openSUSE-SU-2024:14292-1
kubernetes1.28-apiserver-1.28.13-2.1 on GA media
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes1.28 | affected | openSUSE:Tumbleweed | kubernetes1.28 | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 36 are already weaponised in the wild.
The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.
kubernetes1.28-apiserver-1.28.13-2.1 on GA media
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes1.28 | affected | openSUSE:Tumbleweed | kubernetes1.28 | — |
CVEs:CVE-2024-38178
Scripting Engine Memory Corruption Vulnerability
CVEs:CVE-2024-38178
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| windows_10_1507 | affected | microsoft | — | — |
| windows_10_1607 | affected | microsoft | — | — |
| windows_10_1809 | affected | microsoft | — | — |
| windows_10_21h2 | affected | microsoft | — | — |
| windows_10_22h2 | affected | microsoft | — | — |
| windows_11_21h2 | affected | microsoft | — | — |
| windows_11_22h2 | affected | microsoft | — | — |
| windows_11_23h2 | affected | microsoft | — | — |
| windows_11_24h2 | affected | microsoft | — | — |
| windows_server_2012 | affected | microsoft | — | — |
| windows_server_2016 | affected | microsoft | — | — |
| windows_server_2019 | affected | microsoft | — | — |
| windows_server_2022 | affected | microsoft | — | — |
| windows_server_2022_23h2 | affected | microsoft | — | — |
Scripting Engine Memory Corruption Vulnerability
CVEs:CVE-2024-38178
CVEs:CVE-2024-38193
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVEs:CVE-2024-38193
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| windows_10_1507 | affected | microsoft | — | — |
| windows_10_1607 | affected | microsoft | — | — |
| windows_10_1809 | affected | microsoft | — | — |
| windows_10_21h2 | affected | microsoft | — | — |
| windows_10_22h2 | affected | microsoft | — | — |
| windows_11_21h2 | affected | microsoft | — | — |
| windows_11_22h2 | affected | microsoft | — | — |
| windows_11_23h2 | affected | microsoft | — | — |
| windows_11_24h2 | affected | microsoft | — | — |
| windows_server_2008 | affected | microsoft | — | — |
| windows_server_2012 | affected | microsoft | — | — |
| windows_server_2016 | affected | microsoft | — | — |
| windows_server_2019 | affected | microsoft | — | — |
| windows_server_2022 | affected | microsoft | — | — |
| windows_server_2022_23h2 | affected | microsoft | — | — |
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVEs:CVE-2024-38193
Security update for chromium
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | SUSE:Package Hub 15 SP5 | chromium | — |
| chromium | affected | SUSE:Package Hub 15 SP6 | chromium | — |
| chromium | affected | openSUSE:Leap 15.5 | chromium | — |
| chromium | affected | openSUSE:Leap 15.6 | chromium | — |
Security update for chromium
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | SUSE:Package Hub 15 SP5 | chromium | — |
| chromium | affected | SUSE:Package Hub 15 SP6 | chromium | — |
| chromium | affected | openSUSE:Leap 15.5 | chromium | — |
| chromium | affected | openSUSE:Leap 15.6 | chromium | — |
chromium - security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:12 | chromium | — |
chromedriver-128.0.6613.84-1.1 on GA media
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | openSUSE:Tumbleweed | chromium | — |
GHSA-pq5w-h3jm-m95c
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7971
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7971
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — | |
| edge | affected | microsoft | — | — |
CVEs:CVE-2024-7971
DEBIAN-CVE-2024-7971
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7971
GHSA-x38q-hvmx-rwhg
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7965
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — | |
| edge_chromium | affected | microsoft | — | — |
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7965
CVEs:CVE-2024-7965
DEBIAN-CVE-2024-7965
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7965
CVEs:CVE-2024-38189
Microsoft Project Remote Code Execution Vulnerability
CVEs:CVE-2024-38189
Microsoft Project Remote Code Execution Vulnerability
CVEs:CVE-2024-38189
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| 365_apps | affected | microsoft | — | — |
| office_2019 | affected | microsoft | — | — |
| office_long_term_servicing_channel | affected | microsoft | — | — |
| project_2016 | affected | microsoft | — | — |
CVEs:CVE-2024-38106
Windows Kernel Elevation of Privilege Vulnerability
CVEs:CVE-2024-38106
Windows Kernel Elevation of Privilege Vulnerability
CVEs:CVE-2024-38106
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| windows_10_1507 | affected | microsoft | — | — |
| windows_10_1607 | affected | microsoft | — | — |
| windows_10_1809 | affected | microsoft | — | — |
| windows_10_21h2 | affected | microsoft | — | — |
| windows_10_22h2 | affected | microsoft | — | — |
| windows_11_21h2 | affected | microsoft | — | — |
| windows_11_22h2 | affected | microsoft | — | — |
| windows_11_23h2 | affected | microsoft | — | — |
| windows_11_24h2 | affected | microsoft | — | — |
| windows_server_2016 | affected | microsoft | — | — |
| windows_server_2019 | affected | microsoft | — | — |
| windows_server_2022 | affected | microsoft | — | — |
| windows_server_2022_23h2 | affected | microsoft | — | — |
CVEs:CVE-2024-7262
Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16412 (exclusive) on Windows allows an attacker to load an arbitrary Windows library. The vulnerability was found weaponized as a sing...
CVEs:CVE-2024-7262
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| wps_office | affected | kingsoft | — | — |
Arbitrary Code Execution in WPS Office
CVEs:CVE-2024-7262
ASB-A-343727534
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :linux_kernel: | affected | Android | :linux_kernel: | — |
CVEs:CVE-2024-38107
Windows Power Dependency Coordinator Elevation of Privilege Vulnerability
CVEs:CVE-2024-38107
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| windows_10_1507 | affected | microsoft | — | — |
| windows_10_1607 | affected | microsoft | — | — |
| windows_10_1809 | affected | microsoft | — | — |
| windows_10_21h2 | affected | microsoft | — | — |
| windows_10_22h2 | affected | microsoft | — | — |
| windows_11_21h2 | affected | microsoft | — | — |
| windows_11_22h2 | affected | microsoft | — | — |
| windows_11_23h2 | affected | microsoft | — | — |
| windows_11_24h2 | affected | microsoft | — | — |
| windows_server_2012 | affected | microsoft | — | — |
| windows_server_2016 | affected | microsoft | — | — |
| windows_server_2019 | affected | microsoft | — | — |
| windows_server_2022 | affected | microsoft | — | — |
| windows_server_2022_23h2 | affected | microsoft | — | — |
Windows Power Dependency Coordinator Elevation of Privilege Vulnerability
CVEs:CVE-2024-38107
Privilege Escalation in Kubernetes in github.com/kubernetes/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes/kubernetes | affected | github.com | github.com/kubernetes/kubernetes | — |
XML Entity Expansion and Improper Input Validation in Kubernetes API server in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
CVE-2024-7646 in github.com/kubernetes/ingress-nginx
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes/ingress-nginx | affected | github.com | github.com/kubernetes/ingress-nginx | — |
Kubernetes Improper Input Validation vulnerability in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-ebs-csi-driver | affected | chainguard | aws-ebs-csi-driver | — |
| aws-efs-csi-driver | affected | wolfi | aws-efs-csi-driver | — |
| aws-efs-csi-driver | affected | chainguard | aws-efs-csi-driver | — |
| aws-efs-csi-driver-fips | affected | chainguard | aws-efs-csi-driver-fips | — |
| ip-masq-agent | affected | wolfi | ip-masq-agent | — |
| ip-masq-agent | affected | chainguard | ip-masq-agent | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| kubernetes-csi-driver-hostpath | affected | wolfi | kubernetes-csi-driver-hostpath | — |
| kubernetes-csi-driver-hostpath | affected | chainguard | kubernetes-csi-driver-hostpath | — |
| kubernetes-dns-node-cache | affected | chainguard | kubernetes-dns-node-cache | — |
| kubernetes-dns-node-cache | affected | wolfi | kubernetes-dns-node-cache | — |
| nodetaint | affected | chainguard | nodetaint | — |
| nodetaint | affected | wolfi | nodetaint | — |
| prometheus-adapter | affected | chainguard | prometheus-adapter | — |
| prometheus-adapter | affected | wolfi | prometheus-adapter | — |
| spark-operator | affected | chainguard | spark-operator | — |
| spark-operator | affected | wolfi | spark-operator | — |
Kubernetes csi-proxy vulnerable to privilege escalation due to improper input validation in github.com/kubernetes-csi/csi-proxy
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes-csi/csi-proxy | affected | github.com | github.com/kubernetes-csi/csi-proxy | — |
| kubernetes-csi/csi-proxy/v2 | affected | github.com | github.com/kubernetes-csi/csi-proxy/v2 | — |
CVEs:CVE-2024-38219
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVEs:CVE-2024-38219
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| edge_chromium | affected | microsoft | — | — |
Red Hat Enhancement Advisory: Release of components for RHOSO 18.0
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| ansible-role-atos-hsm | affected | Red Hat:openstack:18.0::el9 | ansible-role-atos-hsm | — |
| ansible-role-lunasa-hsm | affected | Red Hat:openstack:18.0::el9 | ansible-role-lunasa-hsm | — |
| ansible-role-network-runner | affected | Red Hat:openstack:18.0::el9 | ansible-role-network-runner | — |
| ansible-role-thales-hsm | affected | Red Hat:openstack:18.0::el9 | ansible-role-thales-hsm | — |
| bootswatch-common | affected | Red Hat:openstack:18.0::el9 | bootswatch-common | — |
| bootswatch-fonts | affected | Red Hat:openstack:18.0::el9 | bootswatch-fonts | — |
| crudini | affected | Red Hat:openstack:18.0::el9 | crudini | — |
| dibbler | affected | Red Hat:openstack:18.0::el9 | dibbler | — |
| dibbler-client | affected | Red Hat:openstack:18.0::el9 | dibbler-client | — |
| dibbler-client-debuginfo | affected | Red Hat:openstack:18.0::el9 | dibbler-client-debuginfo | — |
| dibbler-debuginfo | affected | Red Hat:openstack:18.0::el9 | dibbler-debuginfo | — |
| dibbler-debugsource | affected | Red Hat:openstack:18.0::el9 | dibbler-debugsource | — |
| dibbler-relay | affected | Red Hat:openstack:18.0::el9 | dibbler-relay | — |
| dibbler-relay-debuginfo | affected | Red Hat:openstack:18.0::el9 | dibbler-relay-debuginfo | — |
| dibbler-requestor | affected | Red Hat:openstack:18.0::el9 | dibbler-requestor | — |
| dibbler-requestor-debuginfo | affected | Red Hat:openstack:18.0::el9 | dibbler-requestor-debuginfo | — |
| dibbler-server | affected | Red Hat:openstack:18.0::el9 | dibbler-server | — |
| dibbler-server-debuginfo | affected | Red Hat:openstack:18.0::el9 | dibbler-server-debuginfo | — |
| dib-utils | affected | Red Hat:openstack:18.0::el9 | dib-utils | — |
| diskimage-builder | affected | Red Hat:openstack:18.0::el9 | diskimage-builder | — |
| dumb-init | affected | Red Hat:openstack:18.0::el9 | dumb-init | — |
| dumb-init-debuginfo | affected | Red Hat:openstack:18.0::el9 | dumb-init-debuginfo | — |
| dumb-init-debugsource | affected | Red Hat:openstack:18.0::el9 | dumb-init-debugsource | — |
| edpm-image-builder | affected | Red Hat:openstack:18.0::el9 | edpm-image-builder | — |
| elixir | affected | Red Hat:openstack:18.0::el9 | elixir | — |
| erlang | affected | Red Hat:openstack:18.0::el9 | erlang | — |
| erlang-asn1 | affected | Red Hat:openstack:18.0::el9 | erlang-asn1 | — |
| erlang-asn1-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-asn1-debuginfo | — |
| erlang-compiler | affected | Red Hat:openstack:18.0::el9 | erlang-compiler | — |
| erlang-crypto | affected | Red Hat:openstack:18.0::el9 | erlang-crypto | — |
| erlang-crypto-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-crypto-debuginfo | — |
| erlang-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-debuginfo | — |
| erlang-debugsource | affected | Red Hat:openstack:18.0::el9 | erlang-debugsource | — |
| erlang-eldap | affected | Red Hat:openstack:18.0::el9 | erlang-eldap | — |
| erlang-erl_interface-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-erl_interface-debuginfo | — |
| erlang-erts | affected | Red Hat:openstack:18.0::el9 | erlang-erts | — |
| erlang-erts-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-erts-debuginfo | — |
| erlang-inets | affected | Red Hat:openstack:18.0::el9 | erlang-inets | — |
| erlang-kernel | affected | Red Hat:openstack:18.0::el9 | erlang-kernel | — |
| erlang-mnesia | affected | Red Hat:openstack:18.0::el9 | erlang-mnesia | — |
| erlang-odbc-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-odbc-debuginfo | — |
| erlang-os_mon | affected | Red Hat:openstack:18.0::el9 | erlang-os_mon | — |
| erlang-os_mon-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-os_mon-debuginfo | — |
| erlang-parsetools | affected | Red Hat:openstack:18.0::el9 | erlang-parsetools | — |
| erlang-public_key | affected | Red Hat:openstack:18.0::el9 | erlang-public_key | — |
| erlang-runtime_tools | affected | Red Hat:openstack:18.0::el9 | erlang-runtime_tools | — |
| erlang-runtime_tools-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-runtime_tools-debuginfo | — |
| erlang-sasl | affected | Red Hat:openstack:18.0::el9 | erlang-sasl | — |
| erlang-snmp | affected | Red Hat:openstack:18.0::el9 | erlang-snmp | — |
| erlang-ssl | affected | Red Hat:openstack:18.0::el9 | erlang-ssl | — |
| erlang-stdlib | affected | Red Hat:openstack:18.0::el9 | erlang-stdlib | — |
| erlang-syntax_tools | affected | Red Hat:openstack:18.0::el9 | erlang-syntax_tools | — |
| erlang-tools | affected | Red Hat:openstack:18.0::el9 | erlang-tools | — |
| erlang-tools-debuginfo | affected | Red Hat:openstack:18.0::el9 | erlang-tools-debuginfo | — |
| erlang-xmerl | affected | Red Hat:openstack:18.0::el9 | erlang-xmerl | — |
| fontawesome-fonts | affected | Red Hat:openstack:18.0::el9 | fontawesome-fonts | — |
| fontawesome-fonts-web | affected | Red Hat:openstack:18.0::el9 | fontawesome-fonts-web | — |
| future | affected | Red Hat:openstack:18.0::el9 | future | — |
| heat-cfntools | affected | Red Hat:openstack:18.0::el9 | heat-cfntools | — |
| jevents | affected | Red Hat:openstack:18.0::el9 | jevents | — |
| jevents-debuginfo | affected | Red Hat:openstack:18.0::el9 | jevents-debuginfo | — |
| liberasurecode | affected | Red Hat:openstack:18.0::el9 | liberasurecode | — |
| liberasurecode-debuginfo | affected | Red Hat:openstack:18.0::el9 | liberasurecode-debuginfo | — |
| liberasurecode-debugsource | affected | Red Hat:openstack:18.0::el9 | liberasurecode-debugsource | — |
| libsodium | affected | Red Hat:openstack:18.0::el9 | libsodium | — |
| libsodium-debuginfo | affected | Red Hat:openstack:18.0::el9 | libsodium-debuginfo | — |
| libsodium-debugsource | affected | Red Hat:openstack:18.0::el9 | libsodium-debugsource | — |
| luajit | affected | Red Hat:openstack:18.0::el9 | luajit | — |
| luajit-debuginfo | affected | Red Hat:openstack:18.0::el9 | luajit-debuginfo | — |
| luajit-debugsource | affected | Red Hat:openstack:18.0::el9 | luajit-debugsource | — |
| mdi-common | affected | Red Hat:openstack:18.0::el9 | mdi-common | — |
| mdi-fonts | affected | Red Hat:openstack:18.0::el9 | mdi-fonts | — |
| ndisc6 | affected | Red Hat:openstack:18.0::el9 | ndisc6 | — |
| ndisc6-debuginfo | affected | Red Hat:openstack:18.0::el9 | ndisc6-debuginfo | — |
| ndisc6-debugsource | affected | Red Hat:openstack:18.0::el9 | ndisc6-debugsource | — |
| novnc | affected | Red Hat:openstack:18.0::el9 | novnc | — |
| openstack-aodh | affected | Red Hat:openstack:18.0::el9 | openstack-aodh | — |
| openstack-aodh-api | affected | Red Hat:openstack:18.0::el9 | openstack-aodh-api | — |
| openstack-aodh-common | affected | Red Hat:openstack:18.0::el9 | openstack-aodh-common | — |
| openstack-aodh-compat | affected | Red Hat:openstack:18.0::el9 | openstack-aodh-compat | — |
| openstack-aodh-evaluator | affected | Red Hat:openstack:18.0::el9 | openstack-aodh-evaluator | — |
| openstack-aodh-expirer | affected | Red Hat:openstack:18.0::el9 | openstack-aodh-expirer | — |
| openstack-aodh-listener | affected | Red Hat:openstack:18.0::el9 | openstack-aodh-listener | — |
| openstack-aodh-notifier | affected | Red Hat:openstack:18.0::el9 | openstack-aodh-notifier | — |
| openstack-barbican | affected | Red Hat:openstack:18.0::el9 | openstack-barbican | — |
| openstack-barbican-api | affected | Red Hat:openstack:18.0::el9 | openstack-barbican-api | — |
| openstack-barbican-common | affected | Red Hat:openstack:18.0::el9 | openstack-barbican-common | — |
| openstack-barbican-keystone-listener | affected | Red Hat:openstack:18.0::el9 | openstack-barbican-keystone-listener | — |
| openstack-barbican-worker | affected | Red Hat:openstack:18.0::el9 | openstack-barbican-worker | — |
| openstack-ceilometer | affected | Red Hat:openstack:18.0::el9 | openstack-ceilometer | — |
| openstack-ceilometer-central | affected | Red Hat:openstack:18.0::el9 | openstack-ceilometer-central | — |
| openstack-ceilometer-common | affected | Red Hat:openstack:18.0::el9 | openstack-ceilometer-common | — |
| openstack-ceilometer-compute | affected | Red Hat:openstack:18.0::el9 | openstack-ceilometer-compute | — |
| openstack-ceilometer-ipmi | affected | Red Hat:openstack:18.0::el9 | openstack-ceilometer-ipmi | — |
