Vulnerabilities (CVE)

Filtered by vendor Mdadm Project Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-28736 1 Mdadm Project 1 Mdadm 2023-12-10 N/A 6.7 MEDIUM
Buffer overflow in some Intel(R) SSD Tools software before version mdadm-4.2-rc2 may allow a privileged user to potentially enable escalation of privilege via local access.
CVE-2023-28938 1 Mdadm Project 1 Mdadm 2023-12-10 N/A 4.4 MEDIUM
Uncontrolled resource consumption in some Intel(R) SSD Tools software before version mdadm-4.2-rc2 may allow a priviledged user to potentially enable denial of service via local access.
CVE-2014-5220 2 Mdadm Project, Opensuse 2 Mdadm, Opensuse 2023-12-10 7.2 HIGH 7.8 HIGH
The mdcheck script of the mdadm package for openSUSE 13.2 prior to version 3.3.1-5.14.1 does not properly sanitize device names, which allows local attackers to execute arbitrary commands as root.