Known vulnerabilities in Tanzu Greenplum for Kubernetes 1.12.0 - page 3

Vendor: Broadcom
Version: 1.12.0
Software CPE: cpe:2.3:a:broadcom:tanzu_greenplum_for_kubernetes:*:*:*:*:*:*:*:*
Total vulnerabilities: 58
Public exploits: 1
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Tanzu Greenplum for Kubernetes version 1.12.0 Tanzu Greenplum for Kubernetes 1.12.0 is affected by 58 vulnerabilities: 1 critical, 23 high, 9 medium, 25 low Critical High Medium Low

Vulnerabilities (58)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU64274 - Out-of-bounds read
CVE-2022-29458
CWE-125 Medium
No
No
2.0.0 14.06.2022 SB2022061418
SB2022061419
SB2022072842
and 29 more
#VU63055 - Unchecked Return Value
CVE-2019-9704
CWE-252 Low
No
No
2.0.0 11.05.2022 SB2022051133
SB2022051206
SB2022051207
and 7 more
#VU63054 - Allocation of Resources Without Limits or Throttling
CVE-2019-9705
CWE-770 Low
No
No
2.0.0 11.05.2022 SB2022051133
SB2022051206
SB2022051207
and 7 more
#VU63053 - Use After Free
CVE-2019-9706
CWE-416 Low
No
No
2.0.0 11.05.2022 SB2022051133
SB2022051206
SB2022051207
and 3 more
#VU61671 - Memory corruption
CVE-2018-25032
CWE-119 Medium
No
No
2.0.0 28.03.2022 SB2022032844
SB2022032845
SB2022033018
and 192 more
#VU57577 - Out-of-bounds write
CVE-2021-39537
CWE-787 High
No
No
2.0.0 21.10.2021 SB2021102119
SB2022061419
SB2021102025
and 18 more
#VU47741 - Heap-based Buffer Overflow
CVE-2020-15999
CWE-122 Critical
Public exploit available
Exploited
2.0.0 20.10.2020 SB2020102038
SB2020102039
SB2020102040
and 43 more
#VU48592 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2020-26116
CWE-93 Medium
No
No
2.0.0 27.09.2020 SB2020092711
SB2020112308
SB2020112309
and 34 more
#VU45794 - Expired pointer dereference
CVE-2020-8231
CWE-825 Low
No
No
2.0.0 20.08.2020 SB2020081916
SB2020082001
SB2020081920
and 29 more
#VU30281 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-20807
CWE-78 Low
No
No
2.0.0 28.05.2020 SB2020052815
SB2020061148
SB2020110918
and 9 more
#VU21793 - Buffer over-read
CVE-2019-17595
CWE-126 Medium
No
No
2.0.0 15.10.2019 SB2019101515
SB2019112401
SB2019112402
and 23 more
#VU21792 - Heap-based Buffer Overflow
CVE-2019-17594
CWE-122 High
No
No
2.0.0 15.10.2019 SB2019101515
SB2019112401
SB2019112402
and 23 more
#VU19572 - Improper input validation
CVE-2019-1010204
CWE-20 Low
No
No
2.0.0 31.07.2019 SB2019022402
SB2020042840
SB2022032836
and 7 more
#VU18290 - Improper input validation
CVE-2018-1000654
CWE-20 Low
No
No
2.0.0 17.04.2019 SB2018082017
SB2019060302
SB2019060502
and 6 more
#VU15935 - NULL Pointer Dereference
CVE-2018-19211
CWE-476 Low
No
No
2.0.0 17.11.2018 SB2018111702
SB2018121002
SB2018121009
and 2 more
#VU12202 - Stack-based buffer overflow
CVE-2017-16879
CWE-121 High
No
No
2.0.0 26.04.2018 SB2018041708
SB2017120121
SB2018012328
and 2 more
#VU31389 - Exposure of sensitive information to an unauthorized actor
CVE-2017-17087
CWE-200 Low
No
No
2.0.0 01.12.2017 SB2017120122
SB2020112312
SB2021111514
and 10 more
#VU7010 - Permissions, Privileges, and Access Controls
CVE-2017-9525
CWE-264 Low
No
No
2.0.0 12.06.2017 SB2017061204
SB2017061209
SB2022051133
and 5 more


Showing elements 41 - 60 out of 58