rpm package
almalinux/mecab
pkg:rpm/almalinux/mecab
Vulnerabilities (724)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2025-21494 | Med | 4.1 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Jan 21, 2025 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to | |
| CVE-2025-21491 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Jan 21, 2025 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto | |
| CVE-2025-21490 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Jan 21, 2025 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto | |
| CVE-2024-13176 | Med | 4.1 | < 0.996-3.module_el9.6.0+152+8cbce00c.4 | 0.996-3.module_el9.6.0+152+8cbce00c.4 | Jan 20, 2025 | Issue summary: A timing side-channel which could potentially allow recovering the private key exists in the ECDSA signature computation. Impact summary: A timing side-channel in ECDSA signature computations could allow recovering the private key by an attacker. However, measurin | |
| CVE-2024-11053 | Low | 3.4 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Dec 11, 2024 | When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, curl could leak the password used for the first host to the followed-to host under certain circumstances. This flaw only manifests itself if the netrc file has an entry that matches the redirect | |
| CVE-2024-21247 | Low | 3.8 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mul | |
| CVE-2024-21241 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mul | |
| CVE-2024-21239 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto | |
| CVE-2024-21238 | Med | 5.3 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affected are 8.0.39 and prior, 8.4.1 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access v | |
| CVE-2024-21237 | Low | 2.2 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network | |
| CVE-2024-21236 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto | |
| CVE-2024-21231 | Low | 3.1 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via mult | |
| CVE-2024-21230 | Med | 6.5 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via mult | |
| CVE-2024-21219 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple | |
| CVE-2024-21218 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto | |
| CVE-2024-21213 | Med | 4.2 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where | |
| CVE-2024-21212 | Med | 4.4 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Health Monitor). Supported versions that are affected are 8.0.39 and prior and 8.4.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to c | |
| CVE-2024-21203 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple | |
| CVE-2024-21201 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mul | |
| CVE-2024-21199 | Med | 4.9 | < 0.996-2.module_el8.10.0+3965+b415b607 | 0.996-2.module_el8.10.0+3965+b415b607 | Oct 15, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto |
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto
- affected < 0.996-3.module_el9.6.0+152+8cbce00c.4fixed 0.996-3.module_el9.6.0+152+8cbce00c.4
Issue summary: A timing side-channel which could potentially allow recovering the private key exists in the ECDSA signature computation. Impact summary: A timing side-channel in ECDSA signature computations could allow recovering the private key by an attacker. However, measurin
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, curl could leak the password used for the first host to the followed-to host under certain circumstances. This flaw only manifests itself if the netrc file has an entry that matches the redirect
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mul
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mul
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affected are 8.0.39 and prior, 8.4.1 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access v
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via mult
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via mult
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Health Monitor). Supported versions that are affected are 8.0.39 and prior and 8.4.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to c
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mul
- affected < 0.996-2.module_el8.10.0+3965+b415b607fixed 0.996-2.module_el8.10.0+3965+b415b607
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple proto
Page 8 of 37