Known vulnerabilities in containerd - page 2
Vendor:
Fedoraproject
Software:
containerd
Software CPE:
cpe:2.3:o:fedoraproject:containerd:*:*:*:*:*:fedora:*:*
Website:
https://getfedora.org/
Total vulnerabilities:
46
Public exploits:
4
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2.3.2-1.fc45
2.1.5-1.fc43
2.0.7-1.fc42
1.7.29-1.fc41
2.1.1-1.fc43
1.4.3-1.fc33
1.2.14-1.el7
1.7.27-1.fc41
1.6.14-2.fc36
1.6.14-2.fc37
1.6.8-4.fc37
1.6.8-2.fc37
1.6.6-5.fc36
1.6.6-4.fc35
1.6.6-4.fc37
1.6.6-4.fc36
1.6.6-1.fc35
1.6.6-1.fc36
1.6.2-3.fc34
1.6.2-2.fc35
1.6.2-2.fc36
1.6.2-2.fc37
1.6.2-2.fc34
1.6.2-1.fc36
1.6.2-1.fc35
1.6.1-1.fc36
1.6.1-1.fc35
1.6.1-1.fc34
1.6.0~rc.2-2.fc35
1.6.0~rc.2-3.fc34
1.5.9-1.fc35
1.5.9-1.fc34
1.5.9-1.fc36
1.5.8-1.fc34
1.5.8-1.fc35
1.5.8-1.fc36
1.5.7-1.fc34
1.5.7-1.fc35
1.5.7-1.fc36
1.5.5-1.fc34
1.4.4-1.fc33
1.6.23-1.fc37
1.6.23-1.fc38
1.6.19-1.fc38
1.6.19-1.fc36
1.6.19-1.fc37
Vulnerabilities (46)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU76839 - Server-Side Request Forgery (SSRF) CVE-2022-29153 |
CWE-918 | Medium | 1.6.14-2.fc36, 1.6.14-2.fc37 | 05.06.2023 |
SB2023060515 SB2023010241 SB2023091924 and 8 more |
||
| #VU72321 - Improper Privilege Management CVE-2022-36109 |
CWE-269 | Low | 1.6.8-2.fc37 | 16.02.2023 |
SB2023021619 SB2023021620 SB2023031742 and 14 more |
||
| #VU72320 - Improper Privilege Management CVE-2023-25173 |
CWE-269 | Low | 1.6.19-1.fc36, 1.6.19-1.fc37, 1.6.19-1.fc38, 1.6.23-1.fc37, 1.6.23-1.fc38 | 16.02.2023 |
SB2023021620 SB2023050808 SB2023051069 and 52 more |
||
| #VU72319 - Resource exhaustion CVE-2023-25153 |
CWE-400 | Medium | 1.6.19-1.fc36, 1.6.19-1.fc37, 1.6.19-1.fc38, 1.6.23-1.fc37, 1.6.23-1.fc38 | 16.02.2023 |
SB2023021620 SB2023051934 SB2023060110 and 30 more |
||
| #VU70039 - Resource exhaustion CVE-2022-23471 |
CWE-400 | Medium | 1.6.14-2.fc37, 1.6.23-1.fc37, 1.6.23-1.fc38 | 08.12.2022 |
SB2022120802 SB2022121324 SB2022122112 and 27 more |
||
| #VU69422 - Exposure of sensitive information to an unauthorized actor CVE-2022-3920 |
CWE-200 | Medium | 1.6.14-2.fc36 | 18.11.2022 |
SB2022111823 SB2023010241 SB2022121635 and 4 more |
||
| #VU66447 - Overly Permissive Cross-domain Whitelist CVE-2022-1996 |
CWE-942 | Low | 1.6.6-4.fc35, 1.6.6-4.fc36 | 12.08.2022 |
SB2022081216 SB2022081228 SB2022081229 and 65 more |
||
| #VU66122 - Use of Insufficiently Random Values CVE-2022-30629 |
