Google Security Advisories · August 2024 — Google Security Advisories
384 advisories 267 CVEs 36 EXPLOITED

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2024-08. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 36 are already weaponised in the wild.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

openSUSE-SU-2024:14292-1

Open SourceExploitedCISA KEV listed2024-08-29

kubernetes1.28-apiserver-1.28.13-2.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
kubernetes1.28 affected openSUSE:Tumbleweed kubernetes1.28
Upstream advisory

CVE-2024-38178

GoogleExploitedCISA KEV listedCRITICAL2024-08-13

Scripting Engine Memory Corruption Vulnerability

CVEs:CVE-2024-38178

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1507 affected microsoft
windows_10_1607 affected microsoft
windows_10_1809 affected microsoft
windows_10_21h2 affected microsoft
windows_10_22h2 affected microsoft
windows_11_21h2 affected microsoft
windows_11_22h2 affected microsoft
windows_11_23h2 affected microsoft
windows_11_24h2 affected microsoft
windows_server_2012 affected microsoft
windows_server_2016 affected microsoft
windows_server_2019 affected microsoft
windows_server_2022 affected microsoft
windows_server_2022_23h2 affected microsoft
Upstream advisory

CVE-2024-38193

GoogleExploitedCISA KEV listedCRITICAL2024-08-13

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVEs:CVE-2024-38193

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1507 affected microsoft
windows_10_1607 affected microsoft
windows_10_1809 affected microsoft
windows_10_21h2 affected microsoft
windows_10_22h2 affected microsoft
windows_11_21h2 affected microsoft
windows_11_22h2 affected microsoft
windows_11_23h2 affected microsoft
windows_11_24h2 affected microsoft
windows_server_2008 affected microsoft
windows_server_2012 affected microsoft
windows_server_2016 affected microsoft
windows_server_2019 affected microsoft
windows_server_2022 affected microsoft
windows_server_2022_23h2 affected microsoft
Upstream advisory

openSUSE-SU-2024:0258-1

Open SourceExploitedCISA KEV listedCRITICAL2024-08-23

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP5 chromium
chromium affected SUSE:Package Hub 15 SP6 chromium
chromium affected openSUSE:Leap 15.5 chromium
chromium affected openSUSE:Leap 15.6 chromium
Upstream advisory

openSUSE-SU-2024:0258-2

Open SourceExploitedCISA KEV listedCRITICAL2024-08-23

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP5 chromium
chromium affected SUSE:Package Hub 15 SP6 chromium
chromium affected openSUSE:Leap 15.5 chromium
chromium affected openSUSE:Leap 15.6 chromium
Upstream advisory

DSA-5757-1

Open SourceExploitedCISA KEV listed2024-08-23

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:12 chromium
Upstream advisory

openSUSE-SU-2024:14285-1

Open SourceExploitedCISA KEV listed2024-08-23

chromedriver-128.0.6613.84-1.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Tumbleweed chromium
Upstream advisory

GHSA-pq5w-h3jm-m95c

Open SourceExploitedCISA KEV listedHIGH2024-08-21

GHSA-pq5w-h3jm-m95c

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7971

GoogleExploitedCISA KEV listed2024-08-21

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7971

Upstream advisory

CVE-2024-7971

GoogleExploitedCISA KEV listedCRITICAL2024-08-21

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7971

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
edge affected microsoft
Upstream advisory

DEBIAN-CVE-2024-7971

Open SourceExploitedCISA KEV listedCRITICAL2024-08-21

DEBIAN-CVE-2024-7971

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2024-7971

Project ZeroExploitedCISA KEV listed2024-08-21

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7971

Upstream advisory

GHSA-x38q-hvmx-rwhg

Open SourceExploitedCISA KEV listedHIGH2024-08-21

GHSA-x38q-hvmx-rwhg

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7965

Open SourceExploitedCISA KEV listedHIGH2024-08-21

Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7965

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
edge_chromium affected microsoft
Upstream advisory

CVE-2024-7965

GoogleExploitedCISA KEV listed2024-08-21

Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7965

Upstream advisory

DEBIAN-CVE-2024-7965

Open SourceExploitedCISA KEV listedHIGH2024-08-21

DEBIAN-CVE-2024-7965

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2024-7965

Project ZeroExploitedCISA KEV listed2024-08-21

Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7965

Upstream advisory

CVE-2024-38189

GoogleExploitedCISA KEV listedCRITICAL2024-08-13

Microsoft Project Remote Code Execution Vulnerability

CVEs:CVE-2024-38189

Affected products

ProductStatusVendorPackageEcosystem
365_apps affected microsoft
office_2019 affected microsoft
office_long_term_servicing_channel affected microsoft
project_2016 affected microsoft
Upstream advisory

CVE-2024-38106

GoogleExploitedCISA KEV listedCRITICAL2024-08-13

Windows Kernel Elevation of Privilege Vulnerability

CVEs:CVE-2024-38106

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1507 affected microsoft
windows_10_1607 affected microsoft
windows_10_1809 affected microsoft
windows_10_21h2 affected microsoft
windows_10_22h2 affected microsoft
windows_11_21h2 affected microsoft
windows_11_22h2 affected microsoft
windows_11_23h2 affected microsoft
windows_11_24h2 affected microsoft
windows_server_2016 affected microsoft
windows_server_2019 affected microsoft
windows_server_2022 affected microsoft
windows_server_2022_23h2 affected microsoft
Upstream advisory

CVE-2024-7262

GoogleExploitedCISA KEV listedCRITICAL2024-08-15

Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16412 (exclusive) on Windows allows an attacker to load an arbitrary Windows library. The vulnerability was found weaponized as a sing...

CVEs:CVE-2024-7262

Affected products

ProductStatusVendorPackageEcosystem
wps_office affected kingsoft
Upstream advisory

ASB-A-343727534

GoogleExploitedCISA KEV listedHIGH2024-08-01

ASB-A-343727534

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2024-38107

GoogleExploitedCISA KEV listedCRITICAL2024-08-13

Windows Power Dependency Coordinator Elevation of Privilege Vulnerability

CVEs:CVE-2024-38107

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1507 affected microsoft
windows_10_1607 affected microsoft
windows_10_1809 affected microsoft
windows_10_21h2 affected microsoft
windows_10_22h2 affected microsoft
windows_11_21h2 affected microsoft
windows_11_22h2 affected microsoft
windows_11_23h2 affected microsoft
windows_11_24h2 affected microsoft
windows_server_2012 affected microsoft
windows_server_2016 affected microsoft
windows_server_2019 affected microsoft
windows_server_2022 affected microsoft
windows_server_2022_23h2 affected microsoft
Upstream advisory

GO-2022-0792

Open SourceWeaponized exploitCRITICAL2024-08-21

Privilege Escalation in Kubernetes in github.com/kubernetes/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes/kubernetes affected github.com github.com/kubernetes/kubernetes
Upstream advisory

GO-2022-0703

Open SourceWeaponized exploit2024-08-21

XML Entity Expansion and Improper Input Validation in Kubernetes API server in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2024-3075

Open SourceActive exploitation (sightings)CRITICAL2024-08-19

CVE-2024-7646 in github.com/kubernetes/ingress-nginx

Affected products

ProductStatusVendorPackageEcosystem
kubernetes/ingress-nginx affected github.com github.com/kubernetes/ingress-nginx
Upstream advisory

GO-2023-2341

Open SourceActive exploitation (sightings)2024-08-21

Kubernetes Improper Input Validation vulnerability in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
aws-ebs-csi-driver affected chainguard aws-ebs-csi-driver
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
ip-masq-agent affected wolfi ip-masq-agent
ip-masq-agent affected chainguard ip-masq-agent
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
kubernetes-csi-driver-hostpath affected wolfi kubernetes-csi-driver-hostpath
kubernetes-csi-driver-hostpath affected chainguard kubernetes-csi-driver-hostpath
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
nodetaint affected chainguard nodetaint
nodetaint affected wolfi nodetaint
prometheus-adapter affected chainguard prometheus-adapter
prometheus-adapter affected wolfi prometheus-adapter
spark-operator affected chainguard spark-operator
spark-operator affected wolfi spark-operator
Upstream advisory

GO-2023-2176

Open SourceActive exploitation (sightings)CRITICAL2024-08-21

Kubernetes csi-proxy vulnerable to privilege escalation due to improper input validation in github.com/kubernetes-csi/csi-proxy

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-csi/csi-proxy affected github.com github.com/kubernetes-csi/csi-proxy
kubernetes-csi/csi-proxy/v2 affected github.com github.com/kubernetes-csi/csi-proxy/v2
Upstream advisory

