EGI SVG Advisories

Advisories for 2021

Recent Advisories

A guide to the risk categories is available at Notes On Risk

Date Title Contents/Link Risk Status
2021-12-10, updated 2021-12-15, 2022-01-07 Log4j RCE vulnerability - CVE-2021-44228 Advisory-SVG-CVE-2021-44228 CRITICAL Fixed
2021-12-07 Version of golang used by Sinularity CVE-2021-44717 Advisory-SVG-CVE-2021-44717 MODERATE Fixed
2021-11-03 Kubernetes NGinx Ingress Controller Vulnerability CVE-2021-25742 Advisory-SVG-CVE-2021-25742 HIGH Fixed
2021-11-01 httpd mod_proxy vulnerability CVE-2021-40438 Advisory-SVG-CVE-2021-40438 HIGH Fixed
2021-10-21 dCache access control vulnerability Advisory-SVG-2021-17357 MODERATE Fixed
2021-09-10, updated 2021-10-12 use-after-free privilege escalation vulnerability in linux kernel - CVE-2021-3715 Advisory-SVG-CVE-2021-3715 HIGH Fixed
2021-07-22, updated 2021-07-28, 2021-08-26, 2021-10-06 Sequoia Privilege escalation in Linux file system CVE-2021-33909 Advisory-SVG-CVE-2021-33909 CRITICAL Fixed
2021-07-28, updated 2021-08-12, 2021-08-18, 2021-09-01, 2021-10-06 Linux kernel vulnerability affecting RHEL/CentOS 8 and derivatives - CVE-2021-22555 Advisory-SVG-CVE-2021-22555 CRITICAL Fixed
2021-08-17, updated 2021-09-07 Remote Code execution in JupyterLab and Jupyter Notebook CVE-2021–32797 and CVE-2021–32798 Advisory-SVG-CVE-2021-32798 Up to CRITICAL Fixed
2021-07-29, updated 2021-08-03 2021-09-07 2 HTCondor Security Vulnerabilities Advisory-SVG-2021-17304 HIGH Fixed
2021-06-16, updated 2021-06-30 polkit vulnerability - RHEL/CentOS 8 and derivatives Advisory-SVG-CVE-2021-3560 CRITICAL Fixed
2021-06-08, updated 2021-06-22 VOMS-Admin vulnerability Advisory-SVG-2021-17010 HIGH Fixed
2021-06-22 Singularity vulnerabilities Advisory-SVG-CVE-2021-32635   Fixed
2021-05-18, updated 2021-06-16 vulnerability concerning SLURM Advisory-SVG-CVE-2021-31215 HIGH Fixed
2021-03-17, updated 2021-04-19, 2021-05-12 Local Privilege Escalation via iSCSI Advisory-SVG-CVE-2021-27365 CRITICAL Fixed
2021-05-12, updated 2021-06-03 Squid Vulnerability Advisory-SVG-2021-17247 HIGH Fixed
2021-01-06, updated 2021-03-22, 2021-04-06 Linux Kernel release fixing various software vulnerabilities Advisory-SVG-CVE-2020-25211 HIGH Fixed
2020-11-06, updated 2021-03-23 DPM vulnerability allowing file deletion Advisory-SVG-2020-16935 Critical Fixed
2021-01-15, updated 2021-03-22 2 HTCondor Vulnerabilities affecting a limited number of versions. Advisory-SVG-2021-17030 Critical Fixed
2021-01-27 sudo privilege escalation vulnerability Advisory-SVG-CVE-2021-3156 Critical Fixed
2020-11-19 updated 2020-11-25, 2021-01-14 Vulnerability concerning dCache Advisory-SVG-2020-16939 Critical Fixed