criu-devel vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the criu-devel package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Directory Traversal

<0:3.18-5.module+el8.10.0+2001+6a33db9f
  • H
Creation of Temporary File With Insecure Permissions

<0:3.18-5.module+el8.10.0+2001+6a33db9f
  • M
Cross-site Scripting (XSS)

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Arbitrary Code Injection

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Link Following

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Use of Incorrectly-Resolved Name or Reference

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Improper Preservation of Permissions

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
CVE-2023-24540

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Arbitrary Code Injection

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Arbitrary Code Injection

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Integer Overflow or Wraparound

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Allocation of Resources Without Limits or Throttling

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Resource Exhaustion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Allocation of Resources Without Limits or Throttling

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Resource Exhaustion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
CVE-2022-41723

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Resource Exhaustion

<0:3.15-3.module+el8.9.0+1445+07728297
  • H
Symlink Following

<0:3.18-5.module+el8.10.0+1896+b18fa106
  • H
Symlink Following

<0:3.18-5.module+el8.10.0+1896+b18fa106
  • M
Time-of-check Time-of-use (TOCTOU)

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Allocation of Resources Without Limits or Throttling

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
CVE-2022-32189

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
CVE-2022-32148

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Uncontrolled Recursion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Uncontrolled Recursion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Uncontrolled Recursion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Uncontrolled Recursion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Uncontrolled Recursion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Use of Insufficiently Random Values

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Uncontrolled Recursion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Uncontrolled Recursion

<0:3.15-3.module+el8.9.0+1445+07728297
  • H
Symlink Following

<0:3.18-5.module+el8.10.0+1896+b18fa106
  • M
HTTP Request Smuggling

<0:3.15-3.module+el8.9.0+1445+07728297
  • H
Improper Certificate Validation

<0:3.18-5.module+el8.10.0+1874+ce489889
  • M
CVE-2025-22871

<0:3.18-5.module+el8.10.0+1874+ce489889
  • M
CVE-2024-24791

<0:3.18-5.module+el8.10.0+1843+6892ab28
  • M
CVE-2024-24788

<0:3.18-5.module+el8.10.0+1843+6892ab28
  • H
CVE-2025-22869

<0:3.18-5.module+el8.10.0+1874+ce489889
  • M
Allocation of Resources Without Limits or Throttling

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
CVE-2023-39321

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Cross-site Scripting (XSS)

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Cross-site Scripting (XSS)

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Resource Exhaustion

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Allocation of Resources Without Limits or Throttling

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
CVE-2022-27664

<0:3.15-3.module+el8.9.0+1445+07728297
  • H
Information Exposure

<0:3.15-3.module+el8.9.0+1445+07728297
  • H
CVE-2023-39326

<0:3.15-3.module+el8.9.0+1445+07728297
  • H
Improper Privilege Management

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • M
Directory Traversal

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • M
Information Exposure

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • M
CVE-2021-33198

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
Directory Traversal

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
Improper Input Validation

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
Link Following

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-34158

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-34156

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-34155

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
Information Exposure Through Log Files

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-37298

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
Improper Validation of Integrity Check Value

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-24789

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-24784

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-24783

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
Memory Leak

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2023-45290

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • M
CVE-2024-28176

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-28180

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • H
CVE-2024-24786

<0:3.18-5.module+el8.10.0+1815+5fe7415e
  • M
CVE-2022-41715

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
HTTP Request Smuggling

<0:3.15-3.module+el8.9.0+1445+07728297
  • H
Link Following

<0:3.15-3.module+el8.9.0+1445+07728297
  • H
Exposure of Resource to Wrong Sphere

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Interpretation Conflict

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Race Condition

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • M
Improper Locking

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • H
Incorrect Default Permissions

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • H
Incorrect Default Permissions

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • H
Incorrect Default Permissions

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • H
Allocation of Resources Without Limits or Throttling

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • H
Improper Privilege Management

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • M
Improper Cross-boundary Removal of Sensitive Data

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • M
Placement of User into Incorrect Group

<0:3.15-3.module+el8.9.0+1445+07728297
  • M
Placement of User into Incorrect Group

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • M
Incorrect Default Permissions

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • M
CVE-2022-27191

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • M
Allocation of Resources Without Limits or Throttling

<0:3.15-3.module+el8.6.0+1054+50b00ff4
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<0:3.15-3.module+el8.6.0+1054+50b00ff4