| openstack-ceilometer-notification | affected | Red Hat:openstack:18.0::el9 | openstack-ceilometer-notification | — |
| openstack-ceilometer-polling | affected | Red Hat:openstack:18.0::el9 | openstack-ceilometer-polling | — |
| openstack-cinder | affected | Red Hat:openstack:18.0::el9 | openstack-cinder | — |
| openstack-dashboard | affected | Red Hat:openstack:18.0::el9 | openstack-dashboard | — |
| openstack-dashboard-theme | affected | Red Hat:openstack:18.0::el9 | openstack-dashboard-theme | — |
| openstack-designate | affected | Red Hat:openstack:18.0::el9 | openstack-designate | — |
| openstack-designate-agent | affected | Red Hat:openstack:18.0::el9 | openstack-designate-agent | — |
| openstack-designate-api | affected | Red Hat:openstack:18.0::el9 | openstack-designate-api | — |
| openstack-designate-central | affected | Red Hat:openstack:18.0::el9 | openstack-designate-central | — |
| openstack-designate-common | affected | Red Hat:openstack:18.0::el9 | openstack-designate-common | — |
| openstack-designate-mdns | affected | Red Hat:openstack:18.0::el9 | openstack-designate-mdns | — |
| openstack-designate-producer | affected | Red Hat:openstack:18.0::el9 | openstack-designate-producer | — |
| openstack-designate-sink | affected | Red Hat:openstack:18.0::el9 | openstack-designate-sink | — |
| openstack-designate-ui | affected | Red Hat:openstack:18.0::el9 | openstack-designate-ui | — |
| openstack-designate-worker | affected | Red Hat:openstack:18.0::el9 | openstack-designate-worker | — |
| openstack-glance | affected | Red Hat:openstack:18.0::el9 | openstack-glance | — |
| openstack-heat | affected | Red Hat:openstack:18.0::el9 | openstack-heat | — |
| openstack-heat-agents | affected | Red Hat:openstack:18.0::el9 | openstack-heat-agents | — |
| openstack-heat-api | affected | Red Hat:openstack:18.0::el9 | openstack-heat-api | — |
| openstack-heat-api-cfn | affected | Red Hat:openstack:18.0::el9 | openstack-heat-api-cfn | — |
| openstack-heat-common | affected | Red Hat:openstack:18.0::el9 | openstack-heat-common | — |
| openstack-heat-engine | affected | Red Hat:openstack:18.0::el9 | openstack-heat-engine | — |
| openstack-heat-monolith | affected | Red Hat:openstack:18.0::el9 | openstack-heat-monolith | — |
| openstack-heat-ui | affected | Red Hat:openstack:18.0::el9 | openstack-heat-ui | — |
| openstack-ironic | affected | Red Hat:openstack:18.0::el9 | openstack-ironic | — |
| openstack-ironic-api | affected | Red Hat:openstack:18.0::el9 | openstack-ironic-api | — |
| openstack-ironic-common | affected | Red Hat:openstack:18.0::el9 | openstack-ironic-common | — |
| openstack-ironic-conductor | affected | Red Hat:openstack:18.0::el9 | openstack-ironic-conductor | — |
| openstack-ironic-inspector | affected | Red Hat:openstack:18.0::el9 | openstack-ironic-inspector | — |
| openstack-ironic-inspector-dnsmasq | affected | Red Hat:openstack:18.0::el9 | openstack-ironic-inspector-dnsmasq | — |
| openstack-ironic-python-agent | affected | Red Hat:openstack:18.0::el9 | openstack-ironic-python-agent | — |
| openstack-ironic-python-agent-builder | affected | Red Hat:openstack:18.0::el9 | openstack-ironic-python-agent-builder | — |
| openstack-ironic-ui | affected | Red Hat:openstack:18.0::el9 | openstack-ironic-ui | — |
| openstack-keystone | affected | Red Hat:openstack:18.0::el9 | openstack-keystone | — |
| openstack-manila | affected | Red Hat:openstack:18.0::el9 | openstack-manila | — |
| openstack-manila-share | affected | Red Hat:openstack:18.0::el9 | openstack-manila-share | — |
| openstack-manila-ui | affected | Red Hat:openstack:18.0::el9 | openstack-manila-ui | — |
| openstack-network-scripts | affected | Red Hat:openstack:18.0::el9 | openstack-network-scripts | — |
| openstack-network-scripts-debuginfo | affected | Red Hat:openstack:18.0::el9 | openstack-network-scripts-debuginfo | — |
| openstack-network-scripts-debugsource | affected | Red Hat:openstack:18.0::el9 | openstack-network-scripts-debugsource | — |
| openstack-network-scripts-openvswitch3.3 | affected | Red Hat:openstack:18.0::el9 | openstack-network-scripts-openvswitch3.3 | — |
| openstack-neutron | affected | Red Hat:openstack:18.0::el9 | openstack-neutron | — |
| openstack-neutron-bgp-dragent | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-bgp-dragent | — |
| openstack-neutron-bigswitch-agent | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-bigswitch-agent | — |
| openstack-neutron-common | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-common | — |
| openstack-neutron-dynamic-routing | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-dynamic-routing | — |
| openstack-neutron-dynamic-routing-common | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-dynamic-routing-common | — |
| openstack-neutron-l2gw-agent | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-l2gw-agent | — |
| openstack-neutron-linuxbridge | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-linuxbridge | — |
| openstack-neutron-macvtap-agent | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-macvtap-agent | — |
| openstack-neutron-metering-agent | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-metering-agent | — |
| openstack-neutron-ml2 | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-ml2 | — |
| openstack-neutron-openvswitch | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-openvswitch | — |
| openstack-neutron-ovn-agent | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-ovn-agent | — |
| openstack-neutron-ovn-metadata-agent | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-ovn-metadata-agent | — |
| openstack-neutron-ovn-migration-tool | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-ovn-migration-tool | — |
| openstack-neutron-rpc-server | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-rpc-server | — |
| openstack-neutron-sriov-nic-agent | affected | Red Hat:openstack:18.0::el9 | openstack-neutron-sriov-nic-agent | — |
| openstack-nova | affected | Red Hat:openstack:18.0::el9 | openstack-nova | — |
| openstack-nova-api | affected | Red Hat:openstack:18.0::el9 | openstack-nova-api | — |
| openstack-nova-common | affected | Red Hat:openstack:18.0::el9 | openstack-nova-common | — |
| openstack-nova-compute | affected | Red Hat:openstack:18.0::el9 | openstack-nova-compute | — |
| openstack-nova-conductor | affected | Red Hat:openstack:18.0::el9 | openstack-nova-conductor | — |
| openstack-nova-migration | affected | Red Hat:openstack:18.0::el9 | openstack-nova-migration | — |
| openstack-nova-novncproxy | affected | Red Hat:openstack:18.0::el9 | openstack-nova-novncproxy | — |
| openstack-nova-scheduler | affected | Red Hat:openstack:18.0::el9 | openstack-nova-scheduler | — |
| openstack-nova-serialproxy | affected | Red Hat:openstack:18.0::el9 | openstack-nova-serialproxy | — |
| openstack-nova-spicehtml5proxy | affected | Red Hat:openstack:18.0::el9 | openstack-nova-spicehtml5proxy | — |
| openstack-octavia | affected | Red Hat:openstack:18.0::el9 | openstack-octavia | — |
| openstack-octavia-amphora-agent | affected | Red Hat:openstack:18.0::el9 | openstack-octavia-amphora-agent | — |
| openstack-octavia-api | affected | Red Hat:openstack:18.0::el9 | openstack-octavia-api | — |
| openstack-octavia-common | affected | Red Hat:openstack:18.0::el9 | openstack-octavia-common | — |
| openstack-octavia-diskimage-create | affected | Red Hat:openstack:18.0::el9 | openstack-octavia-diskimage-create | — |
| openstack-octavia-health-manager | affected | Red Hat:openstack:18.0::el9 | openstack-octavia-health-manager | — |
| openstack-octavia-housekeeping | affected | Red Hat:openstack:18.0::el9 | openstack-octavia-housekeeping | — |
| openstack-octavia-ui | affected | Red Hat:openstack:18.0::el9 | openstack-octavia-ui | — |
| openstack-octavia-worker | affected | Red Hat:openstack:18.0::el9 | openstack-octavia-worker | — |
| openstack-placement | affected | Red Hat:openstack:18.0::el9 | openstack-placement | — |
| openstack-placement-api | affected | Red Hat:openstack:18.0::el9 | openstack-placement-api | — |
| openstack-placement-common | affected | Red Hat:openstack:18.0::el9 | openstack-placement-common | — |
| openstack-selinux | affected | Red Hat:openstack:18.0::el9 | openstack-selinux | — |
| openstack-swift | affected | Red Hat:openstack:18.0::el9 | openstack-swift | — |
| openstack-swift-account | affected | Red Hat:openstack:18.0::el9 | openstack-swift-account | — |
| openstack-swift-container | affected | Red Hat:openstack:18.0::el9 | openstack-swift-container | — |
| openstack-swift-object | affected | Red Hat:openstack:18.0::el9 | openstack-swift-object | — |
| openstack-swift-proxy | affected | Red Hat:openstack:18.0::el9 | openstack-swift-proxy | — |
| openstack-tempest | affected | Red Hat:openstack:18.0::el9 | openstack-tempest | — |
| openstack-tempest-all | affected | Red Hat:openstack:18.0::el9 | openstack-tempest-all | — |
| os-apply-config | affected | Red Hat:openstack:18.0::el9 | os-apply-config | — |
| os-collect-config | affected | Red Hat:openstack:18.0::el9 | os-collect-config | — |
| os-net-config | affected | Red Hat:openstack:18.0::el9 | os-net-config | — |
| os-refresh-config | affected | Red Hat:openstack:18.0::el9 | os-refresh-config | — |
| ovn-bgp-agent | affected | Red Hat:openstack:18.0::el9 | ovn-bgp-agent | — |
| pmu-data | affected | Red Hat:openstack:18.0::el9 | pmu-data | — |
| pmu-tools | affected | Red Hat:openstack:18.0::el9 | pmu-tools | — |
| pmu-tools-debugsource | affected | Red Hat:openstack:18.0::el9 | pmu-tools-debugsource | — |
| pydot | affected | Red Hat:openstack:18.0::el9 | pydot | — |
| pyflakes | affected | Red Hat:openstack:18.0::el9 | pyflakes | — |
| pyOpenSSL | affected | Red Hat:openstack:18.0::el9 | pyOpenSSL | — |
| pysendfile | affected | Red Hat:openstack:18.0::el9 | pysendfile | — |
| pysendfile-debugsource | affected | Red Hat:openstack:18.0::el9 | pysendfile-debugsource | — |
| pysnmp | affected | Red Hat:openstack:18.0::el9 | pysnmp | — |
| pystache | affected | Red Hat:openstack:18.0::el9 | pystache | — |
| python3-alembic | affected | Red Hat:openstack:18.0::el9 | python3-alembic | — |
| python3-amqp | affected | Red Hat:openstack:18.0::el9 | python3-amqp | — |
| python3-aniso8601 | affected | Red Hat:openstack:18.0::el9 | python3-aniso8601 | — |
| python3-ansible-runner | affected | Red Hat:openstack:18.0::el9 | python3-ansible-runner | — |
| python3-anyio | affected | Red Hat:openstack:18.0::el9 | python3-anyio | — |
| python3-anyjson | affected | Red Hat:openstack:18.0::el9 | python3-anyjson | — |
| python3-aodh | affected | Red Hat:openstack:18.0::el9 | python3-aodh | — |
| python3-aodhclient | affected | Red Hat:openstack:18.0::el9 | python3-aodhclient | — |
| python3-asgiref | affected | Red Hat:openstack:18.0::el9 | python3-asgiref | — |
| python3-automaton | affected | Red Hat:openstack:18.0::el9 | python3-automaton | — |
| python3-autopage | affected | Red Hat:openstack:18.0::el9 | python3-autopage | — |
| python3-barbican | affected | Red Hat:openstack:18.0::el9 | python3-barbican | — |
| python3-barbicanclient | affected | Red Hat:openstack:18.0::el9 | python3-barbicanclient | — |
| python3-barbican-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-barbican-tests-tempest | — |
| python3-bcrypt | affected | Red Hat:openstack:18.0::el9 | python3-bcrypt | — |
| python3-bcrypt-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-bcrypt-debuginfo | — |
| python3-binary-memcached | affected | Red Hat:openstack:18.0::el9 | python3-binary-memcached | — |
| python3-boto | affected | Red Hat:openstack:18.0::el9 | python3-boto | — |
| python3-boto3 | affected | Red Hat:openstack:18.0::el9 | python3-boto3 | — |
| python3-botocore | affected | Red Hat:openstack:18.0::el9 | python3-botocore | — |
| python3-cachetools | affected | Red Hat:openstack:18.0::el9 | python3-cachetools | — |
| python3-castellan | affected | Red Hat:openstack:18.0::el9 | python3-castellan | — |
| python3-ceilometer | affected | Red Hat:openstack:18.0::el9 | python3-ceilometer | — |
| python3-ceilometermiddleware | affected | Red Hat:openstack:18.0::el9 | python3-ceilometermiddleware | — |
| python3-certifi | affected | Red Hat:openstack:18.0::el9 | python3-certifi | — |
| python3-cinder | affected | Red Hat:openstack:18.0::el9 | python3-cinder | — |
| python3-cinderclient | affected | Red Hat:openstack:18.0::el9 | python3-cinderclient | — |
| python3-cinder-common | affected | Red Hat:openstack:18.0::el9 | python3-cinder-common | — |
| python3-cinderlib | affected | Red Hat:openstack:18.0::el9 | python3-cinderlib | — |
| python3-cinder-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-cinder-tests-tempest | — |
| python3-click | affected | Red Hat:openstack:18.0::el9 | python3-click | — |
| python3-cliff | affected | Red Hat:openstack:18.0::el9 | python3-cliff | — |
| python3-cmd2 | affected | Red Hat:openstack:18.0::el9 | python3-cmd2 | — |
| python3-colorama | affected | Red Hat:openstack:18.0::el9 | python3-colorama | — |
| python3-construct | affected | Red Hat:openstack:18.0::el9 | python3-construct | — |
| python3-contextlib2 | affected | Red Hat:openstack:18.0::el9 | python3-contextlib2 | — |
| python3-cotyledon | affected | Red Hat:openstack:18.0::el9 | python3-cotyledon | — |
| python3-croniter | affected | Red Hat:openstack:18.0::el9 | python3-croniter | — |
| python3-cursive | affected | Red Hat:openstack:18.0::el9 | python3-cursive | — |
| python3-daemon | affected | Red Hat:openstack:18.0::el9 | python3-daemon | — |
| python3-ddt | affected | Red Hat:openstack:18.0::el9 | python3-ddt | — |
| python3-debtcollector | affected | Red Hat:openstack:18.0::el9 | python3-debtcollector | — |
| python3-defusedxml | affected | Red Hat:openstack:18.0::el9 | python3-defusedxml | — |
| python3-designate | affected | Red Hat:openstack:18.0::el9 | python3-designate | — |
| python3-designateclient | affected | Red Hat:openstack:18.0::el9 | python3-designateclient | — |
| python3-designate-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-designate-tests-tempest | — |
| python3-dictdiffer | affected | Red Hat:openstack:18.0::el9 | python3-dictdiffer | — |
| python3-django | affected | Red Hat:openstack:18.0::el9 | python3-django | — |
| python3-django-appconf | affected | Red Hat:openstack:18.0::el9 | python3-django-appconf | — |
| python3-django-compressor | affected | Red Hat:openstack:18.0::el9 | python3-django-compressor | — |
| python3-django-debreach | affected | Red Hat:openstack:18.0::el9 | python3-django-debreach | — |
| python3-django-horizon | affected | Red Hat:openstack:18.0::el9 | python3-django-horizon | — |
| python3-django-pyscss | affected | Red Hat:openstack:18.0::el9 | python3-django-pyscss | — |
| python3-docutils | affected | Red Hat:openstack:18.0::el9 | python3-docutils | — |
| python3-dogpile-cache | affected | Red Hat:openstack:18.0::el9 | python3-dogpile-cache | — |
| python3-dracclient | affected | Red Hat:openstack:18.0::el9 | python3-dracclient | — |
| python3-edgegrid | affected | Red Hat:openstack:18.0::el9 | python3-edgegrid | — |
| python3-etcd3gw | affected | Red Hat:openstack:18.0::el9 | python3-etcd3gw | — |
| python3-eventlet | affected | Red Hat:openstack:18.0::el9 | python3-eventlet | — |
| python3-extras | affected | Red Hat:openstack:18.0::el9 | python3-extras | — |
| python3-fasteners | affected | Red Hat:openstack:18.0::el9 | python3-fasteners | — |
| python3-fixtures | affected | Red Hat:openstack:18.0::el9 | python3-fixtures | — |
| python3-flake8 | affected | Red Hat:openstack:18.0::el9 | python3-flake8 | — |
| python3-flask | affected | Red Hat:openstack:18.0::el9 | python3-flask | — |
| python3-flask-restful | affected | Red Hat:openstack:18.0::el9 | python3-flask-restful | — |
| python3-future | affected | Red Hat:openstack:18.0::el9 | python3-future | — |
| python3-futurist | affected | Red Hat:openstack:18.0::el9 | python3-futurist | — |
| python3-gabbi | affected | Red Hat:openstack:18.0::el9 | python3-gabbi | — |
| python3-glance | affected | Red Hat:openstack:18.0::el9 | python3-glance | — |
| python3-glanceclient | affected | Red Hat:openstack:18.0::el9 | python3-glanceclient | — |
| python3-glance-store | affected | Red Hat:openstack:18.0::el9 | python3-glance-store | — |
| python3-glance-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-glance-tests-tempest | — |
| python3-gnocchiclient | affected | Red Hat:openstack:18.0::el9 | python3-gnocchiclient | — |
| python3-google-auth | affected | Red Hat:openstack:18.0::el9 | python3-google-auth | — |
| python3-greenlet | affected | Red Hat:openstack:18.0::el9 | python3-greenlet | — |
| python3-greenlet-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-greenlet-debuginfo | — |
| python3-gunicorn | affected | Red Hat:openstack:18.0::el9 | python3-gunicorn | — |
| python3-h11 | affected | Red Hat:openstack:18.0::el9 | python3-h11 | — |
| python3-h2 | affected | Red Hat:openstack:18.0::el9 | python3-h2 | — |
| python3-hardware | affected | Red Hat:openstack:18.0::el9 | python3-hardware | — |
| python3-hardware-detect | affected | Red Hat:openstack:18.0::el9 | python3-hardware-detect | — |
| python3-heat-agent | affected | Red Hat:openstack:18.0::el9 | python3-heat-agent | — |
| python3-heat-agent-ansible | affected | Red Hat:openstack:18.0::el9 | python3-heat-agent-ansible | — |
| python3-heat-agent-apply-config | affected | Red Hat:openstack:18.0::el9 | python3-heat-agent-apply-config | — |
