
low complexity
linuxfoundation CWE-306
8.1
2021-12-13 CVE-2021-41272 Incorrect Conversion between Numeric Types vulnerability in Linuxfoundation Besu 21.10.0/21.10.1
Besu is an Ethereum client written in Java.
network
low complexity
linuxfoundation CWE-681
7.5
2021-12-06 CVE-2021-43784 Integer Overflow or Wraparound vulnerability in multiple products
runc is a CLI tool for spawning and running containers on Linux according to the OCI specification.
network
high complexity
linuxfoundation debian CWE-190
5.0
2021-11-26 CVE-2021-43776 Cross-site Scripting vulnerability in Linuxfoundation Auth Backend
Backstage is an open platform for building developer portals.
network
low complexity
linuxfoundation CWE-79
6.1
2021-11-18 CVE-2021-43667 NULL Pointer Dereference vulnerability in Linuxfoundation Fabric 1.4.0/2.0.0/2.1.0
A vulnerability has been detected in HyperLedger Fabric v1.4.0, v2.0.0, v2.1.0.
network
low complexity
linuxfoundation CWE-476
7.5
2021-11-18 CVE-2021-43669 HTTP Request Smuggling vulnerability in Linuxfoundation Fabric
A vulnerability has been detected in HyperLedger Fabric v1.4.0, v2.0.0, v2.0.1, v2.3.0.
network
low complexity
linuxfoundation CWE-444
7.5
2021-11-17 CVE-2021-41190 Type Confusion vulnerability in multiple products
The OCI Distribution Spec project defines an API protocol to facilitate and standardize the distribution of content.
network
low complexity
linuxfoundation fedoraproject CWE-843
5.0
2021-10-19 CVE-2021-41131 Path Traversal vulnerability in Linuxfoundation the Update Framework
python-tuf is a Python reference implementation of The Update Framework (TUF).
network
high complexity
linuxfoundation CWE-22
8.7
2021-10-18 CVE-2021-41151 Path Traversal vulnerability in Linuxfoundation Backstage
Backstage is an open platform for building developer portals.
network
low complexity
linuxfoundation CWE-22
4.9