CVE-2024-38219

Open SourceActive exploitation (sightings)CRITICAL2024-08-08

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVEs:CVE-2024-38219

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

RHEA-2024:5245

Open SourceActive exploitation (sightings)HIGH2024-08-13

Red Hat Enhancement Advisory: Release of components for RHOSO 18.0

Affected products

ProductStatusVendorPackageEcosystem
ansible-role-atos-hsm affected Red Hat:openstack:18.0::el9 ansible-role-atos-hsm
ansible-role-lunasa-hsm affected Red Hat:openstack:18.0::el9 ansible-role-lunasa-hsm
ansible-role-network-runner affected Red Hat:openstack:18.0::el9 ansible-role-network-runner
ansible-role-thales-hsm affected Red Hat:openstack:18.0::el9 ansible-role-thales-hsm
bootswatch-common affected Red Hat:openstack:18.0::el9 bootswatch-common
bootswatch-fonts affected Red Hat:openstack:18.0::el9 bootswatch-fonts
crudini affected Red Hat:openstack:18.0::el9 crudini
dibbler affected Red Hat:openstack:18.0::el9 dibbler
dibbler-client affected Red Hat:openstack:18.0::el9 dibbler-client
dibbler-client-debuginfo affected Red Hat:openstack:18.0::el9 dibbler-client-debuginfo
dibbler-debuginfo affected Red Hat:openstack:18.0::el9 dibbler-debuginfo
dibbler-debugsource affected Red Hat:openstack:18.0::el9 dibbler-debugsource
dibbler-relay affected Red Hat:openstack:18.0::el9 dibbler-relay
dibbler-relay-debuginfo affected Red Hat:openstack:18.0::el9 dibbler-relay-debuginfo
dibbler-requestor affected Red Hat:openstack:18.0::el9 dibbler-requestor
dibbler-requestor-debuginfo affected Red Hat:openstack:18.0::el9 dibbler-requestor-debuginfo
dibbler-server affected Red Hat:openstack:18.0::el9 dibbler-server
dibbler-server-debuginfo affected Red Hat:openstack:18.0::el9 dibbler-server-debuginfo
dib-utils affected Red Hat:openstack:18.0::el9 dib-utils
diskimage-builder affected Red Hat:openstack:18.0::el9 diskimage-builder
dumb-init affected Red Hat:openstack:18.0::el9 dumb-init
dumb-init-debuginfo affected Red Hat:openstack:18.0::el9 dumb-init-debuginfo
dumb-init-debugsource affected Red Hat:openstack:18.0::el9 dumb-init-debugsource
edpm-image-builder affected Red Hat:openstack:18.0::el9 edpm-image-builder
elixir affected Red Hat:openstack:18.0::el9 elixir
erlang affected Red Hat:openstack:18.0::el9 erlang
erlang-asn1 affected Red Hat:openstack:18.0::el9 erlang-asn1
erlang-asn1-debuginfo affected Red Hat:openstack:18.0::el9 erlang-asn1-debuginfo
erlang-compiler affected Red Hat:openstack:18.0::el9 erlang-compiler
erlang-crypto affected Red Hat:openstack:18.0::el9 erlang-crypto
erlang-crypto-debuginfo affected Red Hat:openstack:18.0::el9 erlang-crypto-debuginfo
erlang-debuginfo affected Red Hat:openstack:18.0::el9 erlang-debuginfo
erlang-debugsource affected Red Hat:openstack:18.0::el9 erlang-debugsource
erlang-eldap affected Red Hat:openstack:18.0::el9 erlang-eldap
erlang-erl_interface-debuginfo affected Red Hat:openstack:18.0::el9 erlang-erl_interface-debuginfo
erlang-erts affected Red Hat:openstack:18.0::el9 erlang-erts
erlang-erts-debuginfo affected Red Hat:openstack:18.0::el9 erlang-erts-debuginfo
erlang-inets affected Red Hat:openstack:18.0::el9 erlang-inets
erlang-kernel affected Red Hat:openstack:18.0::el9 erlang-kernel
erlang-mnesia affected Red Hat:openstack:18.0::el9 erlang-mnesia
erlang-odbc-debuginfo affected Red Hat:openstack:18.0::el9 erlang-odbc-debuginfo
erlang-os_mon affected Red Hat:openstack:18.0::el9 erlang-os_mon
erlang-os_mon-debuginfo affected Red Hat:openstack:18.0::el9 erlang-os_mon-debuginfo
erlang-parsetools affected Red Hat:openstack:18.0::el9 erlang-parsetools
erlang-public_key affected Red Hat:openstack:18.0::el9 erlang-public_key
erlang-runtime_tools affected Red Hat:openstack:18.0::el9 erlang-runtime_tools
erlang-runtime_tools-debuginfo affected Red Hat:openstack:18.0::el9 erlang-runtime_tools-debuginfo
erlang-sasl affected Red Hat:openstack:18.0::el9 erlang-sasl
erlang-snmp affected Red Hat:openstack:18.0::el9 erlang-snmp
erlang-ssl affected Red Hat:openstack:18.0::el9 erlang-ssl
erlang-stdlib affected Red Hat:openstack:18.0::el9 erlang-stdlib
erlang-syntax_tools affected Red Hat:openstack:18.0::el9 erlang-syntax_tools
erlang-tools affected Red Hat:openstack:18.0::el9 erlang-tools
erlang-tools-debuginfo affected Red Hat:openstack:18.0::el9 erlang-tools-debuginfo
erlang-xmerl affected Red Hat:openstack:18.0::el9 erlang-xmerl
fontawesome-fonts affected Red Hat:openstack:18.0::el9 fontawesome-fonts
fontawesome-fonts-web affected Red Hat:openstack:18.0::el9 fontawesome-fonts-web
future affected Red Hat:openstack:18.0::el9 future
heat-cfntools affected Red Hat:openstack:18.0::el9 heat-cfntools
jevents affected Red Hat:openstack:18.0::el9 jevents
jevents-debuginfo affected Red Hat:openstack:18.0::el9 jevents-debuginfo
liberasurecode affected Red Hat:openstack:18.0::el9 liberasurecode
liberasurecode-debuginfo affected Red Hat:openstack:18.0::el9 liberasurecode-debuginfo
liberasurecode-debugsource affected Red Hat:openstack:18.0::el9 liberasurecode-debugsource
libsodium affected Red Hat:openstack:18.0::el9 libsodium
libsodium-debuginfo affected Red Hat:openstack:18.0::el9 libsodium-debuginfo
libsodium-debugsource affected Red Hat:openstack:18.0::el9 libsodium-debugsource
luajit affected Red Hat:openstack:18.0::el9 luajit
luajit-debuginfo affected Red Hat:openstack:18.0::el9 luajit-debuginfo
luajit-debugsource affected Red Hat:openstack:18.0::el9 luajit-debugsource
mdi-common affected Red Hat:openstack:18.0::el9 mdi-common
mdi-fonts affected Red Hat:openstack:18.0::el9 mdi-fonts
ndisc6 affected Red Hat:openstack:18.0::el9 ndisc6
ndisc6-debuginfo affected Red Hat:openstack:18.0::el9 ndisc6-debuginfo
ndisc6-debugsource affected Red Hat:openstack:18.0::el9 ndisc6-debugsource
novnc affected Red Hat:openstack:18.0::el9 novnc
openstack-aodh affected Red Hat:openstack:18.0::el9 openstack-aodh
openstack-aodh-api affected Red Hat:openstack:18.0::el9 openstack-aodh-api
openstack-aodh-common affected Red Hat:openstack:18.0::el9 openstack-aodh-common
openstack-aodh-compat affected Red Hat:openstack:18.0::el9 openstack-aodh-compat
openstack-aodh-evaluator affected Red Hat:openstack:18.0::el9 openstack-aodh-evaluator
openstack-aodh-expirer affected Red Hat:openstack:18.0::el9 openstack-aodh-expirer
openstack-aodh-listener affected Red Hat:openstack:18.0::el9 openstack-aodh-listener
openstack-aodh-notifier affected Red Hat:openstack:18.0::el9 openstack-aodh-notifier
openstack-barbican affected Red Hat:openstack:18.0::el9 openstack-barbican
openstack-barbican-api affected Red Hat:openstack:18.0::el9 openstack-barbican-api
openstack-barbican-common affected Red Hat:openstack:18.0::el9 openstack-barbican-common
openstack-barbican-keystone-listener affected Red Hat:openstack:18.0::el9 openstack-barbican-keystone-listener
openstack-barbican-worker affected Red Hat:openstack:18.0::el9 openstack-barbican-worker
openstack-ceilometer affected Red Hat:openstack:18.0::el9 openstack-ceilometer
openstack-ceilometer-central affected Red Hat:openstack:18.0::el9 openstack-ceilometer-central
openstack-ceilometer-common affected Red Hat:openstack:18.0::el9 openstack-ceilometer-common
openstack-ceilometer-compute affected Red Hat:openstack:18.0::el9 openstack-ceilometer-compute
openstack-ceilometer-ipmi affected Red Hat:openstack:18.0::el9 openstack-ceilometer-ipmi
openstack-ceilometer-notification affected Red Hat:openstack:18.0::el9 openstack-ceilometer-notification
openstack-ceilometer-polling affected Red Hat:openstack:18.0::el9 openstack-ceilometer-polling
openstack-cinder affected Red Hat:openstack:18.0::el9 openstack-cinder
openstack-dashboard affected Red Hat:openstack:18.0::el9 openstack-dashboard
openstack-dashboard-theme affected Red Hat:openstack:18.0::el9 openstack-dashboard-theme
openstack-designate affected Red Hat:openstack:18.0::el9 openstack-designate
openstack-designate-agent affected Red Hat:openstack:18.0::el9 openstack-designate-agent
openstack-designate-api affected Red Hat:openstack:18.0::el9 openstack-designate-api
openstack-designate-central affected Red Hat:openstack:18.0::el9 openstack-designate-central
openstack-designate-common affected Red Hat:openstack:18.0::el9 openstack-designate-common
openstack-designate-mdns affected Red Hat:openstack:18.0::el9 openstack-designate-mdns
openstack-designate-producer affected Red Hat:openstack:18.0::el9 openstack-designate-producer
openstack-designate-sink affected Red Hat:openstack:18.0::el9 openstack-designate-sink
openstack-designate-ui affected Red Hat:openstack:18.0::el9 openstack-designate-ui
openstack-designate-worker affected Red Hat:openstack:18.0::el9 openstack-designate-worker
openstack-glance affected Red Hat:openstack:18.0::el9 openstack-glance
openstack-heat affected Red Hat:openstack:18.0::el9 openstack-heat
openstack-heat-agents affected Red Hat:openstack:18.0::el9 openstack-heat-agents
openstack-heat-api affected Red Hat:openstack:18.0::el9 openstack-heat-api
openstack-heat-api-cfn affected Red Hat:openstack:18.0::el9 openstack-heat-api-cfn
openstack-heat-common affected Red Hat:openstack:18.0::el9 openstack-heat-common
openstack-heat-engine affected Red Hat:openstack:18.0::el9 openstack-heat-engine
openstack-heat-monolith affected Red Hat:openstack:18.0::el9 openstack-heat-monolith
openstack-heat-ui affected Red Hat:openstack:18.0::el9 openstack-heat-ui
openstack-ironic affected Red Hat:openstack:18.0::el9 openstack-ironic
openstack-ironic-api affected Red Hat:openstack:18.0::el9 openstack-ironic-api
openstack-ironic-common affected Red Hat:openstack:18.0::el9 openstack-ironic-common
openstack-ironic-conductor affected Red Hat:openstack:18.0::el9 openstack-ironic-conductor
openstack-ironic-inspector affected Red Hat:openstack:18.0::el9 openstack-ironic-inspector
openstack-ironic-inspector-dnsmasq affected Red Hat:openstack:18.0::el9 openstack-ironic-inspector-dnsmasq
openstack-ironic-python-agent affected Red Hat:openstack:18.0::el9 openstack-ironic-python-agent
openstack-ironic-python-agent-builder affected Red Hat:openstack:18.0::el9 openstack-ironic-python-agent-builder
openstack-ironic-ui affected Red Hat:openstack:18.0::el9 openstack-ironic-ui
openstack-keystone affected Red Hat:openstack:18.0::el9 openstack-keystone
openstack-manila affected Red Hat:openstack:18.0::el9 openstack-manila
openstack-manila-share affected Red Hat:openstack:18.0::el9 openstack-manila-share
openstack-manila-ui affected Red Hat:openstack:18.0::el9 openstack-manila-ui
openstack-network-scripts affected Red Hat:openstack:18.0::el9 openstack-network-scripts
openstack-network-scripts-debuginfo affected Red Hat:openstack:18.0::el9 openstack-network-scripts-debuginfo
openstack-network-scripts-debugsource affected Red Hat:openstack:18.0::el9 openstack-network-scripts-debugsource
openstack-network-scripts-openvswitch3.3 affected Red Hat:openstack:18.0::el9 openstack-network-scripts-openvswitch3.3
openstack-neutron affected Red Hat:openstack:18.0::el9 openstack-neutron
openstack-neutron-bgp-dragent affected Red Hat:openstack:18.0::el9 openstack-neutron-bgp-dragent
openstack-neutron-bigswitch-agent affected Red Hat:openstack:18.0::el9 openstack-neutron-bigswitch-agent
openstack-neutron-common affected Red Hat:openstack:18.0::el9 openstack-neutron-common
openstack-neutron-dynamic-routing affected Red Hat:openstack:18.0::el9 openstack-neutron-dynamic-routing
openstack-neutron-dynamic-routing-common affected Red Hat:openstack:18.0::el9 openstack-neutron-dynamic-routing-common
openstack-neutron-l2gw-agent affected Red Hat:openstack:18.0::el9 openstack-neutron-l2gw-agent
openstack-neutron-linuxbridge affected Red Hat:openstack:18.0::el9 openstack-neutron-linuxbridge
openstack-neutron-macvtap-agent affected Red Hat:openstack:18.0::el9 openstack-neutron-macvtap-agent
openstack-neutron-metering-agent affected Red Hat:openstack:18.0::el9 openstack-neutron-metering-agent
openstack-neutron-ml2 affected Red Hat:openstack:18.0::el9 openstack-neutron-ml2
openstack-neutron-openvswitch affected Red Hat:openstack:18.0::el9 openstack-neutron-openvswitch
openstack-neutron-ovn-agent affected Red Hat:openstack:18.0::el9 openstack-neutron-ovn-agent
openstack-neutron-ovn-metadata-agent affected Red Hat:openstack:18.0::el9 openstack-neutron-ovn-metadata-agent
openstack-neutron-ovn-migration-tool affected Red Hat:openstack:18.0::el9 openstack-neutron-ovn-migration-tool
openstack-neutron-rpc-server affected Red Hat:openstack:18.0::el9 openstack-neutron-rpc-server
openstack-neutron-sriov-nic-agent affected Red Hat:openstack:18.0::el9 openstack-neutron-sriov-nic-agent
openstack-nova affected Red Hat:openstack:18.0::el9 openstack-nova
openstack-nova-api affected Red Hat:openstack:18.0::el9 openstack-nova-api
openstack-nova-common affected Red Hat:openstack:18.0::el9 openstack-nova-common
openstack-nova-compute affected Red Hat:openstack:18.0::el9 openstack-nova-compute
openstack-nova-conductor affected Red Hat:openstack:18.0::el9 openstack-nova-conductor
openstack-nova-migration affected Red Hat:openstack:18.0::el9 openstack-nova-migration
openstack-nova-novncproxy affected Red Hat:openstack:18.0::el9 openstack-nova-novncproxy
openstack-nova-scheduler affected Red Hat:openstack:18.0::el9 openstack-nova-scheduler
openstack-nova-serialproxy affected Red Hat:openstack:18.0::el9 openstack-nova-serialproxy
openstack-nova-spicehtml5proxy affected Red Hat:openstack:18.0::el9 openstack-nova-spicehtml5proxy
openstack-octavia affected Red Hat:openstack:18.0::el9 openstack-octavia
openstack-octavia-amphora-agent affected Red Hat:openstack:18.0::el9 openstack-octavia-amphora-agent
openstack-octavia-api affected Red Hat:openstack:18.0::el9 openstack-octavia-api
openstack-octavia-common affected Red Hat:openstack:18.0::el9 openstack-octavia-common
openstack-octavia-diskimage-create affected Red Hat:openstack:18.0::el9 openstack-octavia-diskimage-create
openstack-octavia-health-manager affected Red Hat:openstack:18.0::el9 openstack-octavia-health-manager
openstack-octavia-housekeeping affected Red Hat:openstack:18.0::el9 openstack-octavia-housekeeping
openstack-octavia-ui affected Red Hat:openstack:18.0::el9 openstack-octavia-ui
openstack-octavia-worker affected Red Hat:openstack:18.0::el9 openstack-octavia-worker
openstack-placement affected Red Hat:openstack:18.0::el9 openstack-placement
openstack-placement-api affected Red Hat:openstack:18.0::el9 openstack-placement-api
openstack-placement-common affected Red Hat:openstack:18.0::el9 openstack-placement-common
openstack-selinux affected Red Hat:openstack:18.0::el9 openstack-selinux
openstack-swift affected Red Hat:openstack:18.0::el9 openstack-swift
openstack-swift-account affected Red Hat:openstack:18.0::el9 openstack-swift-account
openstack-swift-container affected Red Hat:openstack:18.0::el9 openstack-swift-container
openstack-swift-object affected Red Hat:openstack:18.0::el9 openstack-swift-object
openstack-swift-proxy affected Red Hat:openstack:18.0::el9 openstack-swift-proxy
openstack-tempest affected Red Hat:openstack:18.0::el9 openstack-tempest
openstack-tempest-all affected Red Hat:openstack:18.0::el9 openstack-tempest-all
os-apply-config affected Red Hat:openstack:18.0::el9 os-apply-config
os-collect-config affected Red Hat:openstack:18.0::el9 os-collect-config
os-net-config affected Red Hat:openstack:18.0::el9 os-net-config
os-refresh-config affected Red Hat:openstack:18.0::el9 os-refresh-config
ovn-bgp-agent affected Red Hat:openstack:18.0::el9 ovn-bgp-agent
pmu-data affected Red Hat:openstack:18.0::el9 pmu-data
pmu-tools affected Red Hat:openstack:18.0::el9 pmu-tools
pmu-tools-debugsource affected Red Hat:openstack:18.0::el9 pmu-tools-debugsource
pydot affected Red Hat:openstack:18.0::el9 pydot
pyflakes affected Red Hat:openstack:18.0::el9 pyflakes
pyOpenSSL affected Red Hat:openstack:18.0::el9 pyOpenSSL
pysendfile affected Red Hat:openstack:18.0::el9 pysendfile
pysendfile-debugsource affected Red Hat:openstack:18.0::el9 pysendfile-debugsource
pysnmp affected Red Hat:openstack:18.0::el9 pysnmp
pystache affected Red Hat:openstack:18.0::el9 pystache
python3-alembic affected Red Hat:openstack:18.0::el9 python3-alembic
python3-amqp affected Red Hat:openstack:18.0::el9 python3-amqp
python3-aniso8601 affected Red Hat:openstack:18.0::el9 python3-aniso8601
python3-ansible-runner affected Red Hat:openstack:18.0::el9 python3-ansible-runner
python3-anyio affected Red Hat:openstack:18.0::el9 python3-anyio
python3-anyjson affected Red Hat:openstack:18.0::el9 python3-anyjson
python3-aodh affected Red Hat:openstack:18.0::el9 python3-aodh
python3-aodhclient affected Red Hat:openstack:18.0::el9 python3-aodhclient
python3-asgiref affected Red Hat:openstack:18.0::el9 python3-asgiref
python3-automaton affected Red Hat:openstack:18.0::el9 python3-automaton
python3-autopage affected Red Hat:openstack:18.0::el9 python3-autopage
python3-barbican affected Red Hat:openstack:18.0::el9 python3-barbican
python3-barbicanclient affected Red Hat:openstack:18.0::el9 python3-barbicanclient
python3-barbican-tests-tempest affected Red Hat:openstack:18.0::el9 python3-barbican-tests-tempest
python3-bcrypt affected Red Hat:openstack:18.0::el9 python3-bcrypt
python3-bcrypt-debuginfo affected Red Hat:openstack:18.0::el9 python3-bcrypt-debuginfo
python3-binary-memcached affected Red Hat:openstack:18.0::el9 python3-binary-memcached
python3-boto affected Red Hat:openstack:18.0::el9 python3-boto
python3-boto3 affected Red Hat:openstack:18.0::el9 python3-boto3
python3-botocore affected Red Hat:openstack:18.0::el9 python3-botocore
python3-cachetools affected Red Hat:openstack:18.0::el9 python3-cachetools
python3-castellan affected Red Hat:openstack:18.0::el9 python3-castellan
python3-ceilometer affected Red Hat:openstack:18.0::el9 python3-ceilometer
python3-ceilometermiddleware affected Red Hat:openstack:18.0::el9 python3-ceilometermiddleware
python3-certifi affected Red Hat:openstack:18.0::el9 python3-certifi
python3-cinder affected Red Hat:openstack:18.0::el9 python3-cinder
python3-cinderclient affected Red Hat:openstack:18.0::el9 python3-cinderclient
python3-cinder-common affected Red Hat:openstack:18.0::el9 python3-cinder-common
python3-cinderlib affected Red Hat:openstack:18.0::el9 python3-cinderlib
python3-cinder-tests-tempest affected Red Hat:openstack:18.0::el9 python3-cinder-tests-tempest
python3-click affected Red Hat:openstack:18.0::el9 python3-click
python3-cliff affected Red Hat:openstack:18.0::el9 python3-cliff
python3-cmd2 affected Red Hat:openstack:18.0::el9 python3-cmd2
python3-colorama affected Red Hat:openstack:18.0::el9 python3-colorama
python3-construct affected Red Hat:openstack:18.0::el9 python3-construct
python3-contextlib2 affected Red Hat:openstack:18.0::el9 python3-contextlib2
python3-cotyledon affected Red Hat:openstack:18.0::el9 python3-cotyledon
python3-croniter affected Red Hat:openstack:18.0::el9 python3-croniter
python3-cursive affected Red Hat:openstack:18.0::el9 python3-cursive
python3-daemon affected Red Hat:openstack:18.0::el9 python3-daemon
python3-ddt affected Red Hat:openstack:18.0::el9 python3-ddt
python3-debtcollector affected Red Hat:openstack:18.0::el9 python3-debtcollector
python3-defusedxml affected Red Hat:openstack:18.0::el9 python3-defusedxml
python3-designate affected Red Hat:openstack:18.0::el9 python3-designate
python3-designateclient affected Red Hat:openstack:18.0::el9 python3-designateclient
python3-designate-tests-tempest affected Red Hat:openstack:18.0::el9 python3-designate-tests-tempest
python3-dictdiffer affected Red Hat:openstack:18.0::el9 python3-dictdiffer
python3-django affected Red Hat:openstack:18.0::el9 python3-django
python3-django-appconf affected Red Hat:openstack:18.0::el9 python3-django-appconf
python3-django-compressor affected Red Hat:openstack:18.0::el9 python3-django-compressor
python3-django-debreach affected Red Hat:openstack:18.0::el9 python3-django-debreach
python3-django-horizon affected Red Hat:openstack:18.0::el9 python3-django-horizon
python3-django-pyscss affected Red Hat:openstack:18.0::el9 python3-django-pyscss
python3-docutils affected Red Hat:openstack:18.0::el9 python3-docutils
python3-dogpile-cache affected Red Hat:openstack:18.0::el9 python3-dogpile-cache
python3-dracclient affected Red Hat:openstack:18.0::el9 python3-dracclient
python3-edgegrid affected Red Hat:openstack:18.0::el9 python3-edgegrid
python3-etcd3gw affected Red Hat:openstack:18.0::el9 python3-etcd3gw
python3-eventlet affected Red Hat:openstack:18.0::el9 python3-eventlet
python3-extras affected Red Hat:openstack:18.0::el9 python3-extras
python3-fasteners affected Red Hat:openstack:18.0::el9 python3-fasteners
python3-fixtures affected Red Hat:openstack:18.0::el9 python3-fixtures
python3-flake8 affected Red Hat:openstack:18.0::el9 python3-flake8
python3-flask affected Red Hat:openstack:18.0::el9 python3-flask
python3-flask-restful affected Red Hat:openstack:18.0::el9 python3-flask-restful
python3-future affected Red Hat:openstack:18.0::el9 python3-future
python3-futurist affected Red Hat:openstack:18.0::el9 python3-futurist
python3-gabbi affected Red Hat:openstack:18.0::el9 python3-gabbi
python3-glance affected Red Hat:openstack:18.0::el9 python3-glance
python3-glanceclient affected Red Hat:openstack:18.0::el9 python3-glanceclient
python3-glance-store affected Red Hat:openstack:18.0::el9 python3-glance-store
python3-glance-tests-tempest affected Red Hat:openstack:18.0::el9 python3-glance-tests-tempest
python3-gnocchiclient affected Red Hat:openstack:18.0::el9 python3-gnocchiclient
python3-google-auth affected Red Hat:openstack:18.0::el9 python3-google-auth
python3-greenlet affected Red Hat:openstack:18.0::el9 python3-greenlet
python3-greenlet-debuginfo affected Red Hat:openstack:18.0::el9 python3-greenlet-debuginfo
python3-gunicorn affected Red Hat:openstack:18.0::el9 python3-gunicorn
python3-h11 affected Red Hat:openstack:18.0::el9 python3-h11
python3-h2 affected Red Hat:openstack:18.0::el9 python3-h2
python3-hardware affected Red Hat:openstack:18.0::el9 python3-hardware
python3-hardware-detect affected Red Hat:openstack:18.0::el9 python3-hardware-detect
python3-heat-agent affected Red Hat:openstack:18.0::el9 python3-heat-agent
python3-heat-agent-ansible affected Red Hat:openstack:18.0::el9 python3-heat-agent-ansible
python3-heat-agent-apply-config affected Red Hat:openstack:18.0::el9 python3-heat-agent-apply-config
python3-heat-agent-docker-cmd affected Red Hat:openstack:18.0::el9 python3-heat-agent-docker-cmd
python3-heat-agent-json-file affected Red Hat:openstack:18.0::el9 python3-heat-agent-json-file
python3-heatclient affected Red Hat:openstack:18.0::el9 python3-heatclient
python3-heat-tests-tempest affected Red Hat:openstack:18.0::el9 python3-heat-tests-tempest
python3-hpack affected Red Hat:openstack:18.0::el9 python3-hpack
python3-httpcore affected Red Hat:openstack:18.0::el9 python3-httpcore
python3-httplib2 affected Red Hat:openstack:18.0::el9 python3-httplib2
python3-httpx affected Red Hat:openstack:18.0::el9 python3-httpx
python3-hyperframe affected Red Hat:openstack:18.0::el9 python3-hyperframe
python3-ifaddr affected Red Hat:openstack:18.0::el9 python3-ifaddr
python3-ImcSdk affected Red Hat:openstack:18.0::el9 python3-ImcSdk
python3-importlib-metadata affected Red Hat:openstack:18.0::el9 python3-importlib-metadata
python3-ironicclient affected Red Hat:openstack:18.0::el9 python3-ironicclient
python3-ironic-inspector-client affected Red Hat:openstack:18.0::el9 python3-ironic-inspector-client
python3-ironic-lib affected Red Hat:openstack:18.0::el9 python3-ironic-lib
python3-ironic-neutron-agent affected Red Hat:openstack:18.0::el9 python3-ironic-neutron-agent
python3-ironic-python-agent affected Red Hat:openstack:18.0::el9 python3-ironic-python-agent
python3-ironic-tests-tempest affected Red Hat:openstack:18.0::el9 python3-ironic-tests-tempest
python3-iso8601 affected Red Hat:openstack:18.0::el9 python3-iso8601
python3-itsdangerous affected Red Hat:openstack:18.0::el9 python3-itsdangerous
python3-jeepney affected Red Hat:openstack:18.0::el9 python3-jeepney
python3-jinja2 affected Red Hat:openstack:18.0::el9 python3-jinja2
python3-jmespath affected Red Hat:openstack:18.0::el9 python3-jmespath