| python3-heat-agent-docker-cmd | affected | Red Hat:openstack:18.0::el9 | python3-heat-agent-docker-cmd | — |
| python3-heat-agent-json-file | affected | Red Hat:openstack:18.0::el9 | python3-heat-agent-json-file | — |
| python3-heatclient | affected | Red Hat:openstack:18.0::el9 | python3-heatclient | — |
| python3-heat-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-heat-tests-tempest | — |
| python3-hpack | affected | Red Hat:openstack:18.0::el9 | python3-hpack | — |
| python3-httpcore | affected | Red Hat:openstack:18.0::el9 | python3-httpcore | — |
| python3-httplib2 | affected | Red Hat:openstack:18.0::el9 | python3-httplib2 | — |
| python3-httpx | affected | Red Hat:openstack:18.0::el9 | python3-httpx | — |
| python3-hyperframe | affected | Red Hat:openstack:18.0::el9 | python3-hyperframe | — |
| python3-ifaddr | affected | Red Hat:openstack:18.0::el9 | python3-ifaddr | — |
| python3-ImcSdk | affected | Red Hat:openstack:18.0::el9 | python3-ImcSdk | — |
| python3-importlib-metadata | affected | Red Hat:openstack:18.0::el9 | python3-importlib-metadata | — |
| python3-ironicclient | affected | Red Hat:openstack:18.0::el9 | python3-ironicclient | — |
| python3-ironic-inspector-client | affected | Red Hat:openstack:18.0::el9 | python3-ironic-inspector-client | — |
| python3-ironic-lib | affected | Red Hat:openstack:18.0::el9 | python3-ironic-lib | — |
| python3-ironic-neutron-agent | affected | Red Hat:openstack:18.0::el9 | python3-ironic-neutron-agent | — |
| python3-ironic-python-agent | affected | Red Hat:openstack:18.0::el9 | python3-ironic-python-agent | — |
| python3-ironic-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-ironic-tests-tempest | — |
| python3-iso8601 | affected | Red Hat:openstack:18.0::el9 | python3-iso8601 | — |
| python3-itsdangerous | affected | Red Hat:openstack:18.0::el9 | python3-itsdangerous | — |
| python3-jeepney | affected | Red Hat:openstack:18.0::el9 | python3-jeepney | — |
| python3-jinja2 | affected | Red Hat:openstack:18.0::el9 | python3-jinja2 | — |
| python3-jmespath | affected | Red Hat:openstack:18.0::el9 | python3-jmespath | — |
| python3-jsonpath-rw | affected | Red Hat:openstack:18.0::el9 | python3-jsonpath-rw | — |
| python3-jsonpath-rw-ext | affected | Red Hat:openstack:18.0::el9 | python3-jsonpath-rw-ext | — |
| python3-junitxml | affected | Red Hat:openstack:18.0::el9 | python3-junitxml | — |
| python3-jwt | affected | Red Hat:openstack:18.0::el9 | python3-jwt | — |
| python3-kazoo | affected | Red Hat:openstack:18.0::el9 | python3-kazoo | — |
| python3-kerberos | affected | Red Hat:openstack:18.0::el9 | python3-kerberos | — |
| python3-kerberos-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-kerberos-debuginfo | — |
| python3-keyring | affected | Red Hat:openstack:18.0::el9 | python3-keyring | — |
| python3-keystone | affected | Red Hat:openstack:18.0::el9 | python3-keystone | — |
| python3-keystoneauth1 | affected | Red Hat:openstack:18.0::el9 | python3-keystoneauth1 | — |
| python3-keystoneclient | affected | Red Hat:openstack:18.0::el9 | python3-keystoneclient | — |
| python3-keystonemiddleware | affected | Red Hat:openstack:18.0::el9 | python3-keystonemiddleware | — |
| python3-keystone-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-keystone-tests-tempest | — |
| python3-kombu | affected | Red Hat:openstack:18.0::el9 | python3-kombu | — |
| python3-kubernetes | affected | Red Hat:openstack:18.0::el9 | python3-kubernetes | — |
| python3-ldap3 | affected | Red Hat:openstack:18.0::el9 | python3-ldap3 | — |
| python3-ldappool | affected | Red Hat:openstack:18.0::el9 | python3-ldappool | — |
| python3-lesscpy | affected | Red Hat:openstack:18.0::el9 | python3-lesscpy | — |
| python3-lockfile | affected | Red Hat:openstack:18.0::el9 | python3-lockfile | — |
| python3-logutils | affected | Red Hat:openstack:18.0::el9 | python3-logutils | — |
| python3-manila | affected | Red Hat:openstack:18.0::el9 | python3-manila | — |
| python3-manilaclient | affected | Red Hat:openstack:18.0::el9 | python3-manilaclient | — |
| python3-manila-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-manila-tests-tempest | — |
| python3-markupsafe | affected | Red Hat:openstack:18.0::el9 | python3-markupsafe | — |
| python3-markupsafe-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-markupsafe-debuginfo | — |
| python3-mccabe | affected | Red Hat:openstack:18.0::el9 | python3-mccabe | — |
| python3-memcached | affected | Red Hat:openstack:18.0::el9 | python3-memcached | — |
| python3-microversion-parse | affected | Red Hat:openstack:18.0::el9 | python3-microversion-parse | — |
| python3-migrate | affected | Red Hat:openstack:18.0::el9 | python3-migrate | — |
| python3-mimeparse | affected | Red Hat:openstack:18.0::el9 | python3-mimeparse | — |
| python3-mock | affected | Red Hat:openstack:18.0::el9 | python3-mock | — |
| python3-monascaclient | affected | Red Hat:openstack:18.0::el9 | python3-monascaclient | — |
| python3-monotonic | affected | Red Hat:openstack:18.0::el9 | python3-monotonic | — |
| python3-more-itertools | affected | Red Hat:openstack:18.0::el9 | python3-more-itertools | — |
| python3-msgpack | affected | Red Hat:openstack:18.0::el9 | python3-msgpack | — |
| python3-msgpack-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-msgpack-debuginfo | — |
| python3-munch | affected | Red Hat:openstack:18.0::el9 | python3-munch | — |
| python3-ncclient | affected | Red Hat:openstack:18.0::el9 | python3-ncclient | — |
| python3-ndg_httpsclient | affected | Red Hat:openstack:18.0::el9 | python3-ndg_httpsclient | — |
| python3-networking-ansible | affected | Red Hat:openstack:18.0::el9 | python3-networking-ansible | — |
| python3-networking-baremetal | affected | Red Hat:openstack:18.0::el9 | python3-networking-baremetal | — |
| python3-networking-bgpvpn | affected | Red Hat:openstack:18.0::el9 | python3-networking-bgpvpn | — |
| python3-networking-bgpvpn-dashboard | affected | Red Hat:openstack:18.0::el9 | python3-networking-bgpvpn-dashboard | — |
| python3-networking-bgpvpn-heat | affected | Red Hat:openstack:18.0::el9 | python3-networking-bgpvpn-heat | — |
| python3-networking-bigswitch | affected | Red Hat:openstack:18.0::el9 | python3-networking-bigswitch | — |
| python3-networking-l2gw | affected | Red Hat:openstack:18.0::el9 | python3-networking-l2gw | — |
| python3-networking-l2gw-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-networking-l2gw-tests-tempest | — |
| python3-network-runner | affected | Red Hat:openstack:18.0::el9 | python3-network-runner | — |
| python3-neutron | affected | Red Hat:openstack:18.0::el9 | python3-neutron | — |
| python3-neutronclient | affected | Red Hat:openstack:18.0::el9 | python3-neutronclient | — |
| python3-neutron-dynamic-routing | affected | Red Hat:openstack:18.0::el9 | python3-neutron-dynamic-routing | — |
| python3-neutron-lib | affected | Red Hat:openstack:18.0::el9 | python3-neutron-lib | — |
| python3-neutron-lib-tests | affected | Red Hat:openstack:18.0::el9 | python3-neutron-lib-tests | — |
| python3-neutron-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-neutron-tests-tempest | — |
| python3-nova | affected | Red Hat:openstack:18.0::el9 | python3-nova | — |
| python3-novaclient | affected | Red Hat:openstack:18.0::el9 | python3-novaclient | — |
| python3-observabilityclient | affected | Red Hat:openstack:18.0::el9 | python3-observabilityclient | — |
| python3-octavia | affected | Red Hat:openstack:18.0::el9 | python3-octavia | — |
| python3-octaviaclient | affected | Red Hat:openstack:18.0::el9 | python3-octaviaclient | — |
| python3-octavia-lib | affected | Red Hat:openstack:18.0::el9 | python3-octavia-lib | — |
| python3-octavia-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-octavia-tests-tempest | — |
| python3-octavia-tests-tempest-golang | affected | Red Hat:openstack:18.0::el9 | python3-octavia-tests-tempest-golang | — |
| python3-octavia-tests-tempest-golang-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-octavia-tests-tempest-golang-debuginfo | — |
| python3-openshift | affected | Red Hat:openstack:18.0::el9 | python3-openshift | — |
| python3-openstackclient | affected | Red Hat:openstack:18.0::el9 | python3-openstackclient | — |
| python3-openstacksdk | affected | Red Hat:openstack:18.0::el9 | python3-openstacksdk | — |
| python3-os-brick | affected | Red Hat:openstack:18.0::el9 | python3-os-brick | — |
| python3-osc-lib | affected | Red Hat:openstack:18.0::el9 | python3-osc-lib | — |
| python3-os-client-config | affected | Red Hat:openstack:18.0::el9 | python3-os-client-config | — |
| python3-osc-placement | affected | Red Hat:openstack:18.0::el9 | python3-osc-placement | — |
| python3-os-ken | affected | Red Hat:openstack:18.0::el9 | python3-os-ken | — |
| python3-oslo-cache | affected | Red Hat:openstack:18.0::el9 | python3-oslo-cache | — |
| python3-oslo-concurrency | affected | Red Hat:openstack:18.0::el9 | python3-oslo-concurrency | — |
| python3-oslo-config | affected | Red Hat:openstack:18.0::el9 | python3-oslo-config | — |
| python3-oslo-context | affected | Red Hat:openstack:18.0::el9 | python3-oslo-context | — |
| python3-oslo-db | affected | Red Hat:openstack:18.0::el9 | python3-oslo-db | — |
| python3-oslo-i18n | affected | Red Hat:openstack:18.0::el9 | python3-oslo-i18n | — |
| python3-oslo-limit | affected | Red Hat:openstack:18.0::el9 | python3-oslo-limit | — |
| python3-oslo-log | affected | Red Hat:openstack:18.0::el9 | python3-oslo-log | — |
| python3-oslo-messaging | affected | Red Hat:openstack:18.0::el9 | python3-oslo-messaging | — |
| python3-oslo-metrics | affected | Red Hat:openstack:18.0::el9 | python3-oslo-metrics | — |
| python3-oslo-middleware | affected | Red Hat:openstack:18.0::el9 | python3-oslo-middleware | — |
| python3-oslo-policy | affected | Red Hat:openstack:18.0::el9 | python3-oslo-policy | — |
| python3-oslo-privsep | affected | Red Hat:openstack:18.0::el9 | python3-oslo-privsep | — |
| python3-oslo-reports | affected | Red Hat:openstack:18.0::el9 | python3-oslo-reports | — |
| python3-oslo-rootwrap | affected | Red Hat:openstack:18.0::el9 | python3-oslo-rootwrap | — |
| python3-oslo-serialization | affected | Red Hat:openstack:18.0::el9 | python3-oslo-serialization | — |
| python3-oslo-service | affected | Red Hat:openstack:18.0::el9 | python3-oslo-service | — |
| python3-oslotest | affected | Red Hat:openstack:18.0::el9 | python3-oslotest | — |
| python3-oslo-upgradecheck | affected | Red Hat:openstack:18.0::el9 | python3-oslo-upgradecheck | — |
| python3-oslo-utils | affected | Red Hat:openstack:18.0::el9 | python3-oslo-utils | — |
| python3-oslo-versionedobjects | affected | Red Hat:openstack:18.0::el9 | python3-oslo-versionedobjects | — |
| python3-oslo-vmware | affected | Red Hat:openstack:18.0::el9 | python3-oslo-vmware | — |
| python3-osprofiler | affected | Red Hat:openstack:18.0::el9 | python3-osprofiler | — |
| python3-os-resource-classes | affected | Red Hat:openstack:18.0::el9 | python3-os-resource-classes | — |
| python3-os-service-types | affected | Red Hat:openstack:18.0::el9 | python3-os-service-types | — |
| python3-os-testr | affected | Red Hat:openstack:18.0::el9 | python3-os-testr | — |
| python3-os-traits | affected | Red Hat:openstack:18.0::el9 | python3-os-traits | — |
| python3-os-vif | affected | Red Hat:openstack:18.0::el9 | python3-os-vif | — |
| python3-os-win | affected | Red Hat:openstack:18.0::el9 | python3-os-win | — |
| python3-ovn-octavia-provider | affected | Red Hat:openstack:18.0::el9 | python3-ovn-octavia-provider | — |
| python3-ovsdbapp | affected | Red Hat:openstack:18.0::el9 | python3-ovsdbapp | — |
| python3-paramiko | affected | Red Hat:openstack:18.0::el9 | python3-paramiko | — |
| python3-passlib | affected | Red Hat:openstack:18.0::el9 | python3-passlib | — |
| python3-paste | affected | Red Hat:openstack:18.0::el9 | python3-paste | — |
| python3-paste-deploy | affected | Red Hat:openstack:18.0::el9 | python3-paste-deploy | — |
| python3-pbr | affected | Red Hat:openstack:18.0::el9 | python3-pbr | — |
| python3-pecan | affected | Red Hat:openstack:18.0::el9 | python3-pecan | — |
| python3-pint | affected | Red Hat:openstack:18.0::el9 | python3-pint | — |
| python3-placement | affected | Red Hat:openstack:18.0::el9 | python3-placement | — |
| python3-posix_ipc | affected | Red Hat:openstack:18.0::el9 | python3-posix_ipc | — |
| python3-posix_ipc-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-posix_ipc-debuginfo | — |
| python3-proliantutils | affected | Red Hat:openstack:18.0::el9 | python3-proliantutils | — |
| python3-prometheus_client | affected | Red Hat:openstack:18.0::el9 | python3-prometheus_client | — |
| python3-pycadf | affected | Red Hat:openstack:18.0::el9 | python3-pycadf | — |
| python3-pycodestyle | affected | Red Hat:openstack:18.0::el9 | python3-pycodestyle | — |
| python3-pydot | affected | Red Hat:openstack:18.0::el9 | python3-pydot | — |
| python3-pyeclib | affected | Red Hat:openstack:18.0::el9 | python3-pyeclib | — |
| python3-pyeclib-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-pyeclib-debuginfo | — |
| python3-pyflakes | affected | Red Hat:openstack:18.0::el9 | python3-pyflakes | — |
| python3-pymemcache | affected | Red Hat:openstack:18.0::el9 | python3-pymemcache | — |
| python3-pynacl | affected | Red Hat:openstack:18.0::el9 | python3-pynacl | — |
| python3-pynacl-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-pynacl-debuginfo | — |
| python3-pyOpenSSL | affected | Red Hat:openstack:18.0::el9 | python3-pyOpenSSL | — |
| python3-pyperclip | affected | Red Hat:openstack:18.0::el9 | python3-pyperclip | — |
| python3-pyroute2 | affected | Red Hat:openstack:18.0::el9 | python3-pyroute2 | — |
| python3-pysaml2 | affected | Red Hat:openstack:18.0::el9 | python3-pysaml2 | — |
| python3-pysendfile | affected | Red Hat:openstack:18.0::el9 | python3-pysendfile | — |
| python3-pysendfile-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-pysendfile-debuginfo | — |
| python3-pysnmp | affected | Red Hat:openstack:18.0::el9 | python3-pysnmp | — |
| python3-pystache | affected | Red Hat:openstack:18.0::el9 | python3-pystache | — |
| python3-pyxattr | affected | Red Hat:openstack:18.0::el9 | python3-pyxattr | — |
| python3-pyxattr-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-pyxattr-debuginfo | — |
| python3-rcssmin | affected | Red Hat:openstack:18.0::el9 | python3-rcssmin | — |
| python3-rcssmin-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-rcssmin-debuginfo | — |
| python3-repoze-lru | affected | Red Hat:openstack:18.0::el9 | python3-repoze-lru | — |
| python3-requestsexceptions | affected | Red Hat:openstack:18.0::el9 | python3-requestsexceptions | — |
| python3-requests-kerberos | affected | Red Hat:openstack:18.0::el9 | python3-requests-kerberos | — |
| python3-retrying | affected | Red Hat:openstack:18.0::el9 | python3-retrying | — |
| python3-rfc3986 | affected | Red Hat:openstack:18.0::el9 | python3-rfc3986 | — |
| python3-rfc3986+idna2008 | affected | Red Hat:openstack:18.0::el9 | python3-rfc3986+idna2008 | — |
| python3-rhoso-openvswitch | affected | Red Hat:openstack:18.0::el9 | python3-rhoso-openvswitch | — |
| python3-rjsmin | affected | Red Hat:openstack:18.0::el9 | python3-rjsmin | — |
| python3-rjsmin-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-rjsmin-debuginfo | — |
| python3-routes | affected | Red Hat:openstack:18.0::el9 | python3-routes | — |
| python3-rsdclient | affected | Red Hat:openstack:18.0::el9 | python3-rsdclient | — |
| python3-rsd-lib | affected | Red Hat:openstack:18.0::el9 | python3-rsd-lib | — |
| python3-s3transfer | affected | Red Hat:openstack:18.0::el9 | python3-s3transfer | — |
| python3-scciclient | affected | Red Hat:openstack:18.0::el9 | python3-scciclient | — |
| python3-scrypt | affected | Red Hat:openstack:18.0::el9 | python3-scrypt | — |
| python3-scrypt-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-scrypt-debuginfo | — |
| python3-scss | affected | Red Hat:openstack:18.0::el9 | python3-scss | — |
| python3-scss-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-scss-debuginfo | — |
| python3-secretstorage | affected | Red Hat:openstack:18.0::el9 | python3-secretstorage | — |
| python3-semantic_version | affected | Red Hat:openstack:18.0::el9 | python3-semantic_version | — |
| python3-setproctitle | affected | Red Hat:openstack:18.0::el9 | python3-setproctitle | — |
| python3-setproctitle-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-setproctitle-debuginfo | — |
| python3-shade | affected | Red Hat:openstack:18.0::el9 | python3-shade | — |
| python3-simplegeneric | affected | Red Hat:openstack:18.0::el9 | python3-simplegeneric | — |
| python3-simplejson | affected | Red Hat:openstack:18.0::el9 | python3-simplejson | — |
| python3-simplejson-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-simplejson-debuginfo | — |
| python3-smi | affected | Red Hat:openstack:18.0::el9 | python3-smi | — |
| python3-sniffio | affected | Red Hat:openstack:18.0::el9 | python3-sniffio | — |
| python3-sqlalchemy-utils | affected | Red Hat:openstack:18.0::el9 | python3-sqlalchemy-utils | — |
| python3-sqlparse | affected | Red Hat:openstack:18.0::el9 | python3-sqlparse | — |
| python3-statsd | affected | Red Hat:openstack:18.0::el9 | python3-statsd | — |
| python3-stestr | affected | Red Hat:openstack:18.0::el9 | python3-stestr | — |
| python3-stevedore | affected | Red Hat:openstack:18.0::el9 | python3-stevedore | — |
| python3-string_utils | affected | Red Hat:openstack:18.0::el9 | python3-string_utils | — |
| python3-subunit | affected | Red Hat:openstack:18.0::el9 | python3-subunit | — |
| python3-suds | affected | Red Hat:openstack:18.0::el9 | python3-suds | — |
| python3-sushy | affected | Red Hat:openstack:18.0::el9 | python3-sushy | — |
| python3-sushy-oem-idrac | affected | Red Hat:openstack:18.0::el9 | python3-sushy-oem-idrac | — |
| python3-swift | affected | Red Hat:openstack:18.0::el9 | python3-swift | — |
| python3-swiftclient | affected | Red Hat:openstack:18.0::el9 | python3-swiftclient | — |
| python3-sysv_ipc | affected | Red Hat:openstack:18.0::el9 | python3-sysv_ipc | — |
| python3-sysv_ipc-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-sysv_ipc-debuginfo | — |
| python3-tabulate | affected | Red Hat:openstack:18.0::el9 | python3-tabulate | — |
| python3-taskflow | affected | Red Hat:openstack:18.0::el9 | python3-taskflow | — |
| python3-tcib | affected | Red Hat:openstack:18.0::el9 | python3-tcib | — |
| python3-telemetry-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python3-telemetry-tests-tempest | — |
| python3-tempest | affected | Red Hat:openstack:18.0::el9 | python3-tempest | — |
| python3-tempestconf | affected | Red Hat:openstack:18.0::el9 | python3-tempestconf | — |
| python3-tempita | affected | Red Hat:openstack:18.0::el9 | python3-tempita | — |
| python3-tenacity | affected | Red Hat:openstack:18.0::el9 | python3-tenacity | — |
| python3-testscenarios | affected | Red Hat:openstack:18.0::el9 | python3-testscenarios | — |
| python3-testtools | affected | Red Hat:openstack:18.0::el9 | python3-testtools | — |
| python3-tooz | affected | Red Hat:openstack:18.0::el9 | python3-tooz | — |
| python3-uhashring | affected | Red Hat:openstack:18.0::el9 | python3-uhashring | — |
| python3-ujson | affected | Red Hat:openstack:18.0::el9 | python3-ujson | — |
| python3-ujson-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-ujson-debuginfo | — |
| python3-vine | affected | Red Hat:openstack:18.0::el9 | python3-vine | — |
| python3-voluptuous | affected | Red Hat:openstack:18.0::el9 | python3-voluptuous | — |
| python3-warlock | affected | Red Hat:openstack:18.0::el9 | python3-warlock | — |
| python3-webob | affected | Red Hat:openstack:18.0::el9 | python3-webob | — |
| python3-websocket-client | affected | Red Hat:openstack:18.0::el9 | python3-websocket-client | — |
| python3-websockify | affected | Red Hat:openstack:18.0::el9 | python3-websockify | — |
| python3-werkzeug | affected | Red Hat:openstack:18.0::el9 | python3-werkzeug | — |
| python3-wrapt | affected | Red Hat:openstack:18.0::el9 | python3-wrapt | — |
| python3-wrapt-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-wrapt-debuginfo | — |
| python3-wsgi_intercept | affected | Red Hat:openstack:18.0::el9 | python3-wsgi_intercept | — |
| python3-wsme | affected | Red Hat:openstack:18.0::el9 | python3-wsme | — |
| python3-xmltodict | affected | Red Hat:openstack:18.0::el9 | python3-xmltodict | — |
| python3-XStatic | affected | Red Hat:openstack:18.0::el9 | python3-XStatic | — |
| python3-XStatic-Angular | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Angular | — |
| python3-XStatic-Angular-Bootstrap | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Angular-Bootstrap | — |
| python3-XStatic-Angular-FileUpload | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Angular-FileUpload | — |
| python3-XStatic-Angular-Gettext | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Angular-Gettext | — |
| python3-XStatic-Angular-lrdragndrop | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Angular-lrdragndrop | — |
| python3-XStatic-Angular-Schema-Form | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Angular-Schema-Form | — |
| python3-XStatic-Angular-UUID | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Angular-UUID | — |
| python3-XStatic-Angular-Vis | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Angular-Vis | — |
| python3-XStatic-Bootstrap-Datepicker | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Bootstrap-Datepicker | — |
| python3-XStatic-Bootstrap-SCSS | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Bootstrap-SCSS | — |
| python3-XStatic-bootswatch | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-bootswatch | — |
| python3-XStatic-D3 | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-D3 | — |
| python3-XStatic-FileSaver | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-FileSaver | — |
| python3-XStatic-Font-Awesome | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Font-Awesome | — |
| python3-XStatic-Hogan | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Hogan | — |
| python3-XStatic-Jasmine | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Jasmine | — |
| python3-XStatic-jQuery | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-jQuery | — |
| python3-XStatic-JQuery-Migrate | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-JQuery-Migrate | — |
| python3-XStatic-JQuery-quicksearch | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-JQuery-quicksearch | — |
| python3-XStatic-JQuery-TableSorter | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-JQuery-TableSorter | — |
| python3-XStatic-jquery-ui | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-jquery-ui | — |
| python3-XStatic-JSEncrypt | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-JSEncrypt | — |
| python3-XStatic-Json2yaml | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Json2yaml | — |
| python3-XStatic-JS-Yaml | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-JS-Yaml | — |
| python3-XStatic-Magic-Search | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Magic-Search | — |
| python3-XStatic-mdi | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-mdi | — |
| python3-XStatic-objectpath | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-objectpath | — |
| python3-XStatic-Rickshaw | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Rickshaw | — |
| python3-XStatic-roboto-fontface | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-roboto-fontface | — |
| python3-XStatic-smart-table | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-smart-table | — |
| python3-XStatic-Spin | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-Spin | — |
| python3-XStatic-termjs | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-termjs | — |
| python3-XStatic-tv4 | affected | Red Hat:openstack:18.0::el9 | python3-XStatic-tv4 | — |
| python3-yappi | affected | Red Hat:openstack:18.0::el9 | python3-yappi | — |
| python3-yappi-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-yappi-debuginfo | — |
| python3-yaql | affected | Red Hat:openstack:18.0::el9 | python3-yaql | — |
| python3-zake | affected | Red Hat:openstack:18.0::el9 | python3-zake | — |
| python3-zaqarclient | affected | Red Hat:openstack:18.0::el9 | python3-zaqarclient | — |
| python3-zeroconf | affected | Red Hat:openstack:18.0::el9 | python3-zeroconf | — |
| python3-zipp | affected | Red Hat:openstack:18.0::el9 | python3-zipp | — |
| python3-zstd | affected | Red Hat:openstack:18.0::el9 | python3-zstd | — |
| python3-zstd-debuginfo | affected | Red Hat:openstack:18.0::el9 | python3-zstd-debuginfo | — |
| python-alembic | affected | Red Hat:openstack:18.0::el9 | python-alembic | — |
| python-amqp | affected | Red Hat:openstack:18.0::el9 | python-amqp | — |
| python-aniso8601 | affected | Red Hat:openstack:18.0::el9 | python-aniso8601 | — |
| python-ansible-runner | affected | Red Hat:openstack:18.0::el9 | python-ansible-runner | — |
| python-anyio | affected | Red Hat:openstack:18.0::el9 | python-anyio | — |
| python-anyjson | affected | Red Hat:openstack:18.0::el9 | python-anyjson | — |
| python-aodhclient | affected | Red Hat:openstack:18.0::el9 | python-aodhclient | — |
| python-asgiref | affected | Red Hat:openstack:18.0::el9 | python-asgiref | — |
| python-automaton | affected | Red Hat:openstack:18.0::el9 | python-automaton | — |
| python-autopage | affected | Red Hat:openstack:18.0::el9 | python-autopage | — |
| python-barbicanclient | affected | Red Hat:openstack:18.0::el9 | python-barbicanclient | — |
| python-barbican-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-barbican-tests-tempest | — |
| python-bcrypt | affected | Red Hat:openstack:18.0::el9 | python-bcrypt | — |
| python-bcrypt-debugsource | affected | Red Hat:openstack:18.0::el9 | python-bcrypt-debugsource | — |
| python-binary-memcached | affected | Red Hat:openstack:18.0::el9 | python-binary-memcached | — |
| python-boto | affected | Red Hat:openstack:18.0::el9 | python-boto | — |
| python-boto3 | affected | Red Hat:openstack:18.0::el9 | python-boto3 | — |
| python-botocore | affected | Red Hat:openstack:18.0::el9 | python-botocore | — |
| python-cachetools | affected | Red Hat:openstack:18.0::el9 | python-cachetools | — |
| python-castellan | affected | Red Hat:openstack:18.0::el9 | python-castellan | — |
| python-ceilometermiddleware | affected | Red Hat:openstack:18.0::el9 | python-ceilometermiddleware | — |
| python-certifi | affected | Red Hat:openstack:18.0::el9 | python-certifi | — |
| python-cinderclient | affected | Red Hat:openstack:18.0::el9 | python-cinderclient | — |
| python-cinderlib | affected | Red Hat:openstack:18.0::el9 | python-cinderlib | — |
| python-cinder-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-cinder-tests-tempest | — |
| python-click | affected | Red Hat:openstack:18.0::el9 | python-click | — |
| python-cliff | affected | Red Hat:openstack:18.0::el9 | python-cliff | — |
| python-cmd2 | affected | Red Hat:openstack:18.0::el9 | python-cmd2 | — |
| python-colorama | affected | Red Hat:openstack:18.0::el9 | python-colorama | — |
| python-construct | affected | Red Hat:openstack:18.0::el9 | python-construct | — |
| python-contextlib2 | affected | Red Hat:openstack:18.0::el9 | python-contextlib2 | — |
| python-cotyledon | affected | Red Hat:openstack:18.0::el9 | python-cotyledon | — |
| python-croniter | affected | Red Hat:openstack:18.0::el9 | python-croniter | — |
| python-cursive | affected | Red Hat:openstack:18.0::el9 | python-cursive | — |
| python-daemon | affected | Red Hat:openstack:18.0::el9 | python-daemon | — |
| python-ddt | affected | Red Hat:openstack:18.0::el9 | python-ddt | — |
| python-debtcollector | affected | Red Hat:openstack:18.0::el9 | python-debtcollector | — |
| python-defusedxml | affected | Red Hat:openstack:18.0::el9 | python-defusedxml | — |
| python-designateclient | affected | Red Hat:openstack:18.0::el9 | python-designateclient | — |
| python-designate-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-designate-tests-tempest | — |
| python-dictdiffer | affected | Red Hat:openstack:18.0::el9 | python-dictdiffer | — |
| python-django | affected | Red Hat:openstack:18.0::el9 | python-django | — |
| python-django-appconf | affected | Red Hat:openstack:18.0::el9 | python-django-appconf | — |
| python-django-compressor | affected | Red Hat:openstack:18.0::el9 | python-django-compressor | — |
| python-django-debreach | affected | Red Hat:openstack:18.0::el9 | python-django-debreach | — |
| python-django-horizon | affected | Red Hat:openstack:18.0::el9 | python-django-horizon | — |
| python-django-pyscss | affected | Red Hat:openstack:18.0::el9 | python-django-pyscss | — |
| python-docutils | affected | Red Hat:openstack:18.0::el9 | python-docutils | — |
| python-dogpile-cache | affected | Red Hat:openstack:18.0::el9 | python-dogpile-cache | — |
| python-dracclient | affected | Red Hat:openstack:18.0::el9 | python-dracclient | — |
| python-edgegrid | affected | Red Hat:openstack:18.0::el9 | python-edgegrid | — |
| python-etcd3gw | affected | Red Hat:openstack:18.0::el9 | python-etcd3gw | — |
| python-eventlet | affected | Red Hat:openstack:18.0::el9 | python-eventlet | — |
| python-extras | affected | Red Hat:openstack:18.0::el9 | python-extras | — |
| python-fasteners | affected | Red Hat:openstack:18.0::el9 | python-fasteners | — |
| python-fixtures | affected | Red Hat:openstack:18.0::el9 | python-fixtures | — |
| python-flake8 | affected | Red Hat:openstack:18.0::el9 | python-flake8 | — |
| python-flask | affected | Red Hat:openstack:18.0::el9 | python-flask | — |
| python-flask-restful | affected | Red Hat:openstack:18.0::el9 | python-flask-restful | — |
| python-futurist | affected | Red Hat:openstack:18.0::el9 | python-futurist | — |
| python-gabbi | affected | Red Hat:openstack:18.0::el9 | python-gabbi | — |
| python-glanceclient | affected | Red Hat:openstack:18.0::el9 | python-glanceclient | — |
| python-glance-store | affected | Red Hat:openstack:18.0::el9 | python-glance-store | — |
| python-glance-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-glance-tests-tempest | — |
| python-gnocchiclient | affected | Red Hat:openstack:18.0::el9 | python-gnocchiclient | — |
| python-google-auth | affected | Red Hat:openstack:18.0::el9 | python-google-auth | — |
| python-greenlet | affected | Red Hat:openstack:18.0::el9 | python-greenlet | — |
| python-greenlet-debugsource | affected | Red Hat:openstack:18.0::el9 | python-greenlet-debugsource | — |
| python-gunicorn | affected | Red Hat:openstack:18.0::el9 | python-gunicorn | — |
| python-h11 | affected | Red Hat:openstack:18.0::el9 | python-h11 | — |
| python-h2 | affected | Red Hat:openstack:18.0::el9 | python-h2 | — |
| python-hardware | affected | Red Hat:openstack:18.0::el9 | python-hardware | — |
| python-heatclient | affected | Red Hat:openstack:18.0::el9 | python-heatclient | — |
| python-heat-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-heat-tests-tempest | — |
| python-hpack | affected | Red Hat:openstack:18.0::el9 | python-hpack | — |
| python-httpcore | affected | Red Hat:openstack:18.0::el9 | python-httpcore | — |
| python-httplib2 | affected | Red Hat:openstack:18.0::el9 | python-httplib2 | — |
| python-httpx | affected | Red Hat:openstack:18.0::el9 | python-httpx | — |
| python-hyperframe | affected | Red Hat:openstack:18.0::el9 | python-hyperframe | — |
| python-ifaddr | affected | Red Hat:openstack:18.0::el9 | python-ifaddr | — |
| python-ImcSdk | affected | Red Hat:openstack:18.0::el9 | python-ImcSdk | — |
| python-importlib-metadata | affected | Red Hat:openstack:18.0::el9 | python-importlib-metadata | — |
| python-ironicclient | affected | Red Hat:openstack:18.0::el9 | python-ironicclient | — |
| python-ironic-inspector-client | affected | Red Hat:openstack:18.0::el9 | python-ironic-inspector-client | — |
| python-ironic-lib | affected | Red Hat:openstack:18.0::el9 | python-ironic-lib | — |
| python-ironic-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-ironic-tests-tempest | — |
| python-iso8601 | affected | Red Hat:openstack:18.0::el9 | python-iso8601 | — |
| python-itsdangerous | affected | Red Hat:openstack:18.0::el9 | python-itsdangerous | — |
| python-jeepney | affected | Red Hat:openstack:18.0::el9 | python-jeepney | — |
| python-jinja2 | affected | Red Hat:openstack:18.0::el9 | python-jinja2 | — |
| python-jmespath | affected | Red Hat:openstack:18.0::el9 | python-jmespath | — |
| python-jsonpath-rw | affected | Red Hat:openstack:18.0::el9 | python-jsonpath-rw | — |
| python-jsonpath-rw-ext | affected | Red Hat:openstack:18.0::el9 | python-jsonpath-rw-ext | — |
| python-junitxml | affected | Red Hat:openstack:18.0::el9 | python-junitxml | — |
| python-jwt | affected | Red Hat:openstack:18.0::el9 | python-jwt | — |
| python-kazoo | affected | Red Hat:openstack:18.0::el9 | python-kazoo | — |
| python-kerberos | affected | Red Hat:openstack:18.0::el9 | python-kerberos | — |
| python-kerberos-debugsource | affected | Red Hat:openstack:18.0::el9 | python-kerberos-debugsource | — |
| python-keyring | affected | Red Hat:openstack:18.0::el9 | python-keyring | — |
| python-keystoneauth1 | affected | Red Hat:openstack:18.0::el9 | python-keystoneauth1 | — |
| python-keystoneclient | affected | Red Hat:openstack:18.0::el9 | python-keystoneclient | — |
| python-keystonemiddleware | affected | Red Hat:openstack:18.0::el9 | python-keystonemiddleware | — |
| python-keystone-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-keystone-tests-tempest | — |
| python-kombu | affected | Red Hat:openstack:18.0::el9 | python-kombu | — |
| python-kubernetes | affected | Red Hat:openstack:18.0::el9 | python-kubernetes | — |
| python-ldap3 | affected | Red Hat:openstack:18.0::el9 | python-ldap3 | — |
| python-ldappool | affected | Red Hat:openstack:18.0::el9 | python-ldappool | — |
| python-lesscpy | affected | Red Hat:openstack:18.0::el9 | python-lesscpy | — |
| python-lockfile | affected | Red Hat:openstack:18.0::el9 | python-lockfile | — |
| python-logutils | affected | Red Hat:openstack:18.0::el9 | python-logutils | — |
| python-manilaclient | affected | Red Hat:openstack:18.0::el9 | python-manilaclient | — |
| python-manila-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-manila-tests-tempest | — |
| python-markupsafe | affected | Red Hat:openstack:18.0::el9 | python-markupsafe | — |
| python-markupsafe-debugsource | affected | Red Hat:openstack:18.0::el9 | python-markupsafe-debugsource | — |
| python-mccabe | affected | Red Hat:openstack:18.0::el9 | python-mccabe | — |
| python-memcached | affected | Red Hat:openstack:18.0::el9 | python-memcached | — |
| python-microversion-parse | affected | Red Hat:openstack:18.0::el9 | python-microversion-parse | — |
| python-migrate | affected | Red Hat:openstack:18.0::el9 | python-migrate | — |
