Apache / Mesos
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2019-0204 | mesos: docker image code execution | HIGH | 7.8 | Mar 25, 2019 |
| CVE-2018-11793 | mesos: stack overflow vulnerability in parser | HIGH | 7.5 | Mar 5, 2019 |
| CVE-2019-5736 | runc: Execution of malicious containers allows for container escape and access to host filesystem | HIGH | 8.6 | Feb 11, 2019 |
| CVE-2018-1000421 | An improper authorization vulnerability exists in Jenkins Mesos Plugin 0.17.1 and earlier in MesosCloud.java that allows attackers with Overall/Read access to… | MEDIUM | 6.5 | Jan 9, 2019 |
| CVE-2018-1000420 | An improper authorization vulnerability exists in Jenkins Mesos Plugin 0.17.1 and earlier in MesosCloud.java that allows attackers with Overall/Read access to… | MEDIUM | 6.5 | Jan 9, 2019 |
| CVE-2018-8023 | mesos: Exposure of HMAC value via timing vulnerability in JWT validation | MEDIUM | 5.9 | Sep 21, 2018 |
| CVE-2018-1330 | When parsing a malformed JSON payload, libprocess in Apache Mesos versions 1.4.0 to 1.5.0 might crash due to an uncaught exception. Parsing chunked HTTP reques… | HIGH | 7.5 | Sep 13, 2018 |
| CVE-2017-9790 | When handling a libprocess message wrapped in an HTTP request, libprocess in Apache Mesos before 1.1.3, 1.2.x before 1.2.2, 1.3.x before 1.3.1, and 1.4.0-dev c… | HIGH | 7.5 | Sep 28, 2017 |
| CVE-2017-7687 | When handling a decoding failure for a malformed URL path of an HTTP request, libprocess in Apache Mesos before 1.1.3, 1.2.x before 1.2.2, 1.3.x before 1.3.1,… | HIGH | 7.5 | Sep 28, 2017 |
Showing 1 to 9 of 9 CVEs