python3-jsonpath-rw affected Red Hat:openstack:18.0::el9 python3-jsonpath-rw
python3-jsonpath-rw-ext affected Red Hat:openstack:18.0::el9 python3-jsonpath-rw-ext
python3-junitxml affected Red Hat:openstack:18.0::el9 python3-junitxml
python3-jwt affected Red Hat:openstack:18.0::el9 python3-jwt
python3-kazoo affected Red Hat:openstack:18.0::el9 python3-kazoo
python3-kerberos affected Red Hat:openstack:18.0::el9 python3-kerberos
python3-kerberos-debuginfo affected Red Hat:openstack:18.0::el9 python3-kerberos-debuginfo
python3-keyring affected Red Hat:openstack:18.0::el9 python3-keyring
python3-keystone affected Red Hat:openstack:18.0::el9 python3-keystone
python3-keystoneauth1 affected Red Hat:openstack:18.0::el9 python3-keystoneauth1
python3-keystoneclient affected Red Hat:openstack:18.0::el9 python3-keystoneclient
python3-keystonemiddleware affected Red Hat:openstack:18.0::el9 python3-keystonemiddleware
python3-keystone-tests-tempest affected Red Hat:openstack:18.0::el9 python3-keystone-tests-tempest
python3-kombu affected Red Hat:openstack:18.0::el9 python3-kombu
python3-kubernetes affected Red Hat:openstack:18.0::el9 python3-kubernetes
python3-ldap3 affected Red Hat:openstack:18.0::el9 python3-ldap3
python3-ldappool affected Red Hat:openstack:18.0::el9 python3-ldappool
python3-lesscpy affected Red Hat:openstack:18.0::el9 python3-lesscpy
python3-lockfile affected Red Hat:openstack:18.0::el9 python3-lockfile
python3-logutils affected Red Hat:openstack:18.0::el9 python3-logutils
python3-manila affected Red Hat:openstack:18.0::el9 python3-manila
python3-manilaclient affected Red Hat:openstack:18.0::el9 python3-manilaclient
python3-manila-tests-tempest affected Red Hat:openstack:18.0::el9 python3-manila-tests-tempest
python3-markupsafe affected Red Hat:openstack:18.0::el9 python3-markupsafe
python3-markupsafe-debuginfo affected Red Hat:openstack:18.0::el9 python3-markupsafe-debuginfo
python3-mccabe affected Red Hat:openstack:18.0::el9 python3-mccabe
python3-memcached affected Red Hat:openstack:18.0::el9 python3-memcached
python3-microversion-parse affected Red Hat:openstack:18.0::el9 python3-microversion-parse
python3-migrate affected Red Hat:openstack:18.0::el9 python3-migrate
python3-mimeparse affected Red Hat:openstack:18.0::el9 python3-mimeparse
python3-mock affected Red Hat:openstack:18.0::el9 python3-mock
python3-monascaclient affected Red Hat:openstack:18.0::el9 python3-monascaclient
python3-monotonic affected Red Hat:openstack:18.0::el9 python3-monotonic
python3-more-itertools affected Red Hat:openstack:18.0::el9 python3-more-itertools
python3-msgpack affected Red Hat:openstack:18.0::el9 python3-msgpack
python3-msgpack-debuginfo affected Red Hat:openstack:18.0::el9 python3-msgpack-debuginfo
python3-munch affected Red Hat:openstack:18.0::el9 python3-munch
python3-ncclient affected Red Hat:openstack:18.0::el9 python3-ncclient
python3-ndg_httpsclient affected Red Hat:openstack:18.0::el9 python3-ndg_httpsclient
python3-networking-ansible affected Red Hat:openstack:18.0::el9 python3-networking-ansible
python3-networking-baremetal affected Red Hat:openstack:18.0::el9 python3-networking-baremetal
python3-networking-bgpvpn affected Red Hat:openstack:18.0::el9 python3-networking-bgpvpn
python3-networking-bgpvpn-dashboard affected Red Hat:openstack:18.0::el9 python3-networking-bgpvpn-dashboard
python3-networking-bgpvpn-heat affected Red Hat:openstack:18.0::el9 python3-networking-bgpvpn-heat
python3-networking-bigswitch affected Red Hat:openstack:18.0::el9 python3-networking-bigswitch
python3-networking-l2gw affected Red Hat:openstack:18.0::el9 python3-networking-l2gw
python3-networking-l2gw-tests-tempest affected Red Hat:openstack:18.0::el9 python3-networking-l2gw-tests-tempest
python3-network-runner affected Red Hat:openstack:18.0::el9 python3-network-runner
python3-neutron affected Red Hat:openstack:18.0::el9 python3-neutron
python3-neutronclient affected Red Hat:openstack:18.0::el9 python3-neutronclient
python3-neutron-dynamic-routing affected Red Hat:openstack:18.0::el9 python3-neutron-dynamic-routing
python3-neutron-lib affected Red Hat:openstack:18.0::el9 python3-neutron-lib
python3-neutron-lib-tests affected Red Hat:openstack:18.0::el9 python3-neutron-lib-tests
python3-neutron-tests-tempest affected Red Hat:openstack:18.0::el9 python3-neutron-tests-tempest
python3-nova affected Red Hat:openstack:18.0::el9 python3-nova
python3-novaclient affected Red Hat:openstack:18.0::el9 python3-novaclient
python3-observabilityclient affected Red Hat:openstack:18.0::el9 python3-observabilityclient
python3-octavia affected Red Hat:openstack:18.0::el9 python3-octavia
python3-octaviaclient affected Red Hat:openstack:18.0::el9 python3-octaviaclient
python3-octavia-lib affected Red Hat:openstack:18.0::el9 python3-octavia-lib
python3-octavia-tests-tempest affected Red Hat:openstack:18.0::el9 python3-octavia-tests-tempest
python3-octavia-tests-tempest-golang affected Red Hat:openstack:18.0::el9 python3-octavia-tests-tempest-golang
python3-octavia-tests-tempest-golang-debuginfo affected Red Hat:openstack:18.0::el9 python3-octavia-tests-tempest-golang-debuginfo
python3-openshift affected Red Hat:openstack:18.0::el9 python3-openshift
python3-openstackclient affected Red Hat:openstack:18.0::el9 python3-openstackclient
python3-openstacksdk affected Red Hat:openstack:18.0::el9 python3-openstacksdk
python3-os-brick affected Red Hat:openstack:18.0::el9 python3-os-brick
python3-osc-lib affected Red Hat:openstack:18.0::el9 python3-osc-lib
python3-os-client-config affected Red Hat:openstack:18.0::el9 python3-os-client-config
python3-osc-placement affected Red Hat:openstack:18.0::el9 python3-osc-placement
python3-os-ken affected Red Hat:openstack:18.0::el9 python3-os-ken
python3-oslo-cache affected Red Hat:openstack:18.0::el9 python3-oslo-cache
python3-oslo-concurrency affected Red Hat:openstack:18.0::el9 python3-oslo-concurrency
python3-oslo-config affected Red Hat:openstack:18.0::el9 python3-oslo-config
python3-oslo-context affected Red Hat:openstack:18.0::el9 python3-oslo-context
python3-oslo-db affected Red Hat:openstack:18.0::el9 python3-oslo-db
python3-oslo-i18n affected Red Hat:openstack:18.0::el9 python3-oslo-i18n
python3-oslo-limit affected Red Hat:openstack:18.0::el9 python3-oslo-limit
python3-oslo-log affected Red Hat:openstack:18.0::el9 python3-oslo-log
python3-oslo-messaging affected Red Hat:openstack:18.0::el9 python3-oslo-messaging
python3-oslo-metrics affected Red Hat:openstack:18.0::el9 python3-oslo-metrics
python3-oslo-middleware affected Red Hat:openstack:18.0::el9 python3-oslo-middleware
python3-oslo-policy affected Red Hat:openstack:18.0::el9 python3-oslo-policy
python3-oslo-privsep affected Red Hat:openstack:18.0::el9 python3-oslo-privsep
python3-oslo-reports affected Red Hat:openstack:18.0::el9 python3-oslo-reports
python3-oslo-rootwrap affected Red Hat:openstack:18.0::el9 python3-oslo-rootwrap
python3-oslo-serialization affected Red Hat:openstack:18.0::el9 python3-oslo-serialization
python3-oslo-service affected Red Hat:openstack:18.0::el9 python3-oslo-service
python3-oslotest affected Red Hat:openstack:18.0::el9 python3-oslotest
python3-oslo-upgradecheck affected Red Hat:openstack:18.0::el9 python3-oslo-upgradecheck
python3-oslo-utils affected Red Hat:openstack:18.0::el9 python3-oslo-utils
python3-oslo-versionedobjects affected Red Hat:openstack:18.0::el9 python3-oslo-versionedobjects
python3-oslo-vmware affected Red Hat:openstack:18.0::el9 python3-oslo-vmware
python3-osprofiler affected Red Hat:openstack:18.0::el9 python3-osprofiler
python3-os-resource-classes affected Red Hat:openstack:18.0::el9 python3-os-resource-classes
python3-os-service-types affected Red Hat:openstack:18.0::el9 python3-os-service-types
python3-os-testr affected Red Hat:openstack:18.0::el9 python3-os-testr
python3-os-traits affected Red Hat:openstack:18.0::el9 python3-os-traits
python3-os-vif affected Red Hat:openstack:18.0::el9 python3-os-vif
python3-os-win affected Red Hat:openstack:18.0::el9 python3-os-win
python3-ovn-octavia-provider affected Red Hat:openstack:18.0::el9 python3-ovn-octavia-provider
python3-ovsdbapp affected Red Hat:openstack:18.0::el9 python3-ovsdbapp
python3-paramiko affected Red Hat:openstack:18.0::el9 python3-paramiko
python3-passlib affected Red Hat:openstack:18.0::el9 python3-passlib
python3-paste affected Red Hat:openstack:18.0::el9 python3-paste
python3-paste-deploy affected Red Hat:openstack:18.0::el9 python3-paste-deploy
python3-pbr affected Red Hat:openstack:18.0::el9 python3-pbr
python3-pecan affected Red Hat:openstack:18.0::el9 python3-pecan
python3-pint affected Red Hat:openstack:18.0::el9 python3-pint
python3-placement affected Red Hat:openstack:18.0::el9 python3-placement
python3-posix_ipc affected Red Hat:openstack:18.0::el9 python3-posix_ipc
python3-posix_ipc-debuginfo affected Red Hat:openstack:18.0::el9 python3-posix_ipc-debuginfo
python3-proliantutils affected Red Hat:openstack:18.0::el9 python3-proliantutils
python3-prometheus_client affected Red Hat:openstack:18.0::el9 python3-prometheus_client
python3-pycadf affected Red Hat:openstack:18.0::el9 python3-pycadf
python3-pycodestyle affected Red Hat:openstack:18.0::el9 python3-pycodestyle
python3-pydot affected Red Hat:openstack:18.0::el9 python3-pydot
python3-pyeclib affected Red Hat:openstack:18.0::el9 python3-pyeclib
python3-pyeclib-debuginfo affected Red Hat:openstack:18.0::el9 python3-pyeclib-debuginfo
python3-pyflakes affected Red Hat:openstack:18.0::el9 python3-pyflakes
python3-pymemcache affected Red Hat:openstack:18.0::el9 python3-pymemcache
python3-pynacl affected Red Hat:openstack:18.0::el9 python3-pynacl
python3-pynacl-debuginfo affected Red Hat:openstack:18.0::el9 python3-pynacl-debuginfo
python3-pyOpenSSL affected Red Hat:openstack:18.0::el9 python3-pyOpenSSL
python3-pyperclip affected Red Hat:openstack:18.0::el9 python3-pyperclip
python3-pyroute2 affected Red Hat:openstack:18.0::el9 python3-pyroute2
python3-pysaml2 affected Red Hat:openstack:18.0::el9 python3-pysaml2
python3-pysendfile affected Red Hat:openstack:18.0::el9 python3-pysendfile
python3-pysendfile-debuginfo affected Red Hat:openstack:18.0::el9 python3-pysendfile-debuginfo
python3-pysnmp affected Red Hat:openstack:18.0::el9 python3-pysnmp
python3-pystache affected Red Hat:openstack:18.0::el9 python3-pystache
python3-pyxattr affected Red Hat:openstack:18.0::el9 python3-pyxattr
python3-pyxattr-debuginfo affected Red Hat:openstack:18.0::el9 python3-pyxattr-debuginfo
python3-rcssmin affected Red Hat:openstack:18.0::el9 python3-rcssmin
python3-rcssmin-debuginfo affected Red Hat:openstack:18.0::el9 python3-rcssmin-debuginfo
python3-repoze-lru affected Red Hat:openstack:18.0::el9 python3-repoze-lru
python3-requestsexceptions affected Red Hat:openstack:18.0::el9 python3-requestsexceptions
python3-requests-kerberos affected Red Hat:openstack:18.0::el9 python3-requests-kerberos
python3-retrying affected Red Hat:openstack:18.0::el9 python3-retrying
python3-rfc3986 affected Red Hat:openstack:18.0::el9 python3-rfc3986
python3-rfc3986+idna2008 affected Red Hat:openstack:18.0::el9 python3-rfc3986+idna2008
python3-rhoso-openvswitch affected Red Hat:openstack:18.0::el9 python3-rhoso-openvswitch
python3-rjsmin affected Red Hat:openstack:18.0::el9 python3-rjsmin
python3-rjsmin-debuginfo affected Red Hat:openstack:18.0::el9 python3-rjsmin-debuginfo
python3-routes affected Red Hat:openstack:18.0::el9 python3-routes
python3-rsdclient affected Red Hat:openstack:18.0::el9 python3-rsdclient
python3-rsd-lib affected Red Hat:openstack:18.0::el9 python3-rsd-lib
python3-s3transfer affected Red Hat:openstack:18.0::el9 python3-s3transfer
python3-scciclient affected Red Hat:openstack:18.0::el9 python3-scciclient
python3-scrypt affected Red Hat:openstack:18.0::el9 python3-scrypt
python3-scrypt-debuginfo affected Red Hat:openstack:18.0::el9 python3-scrypt-debuginfo
python3-scss affected Red Hat:openstack:18.0::el9 python3-scss
python3-scss-debuginfo affected Red Hat:openstack:18.0::el9 python3-scss-debuginfo
python3-secretstorage affected Red Hat:openstack:18.0::el9 python3-secretstorage
python3-semantic_version affected Red Hat:openstack:18.0::el9 python3-semantic_version
python3-setproctitle affected Red Hat:openstack:18.0::el9 python3-setproctitle
python3-setproctitle-debuginfo affected Red Hat:openstack:18.0::el9 python3-setproctitle-debuginfo
python3-shade affected Red Hat:openstack:18.0::el9 python3-shade
python3-simplegeneric affected Red Hat:openstack:18.0::el9 python3-simplegeneric
python3-simplejson affected Red Hat:openstack:18.0::el9 python3-simplejson
python3-simplejson-debuginfo affected Red Hat:openstack:18.0::el9 python3-simplejson-debuginfo
python3-smi affected Red Hat:openstack:18.0::el9 python3-smi
python3-sniffio affected Red Hat:openstack:18.0::el9 python3-sniffio
python3-sqlalchemy-utils affected Red Hat:openstack:18.0::el9 python3-sqlalchemy-utils
python3-sqlparse affected Red Hat:openstack:18.0::el9 python3-sqlparse
python3-statsd affected Red Hat:openstack:18.0::el9 python3-statsd
python3-stestr affected Red Hat:openstack:18.0::el9 python3-stestr
python3-stevedore affected Red Hat:openstack:18.0::el9 python3-stevedore
python3-string_utils affected Red Hat:openstack:18.0::el9 python3-string_utils
python3-subunit affected Red Hat:openstack:18.0::el9 python3-subunit
python3-suds affected Red Hat:openstack:18.0::el9 python3-suds
python3-sushy affected Red Hat:openstack:18.0::el9 python3-sushy
python3-sushy-oem-idrac affected Red Hat:openstack:18.0::el9 python3-sushy-oem-idrac
python3-swift affected Red Hat:openstack:18.0::el9 python3-swift
python3-swiftclient affected Red Hat:openstack:18.0::el9 python3-swiftclient
python3-sysv_ipc affected Red Hat:openstack:18.0::el9 python3-sysv_ipc
python3-sysv_ipc-debuginfo affected Red Hat:openstack:18.0::el9 python3-sysv_ipc-debuginfo
python3-tabulate affected Red Hat:openstack:18.0::el9 python3-tabulate
python3-taskflow affected Red Hat:openstack:18.0::el9 python3-taskflow
python3-tcib affected Red Hat:openstack:18.0::el9 python3-tcib
python3-telemetry-tests-tempest affected Red Hat:openstack:18.0::el9 python3-telemetry-tests-tempest
python3-tempest affected Red Hat:openstack:18.0::el9 python3-tempest
python3-tempestconf affected Red Hat:openstack:18.0::el9 python3-tempestconf
python3-tempita affected Red Hat:openstack:18.0::el9 python3-tempita
python3-tenacity affected Red Hat:openstack:18.0::el9 python3-tenacity
python3-testscenarios affected Red Hat:openstack:18.0::el9 python3-testscenarios
python3-testtools affected Red Hat:openstack:18.0::el9 python3-testtools
python3-tooz affected Red Hat:openstack:18.0::el9 python3-tooz
python3-uhashring affected Red Hat:openstack:18.0::el9 python3-uhashring
python3-ujson affected Red Hat:openstack:18.0::el9 python3-ujson
python3-ujson-debuginfo affected Red Hat:openstack:18.0::el9 python3-ujson-debuginfo
python3-vine affected Red Hat:openstack:18.0::el9 python3-vine
python3-voluptuous affected Red Hat:openstack:18.0::el9 python3-voluptuous
python3-warlock affected Red Hat:openstack:18.0::el9 python3-warlock
python3-webob affected Red Hat:openstack:18.0::el9 python3-webob
python3-websocket-client affected Red Hat:openstack:18.0::el9 python3-websocket-client
python3-websockify affected Red Hat:openstack:18.0::el9 python3-websockify
python3-werkzeug affected Red Hat:openstack:18.0::el9 python3-werkzeug
python3-wrapt affected Red Hat:openstack:18.0::el9 python3-wrapt
python3-wrapt-debuginfo affected Red Hat:openstack:18.0::el9 python3-wrapt-debuginfo
python3-wsgi_intercept affected Red Hat:openstack:18.0::el9 python3-wsgi_intercept
python3-wsme affected Red Hat:openstack:18.0::el9 python3-wsme
python3-xmltodict affected Red Hat:openstack:18.0::el9 python3-xmltodict
python3-XStatic affected Red Hat:openstack:18.0::el9 python3-XStatic
python3-XStatic-Angular affected Red Hat:openstack:18.0::el9 python3-XStatic-Angular
python3-XStatic-Angular-Bootstrap affected Red Hat:openstack:18.0::el9 python3-XStatic-Angular-Bootstrap
python3-XStatic-Angular-FileUpload affected Red Hat:openstack:18.0::el9 python3-XStatic-Angular-FileUpload
python3-XStatic-Angular-Gettext affected Red Hat:openstack:18.0::el9 python3-XStatic-Angular-Gettext
python3-XStatic-Angular-lrdragndrop affected Red Hat:openstack:18.0::el9 python3-XStatic-Angular-lrdragndrop
python3-XStatic-Angular-Schema-Form affected Red Hat:openstack:18.0::el9 python3-XStatic-Angular-Schema-Form
python3-XStatic-Angular-UUID affected Red Hat:openstack:18.0::el9 python3-XStatic-Angular-UUID
python3-XStatic-Angular-Vis affected Red Hat:openstack:18.0::el9 python3-XStatic-Angular-Vis
python3-XStatic-Bootstrap-Datepicker affected Red Hat:openstack:18.0::el9 python3-XStatic-Bootstrap-Datepicker
python3-XStatic-Bootstrap-SCSS affected Red Hat:openstack:18.0::el9 python3-XStatic-Bootstrap-SCSS
python3-XStatic-bootswatch affected Red Hat:openstack:18.0::el9 python3-XStatic-bootswatch
python3-XStatic-D3 affected Red Hat:openstack:18.0::el9 python3-XStatic-D3
python3-XStatic-FileSaver affected Red Hat:openstack:18.0::el9 python3-XStatic-FileSaver
python3-XStatic-Font-Awesome affected Red Hat:openstack:18.0::el9 python3-XStatic-Font-Awesome
python3-XStatic-Hogan affected Red Hat:openstack:18.0::el9 python3-XStatic-Hogan
python3-XStatic-Jasmine affected Red Hat:openstack:18.0::el9 python3-XStatic-Jasmine
python3-XStatic-jQuery affected Red Hat:openstack:18.0::el9 python3-XStatic-jQuery
python3-XStatic-JQuery-Migrate affected Red Hat:openstack:18.0::el9 python3-XStatic-JQuery-Migrate
python3-XStatic-JQuery-quicksearch affected Red Hat:openstack:18.0::el9 python3-XStatic-JQuery-quicksearch
python3-XStatic-JQuery-TableSorter affected Red Hat:openstack:18.0::el9 python3-XStatic-JQuery-TableSorter
python3-XStatic-jquery-ui affected Red Hat:openstack:18.0::el9 python3-XStatic-jquery-ui
python3-XStatic-JSEncrypt affected Red Hat:openstack:18.0::el9 python3-XStatic-JSEncrypt
python3-XStatic-Json2yaml affected Red Hat:openstack:18.0::el9 python3-XStatic-Json2yaml
python3-XStatic-JS-Yaml affected Red Hat:openstack:18.0::el9 python3-XStatic-JS-Yaml
python3-XStatic-Magic-Search affected Red Hat:openstack:18.0::el9 python3-XStatic-Magic-Search
python3-XStatic-mdi affected Red Hat:openstack:18.0::el9 python3-XStatic-mdi
python3-XStatic-objectpath affected Red Hat:openstack:18.0::el9 python3-XStatic-objectpath
python3-XStatic-Rickshaw affected Red Hat:openstack:18.0::el9 python3-XStatic-Rickshaw
python3-XStatic-roboto-fontface affected Red Hat:openstack:18.0::el9 python3-XStatic-roboto-fontface
python3-XStatic-smart-table affected Red Hat:openstack:18.0::el9 python3-XStatic-smart-table
python3-XStatic-Spin affected Red Hat:openstack:18.0::el9 python3-XStatic-Spin
python3-XStatic-termjs affected Red Hat:openstack:18.0::el9 python3-XStatic-termjs
python3-XStatic-tv4 affected Red Hat:openstack:18.0::el9 python3-XStatic-tv4
python3-yappi affected Red Hat:openstack:18.0::el9 python3-yappi
python3-yappi-debuginfo affected Red Hat:openstack:18.0::el9 python3-yappi-debuginfo
python3-yaql affected Red Hat:openstack:18.0::el9 python3-yaql
python3-zake affected Red Hat:openstack:18.0::el9 python3-zake
python3-zaqarclient affected Red Hat:openstack:18.0::el9 python3-zaqarclient
python3-zeroconf affected Red Hat:openstack:18.0::el9 python3-zeroconf
python3-zipp affected Red Hat:openstack:18.0::el9 python3-zipp
python3-zstd affected Red Hat:openstack:18.0::el9 python3-zstd
python3-zstd-debuginfo affected Red Hat:openstack:18.0::el9 python3-zstd-debuginfo
python-alembic affected Red Hat:openstack:18.0::el9 python-alembic
python-amqp affected Red Hat:openstack:18.0::el9 python-amqp
python-aniso8601 affected Red Hat:openstack:18.0::el9 python-aniso8601
python-ansible-runner affected Red Hat:openstack:18.0::el9 python-ansible-runner
python-anyio affected Red Hat:openstack:18.0::el9 python-anyio
python-anyjson affected Red Hat:openstack:18.0::el9 python-anyjson
python-aodhclient affected Red Hat:openstack:18.0::el9 python-aodhclient
python-asgiref affected Red Hat:openstack:18.0::el9 python-asgiref
python-automaton affected Red Hat:openstack:18.0::el9 python-automaton
python-autopage affected Red Hat:openstack:18.0::el9 python-autopage
python-barbicanclient affected Red Hat:openstack:18.0::el9 python-barbicanclient
python-barbican-tests-tempest affected Red Hat:openstack:18.0::el9 python-barbican-tests-tempest
python-bcrypt affected Red Hat:openstack:18.0::el9 python-bcrypt
python-bcrypt-debugsource affected Red Hat:openstack:18.0::el9 python-bcrypt-debugsource
python-binary-memcached affected Red Hat:openstack:18.0::el9 python-binary-memcached
python-boto affected Red Hat:openstack:18.0::el9 python-boto
python-boto3 affected Red Hat:openstack:18.0::el9 python-boto3
python-botocore affected Red Hat:openstack:18.0::el9 python-botocore
python-cachetools affected Red Hat:openstack:18.0::el9 python-cachetools
python-castellan affected Red Hat:openstack:18.0::el9 python-castellan
python-ceilometermiddleware affected Red Hat:openstack:18.0::el9 python-ceilometermiddleware
python-certifi affected Red Hat:openstack:18.0::el9 python-certifi
python-cinderclient affected Red Hat:openstack:18.0::el9 python-cinderclient
python-cinderlib affected Red Hat:openstack:18.0::el9 python-cinderlib
python-cinder-tests-tempest affected Red Hat:openstack:18.0::el9 python-cinder-tests-tempest
python-click affected Red Hat:openstack:18.0::el9 python-click
python-cliff affected Red Hat:openstack:18.0::el9 python-cliff
python-cmd2 affected Red Hat:openstack:18.0::el9 python-cmd2
python-colorama affected Red Hat:openstack:18.0::el9 python-colorama
python-construct affected Red Hat:openstack:18.0::el9 python-construct
python-contextlib2 affected Red Hat:openstack:18.0::el9 python-contextlib2
python-cotyledon affected Red Hat:openstack:18.0::el9 python-cotyledon
python-croniter affected Red Hat:openstack:18.0::el9 python-croniter
python-cursive affected Red Hat:openstack:18.0::el9 python-cursive
python-daemon affected Red Hat:openstack:18.0::el9 python-daemon
python-ddt affected Red Hat:openstack:18.0::el9 python-ddt
python-debtcollector affected Red Hat:openstack:18.0::el9 python-debtcollector
python-defusedxml affected Red Hat:openstack:18.0::el9 python-defusedxml
python-designateclient affected Red Hat:openstack:18.0::el9 python-designateclient
python-designate-tests-tempest affected Red Hat:openstack:18.0::el9 python-designate-tests-tempest
python-dictdiffer affected Red Hat:openstack:18.0::el9 python-dictdiffer
python-django affected Red Hat:openstack:18.0::el9 python-django
python-django-appconf affected Red Hat:openstack:18.0::el9 python-django-appconf
python-django-compressor affected Red Hat:openstack:18.0::el9 python-django-compressor
python-django-debreach affected Red Hat:openstack:18.0::el9 python-django-debreach
python-django-horizon affected Red Hat:openstack:18.0::el9 python-django-horizon
python-django-pyscss affected Red Hat:openstack:18.0::el9 python-django-pyscss
python-docutils affected Red Hat:openstack:18.0::el9 python-docutils
python-dogpile-cache affected Red Hat:openstack:18.0::el9 python-dogpile-cache
python-dracclient affected Red Hat:openstack:18.0::el9 python-dracclient
python-edgegrid affected Red Hat:openstack:18.0::el9 python-edgegrid
python-etcd3gw affected Red Hat:openstack:18.0::el9 python-etcd3gw
python-eventlet affected Red Hat:openstack:18.0::el9 python-eventlet
python-extras affected Red Hat:openstack:18.0::el9 python-extras
python-fasteners affected Red Hat:openstack:18.0::el9 python-fasteners
python-fixtures affected Red Hat:openstack:18.0::el9 python-fixtures
python-flake8 affected Red Hat:openstack:18.0::el9 python-flake8
python-flask affected Red Hat:openstack:18.0::el9 python-flask
python-flask-restful affected Red Hat:openstack:18.0::el9 python-flask-restful
python-futurist affected Red Hat:openstack:18.0::el9 python-futurist
python-gabbi affected Red Hat:openstack:18.0::el9 python-gabbi
python-glanceclient affected Red Hat:openstack:18.0::el9 python-glanceclient
python-glance-store affected Red Hat:openstack:18.0::el9 python-glance-store