CWE-330 | Medium | 1.6.6-4.fc36 | 05.08.2022 |
SB2022080501 SB2022080503 SB2022081106 and 81 more |
||
| #VU64416 - Improper preservation of permissions CVE-2021-41091 |
CWE-281 | Low | 1.5.7-1.fc34, 1.5.7-1.fc35 | 15.06.2022 |
SB2021100419 SB2022061528 SB2021101264 and 13 more |
||
| #VU64415 - Improper preservation of permissions CVE-2021-41089 |
CWE-281 | Low | 1.5.7-1.fc34, 1.5.7-1.fc35 | 15.06.2022 |
SB2021100419 SB2022061528 SB2021101264 and 14 more |
||
| #VU64269 - Integer overflow CVE-2022-28327 |
CWE-190 | Low | 1.6.6-4.fc35, 1.6.6-4.fc36 | 14.06.2022 |
SB2022041004 SB2022061422 SB2022061506 and 90 more |
||
| #VU64266 - Buffer overflow CVE-2022-24675 |
CWE-120 | Low | 1.6.6-4.fc35, 1.6.6-4.fc36 | 14.06.2022 |
SB2022041004 SB2022061422 SB2022061511 and 88 more |
||
| #VU64007 - Resource exhaustion CVE-2022-31030 |
CWE-400 | Medium | 1.6.6-1.fc35, 1.6.6-1.fc36 | 07.06.2022 |
SB2022060702 SB2022061206 SB2022061326 and 23 more |
||
| #VU63173 - Permissions, Privileges, and Access Controls CVE-2022-29526 |
CWE-264 | Low | 1.6.6-4.fc35, 1.6.6-4.fc36 | 14.05.2022 |
SB2022051403 SB2022051404 SB2022062928 and 65 more |
||
| #VU62039 - Use of a Broken or Risky Cryptographic Algorithm CVE-2022-27191 |
CWE-327 | Medium | 1.6.2-2.fc35, 1.6.2-2.fc36, 1.6.2-2.fc37, 1.6.2-3.fc34, 1.6.6-4.fc36 | 10.04.2022 |
SB2022041004 SB2022041406 SB2022081226 and 91 more |
||
| #VU61600 - Permissions, Privileges, and Access Controls CVE-2022-24769 |
CWE-264 | Medium | 1.6.2-1.fc35, 1.6.2-1.fc36, 1.6.2-2.fc34 | 24.03.2022 |
SB2022032414 SB2022032503 SB2022042141 and 29 more |
||
| #VU61599 - Improper input validation CVE-2022-21698 |
CWE-20 | Medium | 1.6.6-4.fc35, 1.6.6-4.fc36, 1.6.6-4.fc37 | 24.03.2022 |
SB2022021530 SB2022032413 SB2022040807 and 110 more |
||
| #VU60972 - Permissions, Privileges, and Access Controls CVE-2022-23648 |
CWE-264 | Medium | 1.6.1-1.fc34, 1.6.1-1.fc35, 1.6.1-1.fc36 | 03.03.2022 |
SB2022030305 SB2022030722 SB2022030725 and 30 more |
||
| #VU59237 - Permissions, Privileges, and Access Controls CVE-2021-43816 |
CWE-264 | Low | 1.5.9-1.fc34, 1.5.9-1.fc35, 1.5.9-1.fc36, 1.6.0~rc.2-2.fc35, 1.6.0~rc.2-3.fc34 | 06.01.2022 |
SB2022010606 SB2023051629 SB2024030421 and 10 more |
||
| #VU58229 - Type confusion CVE-2021-41190 |
CWE-843 | Low | 1.5.8-1.fc34, 1.5.8-1.fc35, 1.5.8-1.fc36 | 18.11.2021 |
SB2021111806 SB2021111807 SB2021111809 and 39 more |
Showing elements 21 - 40 out of 46