Known vulnerabilities in Tanzu Greenplum for Kubernetes

Vendor: Broadcom
Software CPE: cpe:2.3:a:broadcom:tanzu_greenplum_for_kubernetes:*:*:*:*:*:*:*:*
Total vulnerabilities: 111
Public exploits: 4
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Tanzu Greenplum for Kubernetes Tanzu Greenplum for Kubernetes is affected by 111 known vulnerabilities: 1 critical, 37 high, 29 medium, 44 low Critical High Medium Low

Vulnerabilities (111)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU70474 - Integer overflow
CVE-2022-47629
CWE-190 High
No
No
1.2.0 22.12.2022 SB2022122202
SB2022122204
SB2022122205
and 98 more
#VU70131 - Use After Free
CVE-2022-3591
CWE-416 High
No
No
2.0.0 13.12.2022 SB2022121301
SB2022121302
SB2022121303
and 13 more
#VU69913 - Heap-based Buffer Overflow
CVE-2022-38533
CWE-122 Low
No
No
2.0.0 05.12.2022 SB2022120549
SB2022120601
SB2022120603
and 12 more
#VU69392 - Resource exhaustion
CVE-2022-45061
CWE-400 Medium
No
No
2.0.0 16.11.2022 SB2022111650
SB2022112824
SB2022112856
and 125 more
#VU69362 - Out-of-bounds read
CVE-2022-41916
CWE-125 Medium
No
No
2.0.0 16.11.2022 SB2022111610
SB2022111621
SB2022112302
and 10 more
#VU68964 - Stack-based buffer overflow
CVE-2022-3324
CWE-121 High
No
No
2.0.0 03.11.2022 SB2022110330
SB2022112963
SB2022121302
and 20 more
#VU67627 - Use After Free
CVE-2022-3256
CWE-416 High
No
No
2.0.0 24.09.2022 SB2022092409
SB2022092410
SB2022121302
and 14 more
#VU67050 - Use After Free
CVE-2022-3099
CWE-416 High
No
No
2.0.0 06.09.2022 SB2022090671
SB2022090672
SB2022112963
and 18 more
#VU66635 - Out-of-bounds read
CVE-2022-2581
CWE-125 Low
No
No
2.0.0 18.08.2022 SB2022081854
SB2022090924
SB2022110232
and 12 more
#VU65675 - NULL Pointer Dereference
CVE-2022-24808
CWE-476 Low
No
No
1.4.0 21.07.2022 SB2022072138
SB2022072139
SB2022080133
and 17 more
#VU65674 - Out-of-bounds write
CVE-2022-24807
CWE-787 Medium
No
No
1.4.0 21.07.2022 SB2022072138
SB2022072139
SB2022080133
and 16 more
#VU65673 - Improper input validation
CVE-2022-24806
CWE-20 Low
No
No
1.4.0 21.07.2022 SB2022072138
SB2022072139
SB2022080133
and 16 more
#VU65672 - NULL Pointer Dereference
CVE-2022-24809
CWE-476 Low
No
No
1.4.0 21.07.2022 SB2022072138
SB2022072139
SB2022080133
and 17 more
#VU65671 - Out-of-bounds write
CVE-2022-24805
CWE-787 Medium
No
No
1.4.0 21.07.2022 SB2022072138
SB2022072139
SB2022080133
and 19 more
#VU65394 - Use After Free
CVE-2022-2345
CWE-416 Low
No
No
2.0.0 18.07.2022 SB2022071905
SB2022082104
SB2022090924
and 18 more
#VU54337 - Improper input validation
CVE-2016-10228
CWE-20 Low
No
No
2.0.0 23.06.2021 SB2017030207
SB2021062314
SB2021062315
and 21 more
#VU50329 - Out-of-bounds read
CVE-2019-25013
CWE-125 Low
No
No
2.0.0 04.01.2021 SB2021020413
SB2021020414
SB2021020710
and 36 more
#VU50404 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-27618
CWE-835 Medium
No
No
2.0.0 04.01.2021 SB2021020709
SB2021020710
SB2021020711
and 31 more
#VU12270 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2017-12132
CWE-451 Low
No
No
2.0.0 27.04.2018 SB2018022812
SB2018022022
SB2018021521
and 8 more
#VU12267 - Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2017-11671
CWE-338 Low
No
No
2.0.0 27.04.2018 SB2017032501
SB2018041052
SB2022120851
and 2 more


Showing elements 1 - 20 out of 111