python-glance-tests-tempest affected Red Hat:openstack:18.0::el9 python-glance-tests-tempest
python-gnocchiclient affected Red Hat:openstack:18.0::el9 python-gnocchiclient
python-google-auth affected Red Hat:openstack:18.0::el9 python-google-auth
python-greenlet affected Red Hat:openstack:18.0::el9 python-greenlet
python-greenlet-debugsource affected Red Hat:openstack:18.0::el9 python-greenlet-debugsource
python-gunicorn affected Red Hat:openstack:18.0::el9 python-gunicorn
python-h11 affected Red Hat:openstack:18.0::el9 python-h11
python-h2 affected Red Hat:openstack:18.0::el9 python-h2
python-hardware affected Red Hat:openstack:18.0::el9 python-hardware
python-heatclient affected Red Hat:openstack:18.0::el9 python-heatclient
python-heat-tests-tempest affected Red Hat:openstack:18.0::el9 python-heat-tests-tempest
python-hpack affected Red Hat:openstack:18.0::el9 python-hpack
python-httpcore affected Red Hat:openstack:18.0::el9 python-httpcore
python-httplib2 affected Red Hat:openstack:18.0::el9 python-httplib2
python-httpx affected Red Hat:openstack:18.0::el9 python-httpx
python-hyperframe affected Red Hat:openstack:18.0::el9 python-hyperframe
python-ifaddr affected Red Hat:openstack:18.0::el9 python-ifaddr
python-ImcSdk affected Red Hat:openstack:18.0::el9 python-ImcSdk
python-importlib-metadata affected Red Hat:openstack:18.0::el9 python-importlib-metadata
python-ironicclient affected Red Hat:openstack:18.0::el9 python-ironicclient
python-ironic-inspector-client affected Red Hat:openstack:18.0::el9 python-ironic-inspector-client
python-ironic-lib affected Red Hat:openstack:18.0::el9 python-ironic-lib
python-ironic-tests-tempest affected Red Hat:openstack:18.0::el9 python-ironic-tests-tempest
python-iso8601 affected Red Hat:openstack:18.0::el9 python-iso8601
python-itsdangerous affected Red Hat:openstack:18.0::el9 python-itsdangerous
python-jeepney affected Red Hat:openstack:18.0::el9 python-jeepney
python-jinja2 affected Red Hat:openstack:18.0::el9 python-jinja2
python-jmespath affected Red Hat:openstack:18.0::el9 python-jmespath
python-jsonpath-rw affected Red Hat:openstack:18.0::el9 python-jsonpath-rw
python-jsonpath-rw-ext affected Red Hat:openstack:18.0::el9 python-jsonpath-rw-ext
python-junitxml affected Red Hat:openstack:18.0::el9 python-junitxml
python-jwt affected Red Hat:openstack:18.0::el9 python-jwt
python-kazoo affected Red Hat:openstack:18.0::el9 python-kazoo
python-kerberos affected Red Hat:openstack:18.0::el9 python-kerberos
python-kerberos-debugsource affected Red Hat:openstack:18.0::el9 python-kerberos-debugsource
python-keyring affected Red Hat:openstack:18.0::el9 python-keyring
python-keystoneauth1 affected Red Hat:openstack:18.0::el9 python-keystoneauth1
python-keystoneclient affected Red Hat:openstack:18.0::el9 python-keystoneclient
python-keystonemiddleware affected Red Hat:openstack:18.0::el9 python-keystonemiddleware
python-keystone-tests-tempest affected Red Hat:openstack:18.0::el9 python-keystone-tests-tempest
python-kombu affected Red Hat:openstack:18.0::el9 python-kombu
python-kubernetes affected Red Hat:openstack:18.0::el9 python-kubernetes
python-ldap3 affected Red Hat:openstack:18.0::el9 python-ldap3
python-ldappool affected Red Hat:openstack:18.0::el9 python-ldappool
python-lesscpy affected Red Hat:openstack:18.0::el9 python-lesscpy
python-lockfile affected Red Hat:openstack:18.0::el9 python-lockfile
python-logutils affected Red Hat:openstack:18.0::el9 python-logutils
python-manilaclient affected Red Hat:openstack:18.0::el9 python-manilaclient
python-manila-tests-tempest affected Red Hat:openstack:18.0::el9 python-manila-tests-tempest
python-markupsafe affected Red Hat:openstack:18.0::el9 python-markupsafe
python-markupsafe-debugsource affected Red Hat:openstack:18.0::el9 python-markupsafe-debugsource
python-mccabe affected Red Hat:openstack:18.0::el9 python-mccabe
python-memcached affected Red Hat:openstack:18.0::el9 python-memcached
python-microversion-parse affected Red Hat:openstack:18.0::el9 python-microversion-parse
python-migrate affected Red Hat:openstack:18.0::el9 python-migrate
python-mimeparse affected Red Hat:openstack:18.0::el9 python-mimeparse
python-mock affected Red Hat:openstack:18.0::el9 python-mock
python-monascaclient affected Red Hat:openstack:18.0::el9 python-monascaclient
python-monotonic affected Red Hat:openstack:18.0::el9 python-monotonic
python-more-itertools affected Red Hat:openstack:18.0::el9 python-more-itertools
python-msgpack affected Red Hat:openstack:18.0::el9 python-msgpack
python-msgpack-debugsource affected Red Hat:openstack:18.0::el9 python-msgpack-debugsource
python-munch affected Red Hat:openstack:18.0::el9 python-munch
python-ncclient affected Red Hat:openstack:18.0::el9 python-ncclient
python-ndg_httpsclient affected Red Hat:openstack:18.0::el9 python-ndg_httpsclient
python-networking-ansible affected Red Hat:openstack:18.0::el9 python-networking-ansible
python-networking-baremetal affected Red Hat:openstack:18.0::el9 python-networking-baremetal
python-networking-bgpvpn affected Red Hat:openstack:18.0::el9 python-networking-bgpvpn
python-networking-bigswitch affected Red Hat:openstack:18.0::el9 python-networking-bigswitch
python-networking-l2gw affected Red Hat:openstack:18.0::el9 python-networking-l2gw
python-networking-l2gw-tests-tempest affected Red Hat:openstack:18.0::el9 python-networking-l2gw-tests-tempest
python-network-runner affected Red Hat:openstack:18.0::el9 python-network-runner
python-neutronclient affected Red Hat:openstack:18.0::el9 python-neutronclient
python-neutron-lib affected Red Hat:openstack:18.0::el9 python-neutron-lib
python-neutron-tests-tempest affected Red Hat:openstack:18.0::el9 python-neutron-tests-tempest
python-novaclient affected Red Hat:openstack:18.0::el9 python-novaclient
python-observabilityclient affected Red Hat:openstack:18.0::el9 python-observabilityclient
python-octaviaclient affected Red Hat:openstack:18.0::el9 python-octaviaclient
python-octavia-lib affected Red Hat:openstack:18.0::el9 python-octavia-lib
python-octavia-tests-tempest affected Red Hat:openstack:18.0::el9 python-octavia-tests-tempest
python-octavia-tests-tempest-debugsource affected Red Hat:openstack:18.0::el9 python-octavia-tests-tempest-debugsource
python-openshift affected Red Hat:openstack:18.0::el9 python-openshift
python-openstackclient affected Red Hat:openstack:18.0::el9 python-openstackclient
python-openstackclient-lang affected Red Hat:openstack:18.0::el9 python-openstackclient-lang
python-openstacksdk affected Red Hat:openstack:18.0::el9 python-openstacksdk
python-os-brick affected Red Hat:openstack:18.0::el9 python-os-brick
python-osc-lib affected Red Hat:openstack:18.0::el9 python-osc-lib
python-os-client-config affected Red Hat:openstack:18.0::el9 python-os-client-config
python-osc-placement affected Red Hat:openstack:18.0::el9 python-osc-placement
python-os-ken affected Red Hat:openstack:18.0::el9 python-os-ken
python-oslo-cache affected Red Hat:openstack:18.0::el9 python-oslo-cache
python-oslo-cache-lang affected Red Hat:openstack:18.0::el9 python-oslo-cache-lang
python-oslo-concurrency affected Red Hat:openstack:18.0::el9 python-oslo-concurrency
python-oslo-concurrency-lang affected Red Hat:openstack:18.0::el9 python-oslo-concurrency-lang
python-oslo-config affected Red Hat:openstack:18.0::el9 python-oslo-config
python-oslo-context affected Red Hat:openstack:18.0::el9 python-oslo-context
python-oslo-db affected Red Hat:openstack:18.0::el9 python-oslo-db
python-oslo-db-lang affected Red Hat:openstack:18.0::el9 python-oslo-db-lang
python-oslo-i18n affected Red Hat:openstack:18.0::el9 python-oslo-i18n
python-oslo-i18n-lang affected Red Hat:openstack:18.0::el9 python-oslo-i18n-lang
python-oslo-limit affected Red Hat:openstack:18.0::el9 python-oslo-limit
python-oslo-log affected Red Hat:openstack:18.0::el9 python-oslo-log
python-oslo-log-lang affected Red Hat:openstack:18.0::el9 python-oslo-log-lang
python-oslo-messaging affected Red Hat:openstack:18.0::el9 python-oslo-messaging
python-oslo-metrics affected Red Hat:openstack:18.0::el9 python-oslo-metrics
python-oslo-middleware affected Red Hat:openstack:18.0::el9 python-oslo-middleware
python-oslo-middleware-lang affected Red Hat:openstack:18.0::el9 python-oslo-middleware-lang
python-oslo-policy affected Red Hat:openstack:18.0::el9 python-oslo-policy
python-oslo-policy-lang affected Red Hat:openstack:18.0::el9 python-oslo-policy-lang
python-oslo-privsep affected Red Hat:openstack:18.0::el9 python-oslo-privsep
python-oslo-privsep-lang affected Red Hat:openstack:18.0::el9 python-oslo-privsep-lang
python-oslo-reports affected Red Hat:openstack:18.0::el9 python-oslo-reports
python-oslo-rootwrap affected Red Hat:openstack:18.0::el9 python-oslo-rootwrap
python-oslo-serialization affected Red Hat:openstack:18.0::el9 python-oslo-serialization
python-oslo-service affected Red Hat:openstack:18.0::el9 python-oslo-service
python-oslotest affected Red Hat:openstack:18.0::el9 python-oslotest
python-oslo-upgradecheck affected Red Hat:openstack:18.0::el9 python-oslo-upgradecheck
python-oslo-utils affected Red Hat:openstack:18.0::el9 python-oslo-utils
python-oslo-utils-lang affected Red Hat:openstack:18.0::el9 python-oslo-utils-lang
python-oslo-versionedobjects affected Red Hat:openstack:18.0::el9 python-oslo-versionedobjects
python-oslo-versionedobjects-lang affected Red Hat:openstack:18.0::el9 python-oslo-versionedobjects-lang
python-oslo-vmware affected Red Hat:openstack:18.0::el9 python-oslo-vmware
python-oslo-vmware-lang affected Red Hat:openstack:18.0::el9 python-oslo-vmware-lang
python-osprofiler affected Red Hat:openstack:18.0::el9 python-osprofiler
python-os-resource-classes affected Red Hat:openstack:18.0::el9 python-os-resource-classes
python-os-service-types affected Red Hat:openstack:18.0::el9 python-os-service-types
python-os-testr affected Red Hat:openstack:18.0::el9 python-os-testr
python-os-traits affected Red Hat:openstack:18.0::el9 python-os-traits
python-os-vif affected Red Hat:openstack:18.0::el9 python-os-vif
python-os-win affected Red Hat:openstack:18.0::el9 python-os-win
python-ovn-octavia-provider affected Red Hat:openstack:18.0::el9 python-ovn-octavia-provider
python-ovsdbapp affected Red Hat:openstack:18.0::el9 python-ovsdbapp
python-paramiko affected Red Hat:openstack:18.0::el9 python-paramiko
python-passlib affected Red Hat:openstack:18.0::el9 python-passlib
python-paste affected Red Hat:openstack:18.0::el9 python-paste
python-paste-deploy affected Red Hat:openstack:18.0::el9 python-paste-deploy
python-pbr affected Red Hat:openstack:18.0::el9 python-pbr
python-pecan affected Red Hat:openstack:18.0::el9 python-pecan
python-pint affected Red Hat:openstack:18.0::el9 python-pint
python-posix_ipc affected Red Hat:openstack:18.0::el9 python-posix_ipc
python-posix_ipc-debugsource affected Red Hat:openstack:18.0::el9 python-posix_ipc-debugsource
python-proliantutils affected Red Hat:openstack:18.0::el9 python-proliantutils
python-prometheus_client affected Red Hat:openstack:18.0::el9 python-prometheus_client
python-pycadf affected Red Hat:openstack:18.0::el9 python-pycadf
python-pycadf-common affected Red Hat:openstack:18.0::el9 python-pycadf-common
python-pycodestyle affected Red Hat:openstack:18.0::el9 python-pycodestyle
python-pyeclib affected Red Hat:openstack:18.0::el9 python-pyeclib
python-pyeclib-debugsource affected Red Hat:openstack:18.0::el9 python-pyeclib-debugsource
python-pymemcache affected Red Hat:openstack:18.0::el9 python-pymemcache
python-pynacl affected Red Hat:openstack:18.0::el9 python-pynacl
python-pynacl-debugsource affected Red Hat:openstack:18.0::el9 python-pynacl-debugsource
python-pyperclip affected Red Hat:openstack:18.0::el9 python-pyperclip
python-pyroute2 affected Red Hat:openstack:18.0::el9 python-pyroute2
python-pysaml2 affected Red Hat:openstack:18.0::el9 python-pysaml2
python-rcssmin affected Red Hat:openstack:18.0::el9 python-rcssmin
python-rcssmin-debugsource affected Red Hat:openstack:18.0::el9 python-rcssmin-debugsource
python-repoze-lru affected Red Hat:openstack:18.0::el9 python-repoze-lru
python-requestsexceptions affected Red Hat:openstack:18.0::el9 python-requestsexceptions
python-requests-kerberos affected Red Hat:openstack:18.0::el9 python-requests-kerberos
python-retrying affected Red Hat:openstack:18.0::el9 python-retrying
python-rfc3986 affected Red Hat:openstack:18.0::el9 python-rfc3986
python-rjsmin affected Red Hat:openstack:18.0::el9 python-rjsmin
python-rjsmin-debugsource affected Red Hat:openstack:18.0::el9 python-rjsmin-debugsource
python-routes affected Red Hat:openstack:18.0::el9 python-routes
python-rsdclient affected Red Hat:openstack:18.0::el9 python-rsdclient
python-rsd-lib affected Red Hat:openstack:18.0::el9 python-rsd-lib
python-s3transfer affected Red Hat:openstack:18.0::el9 python-s3transfer
python-scciclient affected Red Hat:openstack:18.0::el9 python-scciclient
python-scrypt affected Red Hat:openstack:18.0::el9 python-scrypt
python-scrypt-debugsource affected Red Hat:openstack:18.0::el9 python-scrypt-debugsource
python-scss affected Red Hat:openstack:18.0::el9 python-scss
python-scss-debugsource affected Red Hat:openstack:18.0::el9 python-scss-debugsource
python-SecretStorage affected Red Hat:openstack:18.0::el9 python-SecretStorage
python-semantic_version affected Red Hat:openstack:18.0::el9 python-semantic_version
python-setproctitle affected Red Hat:openstack:18.0::el9 python-setproctitle
python-setproctitle-debugsource affected Red Hat:openstack:18.0::el9 python-setproctitle-debugsource
python-shade affected Red Hat:openstack:18.0::el9 python-shade
python-simplegeneric affected Red Hat:openstack:18.0::el9 python-simplegeneric
python-simplejson affected Red Hat:openstack:18.0::el9 python-simplejson
python-simplejson-debugsource affected Red Hat:openstack:18.0::el9 python-simplejson-debugsource
python-smi affected Red Hat:openstack:18.0::el9 python-smi
python-sniffio affected Red Hat:openstack:18.0::el9 python-sniffio
python-sqlalchemy-utils affected Red Hat:openstack:18.0::el9 python-sqlalchemy-utils
python-sqlparse affected Red Hat:openstack:18.0::el9 python-sqlparse
python-statsd affected Red Hat:openstack:18.0::el9 python-statsd
python-stestr affected Red Hat:openstack:18.0::el9 python-stestr
python-stevedore affected Red Hat:openstack:18.0::el9 python-stevedore
python-string_utils affected Red Hat:openstack:18.0::el9 python-string_utils
python-suds affected Red Hat:openstack:18.0::el9 python-suds
python-sushy affected Red Hat:openstack:18.0::el9 python-sushy
python-sushy-oem-idrac affected Red Hat:openstack:18.0::el9 python-sushy-oem-idrac
python-swiftclient affected Red Hat:openstack:18.0::el9 python-swiftclient
python-sysv_ipc affected Red Hat:openstack:18.0::el9 python-sysv_ipc
python-sysv_ipc-debugsource affected Red Hat:openstack:18.0::el9 python-sysv_ipc-debugsource
python-tabulate affected Red Hat:openstack:18.0::el9 python-tabulate
python-taskflow affected Red Hat:openstack:18.0::el9 python-taskflow
python-tcib affected Red Hat:openstack:18.0::el9 python-tcib
python-tcib-containers affected Red Hat:openstack:18.0::el9 python-tcib-containers
python-telemetry-tests-tempest affected Red Hat:openstack:18.0::el9 python-telemetry-tests-tempest
python-tempestconf affected Red Hat:openstack:18.0::el9 python-tempestconf
python-tempita affected Red Hat:openstack:18.0::el9 python-tempita
python-tenacity affected Red Hat:openstack:18.0::el9 python-tenacity
python-testscenarios affected Red Hat:openstack:18.0::el9 python-testscenarios
python-testtools affected Red Hat:openstack:18.0::el9 python-testtools
python-tooz affected Red Hat:openstack:18.0::el9 python-tooz
python-uhashring affected Red Hat:openstack:18.0::el9 python-uhashring
python-ujson affected Red Hat:openstack:18.0::el9 python-ujson
python-ujson-debugsource affected Red Hat:openstack:18.0::el9 python-ujson-debugsource
python-vine affected Red Hat:openstack:18.0::el9 python-vine
python-voluptuous affected Red Hat:openstack:18.0::el9 python-voluptuous
python-warlock affected Red Hat:openstack:18.0::el9 python-warlock
python-webob affected Red Hat:openstack:18.0::el9 python-webob
python-websocket-client affected Red Hat:openstack:18.0::el9 python-websocket-client
python-websockify affected Red Hat:openstack:18.0::el9 python-websockify
python-werkzeug affected Red Hat:openstack:18.0::el9 python-werkzeug
python-wrapt affected Red Hat:openstack:18.0::el9 python-wrapt
python-wrapt-debugsource affected Red Hat:openstack:18.0::el9 python-wrapt-debugsource
python-wsgi_intercept affected Red Hat:openstack:18.0::el9 python-wsgi_intercept
python-wsme affected Red Hat:openstack:18.0::el9 python-wsme
python-xmltodict affected Red Hat:openstack:18.0::el9 python-xmltodict
python-XStatic affected Red Hat:openstack:18.0::el9 python-XStatic
python-XStatic-Angular affected Red Hat:openstack:18.0::el9 python-XStatic-Angular
python-XStatic-Angular-Bootstrap affected Red Hat:openstack:18.0::el9 python-XStatic-Angular-Bootstrap
python-XStatic-Angular-FileUpload affected Red Hat:openstack:18.0::el9 python-XStatic-Angular-FileUpload
python-XStatic-Angular-Gettext affected Red Hat:openstack:18.0::el9 python-XStatic-Angular-Gettext
python-XStatic-Angular-lrdragndrop affected Red Hat:openstack:18.0::el9 python-XStatic-Angular-lrdragndrop
python-XStatic-Angular-Schema-Form affected Red Hat:openstack:18.0::el9 python-XStatic-Angular-Schema-Form
python-XStatic-Angular-UUID affected Red Hat:openstack:18.0::el9 python-XStatic-Angular-UUID
python-XStatic-Angular-Vis affected Red Hat:openstack:18.0::el9 python-XStatic-Angular-Vis
python-XStatic-Bootstrap-Datepicker affected Red Hat:openstack:18.0::el9 python-XStatic-Bootstrap-Datepicker
python-XStatic-Bootstrap-SCSS affected Red Hat:openstack:18.0::el9 python-XStatic-Bootstrap-SCSS
python-XStatic-bootswatch affected Red Hat:openstack:18.0::el9 python-XStatic-bootswatch
python-XStatic-D3 affected Red Hat:openstack:18.0::el9 python-XStatic-D3
python-XStatic-FileSaver affected Red Hat:openstack:18.0::el9 python-XStatic-FileSaver
python-XStatic-Font-Awesome affected Red Hat:openstack:18.0::el9 python-XStatic-Font-Awesome
python-XStatic-Hogan affected Red Hat:openstack:18.0::el9 python-XStatic-Hogan
python-XStatic-Jasmine affected Red Hat:openstack:18.0::el9 python-XStatic-Jasmine
python-XStatic-jQuery affected Red Hat:openstack:18.0::el9 python-XStatic-jQuery
python-XStatic-JQuery-Migrate affected Red Hat:openstack:18.0::el9 python-XStatic-JQuery-Migrate
python-XStatic-JQuery-quicksearch affected Red Hat:openstack:18.0::el9 python-XStatic-JQuery-quicksearch
python-XStatic-JQuery-TableSorter affected Red Hat:openstack:18.0::el9 python-XStatic-JQuery-TableSorter
python-XStatic-jquery-ui affected Red Hat:openstack:18.0::el9 python-XStatic-jquery-ui
python-XStatic-JSEncrypt affected Red Hat:openstack:18.0::el9 python-XStatic-JSEncrypt
python-XStatic-Json2yaml affected Red Hat:openstack:18.0::el9 python-XStatic-Json2yaml
python-XStatic-JS-Yaml affected Red Hat:openstack:18.0::el9 python-XStatic-JS-Yaml
python-XStatic-Magic-Search affected Red Hat:openstack:18.0::el9 python-XStatic-Magic-Search
python-XStatic-mdi affected Red Hat:openstack:18.0::el9 python-XStatic-mdi
python-XStatic-objectpath affected Red Hat:openstack:18.0::el9 python-XStatic-objectpath
python-XStatic-Rickshaw affected Red Hat:openstack:18.0::el9 python-XStatic-Rickshaw
python-XStatic-roboto-fontface affected Red Hat:openstack:18.0::el9 python-XStatic-roboto-fontface
python-XStatic-smart-table affected Red Hat:openstack:18.0::el9 python-XStatic-smart-table
python-XStatic-Spin affected Red Hat:openstack:18.0::el9 python-XStatic-Spin
python-XStatic-termjs affected Red Hat:openstack:18.0::el9 python-XStatic-termjs
python-XStatic-tv4 affected Red Hat:openstack:18.0::el9 python-XStatic-tv4
python-yappi affected Red Hat:openstack:18.0::el9 python-yappi
python-yappi-debugsource affected Red Hat:openstack:18.0::el9 python-yappi-debugsource
python-yaql affected Red Hat:openstack:18.0::el9 python-yaql
python-zake affected Red Hat:openstack:18.0::el9 python-zake
python-zaqarclient affected Red Hat:openstack:18.0::el9 python-zaqarclient
python-zeroconf affected Red Hat:openstack:18.0::el9 python-zeroconf
python-zipp affected Red Hat:openstack:18.0::el9 python-zipp
python-zstd affected Red Hat:openstack:18.0::el9 python-zstd
python-zstd-debugsource affected Red Hat:openstack:18.0::el9 python-zstd-debugsource
pyxattr affected Red Hat:openstack:18.0::el9 pyxattr
pyxattr-debugsource affected Red Hat:openstack:18.0::el9 pyxattr-debugsource
rabbitmq-server affected Red Hat:openstack:18.0::el9 rabbitmq-server
rhoso-network-scripts-openvswitch affected Red Hat:openstack:18.0::el9 rhoso-network-scripts-openvswitch
rhoso-openvswitch affected Red Hat:openstack:18.0::el9 rhoso-openvswitch
rhoso-ovn affected Red Hat:openstack:18.0::el9 rhoso-ovn
rhoso-ovn-central affected Red Hat:openstack:18.0::el9 rhoso-ovn-central
rhoso-ovn-host affected Red Hat:openstack:18.0::el9 rhoso-ovn-host
rhoso-ovn-vtep affected Red Hat:openstack:18.0::el9 rhoso-ovn-vtep
rhoso-release affected Red Hat:openstack:18.0::el9 rhoso-release
roboto-fontface-common affected Red Hat:openstack:18.0::el9 roboto-fontface-common
roboto-fontface-fonts affected Red Hat:openstack:18.0::el9 roboto-fontface-fonts
subunit affected Red Hat:openstack:18.0::el9 subunit
subunit-filters affected Red Hat:openstack:18.0::el9 subunit-filters
sysbench affected Red Hat:openstack:18.0::el9 sysbench
sysbench-debuginfo affected Red Hat:openstack:18.0::el9 sysbench-debuginfo
sysbench-debugsource affected Red Hat:openstack:18.0::el9 sysbench-debugsource
xstatic-angular-bootstrap-common affected Red Hat:openstack:18.0::el9 xstatic-angular-bootstrap-common
XStatic-Angular-common affected Red Hat:openstack:18.0::el9 XStatic-Angular-common
xstatic-angular-fileupload-common affected Red Hat:openstack:18.0::el9 xstatic-angular-fileupload-common
xstatic-angular-gettext-common affected Red Hat:openstack:18.0::el9 xstatic-angular-gettext-common
xstatic-angular-lrdragndrop-common affected Red Hat:openstack:18.0::el9 xstatic-angular-lrdragndrop-common
xstatic-angular-schema-form-common affected Red Hat:openstack:18.0::el9 xstatic-angular-schema-form-common
xstatic-angular-uuid-common affected Red Hat:openstack:18.0::el9 xstatic-angular-uuid-common
xstatic-angular-vis-common affected Red Hat:openstack:18.0::el9 xstatic-angular-vis-common
xstatic-bootstrap-datepicker-common affected Red Hat:openstack:18.0::el9 xstatic-bootstrap-datepicker-common
xstatic-bootstrap-scss-common affected Red Hat:openstack:18.0::el9 xstatic-bootstrap-scss-common
xstatic-d3-common affected Red Hat:openstack:18.0::el9 xstatic-d3-common
xstatic-filesaver-common affected Red Hat:openstack:18.0::el9 xstatic-filesaver-common
xstatic-hogan-common affected Red Hat:openstack:18.0::el9 xstatic-hogan-common
xstatic-jasmine-common affected Red Hat:openstack:18.0::el9 xstatic-jasmine-common
xstatic-jquery-migrate-common affected Red Hat:openstack:18.0::el9 xstatic-jquery-migrate-common
xstatic-jquery-quicksearch-common affected Red Hat:openstack:18.0::el9 xstatic-jquery-quicksearch-common
xstatic-jquery-tablesorter-common affected Red Hat:openstack:18.0::el9 xstatic-jquery-tablesorter-common
xstatic-jquery-ui-common affected Red Hat:openstack:18.0::el9 xstatic-jquery-ui-common
xstatic-jsencrypt-common affected Red Hat:openstack:18.0::el9 xstatic-jsencrypt-common
xstatic-json2yaml-common affected Red Hat:openstack:18.0::el9 xstatic-json2yaml-common
xstatic-js-yaml-common affected Red Hat:openstack:18.0::el9 xstatic-js-yaml-common
XStatic-Magic-Search-common affected Red Hat:openstack:18.0::el9 XStatic-Magic-Search-common
xstatic-objectpath-common affected Red Hat:openstack:18.0::el9 xstatic-objectpath-common
xstatic-rickshaw-common affected Red Hat:openstack:18.0::el9 xstatic-rickshaw-common
xstatic-smart-table-common affected Red Hat:openstack:18.0::el9 xstatic-smart-table-common
xstatic-spin-common affected Red Hat:openstack:18.0::el9 xstatic-spin-common
xstatic-termjs-common affected Red Hat:openstack:18.0::el9 xstatic-termjs-common
xstatic-tv4-common affected Red Hat:openstack:18.0::el9 xstatic-tv4-common
Upstream advisory