| python-mimeparse | affected | Red Hat:openstack:18.0::el9 | python-mimeparse | — |
| python-mock | affected | Red Hat:openstack:18.0::el9 | python-mock | — |
| python-monascaclient | affected | Red Hat:openstack:18.0::el9 | python-monascaclient | — |
| python-monotonic | affected | Red Hat:openstack:18.0::el9 | python-monotonic | — |
| python-more-itertools | affected | Red Hat:openstack:18.0::el9 | python-more-itertools | — |
| python-msgpack | affected | Red Hat:openstack:18.0::el9 | python-msgpack | — |
| python-msgpack-debugsource | affected | Red Hat:openstack:18.0::el9 | python-msgpack-debugsource | — |
| python-munch | affected | Red Hat:openstack:18.0::el9 | python-munch | — |
| python-ncclient | affected | Red Hat:openstack:18.0::el9 | python-ncclient | — |
| python-ndg_httpsclient | affected | Red Hat:openstack:18.0::el9 | python-ndg_httpsclient | — |
| python-networking-ansible | affected | Red Hat:openstack:18.0::el9 | python-networking-ansible | — |
| python-networking-baremetal | affected | Red Hat:openstack:18.0::el9 | python-networking-baremetal | — |
| python-networking-bgpvpn | affected | Red Hat:openstack:18.0::el9 | python-networking-bgpvpn | — |
| python-networking-bigswitch | affected | Red Hat:openstack:18.0::el9 | python-networking-bigswitch | — |
| python-networking-l2gw | affected | Red Hat:openstack:18.0::el9 | python-networking-l2gw | — |
| python-networking-l2gw-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-networking-l2gw-tests-tempest | — |
| python-network-runner | affected | Red Hat:openstack:18.0::el9 | python-network-runner | — |
| python-neutronclient | affected | Red Hat:openstack:18.0::el9 | python-neutronclient | — |
| python-neutron-lib | affected | Red Hat:openstack:18.0::el9 | python-neutron-lib | — |
| python-neutron-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-neutron-tests-tempest | — |
| python-novaclient | affected | Red Hat:openstack:18.0::el9 | python-novaclient | — |
| python-observabilityclient | affected | Red Hat:openstack:18.0::el9 | python-observabilityclient | — |
| python-octaviaclient | affected | Red Hat:openstack:18.0::el9 | python-octaviaclient | — |
| python-octavia-lib | affected | Red Hat:openstack:18.0::el9 | python-octavia-lib | — |
| python-octavia-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-octavia-tests-tempest | — |
| python-octavia-tests-tempest-debugsource | affected | Red Hat:openstack:18.0::el9 | python-octavia-tests-tempest-debugsource | — |
| python-openshift | affected | Red Hat:openstack:18.0::el9 | python-openshift | — |
| python-openstackclient | affected | Red Hat:openstack:18.0::el9 | python-openstackclient | — |
| python-openstackclient-lang | affected | Red Hat:openstack:18.0::el9 | python-openstackclient-lang | — |
| python-openstacksdk | affected | Red Hat:openstack:18.0::el9 | python-openstacksdk | — |
| python-os-brick | affected | Red Hat:openstack:18.0::el9 | python-os-brick | — |
| python-osc-lib | affected | Red Hat:openstack:18.0::el9 | python-osc-lib | — |
| python-os-client-config | affected | Red Hat:openstack:18.0::el9 | python-os-client-config | — |
| python-osc-placement | affected | Red Hat:openstack:18.0::el9 | python-osc-placement | — |
| python-os-ken | affected | Red Hat:openstack:18.0::el9 | python-os-ken | — |
| python-oslo-cache | affected | Red Hat:openstack:18.0::el9 | python-oslo-cache | — |
| python-oslo-cache-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-cache-lang | — |
| python-oslo-concurrency | affected | Red Hat:openstack:18.0::el9 | python-oslo-concurrency | — |
| python-oslo-concurrency-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-concurrency-lang | — |
| python-oslo-config | affected | Red Hat:openstack:18.0::el9 | python-oslo-config | — |
| python-oslo-context | affected | Red Hat:openstack:18.0::el9 | python-oslo-context | — |
| python-oslo-db | affected | Red Hat:openstack:18.0::el9 | python-oslo-db | — |
| python-oslo-db-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-db-lang | — |
| python-oslo-i18n | affected | Red Hat:openstack:18.0::el9 | python-oslo-i18n | — |
| python-oslo-i18n-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-i18n-lang | — |
| python-oslo-limit | affected | Red Hat:openstack:18.0::el9 | python-oslo-limit | — |
| python-oslo-log | affected | Red Hat:openstack:18.0::el9 | python-oslo-log | — |
| python-oslo-log-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-log-lang | — |
| python-oslo-messaging | affected | Red Hat:openstack:18.0::el9 | python-oslo-messaging | — |
| python-oslo-metrics | affected | Red Hat:openstack:18.0::el9 | python-oslo-metrics | — |
| python-oslo-middleware | affected | Red Hat:openstack:18.0::el9 | python-oslo-middleware | — |
| python-oslo-middleware-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-middleware-lang | — |
| python-oslo-policy | affected | Red Hat:openstack:18.0::el9 | python-oslo-policy | — |
| python-oslo-policy-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-policy-lang | — |
| python-oslo-privsep | affected | Red Hat:openstack:18.0::el9 | python-oslo-privsep | — |
| python-oslo-privsep-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-privsep-lang | — |
| python-oslo-reports | affected | Red Hat:openstack:18.0::el9 | python-oslo-reports | — |
| python-oslo-rootwrap | affected | Red Hat:openstack:18.0::el9 | python-oslo-rootwrap | — |
| python-oslo-serialization | affected | Red Hat:openstack:18.0::el9 | python-oslo-serialization | — |
| python-oslo-service | affected | Red Hat:openstack:18.0::el9 | python-oslo-service | — |
| python-oslotest | affected | Red Hat:openstack:18.0::el9 | python-oslotest | — |
| python-oslo-upgradecheck | affected | Red Hat:openstack:18.0::el9 | python-oslo-upgradecheck | — |
| python-oslo-utils | affected | Red Hat:openstack:18.0::el9 | python-oslo-utils | — |
| python-oslo-utils-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-utils-lang | — |
| python-oslo-versionedobjects | affected | Red Hat:openstack:18.0::el9 | python-oslo-versionedobjects | — |
| python-oslo-versionedobjects-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-versionedobjects-lang | — |
| python-oslo-vmware | affected | Red Hat:openstack:18.0::el9 | python-oslo-vmware | — |
| python-oslo-vmware-lang | affected | Red Hat:openstack:18.0::el9 | python-oslo-vmware-lang | — |
| python-osprofiler | affected | Red Hat:openstack:18.0::el9 | python-osprofiler | — |
| python-os-resource-classes | affected | Red Hat:openstack:18.0::el9 | python-os-resource-classes | — |
| python-os-service-types | affected | Red Hat:openstack:18.0::el9 | python-os-service-types | — |
| python-os-testr | affected | Red Hat:openstack:18.0::el9 | python-os-testr | — |
| python-os-traits | affected | Red Hat:openstack:18.0::el9 | python-os-traits | — |
| python-os-vif | affected | Red Hat:openstack:18.0::el9 | python-os-vif | — |
| python-os-win | affected | Red Hat:openstack:18.0::el9 | python-os-win | — |
| python-ovn-octavia-provider | affected | Red Hat:openstack:18.0::el9 | python-ovn-octavia-provider | — |
| python-ovsdbapp | affected | Red Hat:openstack:18.0::el9 | python-ovsdbapp | — |
| python-paramiko | affected | Red Hat:openstack:18.0::el9 | python-paramiko | — |
| python-passlib | affected | Red Hat:openstack:18.0::el9 | python-passlib | — |
| python-paste | affected | Red Hat:openstack:18.0::el9 | python-paste | — |
| python-paste-deploy | affected | Red Hat:openstack:18.0::el9 | python-paste-deploy | — |
| python-pbr | affected | Red Hat:openstack:18.0::el9 | python-pbr | — |
| python-pecan | affected | Red Hat:openstack:18.0::el9 | python-pecan | — |
| python-pint | affected | Red Hat:openstack:18.0::el9 | python-pint | — |
| python-posix_ipc | affected | Red Hat:openstack:18.0::el9 | python-posix_ipc | — |
| python-posix_ipc-debugsource | affected | Red Hat:openstack:18.0::el9 | python-posix_ipc-debugsource | — |
| python-proliantutils | affected | Red Hat:openstack:18.0::el9 | python-proliantutils | — |
| python-prometheus_client | affected | Red Hat:openstack:18.0::el9 | python-prometheus_client | — |
| python-pycadf | affected | Red Hat:openstack:18.0::el9 | python-pycadf | — |
| python-pycadf-common | affected | Red Hat:openstack:18.0::el9 | python-pycadf-common | — |
| python-pycodestyle | affected | Red Hat:openstack:18.0::el9 | python-pycodestyle | — |
| python-pyeclib | affected | Red Hat:openstack:18.0::el9 | python-pyeclib | — |
| python-pyeclib-debugsource | affected | Red Hat:openstack:18.0::el9 | python-pyeclib-debugsource | — |
| python-pymemcache | affected | Red Hat:openstack:18.0::el9 | python-pymemcache | — |
| python-pynacl | affected | Red Hat:openstack:18.0::el9 | python-pynacl | — |
| python-pynacl-debugsource | affected | Red Hat:openstack:18.0::el9 | python-pynacl-debugsource | — |
| python-pyperclip | affected | Red Hat:openstack:18.0::el9 | python-pyperclip | — |
| python-pyroute2 | affected | Red Hat:openstack:18.0::el9 | python-pyroute2 | — |
| python-pysaml2 | affected | Red Hat:openstack:18.0::el9 | python-pysaml2 | — |
| python-rcssmin | affected | Red Hat:openstack:18.0::el9 | python-rcssmin | — |
| python-rcssmin-debugsource | affected | Red Hat:openstack:18.0::el9 | python-rcssmin-debugsource | — |
| python-repoze-lru | affected | Red Hat:openstack:18.0::el9 | python-repoze-lru | — |
| python-requestsexceptions | affected | Red Hat:openstack:18.0::el9 | python-requestsexceptions | — |
| python-requests-kerberos | affected | Red Hat:openstack:18.0::el9 | python-requests-kerberos | — |
| python-retrying | affected | Red Hat:openstack:18.0::el9 | python-retrying | — |
| python-rfc3986 | affected | Red Hat:openstack:18.0::el9 | python-rfc3986 | — |
| python-rjsmin | affected | Red Hat:openstack:18.0::el9 | python-rjsmin | — |
| python-rjsmin-debugsource | affected | Red Hat:openstack:18.0::el9 | python-rjsmin-debugsource | — |
| python-routes | affected | Red Hat:openstack:18.0::el9 | python-routes | — |
| python-rsdclient | affected | Red Hat:openstack:18.0::el9 | python-rsdclient | — |
| python-rsd-lib | affected | Red Hat:openstack:18.0::el9 | python-rsd-lib | — |
| python-s3transfer | affected | Red Hat:openstack:18.0::el9 | python-s3transfer | — |
| python-scciclient | affected | Red Hat:openstack:18.0::el9 | python-scciclient | — |
| python-scrypt | affected | Red Hat:openstack:18.0::el9 | python-scrypt | — |
| python-scrypt-debugsource | affected | Red Hat:openstack:18.0::el9 | python-scrypt-debugsource | — |
| python-scss | affected | Red Hat:openstack:18.0::el9 | python-scss | — |
| python-scss-debugsource | affected | Red Hat:openstack:18.0::el9 | python-scss-debugsource | — |
| python-SecretStorage | affected | Red Hat:openstack:18.0::el9 | python-SecretStorage | — |
| python-semantic_version | affected | Red Hat:openstack:18.0::el9 | python-semantic_version | — |
| python-setproctitle | affected | Red Hat:openstack:18.0::el9 | python-setproctitle | — |
| python-setproctitle-debugsource | affected | Red Hat:openstack:18.0::el9 | python-setproctitle-debugsource | — |
| python-shade | affected | Red Hat:openstack:18.0::el9 | python-shade | — |
| python-simplegeneric | affected | Red Hat:openstack:18.0::el9 | python-simplegeneric | — |
| python-simplejson | affected | Red Hat:openstack:18.0::el9 | python-simplejson | — |
| python-simplejson-debugsource | affected | Red Hat:openstack:18.0::el9 | python-simplejson-debugsource | — |
| python-smi | affected | Red Hat:openstack:18.0::el9 | python-smi | — |
| python-sniffio | affected | Red Hat:openstack:18.0::el9 | python-sniffio | — |
| python-sqlalchemy-utils | affected | Red Hat:openstack:18.0::el9 | python-sqlalchemy-utils | — |
| python-sqlparse | affected | Red Hat:openstack:18.0::el9 | python-sqlparse | — |
| python-statsd | affected | Red Hat:openstack:18.0::el9 | python-statsd | — |
| python-stestr | affected | Red Hat:openstack:18.0::el9 | python-stestr | — |
| python-stevedore | affected | Red Hat:openstack:18.0::el9 | python-stevedore | — |
| python-string_utils | affected | Red Hat:openstack:18.0::el9 | python-string_utils | — |
| python-suds | affected | Red Hat:openstack:18.0::el9 | python-suds | — |
| python-sushy | affected | Red Hat:openstack:18.0::el9 | python-sushy | — |
| python-sushy-oem-idrac | affected | Red Hat:openstack:18.0::el9 | python-sushy-oem-idrac | — |
| python-swiftclient | affected | Red Hat:openstack:18.0::el9 | python-swiftclient | — |
| python-sysv_ipc | affected | Red Hat:openstack:18.0::el9 | python-sysv_ipc | — |
| python-sysv_ipc-debugsource | affected | Red Hat:openstack:18.0::el9 | python-sysv_ipc-debugsource | — |
| python-tabulate | affected | Red Hat:openstack:18.0::el9 | python-tabulate | — |
| python-taskflow | affected | Red Hat:openstack:18.0::el9 | python-taskflow | — |
| python-tcib | affected | Red Hat:openstack:18.0::el9 | python-tcib | — |
| python-tcib-containers | affected | Red Hat:openstack:18.0::el9 | python-tcib-containers | — |
| python-telemetry-tests-tempest | affected | Red Hat:openstack:18.0::el9 | python-telemetry-tests-tempest | — |
| python-tempestconf | affected | Red Hat:openstack:18.0::el9 | python-tempestconf | — |
| python-tempita | affected | Red Hat:openstack:18.0::el9 | python-tempita | — |
| python-tenacity | affected | Red Hat:openstack:18.0::el9 | python-tenacity | — |
| python-testscenarios | affected | Red Hat:openstack:18.0::el9 | python-testscenarios | — |
| python-testtools | affected | Red Hat:openstack:18.0::el9 | python-testtools | — |
| python-tooz | affected | Red Hat:openstack:18.0::el9 | python-tooz | — |
| python-uhashring | affected | Red Hat:openstack:18.0::el9 | python-uhashring | — |
| python-ujson | affected | Red Hat:openstack:18.0::el9 | python-ujson | — |
| python-ujson-debugsource | affected | Red Hat:openstack:18.0::el9 | python-ujson-debugsource | — |
| python-vine | affected | Red Hat:openstack:18.0::el9 | python-vine | — |
| python-voluptuous | affected | Red Hat:openstack:18.0::el9 | python-voluptuous | — |
| python-warlock | affected | Red Hat:openstack:18.0::el9 | python-warlock | — |
| python-webob | affected | Red Hat:openstack:18.0::el9 | python-webob | — |
| python-websocket-client | affected | Red Hat:openstack:18.0::el9 | python-websocket-client | — |
| python-websockify | affected | Red Hat:openstack:18.0::el9 | python-websockify | — |
| python-werkzeug | affected | Red Hat:openstack:18.0::el9 | python-werkzeug | — |
| python-wrapt | affected | Red Hat:openstack:18.0::el9 | python-wrapt | — |
| python-wrapt-debugsource | affected | Red Hat:openstack:18.0::el9 | python-wrapt-debugsource | — |
| python-wsgi_intercept | affected | Red Hat:openstack:18.0::el9 | python-wsgi_intercept | — |
| python-wsme | affected | Red Hat:openstack:18.0::el9 | python-wsme | — |
| python-xmltodict | affected | Red Hat:openstack:18.0::el9 | python-xmltodict | — |
| python-XStatic | affected | Red Hat:openstack:18.0::el9 | python-XStatic | — |
| python-XStatic-Angular | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Angular | — |
| python-XStatic-Angular-Bootstrap | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Angular-Bootstrap | — |
| python-XStatic-Angular-FileUpload | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Angular-FileUpload | — |
| python-XStatic-Angular-Gettext | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Angular-Gettext | — |
| python-XStatic-Angular-lrdragndrop | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Angular-lrdragndrop | — |
| python-XStatic-Angular-Schema-Form | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Angular-Schema-Form | — |
| python-XStatic-Angular-UUID | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Angular-UUID | — |
| python-XStatic-Angular-Vis | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Angular-Vis | — |
| python-XStatic-Bootstrap-Datepicker | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Bootstrap-Datepicker | — |
| python-XStatic-Bootstrap-SCSS | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Bootstrap-SCSS | — |
| python-XStatic-bootswatch | affected | Red Hat:openstack:18.0::el9 | python-XStatic-bootswatch | — |
| python-XStatic-D3 | affected | Red Hat:openstack:18.0::el9 | python-XStatic-D3 | — |
| python-XStatic-FileSaver | affected | Red Hat:openstack:18.0::el9 | python-XStatic-FileSaver | — |
| python-XStatic-Font-Awesome | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Font-Awesome | — |
| python-XStatic-Hogan | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Hogan | — |
| python-XStatic-Jasmine | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Jasmine | — |
| python-XStatic-jQuery | affected | Red Hat:openstack:18.0::el9 | python-XStatic-jQuery | — |
| python-XStatic-JQuery-Migrate | affected | Red Hat:openstack:18.0::el9 | python-XStatic-JQuery-Migrate | — |
| python-XStatic-JQuery-quicksearch | affected | Red Hat:openstack:18.0::el9 | python-XStatic-JQuery-quicksearch | — |
| python-XStatic-JQuery-TableSorter | affected | Red Hat:openstack:18.0::el9 | python-XStatic-JQuery-TableSorter | — |
| python-XStatic-jquery-ui | affected | Red Hat:openstack:18.0::el9 | python-XStatic-jquery-ui | — |
| python-XStatic-JSEncrypt | affected | Red Hat:openstack:18.0::el9 | python-XStatic-JSEncrypt | — |
| python-XStatic-Json2yaml | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Json2yaml | — |
| python-XStatic-JS-Yaml | affected | Red Hat:openstack:18.0::el9 | python-XStatic-JS-Yaml | — |
