threat
engine
.sh
Back
·
··:··
Home
/
Product
/
netapp solidfire baseboard management controller
Product
netapp solidfire baseboard management controller
32 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2021-41073
all versions
loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PRO
7.8
HIGH
CVE-2021-22555
all versions
A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c. This allows an attacker t
8.3
HIGH
CVE-2021-33200
all versions
kernel/bpf/verifier.c in the Linux kernel through 5.12.7 enforces incorrect limits for pointer arithmetic operations, aka CID-bb01
7.8
HIGH
CVE-2020-25669
all versions
A vulnerability was found in the Linux Kernel where the function sunkbd_reinit having been scheduled by sunkbd_interrupt before su
7.8
HIGH
CVE-2021-26708
all versions
A local privilege escalation was discovered in the Linux kernel before 5.10.13. Multiple race conditions in the AF_VSOCK implement
7.0
HIGH
CVE-2020-27786
all versions
A flaw was found in the Linux kernel’s implementation of MIDI, where an attacker with a local account and the permissions to iss
7.8
HIGH
CVE-2020-29573
all versions
sysdeps/i386/ldbl2mpn.c in the GNU C Library (aka glibc or libc6) before 2.23 on x86 targets has a stack-based buffer overflow if
7.5
HIGH
CVE-2020-25221
all versions
get_gate_page in mm/gup.c in the Linux kernel 5.7.x and 5.8.x before 5.8.7 allows privilege escalation because of incorrect refere
7.8
HIGH
CVE-2020-15852
all versions
An issue was discovered in the Linux kernel 5.5 through 5.7.9, as used in Xen through 4.13.x for x86 PV guests. An attacker may be
7.8
HIGH
CVE-2020-12659
all versions
An issue was discovered in the Linux kernel before 5.6.7. xdp_umem_reg in net/xdp/xdp_umem.c has an out-of-bounds write (by a user
6.7
MEDIUM
CVE-2020-12465
all versions
An array overflow was discovered in mt76_add_fragment in drivers/net/wireless/mediatek/mt76/dma.c in the Linux kernel before 5.5.1
6.7
MEDIUM
CVE-2020-12464
all versions
usb_sg_cancel in drivers/usb/core/message.c in the Linux kernel before 5.6.8 has a use-after-free because a transfer occurs withou
6.7
MEDIUM
CVE-2020-11884
all versions
In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as demonstrated
7.0
HIGH
CVE-2020-8648
all versions
There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/
7.1
HIGH
CVE-2019-20054
all versions
In the Linux kernel before 5.0.6, there is a NULL pointer dereference in drop_sysctl_table() in fs/proc/proc_sysctl.c, related to
5.5
MEDIUM
CVE-2019-19966
all versions
In the Linux kernel before 5.1.6, there is a use-after-free in cpia2_exit() in drivers/media/usb/cpia2/cpia2_v4l.c that will cause
4.6
MEDIUM
CVE-2019-19947
all versions
In the Linux kernel through 5.4.6, there are information leaks of uninitialized memory to a USB device in the drivers/net/can/usb/
4.6
MEDIUM
CVE-2019-19922
all versions
kernel/sched/fair.c in the Linux kernel before 5.3.9, when cpu.cfs_quota_us is used (e.g., with Kubernetes), allows attackers to c
5.5
MEDIUM
CVE-2019-19447
all versions
In the Linux kernel 5.0.21, mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use
7.8
HIGH
CVE-2019-19377
all versions
In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and unmounting can lead to a us
7.8
HIGH
CVE-2019-15223
all versions
An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in
4.6
MEDIUM
CVE-2019-15222
all versions
An issue was discovered in the Linux kernel before 5.2.8. There is a NULL pointer dereference caused by a malicious USB device in
4.6
MEDIUM
CVE-2019-15221
all versions
An issue was discovered in the Linux kernel before 5.1.17. There is a NULL pointer dereference caused by a malicious USB device in
4.6
MEDIUM
CVE-2019-15220
all versions
An issue was discovered in the Linux kernel before 5.2.1. There is a use-after-free caused by a malicious USB device in the driver
4.6
MEDIUM
CVE-2019-15219
all versions
An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in
4.6
MEDIUM
CVE-2019-15218
all versions
An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in
4.6
MEDIUM
CVE-2019-15217
all versions
An issue was discovered in the Linux kernel before 5.2.3. There is a NULL pointer dereference caused by a malicious USB device in
4.6
MEDIUM
CVE-2019-15216
all versions
An issue was discovered in the Linux kernel before 5.0.14. There is a NULL pointer dereference caused by a malicious USB device in
4.6
MEDIUM
CVE-2019-15215
all versions
An issue was discovered in the Linux kernel before 5.2.6. There is a use-after-free caused by a malicious USB device in the driver
4.6
MEDIUM
CVE-2019-15213
all versions
An issue was discovered in the Linux kernel before 5.2.3. There is a use-after-free caused by a malicious USB device in the driver
4.6
MEDIUM
CVE-2019-15212
all versions
An issue was discovered in the Linux kernel before 5.1.8. There is a double-free caused by a malicious USB device in the drivers/u
4.6
MEDIUM
CVE-2019-15211
all versions
An issue was discovered in the Linux kernel before 5.2.6. There is a use-after-free caused by a malicious USB device in the driver
4.6
MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin