VEX records

Browse vendor VEX statements available in this Vulnerability-Lookup instance and pivot to the related vulnerability.

Reset

81793 VEX records

API response
Vulnerability Source Title Product status Imported Links
CVE-2026-93812 redhat_vex kernel: ksmbd: fix sd_ndr.data memory leak in ksmbd_vfs_set_sd_xattr known affected: 77 known not affected: 200 2026-10-08T14:38:35+00:00 Vulnerability · Source
CVE-2026-93827 redhat_vex kernel: virtio-fs: avoid double-free on failed queue setup known affected: 183 known not affected: 92 2026-10-08T14:36:33+00:00 Vulnerability · Source
CVE-2026-106412 redhat_vex chromium-browser: Race condition in Core known not affected: 1 2026-10-08T14:36:03+00:00 Vulnerability · Source
CVE-2026-106377 redhat_vex chromium-browser: Race condition in Fonts known not affected: 1 2026-10-08T14:35:59+00:00 Vulnerability · Source
CVE-2026-106369 redhat_vex chromium-browser: Missing authorization in Translate known not affected: 1 2026-10-08T14:35:57+00:00 Vulnerability · Source
CVE-2026-106293 redhat_vex chromium-browser: Type confusion in ANGLE known not affected: 1 2026-10-08T14:35:53+00:00 Vulnerability · Source
CVE-2026-106243 redhat_vex chromium-browser: Incomplete cleanup in Proxy Auth known not affected: 1 2026-10-08T14:35:50+00:00 Vulnerability · Source
CVE-2026-106239 redhat_vex chromium-browser: Integer overflow in WebGL known not affected: 1 2026-10-08T14:35:46+00:00 Vulnerability · Source
CVE-2026-106214 redhat_vex chromium-browser: Information leak in Proxy known not affected: 1 2026-10-08T14:35:42+00:00 Vulnerability · Source
CVE-2026-19024 redhat_vex hdf5: HDF5: Denial of service via malformed dataset fixed: 21 known affected: 1 2026-10-08T14:25:13+00:00 Vulnerability · Source
CVE-2026-98370 redhat_vex kernel: xfrm: fix compat ALLOCSPI request use-after-free known affected: 200 known not affected: 77 2026-10-08T14:23:57+00:00 Vulnerability · Source
CVE-2026-11573 redhat_vex qtbase: qt5-qtbase: qt6-qtbase: qtbase: Denial of Service via uncontrolled recursion in XML serialization fixed: 23 known affected: 46 2026-10-08T14:23:53+00:00 Vulnerability · Source
CVE-2026-98369 redhat_vex kernel: xfrm: add missing rcu_read_lock(), skb_dst_force() and dev_hold() for xfrm_trans_reinject() known affected: 200 known not affected: 77 2026-10-08T14:23:47+00:00 Vulnerability · Source
CVE-2026-98368 redhat_vex kernel: esp: downgrade zerocopy managed frags before mutating skb frags known affected: 198 known not affected: 79 2026-10-08T14:23:38+00:00 Vulnerability · Source
CVE-2026-98367 redhat_vex kernel: RDMA/siw: Clear association under lock if siw_qp_modify fails in siw_accept known affected: 158 known not affected: 119 2026-10-08T14:23:33+00:00 Vulnerability · Source
CVE-2026-98181 redhat_vex kernel: drm/gud: fix out-of-bounds write in gud_plane_atomic_check() known affected: 186 known not affected: 91 2026-10-08T14:23:29+00:00 Vulnerability · Source
CVE-2026-98180 redhat_vex kernel: drm/msm: RCU-free the scheduler-containing ring and VM objects known not affected: 277 2026-10-08T14:23:24+00:00 Vulnerability · Source
CVE-2026-93283 redhat_vex kernel: i3c: master: Fix device_register() error path known affected: 77 known not affected: 200 2026-10-08T14:23:21+00:00 Vulnerability · Source
CVE-2026-93262 redhat_vex kernel: md/raid5-ppl: fix use-after-free in ppl_do_flush() known affected: 233 known not affected: 42 2026-10-08T14:23:17+00:00 Vulnerability · Source
CVE-2026-93748 redhat_vex http-cache-semantics: http-cache-semantics: Information Disclosure via max-stale directive known affected: 148 known not affected: 66 2026-10-08T14:23:05+00:00 Vulnerability · Source
CVE-2026-92925 redhat_vex redis: Redis: Out-of-bounds read via crafted cluster bus packets fixed: 54 known affected: 2 known not affected: 17 2026-10-08T14:22:58+00:00 Vulnerability · Source
CVE-2026-92543 redhat_vex github.com/moby/moby: Docker Engine: Certificate verification bypass via flawed registry DNS check known affected: 14 known not affected: 1 2026-10-08T14:22:56+00:00 Vulnerability · Source
CVE-2026-85049 redhat_vex chromium-browser: skia: chromium-browser: skia: Use after free in Skia known affected: 22 known not affected: 14 2026-10-08T14:22:35+00:00 Vulnerability · Source
CVE-2026-84782 redhat_vex openssl: compat-openssl: openssl: Information disclosure via DTLS handshake retransmission fixed: 147 known affected: 310 known not affected: 403 2026-10-08T14:22:31+00:00 Vulnerability · Source
CVE-2026-11788 redhat_vex 389-ds-base: 389-ds-base: NULL pointer dereference in deref control plugin BER parser fixed: 485 known affected: 6 2026-10-08T14:15:08+00:00 Vulnerability · Source
CVE-2026-11770 redhat_vex 389-ds-base: 389-ds-base: pre-auth LDAP filter injection in CleanAllRUV status check fixed: 485 known affected: 6 2026-10-08T14:15:02+00:00 Vulnerability · Source
CVE-2026-76560 redhat_vex 389-ds-base: 389-ds: anonymous LDAP client can defeat SELFDN ACI bind-rule checks via empty bind DN fixed: 486 known affected: 15 known not affected: 1 2026-10-08T14:14:57+00:00 Vulnerability · Source
CVE-2026-19843 redhat_vex 389-ds-base: 389-ds-base: Command injection via unescaped LDAP DN in Cockpit 389 Console LDAP editor fixed: 69 known affected: 27 known not affected: 13 2026-10-08T14:14:55+00:00 Vulnerability · Source
CVE-2026-18922 redhat_vex 389-ds-base: 389-ds-base: SASL PLAIN authentication allows privilege escalation to Directory Manager via stale identity in Cyrus SASL auxiliary property fixed: 496 known affected: 1 known not affected: 1 2026-10-08T14:14:53+00:00 Vulnerability · Source
CVE-2026-18453 redhat_vex 389-ds-base: 389-ds-base: pre-authentication NULL pointer dereference via paged results and USE_ONE_BACKEND control in op_shared_search fixed: 486 known affected: 5 known not affected: 1 2026-10-08T14:14:49+00:00 Vulnerability · Source
CVE-2026-18355 redhat_vex 389-ds-base: 389-ds-base: heap buffer overflow via SASL wrapped-record length lower-bound underflow in sasl_io_start_packet() fixed: 486 known affected: 1 known not affected: 5 2026-10-08T14:14:48+00:00 Vulnerability · Source
CVE-2026-15722 redhat_vex 389-ds-base: 389-ds-base: pre-authentication stack buffer overflow in get_ruvelement_from_berval() via unbounded replica ID parsing fixed: 485 known affected: 5 known not affected: 1 2026-10-08T14:14:43+00:00 Vulnerability · Source
CVE-2026-94286 redhat_vex libXtst: libXtst: Denial of Service via out-of-bounds read in RECORD reply parser fixed: 5 known affected: 12 2026-10-08T14:13:06+00:00 Vulnerability · Source
CVE-2026-98176 redhat_vex kernel: drm/amdkfd: Avoid integer underflow with ffs in EOP ring size calc known affected: 200 known not affected: 77 2026-10-08T12:06:30+00:00 Vulnerability · Source
