2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-4218 | MEDIUM | 5.5 | 0.3% | Aug 24, 2022 | A flaw was found in the Linux kernel’s implementation of reading the SVC RDMA counters. Reading the counter sysctl panic... |
| CVE-2021-4217 | LOW | 3.3 | 0.6% | Aug 24, 2022 | A flaw was found in unzip. The vulnerability occurs due to improper handling of Unicode strings, which can lead to a nul... |
| CVE-2021-4214 | MEDIUM | 5.5 | 0.5% | Aug 24, 2022 | A heap overflow flaw was found in libpngs' pngimage.c program. This flaw allows an attacker with local network access to... |
| CVE-2021-4213 | HIGH | 7.5 | 1.2% | Aug 24, 2022 | A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the ser... |
| CVE-2021-4209 | MEDIUM | 6.5 | 1.4% | Aug 24, 2022 | A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing... |
| CVE-2021-4204 | HIGH | 7.1 | 1.1% | Aug 24, 2022 | An out-of-bounds (OOB) memory access flaw was found in the Linux kernel's eBPF due to an Improper Input Validation. This... |
| CVE-2021-4189 | MEDIUM | 5.3 | 2.5% | Aug 24, 2022 | A flaw was found in Python, specifically in the FTP (File Transfer Protocol) client library in PASV (passive) mode. The ... |
| CVE-2021-4178 | MEDIUM | 6.7 | 0.3% | Aug 24, 2022 | A arbitrary code execution flaw was found in the Fabric 8 Kubernetes client affecting versions 5.0.0-beta-1 and above. D... |
| CVE-2021-4159 | MEDIUM | 4.4 | 0.2% | Aug 24, 2022 | A vulnerability was found in the Linux kernel's EBPF verifier when handling internal data structures. Internal memory lo... |
| CVE-2021-4158 | MEDIUM | 6 | 0.4% | Aug 24, 2022 | A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could... |
| CVE-2021-4155 | MEDIUM | 5.5 | 0.3% | Aug 24, 2022 | A data leak flaw was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem allowed for size increase of files wit... |
| CVE-2021-4142 | MEDIUM | 5.5 | 0.2% | Aug 24, 2022 | The Candlepin component of Red Hat Satellite was affected by an improper authentication flaw. Few factors could allow an... |
| CVE-2021-4125 | HIGH | 8.1 | 1.2% | Aug 24, 2022 | It was found that the original fix for log4j CVE-2021-44228 and CVE-2021-45046 in the OpenShift metering hive containers... |
| CVE-2021-4122 | MEDIUM | 4.3 | 0.3% | Aug 24, 2022 | It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery o... |
| CVE-2021-4041 | HIGH | 7.8 | 0.3% | Aug 24, 2022 | A flaw was found in ansible-runner. An improper escaping of the shell command, while calling the ansible_runner.interfac... |
| CVE-2021-4040 | MEDIUM | 5.3 | 2.5% | Aug 24, 2022 | A flaw was found in AMQ Broker. This issue can cause a partial interruption to the availability of AMQ Broker via an Out... |
| CVE-2021-4037 | MEDIUM | 4.4 | 0.3% | Aug 24, 2022 | A vulnerability was found in the fs/inode.c:inode_init_owner() function logic of the LInux kernel that allows local user... |
| CVE-2021-4028 | HIGH | 7.8 | 0.3% | Aug 24, 2022 | A flaw in the Linux kernel's implementation of RDMA communications manager listener code allowed an attacker with local ... |
| CVE-2021-43309 | HIGH | 7.5 | 0.9% | Aug 24, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the uri-template-lite npm package, when ... |
| CVE-2021-3999 | HIGH | 7.8 | 0.7% | Aug 24, 2022 | A flaw was found in glibc. An off-by-one buffer overflow and underflow in getcwd() may lead to memory corruption when th... |
| CVE-2021-3998 | HIGH | 7.5 | 1.4% | Aug 24, 2022 | A flaw was found in glibc. The realpath() function can mistakenly return an unexpected value, potentially leading to inf... |
| CVE-2021-3488 | — | — | — | Aug 24, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2021-39815 | CRITICAL | 9.8 | 0.4% | Aug 24, 2022 | The PowerVR GPU driver allows unprivileged apps to allocated pinned memory, unpin it (which makes it available to be fre... |
| CVE-2021-0947 | HIGH | 7.5 | 0.3% | Aug 24, 2022 | The method PVRSRVBridgeTLDiscoverStreams allocates puiStreamsInt on the heap, fills the contents of the buffer via TLSer... |
| CVE-2021-0946 | HIGH | 7.5 | 0.3% | Aug 24, 2022 | The method PVRSRVBridgePMRPDumpSymbolicAddr allocates puiMemspaceNameInt on the heap, fills the contents of the buffer v... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now