Filtered by vendor Openeuler
Subscribe
Total
8 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2021-33636 | 1 Openeuler | 1 Isula | 2024-09-09 | N/A | 7.8 HIGH |
When the isula load command is used to load malicious images, attackers can execute arbitrary code. | |||||
CVE-2021-33635 | 1 Openeuler | 1 Isula | 2024-09-09 | N/A | 7.8 HIGH |
When malicious images are pulled by isula pull, attackers can execute arbitrary code. | |||||
CVE-2021-33634 | 1 Openeuler | 1 Icr | 2024-02-28 | N/A | 5.5 MEDIUM |
iSulad uses the lcr+lxc runtime (default) to run malicious images, which can cause DOS. | |||||
CVE-2021-33638 | 1 Openeuler | 1 Isula | 2024-02-28 | N/A | 6.5 MEDIUM |
When the isula cp command is used to copy files from a container to a host machine and the container is controlled by an attacker, the attacker can escape the container. | |||||
CVE-2021-33637 | 1 Openeuler | 1 Isula | 2024-02-28 | N/A | 6.5 MEDIUM |
When the isula export command is used to export a container to an image and the container is controlled by an attacker, the attacker can escape the container. | |||||
CVE-2021-33641 | 1 Openeuler | 1 Byacc | 2024-02-28 | N/A | 7.8 HIGH |
When processing files, malloc stores the data of the current line. When processing comments, malloc incorrectly accesses the released memory (use after free). | |||||
CVE-2021-33642 | 1 Openeuler | 1 Byacc | 2024-02-28 | N/A | 5.5 MEDIUM |
When a file is processed, an infinite loop occurs in next_inline() of the more_curly() function. | |||||
CVE-2021-33629 | 1 Openeuler | 1 Isula-build | 2024-02-28 | 5.0 MEDIUM | 7.5 HIGH |
isula-build before 0.9.5-6 can cause a program crash, when building container images, some functions for processing external data do not remove spaces when processing data. |