CVE-2024-38209

Open SourceActive exploitation (sightings)CRITICAL2024-08-13

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVEs:CVE-2024-38209

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

CVE-2024-38210

Open SourceActive exploitation (sightings)CRITICAL2024-08-13

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVEs:CVE-2024-38210

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

CVE-2024-38218

Open SourceActive exploitation (sightings)CRITICAL2024-08-08

Microsoft Edge (HTML-based) Memory Corruption Vulnerability

CVEs:CVE-2024-38218

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

SUSE-SU-2024:1166-2

Open SourceActive exploitation (sightings)HIGH2024-08-13

Security update for kubernetes1.23

Affected products

ProductStatusVendorPackageEcosystem
kubernetes1.26 affected SUSE:Linux Enterprise Module for Containers 15 SP6 kubernetes1.26
Upstream advisory

CVE-2024-34619

Open SourceActive exploitation (sightings)HIGH2024-08-05

Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVEs:CVE-2024-34619

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

BIT-tensorflow-2023-33976

Open SourceActive exploitation (sightings)CRITICAL2024-08-01

TensorFlow segfault in array_ops.upper_bound

Affected products

ProductStatusVendorPackageEcosystem
tensorflow affected Bitnami tensorflow
Upstream advisory

CVE-2024-43472

Open SourceActive exploitation (sightings)CRITICAL2024-08-13

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVEs:CVE-2024-43472

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

CVE-2024-38207

Open SourceActive exploitation (sightings)CRITICAL2024-08-13

Microsoft Edge (HTML-based) Memory Corruption Vulnerability

CVEs:CVE-2024-38207

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

GO-2023-1793

Open SourceActive exploitation (sightings)2024-08-20

secrets-store-csi-driver discloses service account tokens in logs in sigs.k8s.io/secrets-store-csi-driver

Affected products

ProductStatusVendorPackageEcosystem
secrets-store-csi-driver affected wolfi secrets-store-csi-driver
secrets-store-csi-driver affected sigs.k8s.io sigs.k8s.io/secrets-store-csi-driver
secrets-store-csi-driver affected chainguard secrets-store-csi-driver
vault-csi-provider affected chainguard vault-csi-provider
Upstream advisory

CVE-2024-20083

Open SourceActive exploitation (sightings)CRITICAL2024-08-14

In venc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08810810 / ALPS0880...