| python-XStatic-Magic-Search | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Magic-Search | — |
| python-XStatic-mdi | affected | Red Hat:openstack:18.0::el9 | python-XStatic-mdi | — |
| python-XStatic-objectpath | affected | Red Hat:openstack:18.0::el9 | python-XStatic-objectpath | — |
| python-XStatic-Rickshaw | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Rickshaw | — |
| python-XStatic-roboto-fontface | affected | Red Hat:openstack:18.0::el9 | python-XStatic-roboto-fontface | — |
| python-XStatic-smart-table | affected | Red Hat:openstack:18.0::el9 | python-XStatic-smart-table | — |
| python-XStatic-Spin | affected | Red Hat:openstack:18.0::el9 | python-XStatic-Spin | — |
| python-XStatic-termjs | affected | Red Hat:openstack:18.0::el9 | python-XStatic-termjs | — |
| python-XStatic-tv4 | affected | Red Hat:openstack:18.0::el9 | python-XStatic-tv4 | — |
| python-yappi | affected | Red Hat:openstack:18.0::el9 | python-yappi | — |
| python-yappi-debugsource | affected | Red Hat:openstack:18.0::el9 | python-yappi-debugsource | — |
| python-yaql | affected | Red Hat:openstack:18.0::el9 | python-yaql | — |
| python-zake | affected | Red Hat:openstack:18.0::el9 | python-zake | — |
| python-zaqarclient | affected | Red Hat:openstack:18.0::el9 | python-zaqarclient | — |
| python-zeroconf | affected | Red Hat:openstack:18.0::el9 | python-zeroconf | — |
| python-zipp | affected | Red Hat:openstack:18.0::el9 | python-zipp | — |
| python-zstd | affected | Red Hat:openstack:18.0::el9 | python-zstd | — |
| python-zstd-debugsource | affected | Red Hat:openstack:18.0::el9 | python-zstd-debugsource | — |
| pyxattr | affected | Red Hat:openstack:18.0::el9 | pyxattr | — |
| pyxattr-debugsource | affected | Red Hat:openstack:18.0::el9 | pyxattr-debugsource | — |
| rabbitmq-server | affected | Red Hat:openstack:18.0::el9 | rabbitmq-server | — |
| rhoso-network-scripts-openvswitch | affected | Red Hat:openstack:18.0::el9 | rhoso-network-scripts-openvswitch | — |
| rhoso-openvswitch | affected | Red Hat:openstack:18.0::el9 | rhoso-openvswitch | — |
| rhoso-ovn | affected | Red Hat:openstack:18.0::el9 | rhoso-ovn | — |
| rhoso-ovn-central | affected | Red Hat:openstack:18.0::el9 | rhoso-ovn-central | — |
| rhoso-ovn-host | affected | Red Hat:openstack:18.0::el9 | rhoso-ovn-host | — |
| rhoso-ovn-vtep | affected | Red Hat:openstack:18.0::el9 | rhoso-ovn-vtep | — |
| rhoso-release | affected | Red Hat:openstack:18.0::el9 | rhoso-release | — |
| roboto-fontface-common | affected | Red Hat:openstack:18.0::el9 | roboto-fontface-common | — |
| roboto-fontface-fonts | affected | Red Hat:openstack:18.0::el9 | roboto-fontface-fonts | — |
| subunit | affected | Red Hat:openstack:18.0::el9 | subunit | — |
| subunit-filters | affected | Red Hat:openstack:18.0::el9 | subunit-filters | — |
| sysbench | affected | Red Hat:openstack:18.0::el9 | sysbench | — |
| sysbench-debuginfo | affected | Red Hat:openstack:18.0::el9 | sysbench-debuginfo | — |
| sysbench-debugsource | affected | Red Hat:openstack:18.0::el9 | sysbench-debugsource | — |
| xstatic-angular-bootstrap-common | affected | Red Hat:openstack:18.0::el9 | xstatic-angular-bootstrap-common | — |
| XStatic-Angular-common | affected | Red Hat:openstack:18.0::el9 | XStatic-Angular-common | — |
| xstatic-angular-fileupload-common | affected | Red Hat:openstack:18.0::el9 | xstatic-angular-fileupload-common | — |
| xstatic-angular-gettext-common | affected | Red Hat:openstack:18.0::el9 | xstatic-angular-gettext-common | — |
| xstatic-angular-lrdragndrop-common | affected | Red Hat:openstack:18.0::el9 | xstatic-angular-lrdragndrop-common | — |
| xstatic-angular-schema-form-common | affected | Red Hat:openstack:18.0::el9 | xstatic-angular-schema-form-common | — |
| xstatic-angular-uuid-common | affected | Red Hat:openstack:18.0::el9 | xstatic-angular-uuid-common | — |
| xstatic-angular-vis-common | affected | Red Hat:openstack:18.0::el9 | xstatic-angular-vis-common | — |
| xstatic-bootstrap-datepicker-common | affected | Red Hat:openstack:18.0::el9 | xstatic-bootstrap-datepicker-common | — |
| xstatic-bootstrap-scss-common | affected | Red Hat:openstack:18.0::el9 | xstatic-bootstrap-scss-common | — |
| xstatic-d3-common | affected | Red Hat:openstack:18.0::el9 | xstatic-d3-common | — |
| xstatic-filesaver-common | affected | Red Hat:openstack:18.0::el9 | xstatic-filesaver-common | — |
| xstatic-hogan-common | affected | Red Hat:openstack:18.0::el9 | xstatic-hogan-common | — |
| xstatic-jasmine-common | affected | Red Hat:openstack:18.0::el9 | xstatic-jasmine-common | — |
| xstatic-jquery-migrate-common | affected | Red Hat:openstack:18.0::el9 | xstatic-jquery-migrate-common | — |
| xstatic-jquery-quicksearch-common | affected | Red Hat:openstack:18.0::el9 | xstatic-jquery-quicksearch-common | — |
| xstatic-jquery-tablesorter-common | affected | Red Hat:openstack:18.0::el9 | xstatic-jquery-tablesorter-common | — |
| xstatic-jquery-ui-common | affected | Red Hat:openstack:18.0::el9 | xstatic-jquery-ui-common | — |
| xstatic-jsencrypt-common | affected | Red Hat:openstack:18.0::el9 | xstatic-jsencrypt-common | — |
| xstatic-json2yaml-common | affected | Red Hat:openstack:18.0::el9 | xstatic-json2yaml-common | — |
| xstatic-js-yaml-common | affected | Red Hat:openstack:18.0::el9 | xstatic-js-yaml-common | — |
| XStatic-Magic-Search-common | affected | Red Hat:openstack:18.0::el9 | XStatic-Magic-Search-common | — |
| xstatic-objectpath-common | affected | Red Hat:openstack:18.0::el9 | xstatic-objectpath-common | — |
| xstatic-rickshaw-common | affected | Red Hat:openstack:18.0::el9 | xstatic-rickshaw-common | — |
| xstatic-smart-table-common | affected | Red Hat:openstack:18.0::el9 | xstatic-smart-table-common | — |
| xstatic-spin-common | affected | Red Hat:openstack:18.0::el9 | xstatic-spin-common | — |
| xstatic-termjs-common | affected | Red Hat:openstack:18.0::el9 | xstatic-termjs-common | — |
| xstatic-tv4-common | affected | Red Hat:openstack:18.0::el9 | xstatic-tv4-common | — |
CVEs:CVE-2024-38209
CVEs:CVE-2024-38210
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVEs:CVE-2024-38209
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| edge_chromium | affected | microsoft | — | — |
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVEs:CVE-2024-38210
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| edge_chromium | affected | microsoft | — | — |
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
CVEs:CVE-2024-38218
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| edge_chromium | affected | microsoft | — | — |
CVEs:CVE-2024-38218
Security update for kubernetes1.23
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes1.26 | affected | SUSE:Linux Enterprise Module for Containers 15 SP6 | kubernetes1.26 | — |
CVEs:CVE-2024-34619
Improper input validation in librtp.so prior to SMR Aug-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.
CVEs:CVE-2024-34619
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
TensorFlow segfault in array_ops.upper_bound
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tensorflow | affected | Bitnami | tensorflow | — |
CVEs:CVE-2024-43472
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVEs:CVE-2024-43472
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| edge_chromium | affected | microsoft | — | — |
CVEs:CVE-2024-38207
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
CVEs:CVE-2024-38207
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| edge_chromium | affected | microsoft | — | — |
secrets-store-csi-driver discloses service account tokens in logs in sigs.k8s.io/secrets-store-csi-driver
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| secrets-store-csi-driver | affected | wolfi | secrets-store-csi-driver | — |
| secrets-store-csi-driver | affected | sigs.k8s.io | sigs.k8s.io/secrets-store-csi-driver | — |
| secrets-store-csi-driver | affected | chainguard | secrets-store-csi-driver | — |
| vault-csi-provider | affected | chainguard | vault-csi-provider | — |
CVEs:CVE-2024-20083
In venc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08810810 / ALPS0880...
CVEs:CVE-2024-20083
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
The libcurl CURLOPT_SSL_VERIFYPEER option was disabled on a subset of requests made by Nest production devices which enabled a potential man-in-the-middle attack on requests to Google cloud services by any host the traffic was routed through.
CVEs:CVE-2024-32928
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libcurl | affected | haxx | — | — |
| nest_mini_firmware | affected | — | — |
CVEs:CVE-2024-32928
Cross-Site Request Forgery (CSRF) vulnerability in Analytify.This issue affects Analytify: from n/a through 5.3.1.
CVEs:CVE-2024-43265
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| analytify_-_google_analytics_dashboard | affected | analytify | — | — |
CVEs:CVE-2024-43265
Improper privilege management in SumeNNService prior to SMR Aug-2024 Release 1 allows local attackers to start privileged service.
CVEs:CVE-2024-34620
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34620
CVEs:CVE-2024-34618
Improper access control in System property prior to SMR Aug-2024 Release 1 allows local attackers to access cell related information.
CVEs:CVE-2024-34618
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34617
Improper handling of insufficient permission in Telephony prior to SMR Aug-2024 Release 1 allows local attackers to configure default Message application.
CVEs:CVE-2024-34617
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
Insufficient input sanitization on Windows nodes leads to privilege escalation in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-efs-csi-driver-fips | affected | chainguard | aws-efs-csi-driver-fips | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| nodetaint | affected | wolfi | nodetaint | — |
| nodetaint | affected | chainguard | nodetaint | — |
| spark-operator | affected | wolfi | spark-operator | — |
| spark-operator | affected | chainguard | spark-operator | — |
Symlink Attack in kubectl cp in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Kubernetes DoS Vulnerability in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Files or Directories Accessible to External Parties in kubernetes in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Access Restriction Bypass in kube-apiserver in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Fix CVE(s): CVE-2021-3733
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| idle-python2.7 | affected | TuxCare:Ubuntu:16.04 | idle-python2.7 | — |
| libpython2.7 | affected | TuxCare:Ubuntu:16.04 | libpython2.7 | — |
| libpython2.7-dev | affected | TuxCare:Ubuntu:16.04 | libpython2.7-dev | — |
| libpython2.7-minimal | affected | TuxCare:Ubuntu:16.04 | libpython2.7-minimal | — |
| libpython2.7-stdlib | affected | TuxCare:Ubuntu:16.04 | libpython2.7-stdlib | — |
| libpython2.7-testsuite | affected | TuxCare:Ubuntu:16.04 | libpython2.7-testsuite | — |
| python2.7 | affected | TuxCare:Ubuntu:16.04 | python2.7 | — |
| python2.7-dev | affected | TuxCare:Ubuntu:16.04 | python2.7-dev | — |
| python2.7-doc | affected | TuxCare:Ubuntu:16.04 | python2.7-doc | — |
| python2.7-examples | affected | TuxCare:Ubuntu:16.04 | python2.7-examples | — |
| python2.7-minimal | affected | TuxCare:Ubuntu:16.04 | python2.7-minimal | — |
Fix CVE(s): CVE-2021-3733
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| idle-python2.7 | affected | TuxCare:Ubuntu:18.04 | idle-python2.7 | — |
| libpython2.7 | affected | TuxCare:Ubuntu:18.04 | libpython2.7 | — |
| libpython2.7-dev | affected | TuxCare:Ubuntu:18.04 | libpython2.7-dev | — |
| libpython2.7-minimal | affected | TuxCare:Ubuntu:18.04 | libpython2.7-minimal | — |
| libpython2.7-stdlib | affected | TuxCare:Ubuntu:18.04 | libpython2.7-stdlib | — |
| libpython2.7-testsuite | affected | TuxCare:Ubuntu:18.04 | libpython2.7-testsuite | — |
| python2.7 | affected | TuxCare:Ubuntu:18.04 | python2.7 | — |
| python2.7-dev | affected | TuxCare:Ubuntu:18.04 | python2.7-dev | — |
| python2.7-doc | affected | TuxCare:Ubuntu:18.04 | python2.7-doc | — |
| python2.7-examples | affected | TuxCare:Ubuntu:18.04 | python2.7-examples | — |
| python2.7-minimal | affected | TuxCare:Ubuntu:18.04 | python2.7-minimal | — |
Server Side Request Forgery (SSRF) in Kubernetes in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Improper Authentication in Kubernetes in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Insufficient input sanitization on Windows nodes leads to privilege escalation in k8s.io/kubernetes and k8s.io/mount-utils
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-efs-csi-driver | affected | chainguard | aws-efs-csi-driver | — |
| aws-efs-csi-driver | affected | wolfi | aws-efs-csi-driver | — |
| aws-efs-csi-driver-fips | affected | chainguard | aws-efs-csi-driver-fips | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| mount-utils | affected | k8s.io | k8s.io/mount-utils | — |
| nodetaint | affected | chainguard | nodetaint | — |
| nodetaint | affected | wolfi | nodetaint | — |
| secrets-store-csi-driver | affected | chainguard | secrets-store-csi-driver | — |
| secrets-store-csi-driver | affected | wolfi | secrets-store-csi-driver | — |
| secrets-store-csi-driver-fips | affected | chainguard | secrets-store-csi-driver-fips | — |
| spark-operator | affected | chainguard | spark-operator | — |
| spark-operator | affected | wolfi | spark-operator | — |
Kubernetes kubectl cp Vulnerable to Symlink Attack in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
CVE-2024-7592 affecting package tensorflow for versions less than 2.16.1-6
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tensorflow | affected | Azure Linux:3 | tensorflow | — |
Kubernetes mountable secrets policy bypass in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-efs-csi-driver | affected | chainguard | aws-efs-csi-driver | — |
| aws-efs-csi-driver | affected | wolfi | aws-efs-csi-driver | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| nodetaint | affected | wolfi | nodetaint | — |
| nodetaint | affected | chainguard | nodetaint | — |
| spark-operator | affected | wolfi | spark-operator | — |
| spark-operator | affected | chainguard | spark-operator | — |
Kubernetes vulnerable to validation bypass in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Access Restriction Bypass in kubernetes in github.com/kubernetes/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes-1.30 | affected | chainguard | kubernetes-1.30 | — |
| kubernetes-1.31 | affected | chainguard | kubernetes-1.31 | — |
| kubernetes-1.32 | affected | chainguard | kubernetes-1.32 | — |
| kubernetes/kubernetes | affected | github.com | github.com/kubernetes/kubernetes | — |
golang security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang | affected | openEuler:22.03-LTS-SP4 | golang | — |
golang security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang | affected | openEuler:22.03-LTS-SP3 | golang | — |
golang security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang | affected | openEuler:20.03-LTS-SP4 | golang | — |
golang security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang | affected | openEuler:22.03-LTS-SP1 | golang | — |
golang security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang | affected | openEuler:24.03-LTS | golang | — |
golang-github-prometheus-prometheus-2.53.0-3.1 on GA media
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang-github-prometheus-prometheus | affected | openSUSE:Tumbleweed | golang-github-prometheus-prometheus | — |
Incomplete List of Disallowed Inputs in Kubernetes in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
REXML DoS vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| rexml | affected | RubyGems | rexml | — |
REXML DoS vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| jruby-9.4 | affected | chainguard | jruby-9.4 | — |
| jruby-9.4 | affected | wolfi | jruby-9.4 | — |
| kube-fluentd-operator | affected | wolfi | kube-fluentd-operator | — |
| kube-fluentd-operator | affected | chainguard | kube-fluentd-operator | — |
| logstash | affected | wolfi | logstash | — |
| logstash | affected | chainguard | logstash | — |
| logstash-jre-bcfips | affected | chainguard | logstash-jre-bcfips | — |
| rexml | affected | RubyGems | — | — |
| rexml | affected | RubyGems | rexml | — |
| ruby-3.1 | affected | wolfi | ruby-3.1 | — |
| ruby-3.1 | affected | chainguard | ruby-3.1 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.1-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.1-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.1-fluentd-kubernetes-daemonset-1.17 | — |
| ruby-3.2 | affected | wolfi | ruby-3.2 | — |
| ruby-3.2 | affected | chainguard | ruby-3.2 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.2-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.2-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.2-fluentd-kubernetes-daemonset-1.17 | — |
| ruby-3.3 | affected | wolfi | ruby-3.3 | — |
| ruby-3.3 | affected | chainguard | ruby-3.3 | — |
| ruby3.3-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.3-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.4-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.4-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.4-fluentd-kubernetes-daemonset-1.17 | — |
CVE-2024-8088 affecting package tensorflow for versions less than 2.16.1-7
