Known vulnerabilities in drbd
Vendor:
SUSE
Software:
drbd
Software CPE:
cpe:2.3:o:suse:drbd:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
34
Public exploits:
2
Known exploited (KEV):
1
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
9.0.14+git.62f906cf-4.26.2
9.0.30~1+git.10bee2d5-150400.3.4.1
9.0.16+git.ab9777df-150100.8.29.1
9.0.14+git.62f906cf-4.24.1
9.0.14+git.62f906cf-11.29.2
9.0.15+git.c46d2790-150000.3.28.2
9.0.16+git.ab9777df-150100.8.27.2
9.0.22~1+git.fe2b5983-150200.3.15.2
9.0.14+git.62f906cf-3.32.1
9.0.29~0+git.9a7bc817-150300.3.5.1
9.0.14+git.62f906cf-4.22.1
9.0.14+git.62f906cf-11.18.3
9.0.22~1+git.fe2b5983-150200.3.17.1
9.0.29~0+git.9a7bc817-150300.3.7.1
9.0.30~1+git.10bee2d5-150400.3.2.9
Vulnerabilities (34)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU76024 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2023-2483 |
CWE-362 | Low | 9.0.14+git.62f906cf-4.26.2 | 11.05.2023 |
SB2023051116 SB2023051117 SB2023051778 and 23 more |
||
| #VU75996 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2023-30772 |
CWE-362 | Low | 9.0.14+git.62f906cf-4.26.2 | 10.05.2023 |
SB2023051050 SB2023051052 SB2023051053 and 42 more |
||
| #VU75994 - Use After Free CVE-2023-2162 |
CWE-416 | Low | 9.0.14+git.62f906cf-4.26.2 | 10.05.2023 |
SB2023051048 SB2023051052 SB2023051053 and 101 more |
||
| #VU75454 - Security Features CVE-2023-1998 |
CWE-254 | Low | 9.0.14+git.62f906cf-4.26.2 | 24.04.2023 |
SB2023042434 SB2023042440 SB2023051052 and 55 more |
||
| #VU75453 - Use After Free CVE-2023-1990 |
CWE-416 | Low | 9.0.14+git.62f906cf-4.26.2 | 24.04.2023 |
SB2023042432 SB2023042440 SB2023051052 and 50 more |
||
| #VU75452 - Use After Free CVE-2023-1989 |
CWE-416 | Low | 9.0.14+git.62f906cf-4.26.2 | 24.04.2023 |
SB2023042431 SB2023042440 SB2023051052 and 80 more |
||
| #VU75451 - Use After Free CVE-2023-1855 |
CWE-416 | Low | 9.0.14+git.62f906cf-4.26.2 | 24.04.2023 |
SB2023042430 SB2023042440 SB2023051052 and 59 more |
||
| #VU75450 - Use After Free CVE-2023-1670 |
CWE-416 | Low | 9.0.14+git.62f906cf-4.26.2 | 24.04.2023 |
SB2023042429 SB2023042440 SB2023042639 and 48 more |
||
| #VU75323 - Out-of-bounds read CVE-2023-2124 |
CWE-125 | Low | 9.0.14+git.62f906cf-4.26.2 | 19.04.2023 |
SB2023041913 SB2023050422 SB2023051052 and 80 more |
||
| #VU75206 - Uncontrolled Recursion CVE-2020-36691 |
CWE-674 | Low | 9.0.14+git.62f906cf-4.26.2 | 18.04.2023 |
SB2023041829 SB2023041832 SB2023051052 and 15 more |
||
| #VU75204 - Use After Free CVE-2023-1611 |
CWE-416 | Low | 9.0.14+git.62f906cf-4.26.2 | 18.04.2023 |
SB2023041827 SB2023041830 SB2023041831 and 49 more |
||
| #VU74631 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2023-1390 |
CWE-835 | Medium | 9.0.14+git.62f906cf-4.26.2 | 10.04.2023 |
SB2023041035 SB2023041039 SB2023041040 and 40 more |
||
| #VU74630 - Improper Initialization CVE-2023-1513 |
CWE-665 | Low | 9.0.14+git.62f906cf-4.26.2 | 10.04.2023 |
SB2023041034 SB2023041039 SB2023041040 and 54 more |
||
| #VU74627 - Memory corruption CVE-2023-28772 |
CWE-119 | Low | 9.0.14+git.62f906cf-4.26.2 | 10.04.2023 |
SB2023041031 SB2023041039 SB2023041040 and 28 more |
||
| #VU74147 - Double Free CVE-2023-28464 |
CWE-415 | Low | 9.0.14+git.62f906cf-4.26.2 | 28.03.2023 |
SB2023032870 SB2023041039 SB2023041040 and 51 more |
||
| #VU74126 - NULL Pointer Dereference CVE-2023-28328 |
CWE-476 | Low | 9.0.14+git.62f906cf-4.26.2 | 28.03.2023 |
SB2023032824 SB2023032831 SB2023032843 and 60 more |
||
| #VU72734 - Use After Free CVE-2023-1118 |
CWE-416 | Low | 9.0.14+git.62f906cf-4.26.2 | 03.03.2023 |
SB2023030310 SB2023031652 SB2023031653 and 92 more |
||
| #VU71478 - Type confusion CVE-2023-23454 |
CWE-843 | Low | 9.0.14+git.62f906cf-4.26.2 | 24.01.2023 |
SB2023012443 SB2023012450 SB2023012626 and 91 more |
||
| #VU71477 - Type confusion CVE-2023-23455 |
CWE-843 | Low | 9.0.14+git.62f906cf-4.26.2 | 24.01.2023 |
SB2023012442 SB2023012450 SB2023012651 and 86 more |
||
| #VU9884 - Exposure of sensitive information to an unauthorized actor CVE-2017-5753 |
CWE-200 | Low | 9.0.14+git.62f906cf-4.26.2 | 09.01.2018 |
SB2018010416 SB2018010502 SB2018010903 and 92 more |
Showing elements 1 - 20 out of 34