CVEs:CVE-2024-20083

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-32928

GoogleActive exploitation (sightings)MEDIUM2024-08-19

The libcurl CURLOPT_SSL_VERIFYPEER option was disabled on a subset of requests made by Nest production devices which enabled a potential man-in-the-middle attack on requests to Google cloud services by any host the traffic was routed through.

CVEs:CVE-2024-32928

Affected products

ProductStatusVendorPackageEcosystem
libcurl affected haxx
nest_mini_firmware affected google
Upstream advisory

CVE-2024-43265

GoogleActive exploitation (sightings)MEDIUM2024-08-26

Cross-Site Request Forgery (CSRF) vulnerability in Analytify.This issue affects Analytify: from n/a through 5.3.1.

CVEs:CVE-2024-43265

Affected products

ProductStatusVendorPackageEcosystem
analytify_-_google_analytics_dashboard affected analytify
Upstream advisory

CVE-2024-34620

Open SourceActive exploitation (sightings)HIGH2024-08-05

Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service.

CVEs:CVE-2024-34620

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34618

Open SourceActive exploitation (sightings)MEDIUM2024-08-05

Improper access control in System property prior to SMR Aug-2024 Release 1 allows local attackers to access cell related information.

CVEs:CVE-2024-34618

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34617

Open SourceActive exploitation (sightings)MEDIUM2024-08-05

Improper handling of insufficient permission in Telephony prior to SMR Aug-2024 Release 1 allows local attackers to configure default Message application.

CVEs:CVE-2024-34617

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

GO-2023-2330

Open SourcePoC exploitCRITICAL2024-08-21

Insufficient input sanitization on Windows nodes leads to privilege escalation in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
nodetaint affected wolfi nodetaint
nodetaint affected chainguard nodetaint
spark-operator affected wolfi spark-operator
spark-operator affected chainguard spark-operator
Upstream advisory

GO-2022-0782

Open SourcePoC exploit2024-08-21

Symlink Attack in kubectl cp in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2023-1946

Open SourcePoC exploitHIGH2024-08-20

Kubernetes DoS Vulnerability in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2022-0910

Open SourcePoC exploit2024-08-21

Files or Directories Accessible to External Parties in kubernetes in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2022-0907

Open SourcePoC exploit2024-08-21

Access Restriction Bypass in kube-apiserver in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

CLSA-2024-1723146030

Open SourcePoC exploitHIGH2024-08-08

Fix CVE(s): CVE-2021-3733

Affected products

ProductStatusVendorPackageEcosystem
idle-python2.7 affected TuxCare:Ubuntu:16.04 idle-python2.7
libpython2.7 affected TuxCare:Ubuntu:16.04 libpython2.7
libpython2.7-dev affected TuxCare:Ubuntu:16.04 libpython2.7-dev
libpython2.7-minimal affected TuxCare:Ubuntu:16.04 libpython2.7-minimal
libpython2.7-stdlib affected TuxCare:Ubuntu:16.04 libpython2.7-stdlib
libpython2.7-testsuite affected TuxCare:Ubuntu:16.04 libpython2.7-testsuite
python2.7 affected TuxCare:Ubuntu:16.04 python2.7
python2.7-dev affected TuxCare:Ubuntu:16.04 python2.7-dev
python2.7-doc affected TuxCare:Ubuntu:16.04 python2.7-doc
python2.7-examples affected TuxCare:Ubuntu:16.04 python2.7-examples
python2.7-minimal affected TuxCare:Ubuntu:16.04 python2.7-minimal
Upstream advisory

CLSA-2024-1722527236

Open SourcePoC exploitHIGH2024-08-01

Fix CVE(s): CVE-2021-3733

Affected products

ProductStatusVendorPackageEcosystem
idle-python2.7 affected TuxCare:Ubuntu:18.04 idle-python2.7
libpython2.7 affected TuxCare:Ubuntu:18.04 libpython2.7
libpython2.7-dev affected TuxCare:Ubuntu:18.04 libpython2.7-dev
libpython2.7-minimal affected TuxCare:Ubuntu:18.04 libpython2.7-minimal
libpython2.7-stdlib affected TuxCare:Ubuntu:18.04 libpython2.7-stdlib
libpython2.7-testsuite affected TuxCare:Ubuntu:18.04 libpython2.7-testsuite
python2.7 affected TuxCare:Ubuntu:18.04 python2.7
python2.7-dev affected TuxCare:Ubuntu:18.04 python2.7-dev
python2.7-doc affected TuxCare:Ubuntu:18.04 python2.7-doc
python2.7-examples affected TuxCare:Ubuntu:18.04 python2.7-examples
python2.7-minimal affected TuxCare:Ubuntu:18.04 python2.7-minimal
Upstream advisory

GO-2022-0890

Open SourcePoC exploitHIGH2024-08-21

Server Side Request Forgery (SSRF) in Kubernetes in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2022-0885

Open SourcePoC exploit2024-08-21

Improper Authentication in Kubernetes in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2023-2170

Open SourcePoC exploitCRITICAL2024-08-21

Insufficient input sanitization on Windows nodes leads to privilege escalation in k8s.io/kubernetes and k8s.io/mount-utils

Affected products

ProductStatusVendorPackageEcosystem
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
mount-utils affected k8s.io k8s.io/mount-utils
nodetaint affected chainguard nodetaint
nodetaint affected wolfi nodetaint
secrets-store-csi-driver affected chainguard secrets-store-csi-driver
secrets-store-csi-driver affected wolfi secrets-store-csi-driver
secrets-store-csi-driver-fips affected chainguard secrets-store-csi-driver-fips
spark-operator affected chainguard spark-operator
spark-operator affected wolfi spark-operator
Upstream advisory

GO-2022-0802

Open SourcePoC exploit2024-08-21

Kubernetes kubectl cp Vulnerable to Symlink Attack in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

AZL-48036

Open SourcePoC exploitCRITICAL2024-08-19

CVE-2024-7592 affecting package tensorflow for versions less than 2.16.1-6

Affected products

ProductStatusVendorPackageEcosystem
tensorflow affected Azure Linux:3 tensorflow
Upstream advisory

GO-2023-1892

Open SourcePoC exploit2024-08-20

Kubernetes mountable secrets policy bypass in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
nodetaint affected wolfi nodetaint
nodetaint affected chainguard nodetaint
spark-operator affected wolfi spark-operator
spark-operator affected chainguard spark-operator
Upstream advisory

GO-2023-1629

Open SourcePoC exploit2024-08-20

Kubernetes vulnerable to validation bypass in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2022-0893

Open SourcePoC exploit2024-08-21

Access Restriction Bypass in kubernetes in github.com/kubernetes/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-1.30 affected chainguard kubernetes-1.30
kubernetes-1.31 affected chainguard kubernetes-1.31
kubernetes-1.32 affected chainguard kubernetes-1.32
kubernetes/kubernetes affected github.com github.com/kubernetes/kubernetes
Upstream advisory

OESA-2024-2059

Open SourcePoC exploitHIGH2024-08-23

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP4 golang
Upstream advisory

OESA-2024-1978

Open SourcePoC exploitHIGH2024-08-16

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP3 golang
Upstream advisory

OESA-2024-1979

Open SourcePoC exploitHIGH2024-08-16

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:20.03-LTS-SP4 golang
Upstream advisory

OESA-2024-1980

Open SourcePoC exploitHIGH2024-08-16

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP1 golang
Upstream advisory

OESA-2024-1952

Open SourcePoC exploitHIGH2024-08-09

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:24.03-LTS golang
Upstream advisory

openSUSE-SU-2024:14232-1

Open SourcePoC exploit2024-08-01

golang-github-prometheus-prometheus-2.53.0-3.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
golang-github-prometheus-prometheus affected openSUSE:Tumbleweed golang-github-prometheus-prometheus
Upstream advisory

GO-2022-0908

Open SourcePoC exploit2024-08-21

Incomplete List of Disallowed Inputs in Kubernetes in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GHSA-r55c-59qm-vjw6

GooglePoC exploitHIGH2024-08-01

REXML DoS vulnerability

Affected products

ProductStatusVendorPackageEcosystem
rexml affected RubyGems rexml
Upstream advisory

GHSA-r55c-59qm-vjw6

Open SourcePoC exploitHIGH2024-08-01

REXML DoS vulnerability

Affected products

ProductStatusVendorPackageEcosystem
jruby-9.4 affected chainguard jruby-9.4
jruby-9.4 affected wolfi jruby-9.4
kube-fluentd-operator affected wolfi kube-fluentd-operator
kube-fluentd-operator affected chainguard kube-fluentd-operator
logstash affected wolfi logstash
logstash affected chainguard logstash
logstash-jre-bcfips affected chainguard logstash-jre-bcfips
rexml affected RubyGems
rexml affected RubyGems rexml
ruby-3.1 affected wolfi ruby-3.1
ruby-3.1 affected chainguard ruby-3.1
ruby3.1-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.1-fluentd-kubernetes-daemonset-1.16
ruby3.1-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.1-fluentd-kubernetes-daemonset-1.17
ruby3.1-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.1-fluentd-kubernetes-daemonset-1.17
ruby-3.2 affected wolfi ruby-3.2
ruby-3.2 affected chainguard ruby-3.2
ruby3.2-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.2-fluentd-kubernetes-daemonset-1.16
ruby3.2-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.2-fluentd-kubernetes-daemonset-1.17
ruby3.2-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.2-fluentd-kubernetes-daemonset-1.17
ruby-3.3 affected wolfi ruby-3.3
ruby-3.3 affected chainguard ruby-3.3
ruby3.3-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.3-fluentd-kubernetes-daemonset-1.16
ruby3.4-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.4-fluentd-kubernetes-daemonset-1.16
ruby3.4-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.4-fluentd-kubernetes-daemonset-1.17
ruby3.4-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.4-fluentd-kubernetes-daemonset-1.17
Upstream advisory

AZL-48141

Open SourcePoC exploitHIGH2024-08-22

CVE-2024-8088 affecting package tensorflow for versions less than 2.16.1-7

Affected products

ProductStatusVendorPackageEcosystem
tensorflow affected Azure Linux:3 tensorflow
Upstream advisory

GO-2022-0867

Open SourcePoC exploitCRITICAL2024-08-21

Allocation of Resources Without Limits or Throttling and Uncontrolled Memory Allocation in Kubernetes in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GHSA-vmwr-mc7x-5vc3

GooglePoC exploitHIGH2024-08-22

REXML denial of service vulnerability

Affected products

ProductStatusVendorPackageEcosystem
rexml affected RubyGems rexml
Upstream advisory

GHSA-vmwr-mc7x-5vc3

Open SourcePoC exploitHIGH2024-08-22

REXML denial of service vulnerability

Affected products

ProductStatusVendorPackageEcosystem
jruby-9.4 affected wolfi jruby-9.4
jruby-9.4 affected chainguard jruby-9.4
kube-fluentd-operator affected wolfi kube-fluentd-operator
kube-fluentd-operator affected chainguard kube-fluentd-operator
logstash affected chainguard logstash
logstash affected wolfi logstash
logstash-jre-bcfips affected chainguard logstash-jre-bcfips
rexml affected RubyGems rexml
rexml affected RubyGems
ruby-3.1 affected wolfi ruby-3.1
ruby-3.1 affected chainguard ruby-3.1
ruby3.1-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.1-fluentd-kubernetes-daemonset-1.16
ruby3.1-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.1-fluentd-kubernetes-daemonset-1.17
ruby3.1-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.1-fluentd-kubernetes-daemonset-1.17
ruby-3.2 affected wolfi ruby-3.2
ruby-3.2 affected chainguard ruby-3.2
ruby3.2-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.2-fluentd-kubernetes-daemonset-1.16
ruby3.2-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.2-fluentd-kubernetes-daemonset-1.17
ruby3.2-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.2-fluentd-kubernetes-daemonset-1.17
ruby3.2-rexml affected chainguard ruby3.2-rexml
ruby3.2-rexml affected wolfi ruby3.2-rexml
ruby-3.3 affected wolfi ruby-3.3
ruby-3.3 affected chainguard ruby-3.3
ruby3.3-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.3-fluentd-kubernetes-daemonset-1.16
ruby3.4-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.4-fluentd-kubernetes-daemonset-1.16
ruby3.4-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.4-fluentd-kubernetes-daemonset-1.17
ruby3.4-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.4-fluentd-kubernetes-daemonset-1.17
Upstream advisory

GHSA-5866-49gr-22v4

GooglePoC exploitHIGH2024-08-02

REXML DoS vulnerability

Affected products

ProductStatusVendorPackageEcosystem
rexml affected RubyGems rexml
Upstream advisory

GHSA-5866-49gr-22v4

Open SourcePoC exploitHIGH2024-08-02

REXML DoS vulnerability

Affected products

ProductStatusVendorPackageEcosystem
jruby-9.4 affected wolfi jruby-9.4
jruby-9.4 affected chainguard jruby-9.4
kube-fluentd-operator affected wolfi kube-fluentd-operator
kube-fluentd-operator affected chainguard kube-fluentd-operator
logstash affected chainguard logstash
logstash affected wolfi logstash
logstash-jre-bcfips affected chainguard logstash-jre-bcfips
rexml affected RubyGems
rexml affected RubyGems rexml
ruby-3.1 affected wolfi ruby-3.1
ruby-3.1 affected chainguard ruby-3.1
ruby3.1-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.1-fluentd-kubernetes-daemonset-1.16
ruby3.1-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.1-fluentd-kubernetes-daemonset-1.17
ruby3.1-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.1-fluentd-kubernetes-daemonset-1.17
ruby-3.2 affected chainguard ruby-3.2
ruby-3.2 affected wolfi ruby-3.2
ruby3.2-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.2-fluentd-kubernetes-daemonset-1.16
ruby3.2-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.2-fluentd-kubernetes-daemonset-1.17
ruby3.2-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.2-fluentd-kubernetes-daemonset-1.17
ruby-3.3 affected chainguard ruby-3.3
ruby-3.3 affected wolfi ruby-3.3
ruby3.3-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.3-fluentd-kubernetes-daemonset-1.16
ruby3.4-fluentd-kubernetes-daemonset-1.16 affected chainguard ruby3.4-fluentd-kubernetes-daemonset-1.16
ruby3.4-fluentd-kubernetes-daemonset-1.17 affected wolfi ruby3.4-fluentd-kubernetes-daemonset-1.17
ruby3.4-fluentd-kubernetes-daemonset-1.17 affected chainguard ruby3.4-fluentd-kubernetes-daemonset-1.17
Upstream advisory

GO-2023-1628

Open SourcePoC exploitHIGH2024-08-20

Kubernetes vulnerable to path traversal in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2023-1891

Open SourcePoC exploit2024-08-20

Vulnerable to policy bypass in kube-apiserver in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
nodetaint affected chainguard nodetaint
nodetaint affected wolfi nodetaint
spark-operator affected wolfi spark-operator
spark-operator affected chainguard spark-operator
Upstream advisory

AZL-47385

Open SourcePoC exploit2024-08-01

CVE-2024-6923 affecting package tensorflow for versions less than 2.16.1-9

Affected products

ProductStatusVendorPackageEcosystem
tensorflow affected Azure Linux:3 tensorflow
Upstream advisory

GO-2022-0617

Open SourcePoC exploit2024-08-21

WITHDRAWN: Potential proxy IP restriction bypass in Kubernetes in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2023-1977

Open SourcePoC exploit2024-08-20

Kubernetes can trigger deletion of arbitrary files from the nodes where containers are running in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

openSUSE-SU-2024:0254-2

Open SourcePoC exploitCRITICAL2024-08-18

Security update for chromium, gn, rust-bindgen

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Leap 15.6 chromium
chromium affected openSUSE:Leap 15.5 chromium
chromium affected SUSE:Package Hub 15 SP6 chromium
chromium affected SUSE:Package Hub 15 SP5 chromium
gn affected SUSE:Package Hub 15 SP6 gn
gn affected SUSE:Package Hub 15 SP5 gn
gn affected openSUSE:Leap 15.5 gn
gn affected openSUSE:Leap 15.6 gn
rust-bindgen affected openSUSE:Leap 15.5 rust-bindgen
rust-bindgen affected SUSE:Package Hub 15 SP5 rust-bindgen
rust-bindgen affected SUSE:Package Hub 15 SP6 rust-bindgen
rust-bindgen affected openSUSE:Leap 15.6 rust-bindgen
Upstream advisory

openSUSE-SU-2024:14272-1

Open SourcePoC exploit2024-08-18

chromedriver-127.0.6533.119-1.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Tumbleweed chromium
Upstream advisory

DSA-5741-1

Open SourcePoC exploit2024-08-08

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:12 chromium
Upstream advisory

GO-2022-0983

Open SourcePoC exploit2024-08-21

ANSI escape characters not filtered in kubectl in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
nodetaint affected chainguard nodetaint
nodetaint affected wolfi nodetaint
spark-operator affected chainguard spark-operator
spark-operator affected wolfi spark-operator
Upstream advisory

SUSE-SU-2024:2928-1

Open SourcePoC exploit2024-08-15

Security update for kubernetes1.25

Affected products

ProductStatusVendorPackageEcosystem
kubernetes1.25 affected SUSE:Linux Enterprise Module for Containers 15 SP5 kubernetes1.25
kubernetes1.25 affected SUSE:Linux Enterprise Module for Containers 15 SP6 kubernetes1.25
kubernetes1.25 affected openSUSE:Leap 15.5 kubernetes1.25
kubernetes1.25 affected openSUSE:Leap 15.6 kubernetes1.25
Upstream advisory

SUSE-SU-2024:2859-1

Open SourcePoC exploit2024-08-08

Security update for kubernetes1.24

Affected products

ProductStatusVendorPackageEcosystem
kubernetes1.24 affected SUSE:Linux Enterprise Module for Containers 15 SP5 kubernetes1.24
kubernetes1.24 affected openSUSE:Leap 15.5 kubernetes1.24
kubernetes1.24 affected openSUSE:Leap 15.6 kubernetes1.24
Upstream advisory

SUSE-SU-2024:2858-1

Open SourcePoC exploit2024-08-08

Security update for kubernetes1.23

Affected products

ProductStatusVendorPackageEcosystem
kubernetes1.23 affected SUSE:Linux Enterprise Module for Containers 15 SP5 kubernetes1.23
kubernetes1.23 affected openSUSE:Leap 15.5 kubernetes1.23
kubernetes1.23 affected openSUSE:Leap 15.6 kubernetes1.23
Upstream advisory

GHSA-mm8x-5pvc-7mmq

Open SourcePoC exploitHIGH2024-08-06

GHSA-mm8x-5pvc-7mmq

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7535

GooglePoC exploit2024-08-06

Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7535

Upstream advisory

CVE-2024-7535

GooglePoC exploitHIGH2024-08-06

Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7535

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7535

Open SourcePoC exploitHIGH2024-08-06

DEBIAN-CVE-2024-7535

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-4pj3-wmgx-2h8r

Open SourcePoC exploitHIGH2024-08-21

GHSA-4pj3-wmgx-2h8r

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7966

GooglePoC exploitHIGH2024-08-21

Out of bounds memory access in Skia in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had compromised the renderer process to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7966

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7966

GooglePoC exploit2024-08-21

Out of bounds memory access in Skia in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had compromised the renderer process to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7966

Upstream advisory

DEBIAN-CVE-2024-7966

Open SourcePoC exploitHIGH2024-08-21

DEBIAN-CVE-2024-7966

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-374f-438q-472r

Open SourcePoC exploitCRITICAL2024-08-21

GHSA-374f-438q-472r

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7968

GooglePoC exploitCRITICAL2024-08-21

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: H...

