Known vulnerabilities in yaml (Alpine package)
Vendor:
Alpine Linux Development Team
Software:
yaml (Alpine package)
Software CPE:
cpe:2.3:o:alpine:yaml_alpine_package:*:*:*:*:*:alpine_linux:*:*
Website:
https://alpinelinux.org/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
6.9
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU33057 - Improper input validation CVE-2014-9130 |
CWE-20 | Medium | 0.1.6-r1, 0.1.7-r0 | 08.12.2014 |
SB2015012904 SB2015021104 SB2015021105 and 8 more |
||
| #VU33063 - Command injection CVE-2014-8990 |
CWE-77 | Medium | 0.1.6-r1, 0.1.7-r0 | 05.12.2014 |
SB2017011016 SB2017011019 SB2015012304 and 7 more |
||
| #VU33092 - Heap-based Buffer Overflow CVE-2014-2525 |
CWE-122 | Medium | 0.1.6-r0 | 28.03.2014 |
SB2014042405 SB2014041109 SB2014052301 and 3 more |