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tensorflow | affected | Azure Linux:3 | tensorflow | — |
Allocation of Resources Without Limits or Throttling and Uncontrolled Memory Allocation in Kubernetes in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
REXML denial of service vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| rexml | affected | RubyGems | rexml | — |
REXML denial of service vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| jruby-9.4 | affected | wolfi | jruby-9.4 | — |
| jruby-9.4 | affected | chainguard | jruby-9.4 | — |
| kube-fluentd-operator | affected | wolfi | kube-fluentd-operator | — |
| kube-fluentd-operator | affected | chainguard | kube-fluentd-operator | — |
| logstash | affected | chainguard | logstash | — |
| logstash | affected | wolfi | logstash | — |
| logstash-jre-bcfips | affected | chainguard | logstash-jre-bcfips | — |
| rexml | affected | RubyGems | rexml | — |
| rexml | affected | RubyGems | — | — |
| ruby-3.1 | affected | wolfi | ruby-3.1 | — |
| ruby-3.1 | affected | chainguard | ruby-3.1 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.1-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.1-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.1-fluentd-kubernetes-daemonset-1.17 | — |
| ruby-3.2 | affected | wolfi | ruby-3.2 | — |
| ruby-3.2 | affected | chainguard | ruby-3.2 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.2-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.2-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.2-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.2-rexml | affected | chainguard | ruby3.2-rexml | — |
| ruby3.2-rexml | affected | wolfi | ruby3.2-rexml | — |
| ruby-3.3 | affected | wolfi | ruby-3.3 | — |
| ruby-3.3 | affected | chainguard | ruby-3.3 | — |
| ruby3.3-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.3-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.4-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.4-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.4-fluentd-kubernetes-daemonset-1.17 | — |
REXML DoS vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| rexml | affected | RubyGems | rexml | — |
REXML DoS vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| jruby-9.4 | affected | wolfi | jruby-9.4 | — |
| jruby-9.4 | affected | chainguard | jruby-9.4 | — |
| kube-fluentd-operator | affected | wolfi | kube-fluentd-operator | — |
| kube-fluentd-operator | affected | chainguard | kube-fluentd-operator | — |
| logstash | affected | chainguard | logstash | — |
| logstash | affected | wolfi | logstash | — |
| logstash-jre-bcfips | affected | chainguard | logstash-jre-bcfips | — |
| rexml | affected | RubyGems | — | — |
| rexml | affected | RubyGems | rexml | — |
| ruby-3.1 | affected | wolfi | ruby-3.1 | — |
| ruby-3.1 | affected | chainguard | ruby-3.1 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.1-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.1-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.1-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.1-fluentd-kubernetes-daemonset-1.17 | — |
| ruby-3.2 | affected | chainguard | ruby-3.2 | — |
| ruby-3.2 | affected | wolfi | ruby-3.2 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.2-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.2-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.2-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.2-fluentd-kubernetes-daemonset-1.17 | — |
| ruby-3.3 | affected | chainguard | ruby-3.3 | — |
| ruby-3.3 | affected | wolfi | ruby-3.3 | — |
| ruby3.3-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.3-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.16 | affected | chainguard | ruby3.4-fluentd-kubernetes-daemonset-1.16 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.17 | affected | wolfi | ruby3.4-fluentd-kubernetes-daemonset-1.17 | — |
| ruby3.4-fluentd-kubernetes-daemonset-1.17 | affected | chainguard | ruby3.4-fluentd-kubernetes-daemonset-1.17 | — |
Kubernetes vulnerable to path traversal in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Vulnerable to policy bypass in kube-apiserver in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-efs-csi-driver | affected | chainguard | aws-efs-csi-driver | — |
| aws-efs-csi-driver | affected | wolfi | aws-efs-csi-driver | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| nodetaint | affected | chainguard | nodetaint | — |
| nodetaint | affected | wolfi | nodetaint | — |
| spark-operator | affected | wolfi | spark-operator | — |
| spark-operator | affected | chainguard | spark-operator | — |
CVE-2024-6923 affecting package tensorflow for versions less than 2.16.1-9
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tensorflow | affected | Azure Linux:3 | tensorflow | — |
WITHDRAWN: Potential proxy IP restriction bypass in Kubernetes in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Kubernetes can trigger deletion of arbitrary files from the nodes where containers are running in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Security update for chromium, gn, rust-bindgen
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | openSUSE:Leap 15.6 | chromium | — |
| chromium | affected | openSUSE:Leap 15.5 | chromium | — |
| chromium | affected | SUSE:Package Hub 15 SP6 | chromium | — |
| chromium | affected | SUSE:Package Hub 15 SP5 | chromium | — |
| gn | affected | SUSE:Package Hub 15 SP6 | gn | — |
| gn | affected | SUSE:Package Hub 15 SP5 | gn | — |
| gn | affected | openSUSE:Leap 15.5 | gn | — |
| gn | affected | openSUSE:Leap 15.6 | gn | — |
| rust-bindgen | affected | openSUSE:Leap 15.5 | rust-bindgen | — |
| rust-bindgen | affected | SUSE:Package Hub 15 SP5 | rust-bindgen | — |
| rust-bindgen | affected | SUSE:Package Hub 15 SP6 | rust-bindgen | — |
| rust-bindgen | affected | openSUSE:Leap 15.6 | rust-bindgen | — |
chromedriver-127.0.6533.119-1.1 on GA media
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | openSUSE:Tumbleweed | chromium | — |
chromium - security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:12 | chromium | — |
ANSI escape characters not filtered in kubectl in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-efs-csi-driver | affected | chainguard | aws-efs-csi-driver | — |
| aws-efs-csi-driver | affected | wolfi | aws-efs-csi-driver | — |
| aws-efs-csi-driver-fips | affected | chainguard | aws-efs-csi-driver-fips | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| kubernetes-dns-node-cache | affected | wolfi | kubernetes-dns-node-cache | — |
| kubernetes-dns-node-cache | affected | chainguard | kubernetes-dns-node-cache | — |
| nodetaint | affected | chainguard | nodetaint | — |
| nodetaint | affected | wolfi | nodetaint | — |
| spark-operator | affected | chainguard | spark-operator | — |
| spark-operator | affected | wolfi | spark-operator | — |
Security update for kubernetes1.25
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes1.25 | affected | SUSE:Linux Enterprise Module for Containers 15 SP5 | kubernetes1.25 | — |
| kubernetes1.25 | affected | SUSE:Linux Enterprise Module for Containers 15 SP6 | kubernetes1.25 | — |
| kubernetes1.25 | affected | openSUSE:Leap 15.5 | kubernetes1.25 | — |
| kubernetes1.25 | affected | openSUSE:Leap 15.6 | kubernetes1.25 | — |
Security update for kubernetes1.24
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes1.24 | affected | SUSE:Linux Enterprise Module for Containers 15 SP5 | kubernetes1.24 | — |
| kubernetes1.24 | affected | openSUSE:Leap 15.5 | kubernetes1.24 | — |
| kubernetes1.24 | affected | openSUSE:Leap 15.6 | kubernetes1.24 | — |
Security update for kubernetes1.23
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes1.23 | affected | SUSE:Linux Enterprise Module for Containers 15 SP5 | kubernetes1.23 | — |
| kubernetes1.23 | affected | openSUSE:Leap 15.5 | kubernetes1.23 | — |
| kubernetes1.23 | affected | openSUSE:Leap 15.6 | kubernetes1.23 | — |
GHSA-mm8x-5pvc-7mmq
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
CVEs:CVE-2024-7535
Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7535
Inappropriate implementation in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7535
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7535
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-4pj3-wmgx-2h8r
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Out of bounds memory access in Skia in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had compromised the renderer process to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7966
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
CVEs:CVE-2024-7966
Out of bounds memory access in Skia in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had compromised the renderer process to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7966
DEBIAN-CVE-2024-7966
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-374f-438q-472r
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: H...
CVEs:CVE-2024-7968
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7968
CVEs:CVE-2024-7968
DEBIAN-CVE-2024-7968
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Security update for chromium
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | SUSE:Package Hub 15 SP5 | chromium | — |
| chromium | affected | SUSE:Package Hub 15 SP6 | chromium | — |
| chromium | affected | openSUSE:Leap 15.5 | chromium | — |
| chromium | affected | openSUSE:Leap 15.6 | chromium | — |
chromium - security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:12 | chromium | — |
chromedriver-128.0.6613.113-1.1 on GA media
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | openSUSE:Tumbleweed | chromium | — |
GHSA-76vg-grjj-w595
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-8198
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
CVEs:CVE-2024-8198
Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-8198
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
GHSA-5q6v-fp9h-6rjg
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-8193
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-8193
CVEs:CVE-2024-8193
Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-8193
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Fix CVE(s): CVE-2024-0450
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| idle-python3.5 | affected | TuxCare:Ubuntu:16.04 | idle-python3.5 | — |
| libpython3.5 | affected | TuxCare:Ubuntu:16.04 | libpython3.5 | — |
| libpython3.5-dev | affected | TuxCare:Ubuntu:16.04 | libpython3.5-dev | — |
| libpython3.5-minimal | affected | TuxCare:Ubuntu:16.04 | libpython3.5-minimal | — |
| libpython3.5-stdlib | affected | TuxCare:Ubuntu:16.04 | libpython3.5-stdlib | — |
| libpython3.5-testsuite | affected | TuxCare:Ubuntu:16.04 | libpython3.5-testsuite | — |
| python3.5 | affected | TuxCare:Ubuntu:16.04 | python3.5 | — |
| python3.5-dev | affected | TuxCare:Ubuntu:16.04 | python3.5-dev | — |
| python3.5-doc | affected | TuxCare:Ubuntu:16.04 | python3.5-doc | — |
| python3.5-examples | affected | TuxCare:Ubuntu:16.04 | python3.5-examples | — |
| python3.5-minimal | affected | TuxCare:Ubuntu:16.04 | python3.5-minimal | — |
| python3.5-venv | affected | TuxCare:Ubuntu:16.04 | python3.5-venv | — |
Fix CVE(s): CVE-2024-0450
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| idle-python3.6 | affected | TuxCare:Ubuntu:18.04 | idle-python3.6 | — |
| libpython3.6 | affected | TuxCare:Ubuntu:18.04 | libpython3.6 | — |
| libpython3.6-dev | affected | TuxCare:Ubuntu:18.04 | libpython3.6-dev | — |
| libpython3.6-minimal | affected | TuxCare:Ubuntu:18.04 | libpython3.6-minimal | — |
| libpython3.6-stdlib | affected | TuxCare:Ubuntu:18.04 | libpython3.6-stdlib | — |
| libpython3.6-testsuite | affected | TuxCare:Ubuntu:18.04 | libpython3.6-testsuite | — |
| python3.6 | affected | TuxCare:Ubuntu:18.04 | python3.6 | — |
| python3.6-dev | affected | TuxCare:Ubuntu:18.04 | python3.6-dev | — |
| python3.6-doc | affected | TuxCare:Ubuntu:18.04 | python3.6-doc | — |
| python3.6-examples | affected | TuxCare:Ubuntu:18.04 | python3.6-examples | — |
| python3.6-minimal | affected | TuxCare:Ubuntu:18.04 | python3.6-minimal | — |
| python3.6-venv | affected | TuxCare:Ubuntu:18.04 | python3.6-venv | — |
Kubelet vulnerable to bypass of seccomp profile enforcement in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-efs-csi-driver | affected | chainguard | aws-efs-csi-driver | — |
| aws-efs-csi-driver | affected | wolfi | aws-efs-csi-driver | — |
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| nodetaint | affected | wolfi | nodetaint | — |
| nodetaint | affected | chainguard | nodetaint | — |
| spark-operator | affected | wolfi | spark-operator | — |
| spark-operator | affected | chainguard | spark-operator | — |
grpc security update
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| grpc | affected | openEuler:24.03-LTS | grpc | — |
BELL-CVE-2024-7246
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| grpc | affected | Alpaquita:23 | grpc | — |
| grpc | affected | Alpaquita:stream | grpc | — |
GHSA-ghwg-gpp4-w4x3
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| grpc | affected | chainguard | grpc | — |
| grpc | affected | wolfi | grpc | — |
CVE-2024-7246 affecting package grpc for versions less than 1.62.3-1
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| grpc | affected | Azure Linux:3 | grpc | — |
CVE-2024-7246 affecting package grpc 1.42.0-11
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| grpc | affected | Azure Linux:2 | grpc | — |
DEBIAN-CVE-2024-7246
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| grpc | affected | Debian:11 | grpc | — |
| grpc | affected | Debian:12 | grpc | — |
| grpc | affected | Debian:13 | grpc | — |
| grpc | affected | Debian:14 | grpc | — |
It's possible for a gRPC client communicating with a HTTP/2 proxy to poison the HPACK table between the proxy and the backend such that other clients see failed requests. It's also possible to use this vulnerability to leak other clients HTTP header keys, but not values. This occurs because the error status for a misencoded header is not cleared between header reads, resulting in subsequent (incrementally indexed) added headers in the first request being poisoned until cleared from the HPACK table. Please update to a fixed version of gRPC as soon as possible. This bug has been fixed in 1.58.3, 1.59.5, 1.60.2, 1.61.3, 1.62.3, 1.63.2, 1.64.3, 1.65.4.
CVEs:CVE-2024-7246
It's possible for a gRPC client communicating with a HTTP/2 proxy to poison the HPACK table between the proxy and the backend such that other clients see failed requests. It's also possible to use this vulnerability to leak other clients HTTP header ke...
CVEs:CVE-2024-7246
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| grpc | affected | grpc | — | — |
CVEs:CVE-2024-7246
CVEs:CVE-2024-34739
In shouldRestrictOverlayActivities of UsbProfileGroupSettingsManager.java, there is a possible escape from SUW due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User inter...
CVEs:CVE-2024-34739
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
In setForceHideNonSystemOverlayWindowIfNeeded of WindowState.java, there is a possible way for message content to be visible on the screensaver while lock screen visibility settings are restricted by the user due to a logic error in the code. This coul...
CVEs:CVE-2024-34741
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-34741
CVEs:CVE-2024-34740
In attributeBytesBase64 and attributeBytesHex of BinaryXmlSerializer.java, there is a possible arbitrary XML injection due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User int...
CVEs:CVE-2024-34740
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-31333
In _MMU_AllocLevel of mmu_common.c, there is a possible arbitrary code execution due to an integer overflow. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed f...
CVEs:CVE-2024-31333
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
ASB-A-331435657
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :unknown: | affected | Android | :unknown: | — |
ASB-A-344434139
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :unknown: | affected | Android | :unknown: | — |
aws-iam-authenticator allow-listed IAM identity may be able to modify their username, escalate privileges before v0.5.9 in sigs.k8s.io/aws-iam-authenticator
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-iam-authenticator | affected | sigs.k8s.io | sigs.k8s.io/aws-iam-authenticator | — |
GHSA-4c65-phqf-cq3w
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
CVEs:CVE-2024-7532
Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVEs:CVE-2024-7532
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Out of bounds memory access in ANGLE in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVEs:CVE-2024-7532
DEBIAN-CVE-2024-7532
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-gh9v-q4wx-5m5c
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-6990
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Kube-proxy may unintentionally forward traffic in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| nodetaint | affected | wolfi | nodetaint | — |
| nodetaint | affected | chainguard | nodetaint | — |
| spark-operator | affected | wolfi | spark-operator | — |
| spark-operator | affected | chainguard | spark-operator | — |
The WooCommerce Google Feed Manager plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'wppfm_removeFeedFile' function in all versions up to, and including, 2.8.0. This makes it possible for authent...
