Known vulnerabilities in dracut-saltboot - page 4
Vendor:
SUSE
Software:
dracut-saltboot
Software CPE:
cpe:2.3:o:suse:dracut-saltboot:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
83
Public exploits:
6
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
1.2.1-150002.3.9.1
1.1.0-159000.2.2.1
1.1.0-150000.1.65.1
1.1.0-150002.3.6.1
1.0.0-150002.3.3.1
0.1.1728559936.c16d4fb-150000.1.56.1
0.1.1710765237.46af599-150000.1.53.2
0.1.1710765237.46af599-159000.3.33.2
0.1.1681904360.84ef141-159000.3.30.1
0.1.1681904360.84ef141-150000.1.50.1
0.1.1674034019.a93ff61-150000.1.47.1
0.1.1673279145.e7616bd-150000.1.44.1
0.1.1661440542.6cbe0da-150000.1.38.1
0.1.1657643023.0d694ce-150000.1.35.1
Vulnerabilities (83)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU65355 - Incorrect Regular Expression CVE-2020-7753 |
CWE-185 | Medium | 0.1.1681904360.84ef141-150000.1.50.1, 0.1.1681904360.84ef141-159000.3.30.1 | 15.07.2022 |
SB2020102724 SB2022071510 SB2023062230 and 12 more |
||
| #VU65353 - Improper Authentication CVE-2022-31107 |
CWE-287 | High | 0.1.1661440542.6cbe0da-150000.1.38.1, 0.1.1681904360.84ef141-150000.1.50.1, 0.1.1681904360.84ef141-159000.3.30.1 | 15.07.2022 |
SB2022071510 SB2022072642 SB2022072643 and 21 more |
||
| #VU64430 - Incorrect Authorization CVE-2021-41244 |
CWE-863 | Medium | 0.1.1681904360.84ef141-159000.3.30.1 | 16.06.2022 |
SB2021111513 SB2022062026 SB2022102094 and 5 more |
||
| #VU64404 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-43815 |
CWE-22 | Low | 0.1.1681904360.84ef141-159000.3.30.1 | 15.06.2022 |
SB2021121022 SB2022062026 SB2022102094 and 8 more |
||
| #VU64273 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-43813 |
CWE-22 | Low | 0.1.1681904360.84ef141-159000.3.30.1 | 14.06.2022 |
SB2022061422 SB2022062026 SB2022081215 and 16 more |
||
| #VU64034 - Improper Control of Generation of Code ('Code Injection') CVE-2021-3918 |
CWE-94 | High | 0.1.1681904360.84ef141-150000.1.50.1, 0.1.1681904360.84ef141-159000.3.30.1 | 07.06.2022 |
SB2021111302 SB2022060836 SB2022071504 and 45 more |
||
| #VU62361 - Improper Control of Generation of Code ('Code Injection') CVE-2021-43138 |
CWE-94 | Medium | 0.1.1681904360.84ef141-150000.1.50.1, 0.1.1681904360.84ef141-159000.3.30.1 | 15.04.2022 |
SB2022041532 SB2022041533 SB2022062103 and 33 more |
||
| #VU61669 - Exposure of sensitive information to an unauthorized actor CVE-2022-0155 |
CWE-200 | Low | 0.1.1681904360.84ef141-150000.1.50.1, 0.1.1681904360.84ef141-159000.3.30.1 | 28.03.2022 |
SB2022032840 SB2022032843 SB2022071505 and 32 more |
||
| #VU58647 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-43798 |
CWE-22 | High | 0.1.1681904360.84ef141-159000.3.30.1 | 08.12.2021 |
SB2021120803 SB2022062026 SB2022102094 and 7 more |
||
| #VU57967 - Improper input validation CVE-2021-3807 |
CWE-20 | Medium | 0.1.1681904360.84ef141-150000.1.50.1, 0.1.1681904360.84ef141-159000.3.30.1 | 05.11.2021 |
SB2021110513 SB2021112603 SB2022042257 and 51 more |
||
| #VU57926 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2021-41174 |
CWE-79 | Low | 0.1.1681904360.84ef141-159000.3.30.1 | 03.11.2021 |
SB2021110312 SB2021110517 SB2022062026 and 4 more |
||
| #VU57422 - Information Exposure Through an Error Message CVE-2021-3620 |
CWE-209 | Low | 0.1.1657643023.0d694ce-150000.1.35.1, 0.1.1681904360.84ef141-159000.3.30.1 | 19.10.2021 |
SB2021101903 SB2021101904 SB2021101905 and 10 more |
||
| #VU56063 - Memory corruption CVE-2021-3711 |
CWE-119 | High | 0.1.1681904360.84ef141-159000.3.30.1 | 24.08.2021 |
SB2021082414 SB2021082508 SB2021082510 and 53 more |
||
| #VU55287 - NULL Pointer Dereference CVE-2021-36222 |
CWE-476 | Medium | 0.1.1681904360.84ef141-159000.3.30.1 | 25.07.2021 |
SB2021072501 SB2021072502 SB2021080601 and 24 more |
||
| #VU54626 - Improper Control of Generation of Code ('Code Injection') CVE-2021-3583 |
CWE-94 | High | 0.1.1657643023.0d694ce-150000.1.35.1, 0.1.1681904360.84ef141-159000.3.30.1 | 08.07.2021 |
SB2021070822 SB2021070823 SB2021071517 and 12 more |
||
| #VU52984 - Information Exposure Through Log Files CVE-2021-3447 |
CWE-532 | Low | 0.1.1657643023.0d694ce-150000.1.35.1, 0.1.1681904360.84ef141-159000.3.30.1 | 10.05.2021 |
SB2021040180 SB2021051001 SB2021072616 and 13 more |
||
| #VU50936 - Information Exposure Through Log Files CVE-2021-20191 |
CWE-532 | Low | 0.1.1657643023.0d694ce-150000.1.35.1, 0.1.1681904360.84ef141-159000.3.30.1 | 25.02.2021 |
SB2021022511 SB2021022512 SB2021022513 and 11 more |
||
| #VU50818 - Information Exposure Through Log Files CVE-2021-20228 |
CWE-532 | Low | 0.1.1657643023.0d694ce-150000.1.35.1, 0.1.1681904360.84ef141-159000.3.30.1 | 22.02.2021 |
SB2021022203 SB2021022205 SB2021022512 and 7 more |
||
| #VU50429 - Information Exposure Through Log Files CVE-2021-20180 |
CWE-532 | Low | 0.1.1657643023.0d694ce-150000.1.35.1, 0.1.1681904360.84ef141-159000.3.30.1 | 09.02.2021 |
SB2021020903 SB2021020904 SB2021022512 and 11 more |
||
| #VU50428 - Information Exposure Through Log Files CVE-2021-20178 |
CWE-532 | Low | 0.1.1657643023.0d694ce-150000.1.35.1, 0.1.1681904360.84ef141-159000.3.30.1 | 09.02.2021 |
SB2021020903 SB2021020904 SB2021022512 and 10 more |
Showing elements 61 - 80 out of 83