librbd-devel

Direct Vulnerabilities

Known vulnerabilities in the librbd-devel package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Cross-site Scripting (XSS)

*
  • H
Use of Multiple Resources with Duplicate Identifier

*
  • M
Missing Required Cryptographic Step

*
  • M
Missing Required Cryptographic Step

*
  • M
Improperly Controlled Modification of Dynamically-Determined Object Attributes

*
  • M
CVE-2025-68121

*
  • H
Reachable Assertion

<2:18.2.1-381.el8cp
  • H
Cross-site Scripting (XSS)

<2:18.2.1-381.el8cp
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<2:18.2.1-381.el8cp
  • H
Improper Handling of Exceptional Conditions

<2:18.2.1-381.el8cp
  • H
Inefficient Regular Expression Complexity

<2:18.2.1-381.el8cp
  • H
Arbitrary Code Injection

<2:18.2.1-381.el8cp
  • M
CVE-2025-68121

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Improper Certificate Validation

<2:18.2.1-381.el8cp
  • M
Improper Validation of Certificate with Host Mismatch

*
  • M
Improper Validation of Certificate with Host Mismatch

*
  • M
Improper Certificate Validation

*
  • L
CVE-2025-58186

*
  • L
CVE-2025-58186

*
  • M
Improper Certificate Validation

*
  • H
Excessive Platform Resource Consumption within a Loop

<2:18.2.1-381.el8cp
  • H
Excessive Platform Resource Consumption within a Loop

*
  • M
Improper Verification of Source of a Communication Channel

*
  • H
Cross-site Scripting (XSS)

*
  • M
Improper Verification of Source of a Communication Channel

*
  • H
Cross-site Scripting (XSS)

*
  • M
Improper Verification of Source of a Communication Channel

*
  • M
Improper Verification of Source of a Communication Channel

*
  • H
Cross-site Scripting (XSS)

*
  • H
Improper Input Validation

*
  • H
Improper Input Validation

*
  • H
Improper Input Validation

*
  • H
Improper Input Validation

<2:18.2.1-381.el8cp
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • H
Exposure of Resource to Wrong Sphere

*
  • H
Link Following

*
  • H
Cross-site Scripting (XSS)

<2:18.2.1-381.el8cp
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Least Privilege Violation

*
  • H
Least Privilege Violation

<2:18.2.1-381.el8cp
  • M
Least Privilege Violation

*
  • M
Least Privilege Violation

*
  • M
Least Privilege Violation

*
  • M
CVE-2025-4673

*
  • M
CVE-2025-4673

*
  • M
Information Exposure

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • H
Directory Traversal

<2:18.2.1-329.el8cp
  • H
Open Redirect

<2:18.2.1-329.el8cp
  • H
Cross-site Request Forgery (CSRF)

<2:18.2.1-329.el8cp
  • H
Misinterpretation of Input

<2:18.2.1-329.el8cp
  • H
Truncation of Security-relevant Information

<2:18.2.1-329.el8cp
  • H
Incomplete Internal State Distinction

<2:18.2.1-329.el8cp
  • H
Allocation of Resources Without Limits or Throttling

<2:18.2.1-329.el8cp
  • H
Improper Input Validation

<2:18.2.1-329.el8cp
  • H
Directory Traversal

<2:17.2.6-277.el8cp
  • M
Improper Input Validation

*
  • H
Insufficient Verification of Data Authenticity

*
  • H
Insufficient Verification of Data Authenticity

<2:17.2.6-277.el8cp
  • H
Insufficient Verification of Data Authenticity

*
  • H
Insufficient Verification of Data Authenticity

<2:18.2.1-329.el8cp
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Directory Traversal

<2:16.2.10-266.el8cp
  • M
Allocation of Resources Without Limits or Throttling

<2:16.2.10-266.el8cp
  • C
Directory Traversal

<2:18.2.1-194.el8cp
  • C
Resource Exhaustion

<2:18.2.1-194.el8cp
  • C
CVE-2023-4822

<2:18.2.1-194.el8cp
  • C
Authentication Bypass by Primary Weakness

<2:18.2.1-194.el8cp
  • C
Directory Traversal

<2:17.2.6-216.el8cp
  • M
Improper Input Validation

<2:16.2.10-248.el8cp
  • M
Insufficient Granularity of Access Control

<2:16.2.10-248.el8cp
  • M
Resource Exhaustion

<2:16.2.10-266.el8cp
  • M
Inefficient Regular Expression Complexity

*
  • M
Inefficient Regular Expression Complexity

*
  • H
Cleartext Storage of Sensitive Information

<2:14.2.11-95.el8cp
  • H
Improper Input Validation

<2:14.2.11-147.el8cp
  • M
Covert Timing Channel

<2:14.2.22-110.el8cp
  • M
Improper Handling of URL Encoding (Hex Encoding)

*
  • H
Placement of User into Incorrect Group

*
  • H
Placement of User into Incorrect Group

<2:16.2.10-138.el8cp
  • M
Incorrect Authorization

<2:16.2.8-84.el8cp
  • M
Incorrect Authorization

*
  • M
Resource Exhaustion

*
  • M
Resource Exhaustion

*
  • L
Cross-site Scripting (XSS)

*
  • L
Cross-site Scripting (XSS)

*
  • M
Overly Restrictive Regular Expression

*
  • M
Overly Restrictive Regular Expression

*
  • M
Directory Traversal

*
  • M
Directory Traversal

<2:16.2.10-94.el8cp
  • M
Improper Authentication

<2:16.2.7-98.el8cp
  • M
Improper Authentication

<2:14.2.22-110.el8cp
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • H
Cross-site Scripting (XSS)

<2:14.2.11-181.el8cp
  • M
Improper Input Validation

<2:14.2.22-110.el8cp
  • M
Improper Input Validation

<2:16.2.7-98.el8cp
  • H
Improper Authentication

<2:14.2.11-181.el8cp
  • H
Insufficiently Protected Credentials

<2:14.2.11-181.el8cp
  • H
Insufficiently Protected Credentials

<2:14.2.11-95.el8cp
  • H
Authentication Bypass

<2:14.2.11-95.el8cp
  • M
Reusing a Nonce

<2:14.2.8-111.el8cp
  • H
Cleartext Storage of Sensitive Information

<2:14.2.11-147.el8cp
  • M
Cross-site Scripting (XSS)

<2:14.2.8-81.el8cp
  • M
HTTP Response Splitting

<2:14.2.8-81.el8cp
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Resource Exhaustion

*
  • M
Resource Exhaustion

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Memory Leak

*
  • M
Improper Input Validation

<2:16.2.7-98.el8cp
  • M
Improper Input Validation

*
  • M
Improper Input Validation

*