Known vulnerabilities in cvs (Alpine package)
Vendor:
Alpine Linux Development Team
Software:
cvs (Alpine package)
Software CPE:
cpe:2.3:o:alpine:cvs_alpine_package:*:*:*:*:*:alpine_linux:*:*
Website:
https://alpinelinux.org/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU29260 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2017-12836 |
CWE-78 | High | 1.12.12-r0 | 25.06.2020 |
SB2017082412 SB2020022448 SB2017092405 and 2 more |
||
| #VU29257 - Heap-based Buffer Overflow CVE-2012-0804 |
CWE-122 | Medium | 1.12.12-r0 | 25.06.2020 |
SB2012052901 SB2020022447 SB2012030403 and 1 more |
||
| #VU31917 - Heap-based Buffer Overflow CVE-2010-3846 |
CWE-122 | High | 1.12.12-r0 | 05.11.2010 |
SB2020022446 |