CVEs:CVE-2024-7968

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7968

GooglePoC exploit2024-08-21

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7968

Upstream advisory

DEBIAN-CVE-2024-7968

Open SourcePoC exploitCRITICAL2024-08-21

DEBIAN-CVE-2024-7968

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

openSUSE-SU-2024:0267-1

Open SourcePoC exploitCRITICAL2024-08-30

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 15 SP5 chromium
chromium affected SUSE:Package Hub 15 SP6 chromium
chromium affected openSUSE:Leap 15.5 chromium
chromium affected openSUSE:Leap 15.6 chromium
Upstream advisory

DSA-5761-1

Open SourcePoC exploit2024-08-29

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:12 chromium
Upstream advisory

openSUSE-SU-2024:14303-1

Open SourcePoC exploit2024-08-31

chromedriver-128.0.6613.113-1.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Tumbleweed chromium
Upstream advisory

GHSA-76vg-grjj-w595

Open SourcePoC exploitCRITICAL2024-08-29

GHSA-76vg-grjj-w595

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-8198

Open SourcePoC exploitCRITICAL2024-08-28

DEBIAN-CVE-2024-8198

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2024-8198

GooglePoC exploitCRITICAL2024-08-28

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-8198

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

GHSA-5q6v-fp9h-6rjg

Open SourcePoC exploitCRITICAL2024-08-29

GHSA-5q6v-fp9h-6rjg

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-8193

Open SourcePoC exploitCRITICAL2024-08-28

DEBIAN-CVE-2024-8193

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2024-8193

GooglePoC exploit2024-08-28

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-8193

Upstream advisory

CVE-2024-8193

GooglePoC exploitCRITICAL2024-08-28

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-8193

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CLSA-2024-1724260328

Open SourcePoC exploit2024-08-21

Fix CVE(s): CVE-2024-0450

Affected products

ProductStatusVendorPackageEcosystem
idle-python3.5 affected TuxCare:Ubuntu:16.04 idle-python3.5
libpython3.5 affected TuxCare:Ubuntu:16.04 libpython3.5
libpython3.5-dev affected TuxCare:Ubuntu:16.04 libpython3.5-dev
libpython3.5-minimal affected TuxCare:Ubuntu:16.04 libpython3.5-minimal
libpython3.5-stdlib affected TuxCare:Ubuntu:16.04 libpython3.5-stdlib
libpython3.5-testsuite affected TuxCare:Ubuntu:16.04 libpython3.5-testsuite
python3.5 affected TuxCare:Ubuntu:16.04 python3.5
python3.5-dev affected TuxCare:Ubuntu:16.04 python3.5-dev
python3.5-doc affected TuxCare:Ubuntu:16.04 python3.5-doc
python3.5-examples affected TuxCare:Ubuntu:16.04 python3.5-examples
python3.5-minimal affected TuxCare:Ubuntu:16.04 python3.5-minimal
python3.5-venv affected TuxCare:Ubuntu:16.04 python3.5-venv
Upstream advisory

CLSA-2024-1724259346

Open SourcePoC exploit2024-08-21

Fix CVE(s): CVE-2024-0450

Affected products

ProductStatusVendorPackageEcosystem
idle-python3.6 affected TuxCare:Ubuntu:18.04 idle-python3.6
libpython3.6 affected TuxCare:Ubuntu:18.04 libpython3.6
libpython3.6-dev affected TuxCare:Ubuntu:18.04 libpython3.6-dev
libpython3.6-minimal affected TuxCare:Ubuntu:18.04 libpython3.6-minimal
libpython3.6-stdlib affected TuxCare:Ubuntu:18.04 libpython3.6-stdlib
libpython3.6-testsuite affected TuxCare:Ubuntu:18.04 libpython3.6-testsuite
python3.6 affected TuxCare:Ubuntu:18.04 python3.6
python3.6-dev affected TuxCare:Ubuntu:18.04 python3.6-dev
python3.6-doc affected TuxCare:Ubuntu:18.04 python3.6-doc
python3.6-examples affected TuxCare:Ubuntu:18.04 python3.6-examples
python3.6-minimal affected TuxCare:Ubuntu:18.04 python3.6-minimal
python3.6-venv affected TuxCare:Ubuntu:18.04 python3.6-venv
Upstream advisory

GO-2023-1864

Open SourcePoC exploitCRITICAL2024-08-20

Kubelet vulnerable to bypass of seccomp profile enforcement in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
nodetaint affected wolfi nodetaint
nodetaint affected chainguard nodetaint
spark-operator affected wolfi spark-operator
spark-operator affected chainguard spark-operator
Upstream advisory

OESA-2024-2064

Open SourcePoC exploitCRITICAL2024-08-30

grpc security update

Affected products

ProductStatusVendorPackageEcosystem
grpc affected openEuler:24.03-LTS grpc
Upstream advisory

BELL-CVE-2024-7246

Open SourcePoC exploitMEDIUM2024-08-08

BELL-CVE-2024-7246

Affected products

ProductStatusVendorPackageEcosystem
grpc affected Alpaquita:23 grpc
grpc affected Alpaquita:stream grpc
Upstream advisory

GHSA-ghwg-gpp4-w4x3

Open SourcePoC exploitMEDIUM2024-08-06

GHSA-ghwg-gpp4-w4x3

Affected products

ProductStatusVendorPackageEcosystem
grpc affected chainguard grpc
grpc affected wolfi grpc
Upstream advisory

AZL-47442

Open SourcePoC exploit2024-08-06

CVE-2024-7246 affecting package grpc for versions less than 1.62.3-1

Affected products

ProductStatusVendorPackageEcosystem
grpc affected Azure Linux:3 grpc
Upstream advisory

AZL-47571

Open SourcePoC exploit2024-08-06

CVE-2024-7246 affecting package grpc 1.42.0-11

Affected products

ProductStatusVendorPackageEcosystem
grpc affected Azure Linux:2 grpc
Upstream advisory

DEBIAN-CVE-2024-7246

Open SourcePoC exploitMEDIUM2024-08-06

DEBIAN-CVE-2024-7246

Affected products

ProductStatusVendorPackageEcosystem
grpc affected Debian:11 grpc
grpc affected Debian:12 grpc
grpc affected Debian:13 grpc
grpc affected Debian:14 grpc
Upstream advisory

CVE-2024-7246

GooglePoC exploit2024-08-06

It's possible for a gRPC client communicating with a HTTP/2 proxy to poison the HPACK table between the proxy and the backend such that other clients see failed requests. It's also possible to use this vulnerability to leak other clients HTTP header keys, but not values. This occurs because the error status for a misencoded header is not cleared between header reads, resulting in subsequent (incrementally indexed) added headers in the first request being poisoned until cleared from the HPACK table. Please update to a fixed version of gRPC as soon as possible. This bug has been fixed in 1.58.3, 1.59.5, 1.60.2, 1.61.3, 1.62.3, 1.63.2, 1.64.3, 1.65.4.

CVEs:CVE-2024-7246

Upstream advisory

CVE-2024-7246

Open SourcePoC exploitMEDIUM2024-08-06

It's possible for a gRPC client communicating with a HTTP/2 proxy to poison the HPACK table between the proxy and the backend such that other clients see failed requests. It's also possible to use this vulnerability to leak other clients HTTP header ke...

CVEs:CVE-2024-7246

Affected products

ProductStatusVendorPackageEcosystem
grpc affected grpc
Upstream advisory

CVE-2024-34739

Open SourcePoC exploitHIGH2024-08-05

In shouldRestrictOverlayActivities of UsbProfileGroupSettingsManager.java, there is a possible escape from SUW due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User inter...

CVEs:CVE-2024-34739

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-34741

Open SourcePoC exploitHIGH2024-08-05

In setForceHideNonSystemOverlayWindowIfNeeded of WindowState.java, there is a possible way for message content to be visible on the screensaver while lock screen visibility settings are restricted by the user due to a logic error in the code. This coul...

CVEs:CVE-2024-34741

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-34740

Open SourcePoC exploitHIGH2024-08-05

In attributeBytesBase64 and attributeBytesHex of BinaryXmlSerializer.java, there is a possible arbitrary XML injection due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User int...

CVEs:CVE-2024-34740

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-31333

Open SourcePoC exploitHIGH2024-08-05

In _MMU_AllocLevel of mmu_common.c, there is a possible arbitrary code execution due to an integer overflow. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed f...

CVEs:CVE-2024-31333

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-331435657

GooglePoC exploitHIGH2024-08-01

ASB-A-331435657

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-344434139

GoogleCoalition ESS < 30%2024-08-01

ASB-A-344434139

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GO-2022-0547

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

aws-iam-authenticator allow-listed IAM identity may be able to modify their username, escalate privileges before v0.5.9 in sigs.k8s.io/aws-iam-authenticator

Affected products

ProductStatusVendorPackageEcosystem
aws-iam-authenticator affected sigs.k8s.io sigs.k8s.io/aws-iam-authenticator
Upstream advisory

GHSA-4c65-phqf-cq3w

Open SourceCoalition ESS < 30%HIGH2024-08-06

GHSA-4c65-phqf-cq3w

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7532

GoogleCoalition ESS < 30%HIGH2024-08-06

Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

CVEs:CVE-2024-7532

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7532

GoogleCoalition ESS < 30%2024-08-06

Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

CVEs:CVE-2024-7532

Upstream advisory

DEBIAN-CVE-2024-7532

Open SourceCoalition ESS < 30%HIGH2024-08-06

DEBIAN-CVE-2024-7532

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-gh9v-q4wx-5m5c

Open SourceCoalition ESS < 30%HIGH2024-08-01

GHSA-gh9v-q4wx-5m5c

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-6990

Open SourceCoalition ESS < 30%HIGH2024-08-01

DEBIAN-CVE-2024-6990

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GO-2023-2159

Open SourceCoalition ESS < 30%2024-08-21

Kube-proxy may unintentionally forward traffic in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
nodetaint affected wolfi nodetaint
nodetaint affected chainguard nodetaint
spark-operator affected wolfi spark-operator
spark-operator affected chainguard spark-operator
Upstream advisory

CVE-2024-7258

GoogleCoalition ESS < 30%HIGH2024-08-23

The WooCommerce Google Feed Manager plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'wppfm_removeFeedFile' function in all versions up to, and including, 2.8.0. This makes it possible for authent...

CVEs:CVE-2024-7258

Affected products

ProductStatusVendorPackageEcosystem
woocommerce_google_feed_manager affected wpmarketingrobot
Upstream advisory

GHSA-j2gf-fhx6-5xrq

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

GHSA-j2gf-fhx6-5xrq

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7973

GoogleCoalition ESS < 30%2024-08-21

Heap buffer overflow in PDFium in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file. (Chromium security severity: Medium)

CVEs:CVE-2024-7973

Upstream advisory

CVE-2024-7973

GoogleCoalition ESS < 30%CRITICAL2024-08-21

Heap buffer overflow in PDFium in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file. (Chromium security severity: Medium)

CVEs:CVE-2024-7973

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7973

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

DEBIAN-CVE-2024-7973

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-373g-hg3v-qf78

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-373g-hg3v-qf78

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7534

GoogleCoalition ESS < 30%2024-08-06

Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7534

Upstream advisory

CVE-2024-7534

GoogleCoalition ESS < 30%CRITICAL2024-08-06

Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7534

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7534

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-7534

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-mcqx-pmh8-v9cr

Open SourceCoalition ESS < 30%HIGH2024-08-01

GHSA-mcqx-pmh8-v9cr

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-7255

Open SourceCoalition ESS < 30%HIGH2024-08-01

DEBIAN-CVE-2024-7255

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GO-2023-1502

Open SourceCoalition ESS < 30%HIGH2024-08-20

Velociraptor subject to Path Traversal in www.velocidex.com/golang/velociraptor

Affected products

ProductStatusVendorPackageEcosystem
golang/velociraptor affected www.velocidex.com www.velocidex.com/golang/velociraptor
Upstream advisory

GO-2022-0798

GoogleCoalition ESS < 30%CRITICAL2024-08-21

Privilege escalation in rbac in github.com/google/exposure-notifications-verification-server

Affected products

ProductStatusVendorPackageEcosystem
google/exposure-notifications-verification-server affected github.com github.com/google/exposure-notifications-verification-server
Upstream advisory

GHSA-r54r-2wq9-h4ww

Open SourceCoalition ESS < 30%HIGH2024-08-06

GHSA-r54r-2wq9-h4ww

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

GHSA-4r7q-rwrj-9wg2

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-4r7q-rwrj-9wg2

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7550

GoogleCoalition ESS < 30%HIGH2024-08-06

Type Confusion in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7550

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7550

GoogleCoalition ESS < 30%2024-08-06

Type Confusion in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7550

Upstream advisory

DEBIAN-CVE-2024-7550

Open SourceCoalition ESS < 30%HIGH2024-08-06

DEBIAN-CVE-2024-7550

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2024-7533

GoogleCoalition ESS < 30%CRITICAL2024-08-06

Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7533

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7533

GoogleCoalition ESS < 30%2024-08-06

Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7533

Upstream advisory

DEBIAN-CVE-2024-7533

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-7533

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-gqq7-89cw-236x

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-gqq7-89cw-236x

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7536

GoogleCoalition ESS < 30%2024-08-06

Use after free in WebAudio in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7536

Upstream advisory

CVE-2024-7536

GoogleCoalition ESS < 30%CRITICAL2024-08-06

Use after free in WebAudio in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7536

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7536

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-7536

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-32j6-235r-7fmm

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-32j6-235r-7fmm

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

GHSA-3v8g-fm64-g4mc

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-3v8g-fm64-g4mc

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-6991

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-6991

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2024-6989

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-6989

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-wpvc-jgp6-vg6f

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-wpvc-jgp6-vg6f

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-6988

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-6988

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-366c-rrqj-7gmp

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-366c-rrqj-7gmp

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

DEBIAN-CVE-2024-6994

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-6994

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-c6ch-gp25-6cpv

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-c6ch-gp25-6cpv

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

GHSA-pwf4-rc9f-r3rx

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-pwf4-rc9f-r3rx

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

DEBIAN-CVE-2024-6997

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-6997

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2024-6998

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-6998

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-57cq-jgq2-x7vg

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

GHSA-57cq-jgq2-x7vg

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2024-7967

GoogleCoalition ESS < 30%CRITICAL2024-08-21

Heap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7967

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7967

GoogleCoalition ESS < 30%2024-08-21

Heap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7967

Upstream advisory

DEBIAN-CVE-2024-7967

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

DEBIAN-CVE-2024-7967

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-g494-wr54-xx2g

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-g494-wr54-xx2g

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-7000

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

DEBIAN-CVE-2024-7000

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-6j9j-7v9j-7mf7

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

GHSA-6j9j-7v9j-7mf7

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7964

GoogleCoalition ESS < 30%2024-08-21

Use after free in Passwords in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7964

Upstream advisory

CVE-2024-7964

GoogleCoalition ESS < 30%CRITICAL2024-08-21

Use after free in Passwords in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7964

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7964

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

DEBIAN-CVE-2024-7964

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-qwvh-x5gw-88v2

Open SourceCoalition ESS < 30%CRITICAL2024-08-01

GHSA-qwvh-x5gw-88v2

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-7256

Open SourceCoalition ESS < 30%CRITICAL2024-08-01

DEBIAN-CVE-2024-7256

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GO-2023-2125

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

kOps privilege escalation vulnerability in k8s.io/kops

Affected products

ProductStatusVendorPackageEcosystem
kops affected k8s.io k8s.io/kops
Upstream advisory

GHSA-q3q8-95m2-545r

Open SourceCoalition ESS < 30%HIGH2024-08-21

GHSA-q3q8-95m2-545r

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7972

GoogleCoalition ESS < 30%HIGH2024-08-21

Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2024-7972

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7972

GoogleCoalition ESS < 30%2024-08-21

Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2024-7972

Upstream advisory

DEBIAN-CVE-2024-7972

Open SourceCoalition ESS < 30%HIGH2024-08-21

DEBIAN-CVE-2024-7972

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-5w43-pfc6-5944

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-5w43-pfc6-5944

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-6995

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

DEBIAN-CVE-2024-6995

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GO-2023-1527

Open SourceCoalition ESS < 30%2024-08-20

Velociraptor vulnerable to Missing Authorization in www.velocidex.com/golang/velociraptor

Affected products

ProductStatusVendorPackageEcosystem
golang/velociraptor affected www.velocidex.com www.velocidex.com/golang/velociraptor
Upstream advisory

GHSA-2355-2h8c-mw45

Open SourceCoalition ESS < 30%CRITICAL2024-08-06

GHSA-2355-2h8c-mw45

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-7003

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

DEBIAN-CVE-2024-7003

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-p8h7-64p8-w5pq

Open SourceCoalition ESS < 30%HIGH2024-08-21

GHSA-p8h7-64p8-w5pq

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7969

GoogleCoalition ESS < 30%2024-08-21

Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7969

Upstream advisory

CVE-2024-7969

GoogleCoalition ESS < 30%HIGH2024-08-21

Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-7969

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7969

Open SourceCoalition ESS < 30%HIGH2024-08-21

DEBIAN-CVE-2024-7969

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-c7v6-r97x-ppjq

Open SourceCoalition ESS < 30%HIGH2024-08-21

GHSA-c7v6-r97x-ppjq

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7974

GoogleCoalition ESS < 30%2024-08-21

Insufficient data validation in V8 API in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: Medium)

CVEs:CVE-2024-7974

Upstream advisory

CVE-2024-7974

GoogleCoalition ESS < 30%HIGH2024-08-21

Insufficient data validation in V8 API in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: Medium)

CVEs:CVE-2024-7974

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7974

Open SourceCoalition ESS < 30%HIGH2024-08-21

DEBIAN-CVE-2024-7974

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-9x82-vrjw-2m6c

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

GHSA-9x82-vrjw-2m6c

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

GHSA-pqvj-7wmm-mjvv

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

GHSA-pqvj-7wmm-mjvv

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

DEBIAN-CVE-2024-6999

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

DEBIAN-CVE-2024-6999

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2024-7001

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

DEBIAN-CVE-2024-7001

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-w28c-f4w5-mfwh

Open SourceCoalition ESS < 30%HIGH2024-08-06

GHSA-w28c-f4w5-mfwh

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

DEBIAN-CVE-2024-7005

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

DEBIAN-CVE-2024-7005

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-pmc4-h8jw-3hc9

Open SourceCoalition ESS < 30%HIGH2024-08-29

GHSA-pmc4-h8jw-3hc9

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-8194

Open SourceCoalition ESS < 30%HIGH2024-08-28

DEBIAN-CVE-2024-8194

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2024-8194

GoogleCoalition ESS < 30%2024-08-28

Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-8194

Upstream advisory

CVE-2024-8194

GoogleCoalition ESS < 30%HIGH2024-08-28

Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2024-8194

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

GHSA-r3h8-2v74-r6qj

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

GHSA-r3h8-2v74-r6qj

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7976

GoogleCoalition ESS < 30%2024-08-21

Inappropriate implementation in FedCM in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2024-7976

Upstream advisory

CVE-2024-7976

GoogleCoalition ESS < 30%MEDIUM2024-08-21

Inappropriate implementation in FedCM in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2024-7976

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7976

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

DEBIAN-CVE-2024-7976

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-2xc5-3f92-ffpr

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

GHSA-2xc5-3f92-ffpr

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7978

GoogleCoalition ESS < 30%2024-08-21

Insufficient policy enforcement in Data Transfer in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2024-7978

Upstream advisory

CVE-2024-7978

GoogleCoalition ESS < 30%CRITICAL2024-08-21

Insufficient policy enforcement in Data Transfer in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Me...