CVEs:CVE-2024-7258
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| woocommerce_google_feed_manager | affected | wpmarketingrobot | — | — |
CVEs:CVE-2024-7258
GHSA-j2gf-fhx6-5xrq
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Heap buffer overflow in PDFium in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file. (Chromium security severity: Medium)
CVEs:CVE-2024-7973
CVEs:CVE-2024-7973
Heap buffer overflow in PDFium in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file. (Chromium security severity: Medium)
CVEs:CVE-2024-7973
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7973
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-373g-hg3v-qf78
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7534
Heap buffer overflow in Layout in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7534
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
CVEs:CVE-2024-7534
DEBIAN-CVE-2024-7534
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-mcqx-pmh8-v9cr
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-7255
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Velociraptor subject to Path Traversal in www.velocidex.com/golang/velociraptor
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang/velociraptor | affected | www.velocidex.com | www.velocidex.com/golang/velociraptor | — |
Privilege escalation in rbac in github.com/google/exposure-notifications-verification-server
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| google/exposure-notifications-verification-server | affected | github.com | github.com/google/exposure-notifications-verification-server | — |
GHSA-r54r-2wq9-h4ww
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
GHSA-4r7q-rwrj-9wg2
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
CVEs:CVE-2024-7550
Type Confusion in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7550
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Type Confusion in V8 in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7550
DEBIAN-CVE-2024-7550
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7533
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7533
CVEs:CVE-2024-7533
DEBIAN-CVE-2024-7533
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-gqq7-89cw-236x
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
CVEs:CVE-2024-7536
Use after free in WebAudio in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7536
Use after free in WebAudio in Google Chrome prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7536
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7536
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-32j6-235r-7fmm
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
GHSA-3v8g-fm64-g4mc
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-6991
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
DEBIAN-CVE-2024-6989
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-wpvc-jgp6-vg6f
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-6988
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-366c-rrqj-7gmp
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | wolfi | chromium | — |
| chromium | affected | chainguard | chromium | — |
DEBIAN-CVE-2024-6994
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-c6ch-gp25-6cpv
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
GHSA-pwf4-rc9f-r3rx
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | wolfi | chromium | — |
| chromium | affected | chainguard | chromium | — |
DEBIAN-CVE-2024-6997
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
DEBIAN-CVE-2024-6998
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-57cq-jgq2-x7vg
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | wolfi | chromium | — |
| chromium | affected | chainguard | chromium | — |
CVEs:CVE-2024-7967
Heap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7967
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Heap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7967
DEBIAN-CVE-2024-7967
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-g494-wr54-xx2g
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-7000
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-6j9j-7v9j-7mf7
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Use after free in Passwords in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7964
CVEs:CVE-2024-7964
Use after free in Passwords in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7964
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7964
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-qwvh-x5gw-88v2
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-7256
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
kOps privilege escalation vulnerability in k8s.io/kops
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kops | affected | k8s.io | k8s.io/kops | — |
GHSA-q3q8-95m2-545r
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)
CVEs:CVE-2024-7972
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
CVEs:CVE-2024-7972
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)
CVEs:CVE-2024-7972
DEBIAN-CVE-2024-7972
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-5w43-pfc6-5944
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-6995
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Velociraptor vulnerable to Missing Authorization in www.velocidex.com/golang/velociraptor
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang/velociraptor | affected | www.velocidex.com | www.velocidex.com/golang/velociraptor | — |
GHSA-2355-2h8c-mw45
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-7003
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-p8h7-64p8-w5pq
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
CVEs:CVE-2024-7969
Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7969
Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-7969
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7969
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-c7v6-r97x-ppjq
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
CVEs:CVE-2024-7974
Insufficient data validation in V8 API in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: Medium)
CVEs:CVE-2024-7974
Insufficient data validation in V8 API in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: Medium)
CVEs:CVE-2024-7974
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7974
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-9x82-vrjw-2m6c
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
GHSA-pqvj-7wmm-mjvv
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | wolfi | chromium | — |
| chromium | affected | chainguard | chromium | — |
DEBIAN-CVE-2024-6999
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
DEBIAN-CVE-2024-7001
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-w28c-f4w5-mfwh
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | wolfi | chromium | — |
| chromium | affected | chainguard | chromium | — |
DEBIAN-CVE-2024-7005
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-pmc4-h8jw-3hc9
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-8194
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
CVEs:CVE-2024-8194
Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-8194
Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVEs:CVE-2024-8194
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
GHSA-r3h8-2v74-r6qj
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Inappropriate implementation in FedCM in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVEs:CVE-2024-7976
Inappropriate implementation in FedCM in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVEs:CVE-2024-7976
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
CVEs:CVE-2024-7976
DEBIAN-CVE-2024-7976
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-2xc5-3f92-ffpr
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
CVEs:CVE-2024-7978
Insufficient policy enforcement in Data Transfer in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVEs:CVE-2024-7978
Insufficient policy enforcement in Data Transfer in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Me...
CVEs:CVE-2024-7978
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7978
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-p269-768c-9733
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Inappropriate implementation in Permissions in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVEs:CVE-2024-7975
Inappropriate implementation in Permissions in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVEs:CVE-2024-7975
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
CVEs:CVE-2024-7975
DEBIAN-CVE-2024-7975
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
CVEs:CVE-2024-41164
When TCP profile with Multipath TCP enabled (MPTCP) is configured on a Virtual Server, undisclosed traffic along with conditions beyond the attackers control can cause TMM to terminate. Note: Software versions which have reached End of Technical S...
CVEs:CVE-2024-41164
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| big-ip_access_policy_manager | affected | f5 | — | — |
| big-ip_advanced_firewall_manager | affected | f5 | — | — |
| big-ip_advanced_web_application_firewall | affected | f5 | — | — |
| big-ip_analytics | affected | f5 | — | — |
| big-ip_application_acceleration_manager | affected | f5 | — | — |
| big-ip_application_security_manager | affected | f5 | — | — |
| big-ip_application_visibility_and_reporting | affected | f5 | — | — |
| big-ip_automation_toolchain | affected | f5 | — | — |
| big-ip_carrier-grade_nat | affected | f5 | — | — |
| big-ip_container_ingress_services | affected | f5 | — | — |
| big-ip_ddos_hybrid_defender | affected | f5 | — | — |
| big-ip_domain_name_system | affected | f5 | — | — |
| big-ip_edge_gateway | affected | f5 | — | — |
| big-ip_fraud_protection_service | affected | f5 | — | — |
| big-ip_global_traffic_manager | affected | f5 | — | — |
| big-ip_link_controller | affected | f5 | — | — |
| big-ip_local_traffic_manager | affected | f5 | — | — |
| big-ip_next_cloud-native_network_functions | affected | f5 | — | — |
| big-ip_next_service_proxy_for_kubernetes | affected | f5 | — | — |
| big-ip_policy_enforcement_manager | affected | f5 | — | — |
| big-ip_ssl_orchestrator | affected | f5 | — | — |
| big-ip_webaccelerator | affected | f5 | — | — |
| big-ip_websafe | affected | f5 | — | — |
Improperly Implemented path matching for in-toto-golang in github.com/in-toto/in-toto-golang
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| in-toto/in-toto-golang | affected | github.com | github.com/in-toto/in-toto-golang | — |
GHSA-fvf5-wm7j-89hj
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | wolfi | chromium | — |
| chromium | affected | chainguard | chromium | — |
DEBIAN-CVE-2024-7004
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-p739-c89q-vj36
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
DEBIAN-CVE-2024-6996
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
Insufficient Granularity of Access Control in github.com/google/exposure-notifications-verification-server
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| google/exposure-notifications-verification-server | affected | github.com | github.com/google/exposure-notifications-verification-server | — |
GHSA-9wpw-58rw-f8gm
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Inappropriate implementation in Views in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVEs:CVE-2024-7981
CVEs:CVE-2024-7981
Inappropriate implementation in Views in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVEs:CVE-2024-7981
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7981
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-p34g-w82h-w82c
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVEs:CVE-2024-8034
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
CVEs:CVE-2024-8034
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVEs:CVE-2024-8034
DEBIAN-CVE-2024-8034
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
In sdpu_compare_uuid_with_attr of sdp_utils.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for ex...
CVEs:CVE-2024-34727
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-34727
GHSA-v4c3-qgm8-jh35
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)
CVEs:CVE-2024-7977
CVEs:CVE-2024-7977
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)
CVEs:CVE-2024-7977
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
DEBIAN-CVE-2024-7977
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
OPA for Windows has an SMB force-authentication vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| open-policy-agent/opa | affected | github.com | github.com/open-policy-agent/opa | — |
OPA for Windows has an SMB force-authentication vulnerability
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| conftest | affected | chainguard | conftest | — |
| conftest | affected | wolfi | conftest | — |
| conftest-fips | affected | chainguard | conftest-fips | — |
| cosign | affected | chainguard | cosign | — |
| cosign | affected | wolfi | cosign | — |
| cosign-fips | affected | wolfi | cosign-fips | — |
| cosign-fips | affected | chainguard | cosign-fips | — |
| datadog-agent | affected | chainguard | datadog-agent | — |
| datadog-agent | affected | wolfi | datadog-agent | — |
| datadog-agent-fips | affected | chainguard | datadog-agent-fips | — |
| gatekeeper-3.17 | affected | wolfi | gatekeeper-3.17 | — |
| gatekeeper-3.17 | affected | chainguard | gatekeeper-3.17 | — |
| gatekeeper-fips-3.17 | affected | chainguard | gatekeeper-fips-3.17 | — |
| k8sgpt | affected | chainguard | k8sgpt | — |
| k8sgpt | affected | wolfi | k8sgpt | — |
| kots | affected | chainguard | kots | — |
| kots | affected | wolfi | kots | — |
| kots-compat | affected | chainguard | kots-compat | — |
| kubescape | affected | chainguard | kubescape | — |
| kubescape | affected | wolfi | kubescape | — |
| kyverno-1.11 | affected | chainguard | kyverno-1.11 | — |
| kyverno-1.12 | affected | wolfi | kyverno-1.12 | — |
| kyverno-1.12 | affected | chainguard | kyverno-1.12 | — |
| kyverno-fips-1.11 | affected | chainguard | kyverno-fips-1.11 | — |
| kyverno-fips-1.12 | affected | chainguard | kyverno-fips-1.12 | — |
| opa | affected | chainguard | opa | — |
| opa | affected | wolfi | opa | — |
| open-policy-agent/opa | affected | github.com | github.com/open-policy-agent/opa | — |
| policy-controller | affected | wolfi | policy-controller | — |
| policy-controller | affected | chainguard | policy-controller | — |
| policy-controller-fips | affected | chainguard | policy-controller-fips | — |
| snyk-cli | affected | wolfi | snyk-cli | — |
| snyk-cli | affected | chainguard | snyk-cli | — |
| spire-server | affected | wolfi | spire-server | — |
| spire-server | affected | chainguard | spire-server | — |
| spire-server-fips | affected | chainguard | spire-server-fips | — |
| tfsec | affected | chainguard | tfsec | — |
| tfsec | affected | wolfi | tfsec | — |
| zarf | affected | chainguard | zarf | — |
| zarf | affected | wolfi | zarf | — |
| zot | affected | chainguard | zot | — |
| zot | affected | wolfi | zot | — |
GHSA-hg5m-x49p-g9h8
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Inappropriate implementation in Extensions in Google Chrome on Windows prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVEs:CVE-2024-8035
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Inappropriate implementation in Extensions in Google Chrome on Windows prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVEs:CVE-2024-8035
CVEs:CVE-2024-8035
DEBIAN-CVE-2024-8035
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-8v6h-j8r8-9mjq
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
Inappropriate implementation in WebApp Installs in Google Chrome on Windows prior to 128.0.6613.84 allowed an attacker who convinced a user to install a malicious application to perform UI spoofing via a crafted HTML page. (Chromium security severity: ...
CVEs:CVE-2024-8033
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
CVEs:CVE-2024-8033
Inappropriate implementation in WebApp Installs in Google Chrome on Windows prior to 128.0.6613.84 allowed an attacker who convinced a user to install a malicious application to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVEs:CVE-2024-8033
DEBIAN-CVE-2024-8033
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
PUB-A-323926303
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :unknown: | affected | Android | :unknown: | — |
PUB-A-323926776
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :unknown: | affected | Android | :unknown: | — |
GHSA-8p7p-r9xv-w8g4
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | chainguard | chromium | — |
| chromium | affected | wolfi | chromium | — |
CVEs:CVE-2024-7980
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)
CVEs:CVE-2024-7980
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)
CVEs:CVE-2024-7980
DEBIAN-CVE-2024-7980
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
GHSA-3466-hwg6-rp7h
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | wolfi | chromium | — |
| chromium | affected | chainguard | chromium | — |
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)
CVEs:CVE-2024-7979
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chrome | affected | — | — |
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)
CVEs:CVE-2024-7979
CVEs:CVE-2024-7979
DEBIAN-CVE-2024-7979
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| chromium | affected | Debian:11 | chromium | — |
| chromium | affected | Debian:12 | chromium | — |
| chromium | affected | Debian:13 | chromium | — |
| chromium | affected | Debian:14 | chromium | — |
ASB-A-339866012
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :unknown: | affected | Android | :unknown: | — |
ASB-A-339869945
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :unknown: | affected | Android | :unknown: | — |
CVEs:CVE-2024-34612
Out-of-bound write in libcodec2secmp4vdec.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
CVEs:CVE-2024-34612
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34614
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to execute arbitrary code.
CVEs:CVE-2024-34614
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34615
Out-of-bound write in libsmat.so prior to SMR Aug-2024 Release 1 allows local attackers to cause memory corruption.
CVEs:CVE-2024-34615
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34604
Improper access control in LedCoverService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
CVEs:CVE-2024-34604
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
Improper access control in SamsungHealthService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
CVEs:CVE-2024-34605
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34605
CVEs:CVE-2024-34606
Improper access control in SmartThingsService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
CVEs:CVE-2024-34606
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34607
Improper access control in SamsungNotesService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
CVEs:CVE-2024-34607
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34608
Improper access control in PaymentManagerService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
CVEs:CVE-2024-34608
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34609
Improper access control in VoiceNoteService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.
CVEs:CVE-2024-34609
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34610
Improper access control in ExtControlDeviceService prior to SMR Aug-2024 Release 1 allows local attackers to access protected data.
CVEs:CVE-2024-34610
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
Possible filesystem space exhaustion by local users in github.com/google/fscrypt
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| google/fscrypt | affected | github.com | github.com/google/fscrypt | — |
CVEs:CVE-2024-34616
Improper handling of insufficient permission in KnoxDualDARPolicy prior to SMR Aug-2024 Release 1 allows local attackers to access sensitive data.
CVEs:CVE-2024-34616
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
Improper access control in KnoxService prior to SMR Aug-2024 Release 1 allows local attackers to get sensitive information.
CVEs:CVE-2024-34611
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | samsung | — | — |
CVEs:CVE-2024-34611
ASB-A-339043615
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :linux_kernel:Qualcomm | affected | Android | :linux_kernel:Qualcomm | — |
| vendor/qcom/opensource/graphics-kernel | affected | platform | platform/vendor/qcom/opensource/graphics-kernel | — |
ASB-A-339043323
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :linux_kernel:Qualcomm | affected | Android | :linux_kernel:Qualcomm | — |
| vendor/qcom/opensource/graphics-kernel | affected | platform | platform/vendor/qcom/opensource/graphics-kernel | — |
User login denial of service in github.com/google/fscrypt
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| google/fscrypt | affected | github.com | github.com/google/fscrypt | — |
ASB-A-339043278
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :linux_kernel:Qualcomm | affected | Android | :linux_kernel:Qualcomm | — |
| vendor/qcom/opensource/graphics-kernel | affected | platform | platform/vendor/qcom/opensource/graphics-kernel | — |
ASB-A-339043463
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :linux_kernel:Qualcomm | affected | Android | :linux_kernel:Qualcomm | — |
ASB-A-339043781
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :linux_kernel:Qualcomm | affected | Android | :linux_kernel:Qualcomm | — |
| vendor/qcom/opensource/graphics-kernel | affected | platform | platform/vendor/qcom/opensource/graphics-kernel | — |
In multiple functions of TranscodingResourcePolicy.cpp, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for e...
CVEs:CVE-2024-34731
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-34731
ASB-A-316373168
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :linux_kernel:Qualcomm | affected | Android | :linux_kernel:Qualcomm | — |
In ensureSetPipAspectRatioQuotaTracker of ActivityClientController.java, there is a possible way to generate unmovable and undeletable pip windows due to a logic error in the code. This could lead to local escalation of privilege with no additional exe...
CVEs:CVE-2024-34737
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-34737
CVEs:CVE-2024-34734
In onForegroundServiceButtonClicked of FooterActionsViewModel.kt, there is a possible way to disable the active VPN app from the lockscreen due to an insecure default value. This could lead to local escalation of privilege with no additional execution ...
CVEs:CVE-2024-34734
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-34736
In setupVideoEncoder of StagefrightRecorder.cpp, there is a possible asynchronous playback when B-frame support is enabled. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed ...
CVEs:CVE-2024-34736
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
In sendDeviceState_1_6 of RadioExt.cpp, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVEs:CVE-2024-32927
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-32927
CVEs:CVE-2024-34738
In multiple functions of AppOpsService.java, there is a possible way for unprivileged apps to read their own restrictRead app-op states due to a logic error in the code. This could lead to local escalation of privilege with no additional execution priv...
CVEs:CVE-2024-34738
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-34743
In setTransactionState of SurfaceFlinger.cpp, there is a possible way to perform tapjacking due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not neede...
CVEs:CVE-2024-34743
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
PUB-A-312268456
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :unknown: | affected | Android | :unknown: | — |
In shouldWrite of OwnersData.java, there is a possible edge case that prevents MDM policies from being persisted due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interacti...
CVEs:CVE-2024-34742
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| android | affected | — | — |
CVEs:CVE-2024-34742
Authorization bypass in Openshift in github.com/openshift/origin
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes-1.30 | affected | chainguard | kubernetes-1.30 | — |
| kubernetes-1.31 | affected | chainguard | kubernetes-1.31 | — |
| kubernetes-1.32 | affected | chainguard | kubernetes-1.32 | — |
| openshift/origin | affected | github.com | github.com/openshift/origin | — |
Kubernetes Arbitrary Command Injection in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubeflow-pipelines | affected | wolfi | kubeflow-pipelines | — |
| kubeflow-pipelines | affected | chainguard | kubeflow-pipelines | — |
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Kubernetes Privilege Escalation in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Information Exposure in Kubernetes in github.com/kubernetes/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes/kubernetes | affected | github.com | github.com/kubernetes/kubernetes | — |
Kubernetes arbitrary file overwrite in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
Kubernetes in OpenShift3 Access Control Misconfiguration in k8s.io/kubernetes
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kubernetes | affected | k8s.io | k8s.io/kubernetes | — |
| kubernetes-1.30 | affected | chainguard | kubernetes-1.30 | — |
| kubernetes-1.31 | affected | chainguard | kubernetes-1.31 | — |
| kubernetes-1.32 | affected | chainguard | kubernetes-1.32 | — |
Minikube RCE via DNS Rebinding in k8s.io/minikube
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| minikube | affected | k8s.io | k8s.io/minikube | — |
PUB-A-283319714
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| :unknown: | affected | Android | :unknown: | — |
Import of incorrectly embargoed keys could cause early publication in github.com/google/exposure-notifications-server
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| google/exposure-notifications-server | affected | github.com | github.com/google/exposure-notifications-server | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.