Vulnerabilities > Linuxfoundation > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-14 CVE-2022-0324 Classic Buffer Overflow vulnerability in Linuxfoundation Software for Open Networking in the Cloud 202111
There is a vulnerability in DHCPv6 packet parsing code that could be explored by remote attacker to craft a packet that could cause buffer overflow in a memcpy call, leading to out-of-bounds memory write that would cause dhcp6relay to crash.
network
low complexity
linuxfoundation CWE-120
7.5
2022-10-07 CVE-2022-32589 Improper Resource Shutdown or Release vulnerability in multiple products
In Wi-Fi driver, there is a possible way to disconnect Wi-Fi due to an improper resource release.
network
low complexity
linuxfoundation google CWE-404
7.5
2022-10-03 CVE-2022-38817 Missing Authentication for Critical Function vulnerability in Linuxfoundation Dapr Dashboard
Dapr Dashboard v0.1.0 through v0.10.0 is vulnerable to Incorrect Access Control that allows attackers to obtain sensitive data.
network
low complexity
linuxfoundation CWE-306
7.5
2022-09-09 CVE-2022-31006 Unspecified vulnerability in Linuxfoundation Indy-Node
indy-node is the server portion of Hyperledger Indy, a distributed ledger purpose-built for decentralized identity.
network
low complexity
linuxfoundation
7.5
2022-09-06 CVE-2022-31020 Unspecified vulnerability in Linuxfoundation Indy-Node
Indy Node is the server portion of a distributed ledger purpose-built for decentralized identity.
network
low complexity
linuxfoundation
8.8
2022-07-11 CVE-2022-31073 Unspecified vulnerability in Linuxfoundation Kubeedge
KubeEdge is an open source system for extending native containerized application orchestration capabilities to hosts at Edge.
network
low complexity
linuxfoundation
7.5
2022-05-17 CVE-2022-29162 runc is a CLI tool for spawning and running containers on Linux according to the OCI specification.
local
low complexity
linuxfoundation fedoraproject
7.8
2022-03-25 CVE-2022-24778 Incorrect Authorization vulnerability in multiple products
The imgcrypt library provides API exensions for containerd to support encrypted container images and implements the ctd-decoder command line tool for use by containerd to decrypt encrypted container images.
network
low complexity
linuxfoundation fedoraproject CWE-863
7.5
2022-03-25 CVE-2022-24777 Unspecified vulnerability in Linuxfoundation Grpc Swift
grpc-swift is the Swift language implementation of gRPC, a remote procedure call (RPC) framework.
network
low complexity
linuxfoundation
7.5
2022-03-03 CVE-2022-23648 containerd is a container runtime available as a daemon for Linux and Windows.
network
low complexity
linuxfoundation debian fedoraproject
7.5