CVEs:CVE-2024-7978

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7978

Open SourceCoalition ESS < 30%CRITICAL2024-08-21

DEBIAN-CVE-2024-7978

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-p269-768c-9733

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

GHSA-p269-768c-9733

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7975

GoogleCoalition ESS < 30%2024-08-21

Inappropriate implementation in Permissions in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2024-7975

Upstream advisory

CVE-2024-7975

GoogleCoalition ESS < 30%MEDIUM2024-08-21

Inappropriate implementation in Permissions in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2024-7975

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7975

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

DEBIAN-CVE-2024-7975

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2024-41164

Open SourceCoalition ESS < 30%HIGH2024-08-14

When TCP profile with Multipath TCP enabled (MPTCP) is configured on a Virtual Server, undisclosed traffic along with conditions beyond the attackers control can cause TMM to terminate. Note: Software versions which have reached End of Technical S...

CVEs:CVE-2024-41164

Affected products

ProductStatusVendorPackageEcosystem
big-ip_access_policy_manager affected f5
big-ip_advanced_firewall_manager affected f5
big-ip_advanced_web_application_firewall affected f5
big-ip_analytics affected f5
big-ip_application_acceleration_manager affected f5
big-ip_application_security_manager affected f5
big-ip_application_visibility_and_reporting affected f5
big-ip_automation_toolchain affected f5
big-ip_carrier-grade_nat affected f5
big-ip_container_ingress_services affected f5
big-ip_ddos_hybrid_defender affected f5
big-ip_domain_name_system affected f5
big-ip_edge_gateway affected f5
big-ip_fraud_protection_service affected f5
big-ip_global_traffic_manager affected f5
big-ip_link_controller affected f5
big-ip_local_traffic_manager affected f5
big-ip_next_cloud-native_network_functions affected f5
big-ip_next_service_proxy_for_kubernetes affected f5
big-ip_policy_enforcement_manager affected f5
big-ip_ssl_orchestrator affected f5
big-ip_webaccelerator affected f5
big-ip_websafe affected f5
Upstream advisory

GO-2022-0936

Open SourceCoalition ESS < 30%2024-08-21

Improperly Implemented path matching for in-toto-golang in github.com/in-toto/in-toto-golang

Affected products

ProductStatusVendorPackageEcosystem
in-toto/in-toto-golang affected github.com github.com/in-toto/in-toto-golang
Upstream advisory

GHSA-fvf5-wm7j-89hj

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

GHSA-fvf5-wm7j-89hj

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

DEBIAN-CVE-2024-7004

Open SourceCoalition ESS < 30%MEDIUM2024-08-06

DEBIAN-CVE-2024-7004

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-p739-c89q-vj36

Open SourceCoalition ESS < 30%LOW2024-08-06

GHSA-p739-c89q-vj36

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2024-6996

Open SourceCoalition ESS < 30%LOW2024-08-06

DEBIAN-CVE-2024-6996

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GO-2022-0270

GoogleCoalition ESS < 30%2024-08-21

Insufficient Granularity of Access Control in github.com/google/exposure-notifications-verification-server

Affected products

ProductStatusVendorPackageEcosystem
google/exposure-notifications-verification-server affected github.com github.com/google/exposure-notifications-verification-server
Upstream advisory

GHSA-9wpw-58rw-f8gm

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

GHSA-9wpw-58rw-f8gm

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7981

GoogleCoalition ESS < 30%2024-08-21

Inappropriate implementation in Views in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2024-7981

Upstream advisory

CVE-2024-7981

GoogleCoalition ESS < 30%MEDIUM2024-08-21

Inappropriate implementation in Views in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2024-7981

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7981

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

DEBIAN-CVE-2024-7981

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-p34g-w82h-w82c

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

GHSA-p34g-w82h-w82c

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-8034

GoogleCoalition ESS < 30%MEDIUM2024-08-21

Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2024-8034

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-8034

GoogleCoalition ESS < 30%2024-08-21

Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2024-8034

Upstream advisory

DEBIAN-CVE-2024-8034

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

DEBIAN-CVE-2024-8034

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2024-34727

Open SourceCoalition ESS < 30%HIGH2024-08-05

In sdpu_compare_uuid_with_attr of sdp_utils.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for ex...

CVEs:CVE-2024-34727

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

GHSA-v4c3-qgm8-jh35

Open SourceCoalition ESS < 30%HIGH2024-08-21

GHSA-v4c3-qgm8-jh35

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7977

GoogleCoalition ESS < 30%2024-08-21

Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)

CVEs:CVE-2024-7977

Upstream advisory

CVE-2024-7977

GoogleCoalition ESS < 30%HIGH2024-08-21

Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)

CVEs:CVE-2024-7977

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2024-7977

Open SourceCoalition ESS < 30%HIGH2024-08-21

DEBIAN-CVE-2024-7977

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-c77r-fh37-x2px

GoogleCoalition ESS < 30%CRITICAL2024-08-30

OPA for Windows has an SMB force-authentication vulnerability

Affected products

ProductStatusVendorPackageEcosystem
open-policy-agent/opa affected github.com github.com/open-policy-agent/opa
Upstream advisory

GHSA-c77r-fh37-x2px

Open SourceCoalition ESS < 30%CRITICAL2024-08-30

OPA for Windows has an SMB force-authentication vulnerability

Affected products

ProductStatusVendorPackageEcosystem
conftest affected chainguard conftest
conftest affected wolfi conftest
conftest-fips affected chainguard conftest-fips
cosign affected chainguard cosign
cosign affected wolfi cosign
cosign-fips affected wolfi cosign-fips
cosign-fips affected chainguard cosign-fips
datadog-agent affected chainguard datadog-agent
datadog-agent affected wolfi datadog-agent
datadog-agent-fips affected chainguard datadog-agent-fips
gatekeeper-3.17 affected wolfi gatekeeper-3.17
gatekeeper-3.17 affected chainguard gatekeeper-3.17
gatekeeper-fips-3.17 affected chainguard gatekeeper-fips-3.17
k8sgpt affected chainguard k8sgpt
k8sgpt affected wolfi k8sgpt
kots affected chainguard kots
kots affected wolfi kots
kots-compat affected chainguard kots-compat
kubescape affected chainguard kubescape
kubescape affected wolfi kubescape
kyverno-1.11 affected chainguard kyverno-1.11
kyverno-1.12 affected wolfi kyverno-1.12
kyverno-1.12 affected chainguard kyverno-1.12
kyverno-fips-1.11 affected chainguard kyverno-fips-1.11
kyverno-fips-1.12 affected chainguard kyverno-fips-1.12
opa affected chainguard opa
opa affected wolfi opa
open-policy-agent/opa affected github.com github.com/open-policy-agent/opa
policy-controller affected wolfi policy-controller
policy-controller affected chainguard policy-controller
policy-controller-fips affected chainguard policy-controller-fips
snyk-cli affected wolfi snyk-cli
snyk-cli affected chainguard snyk-cli
spire-server affected wolfi spire-server
spire-server affected chainguard spire-server
spire-server-fips affected chainguard spire-server-fips
tfsec affected chainguard tfsec
tfsec affected wolfi tfsec
zarf affected chainguard zarf
zarf affected wolfi zarf
zot affected chainguard zot
zot affected wolfi zot
Upstream advisory

GHSA-hg5m-x49p-g9h8

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

GHSA-hg5m-x49p-g9h8

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-8035

GoogleCoalition ESS < 30%MEDIUM2024-08-21

Inappropriate implementation in Extensions in Google Chrome on Windows prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2024-8035

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-8035

GoogleCoalition ESS < 30%2024-08-21

Inappropriate implementation in Extensions in Google Chrome on Windows prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2024-8035

Upstream advisory

DEBIAN-CVE-2024-8035

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

DEBIAN-CVE-2024-8035

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-8v6h-j8r8-9mjq

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

GHSA-8v6h-j8r8-9mjq

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-8033

GoogleCoalition ESS < 30%MEDIUM2024-08-21

Inappropriate implementation in WebApp Installs in Google Chrome on Windows prior to 128.0.6613.84 allowed an attacker who convinced a user to install a malicious application to perform UI spoofing via a crafted HTML page. (Chromium security severity: ...

CVEs:CVE-2024-8033

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-8033

GoogleCoalition ESS < 30%2024-08-21

Inappropriate implementation in WebApp Installs in Google Chrome on Windows prior to 128.0.6613.84 allowed an attacker who convinced a user to install a malicious application to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2024-8033

Upstream advisory

DEBIAN-CVE-2024-8033

Open SourceCoalition ESS < 30%MEDIUM2024-08-21

DEBIAN-CVE-2024-8033

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

PUB-A-323926303

GoogleCoalition ESS < 30%2024-08-01

PUB-A-323926303

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-323926776

GoogleCoalition ESS < 30%2024-08-01

PUB-A-323926776

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GHSA-8p7p-r9xv-w8g4

Open SourceCoalition ESS < 30%HIGH2024-08-21

GHSA-8p7p-r9xv-w8g4

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2024-7980

GoogleCoalition ESS < 30%HIGH2024-08-21

Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)

CVEs:CVE-2024-7980

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7980

GoogleCoalition ESS < 30%2024-08-21

Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)

CVEs:CVE-2024-7980

Upstream advisory

DEBIAN-CVE-2024-7980

Open SourceCoalition ESS < 30%HIGH2024-08-21

DEBIAN-CVE-2024-7980

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-3466-hwg6-rp7h

Open SourceCoalition ESS < 30%HIGH2024-08-21

GHSA-3466-hwg6-rp7h

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2024-7979

GoogleCoalition ESS < 30%HIGH2024-08-21

Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)

CVEs:CVE-2024-7979

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2024-7979

GoogleCoalition ESS < 30%2024-08-21

Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)

CVEs:CVE-2024-7979

Upstream advisory

DEBIAN-CVE-2024-7979

Open SourceCoalition ESS < 30%HIGH2024-08-21

DEBIAN-CVE-2024-7979

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

ASB-A-339866012

GoogleCoalition ESS < 30%2024-08-01

ASB-A-339866012

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-339869945

GoogleCoalition ESS < 30%2024-08-01

ASB-A-339869945

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2024-34612

Open SourceCoalition ESS < 30%HIGH2024-08-05

Out-of-bound write in libcodec2secmp4vdec.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.

CVEs:CVE-2024-34612

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34614

Open SourceCoalition ESS < 30%HIGH2024-08-05

Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.

CVEs:CVE-2024-34614

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34615

Open SourceCoalition ESS < 30%HIGH2024-08-05

Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption.

CVEs:CVE-2024-34615

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34604

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper access control in LedCoverService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVEs:CVE-2024-34604

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34605

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper access control in SamsungHealthService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVEs:CVE-2024-34605

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34606

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper access control in SmartThingsService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVEs:CVE-2024-34606

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34607

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper access control in SamsungNotesService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVEs:CVE-2024-34607

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34608

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper access control in PaymentManagerService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVEs:CVE-2024-34608

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34609

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper access control in VoiceNoteService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVEs:CVE-2024-34609

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34610

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper access control in ExtControlDeviceService prior to SMR Aug-2024 Release 1 allows local attackers to access protected data.

CVEs:CVE-2024-34610

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

GO-2022-0339

GoogleCoalition ESS < 30%NONE2024-08-21

Possible filesystem space exhaustion by local users in github.com/google/fscrypt

Affected products

ProductStatusVendorPackageEcosystem
google/fscrypt affected github.com github.com/google/fscrypt
Upstream advisory

CVE-2024-34616

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive data.

CVEs:CVE-2024-34616

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2024-34611

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

Improper access control in KnoxService prior to SMR Aug-2024 Release 1 allows local attackers to get sensitive information.

CVEs:CVE-2024-34611

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

ASB-A-339043615

GoogleCoalition ESS < 30%2024-08-01

ASB-A-339043615

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
vendor/qcom/opensource/graphics-kernel affected platform platform/vendor/qcom/opensource/graphics-kernel
Upstream advisory

ASB-A-339043323

GoogleCoalition ESS < 30%2024-08-01

ASB-A-339043323

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
vendor/qcom/opensource/graphics-kernel affected platform platform/vendor/qcom/opensource/graphics-kernel
Upstream advisory

GO-2022-0340

GoogleCoalition ESS < 30%HIGH2024-08-21

User login denial of service in github.com/google/fscrypt

Affected products

ProductStatusVendorPackageEcosystem
google/fscrypt affected github.com github.com/google/fscrypt
Upstream advisory

ASB-A-339043278

GoogleCoalition ESS < 30%2024-08-01

ASB-A-339043278

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
vendor/qcom/opensource/graphics-kernel affected platform platform/vendor/qcom/opensource/graphics-kernel
Upstream advisory

ASB-A-339043463

GoogleCoalition ESS < 30%2024-08-01

ASB-A-339043463

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
Upstream advisory

ASB-A-339043781

GoogleCoalition ESS < 30%2024-08-01

ASB-A-339043781

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
vendor/qcom/opensource/graphics-kernel affected platform platform/vendor/qcom/opensource/graphics-kernel
Upstream advisory

CVE-2024-34731

Open SourceCoalition ESS < 30%HIGH2024-08-05

In multiple functions of TranscodingResourcePolicy.cpp, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for e...

CVEs:CVE-2024-34731

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-316373168

GoogleCoalition ESS < 30%2024-08-01

ASB-A-316373168

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel:Qualcomm affected Android :linux_kernel:Qualcomm
Upstream advisory

CVE-2024-34737

Open SourceCoalition ESS < 30%HIGH2024-08-05

In ensureSetPipAspectRatioQuotaTracker of ActivityClientController.java, there is a possible way to generate unmovable and undeletable pip windows due to a logic error in the code. This could lead to local escalation of privilege with no additional exe...

CVEs:CVE-2024-34737

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-34734

Open SourceCoalition ESS < 30%HIGH2024-08-05

In onForegroundServiceButtonClicked of FooterActionsViewModel.kt, there is a possible way to disable the active VPN app from the lockscreen due to an insecure default value. This could lead to local escalation of privilege with no additional execution ...

CVEs:CVE-2024-34734

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-34736

Open SourceCoalition ESS < 30%HIGH2024-08-05

In setupVideoEncoder of StagefrightRecorder.cpp, there is a possible asynchronous playback when B-frame support is enabled. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed ...

CVEs:CVE-2024-34736

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-32927

Open SourceCoalition ESS < 30%HIGH2024-08-06

In sendDeviceState_1_6 of RadioExt.cpp, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2024-32927

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-34738

Open SourceCoalition ESS < 30%HIGH2024-08-05

In multiple functions of AppOpsService.java, there is a possible way for unprivileged apps to read their own restrictRead app-op states due to a logic error in the code. This could lead to local escalation of privilege with no additional execution priv...

CVEs:CVE-2024-34738

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2024-34743

Open SourceCoalition ESS < 30%HIGH2024-08-05

In setTransactionState of SurfaceFlinger.cpp, there is a possible way to perform tapjacking due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not neede...

CVEs:CVE-2024-34743

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-312268456

GoogleCoalition ESS < 30%HIGH2024-08-01

PUB-A-312268456

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2024-34742

Open SourceCoalition ESS < 30%MEDIUM2024-08-05

In shouldWrite of OwnersData.java, there is a possible edge case that prevents MDM policies from being persisted due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interacti...

CVEs:CVE-2024-34742

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

GO-2022-0854

Open SourceEPSS <= 49%2024-08-21

Authorization bypass in Openshift in github.com/openshift/origin

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-1.30 affected chainguard kubernetes-1.30
kubernetes-1.31 affected chainguard kubernetes-1.31
kubernetes-1.32 affected chainguard kubernetes-1.32
openshift/origin affected github.com github.com/openshift/origin
Upstream advisory

GO-2022-0886

Open SourceEPSS <= 49%CRITICAL2024-08-21

Kubernetes Arbitrary Command Injection in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2023-1492

Open SourceEPSS <= 49%CRITICAL2024-08-20

Kubernetes Privilege Escalation in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2022-0857

Open SourceEPSS <= 49%2024-08-21

Information Exposure in Kubernetes in github.com/kubernetes/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes/kubernetes affected github.com github.com/kubernetes/kubernetes
Upstream advisory

GO-2023-1959

Open SourceEPSS <= 49%HIGH2024-08-20

Kubernetes arbitrary file overwrite in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

GO-2023-1985

Open SourceEPSS <= 49%2024-08-20

Kubernetes in OpenShift3 Access Control Misconfiguration in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
kubernetes-1.30 affected chainguard kubernetes-1.30
kubernetes-1.31 affected chainguard kubernetes-1.31
kubernetes-1.32 affected chainguard kubernetes-1.32
Upstream advisory

GO-2023-1961

Open SourceEPSS <= 49%CRITICAL2024-08-20

Minikube RCE via DNS Rebinding in k8s.io/minikube

Affected products

ProductStatusVendorPackageEcosystem
minikube affected k8s.io k8s.io/minikube
Upstream advisory

PUB-A-283319714

GoogleEPSS <= 49%2024-08-01

PUB-A-283319714

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GO-2022-0381

GoogleAll remaining2024-08-21

Import of incorrectly embargoed keys could cause early publication in github.com/google/exposure-notifications-server

Affected products

ProductStatusVendorPackageEcosystem
google/exposure-notifications-server affected github.com github.com/google/exposure-notifications-server
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.