CVE-2023-5752 redhat_vex pip: Mercurial configuration injectable in repo revision when installing via pip fixed: 8 known affected: 5 known not affected: 296 2026-10-08T12:06:21+00:00 Vulnerability · Source
CVE-2026-98362 redhat_vex kernel: clk: scpi: bound-check DVFS index in scpi_dvfs_recalc_rate known affected: 235 known not affected: 42 2026-10-08T12:06:20+00:00 Vulnerability · Source
CVE-2024-3177 redhat_vex kubernetes: kube-apiserver: bypassing mountable secrets policy imposed by the ServiceAccount admission plugin fixed: 24 known affected: 18 known not affected: 277 2026-10-08T12:06:19+00:00 Vulnerability · Source
CVE-2026-77408 redhat_vex github.com/rabbitmq/amqp091-go: RabbitMQ amqp091-go: Silent Data Truncation and State Corruption via Shortstr Integer Overflow known affected: 9 known not affected: 5 2026-10-08T12:03:08+00:00 Vulnerability · Source
CVE-2026-22028 redhat_vex preact: Preact: Arbitrary script execution via JSON serialization protection bypass fixed: 1 known affected: 16 known not affected: 691 2026-10-08T12:03:02+00:00 Vulnerability · Source
CVE-2026-98366 redhat_vex kernel: RDMA/rxe: validate access flags before swapping the MR's PD known affected: 107 known not affected: 170 2026-10-08T12:02:53+00:00 Vulnerability · Source
CVE-2026-102409 redhat_vex elasticsearch: Elasticsearch: Denial of Service via uncontrolled recursion known affected: 1 known not affected: 2 2026-10-08T12:02:35+00:00 Vulnerability · Source
CVE-2026-98365 redhat_vex kernel: RDMA/rxe: Fix integer overflow in mr_check_range() leading to OOB access known affected: 186 known not affected: 91 2026-10-08T12:02:22+00:00 Vulnerability · Source
CVE-2026-98175 redhat_vex kernel: smb: client: cancel reconnect work in clean_demultiplex_info() known affected: 235 known not affected: 42 2026-10-08T12:02:18+00:00 Vulnerability · Source
CVE-2026-98174 redhat_vex kernel: smb: client: fix rlist race and missing initialization known affected: 235 known not affected: 42 2026-10-08T12:02:17+00:00 Vulnerability · Source
CVE-2026-93019 redhat_vex perl-Imager: Imager versions before 1.036 for Perl exit the process reading a TGA with a colour map length of 32768 or more in tga_palette_read known not affected: 1 2026-10-08T12:02:16+00:00 Vulnerability · Source
CVE-2026-98363 redhat_vex kernel: firmware: arm_scpi: reject DVFS OPP count above MAX_DVFS_OPPS known affected: 235 known not affected: 42 2026-10-08T12:02:16+00:00 Vulnerability · Source
CVE-2026-45991 redhat_vex kernel: udf: fix partition descriptor append bookkeeping fixed: 1311 known affected: 22 known not affected: 28 under investigation: 14 2026-10-08T12:01:58+00:00 Vulnerability · Source
CVE-2026-43186 redhat_vex kernel: ipv6: ioam: fix heap buffer overflow in __ioam6_fill_trace_data() fixed: 616 known affected: 14 known not affected: 184 2026-10-08T12:01:57+00:00 Vulnerability · Source
CVE-2025-40237 redhat_vex kernel: fs/notify: call exportfs_encode_fid with s_umount fixed: 616 known affected: 108 known not affected: 90 2026-10-08T12:01:56+00:00 Vulnerability · Source
CVE-2026-80864 redhat_vex kernel: RDMA/rxe: Fix responder UAF on IB_QP_MAX_DEST_RD_ATOMIC modify_qp fixed: 852 known affected: 186 known not affected: 91 2026-10-08T12:01:48+00:00 Vulnerability · Source