Search CVE reports
11 – 20 of 42556 results
[liblzma: Fix a buffer overflow in lzma_index_append()]
1 affected package
xz-utils
| Package | 18.04 LTS |
|---|---|
| xz-utils | Needs evaluation |
PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, a heap out-of-bounds read vulnerability exists in PJSIP's VP9 RTP unpacketizer that occurs when parsing crafted VP9 Scalability...
1 affected package
pjproject
| Package | 18.04 LTS |
|---|---|
| pjproject | Needs evaluation |
(Docker Model Runner (DMR) is software used to manage, run, and deploy ...)
2 affected packages
docker.io, docker.io-app
| Package | 18.04 LTS |
|---|---|
| docker.io | Needs evaluation |
| docker.io-app | — |
Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create hosts or services to execute arbitrary JavaScript in the browsers of other users performing searches in...
1 affected package
check-mk
| Package | 18.04 LTS |
|---|---|
| check-mk | Needs evaluation |
An integer overflow vulnerability in 'pdf-image.c' in Artifex's MuPDF version 1.27.0 allows an attacker to maliciously craft a PDF that can trigger an integer overflow within the 'pdf_load_image_imp' function. This allows a heap...
1 affected package
mupdf
| Package | 18.04 LTS |
|---|---|
| mupdf | Needs evaluation |
Impact: Lodash versions 4.17.23 and earlier are vulnerable to prototype pollution in the _.unset and _.omit functions. The fix for (CVE-2025-13465: https://github.com/lodash/lodash/security/advisories/GHSA-xxjr-mmjv-4gpg) only...
1 affected package
node-lodash
| Package | 18.04 LTS |
|---|---|
| node-lodash | Needs evaluation |
(Mbed TLS before 3.6.6 and TF-PSA-Crypto before 1.1.0 misuse seeds in a ...)
1 affected package
mbedtls
| Package | 18.04 LTS |
|---|---|
| mbedtls | Needs evaluation |
(Mbed TLS v3.3.0 up to 3.6.5 and 4.0.0 allows Algorithm Downgrade.)
1 affected package
mbedtls
| Package | 18.04 LTS |
|---|---|
| mbedtls | Needs evaluation |
(Mbed TLS 3.5.0 to 3.6.5 fixed in 3.6.6 and 4.1.0 has a buffer overflow ...)
1 affected package
mbedtls
| Package | 18.04 LTS |
|---|---|
| mbedtls | Needs evaluation |
Insufficient permission validation on multiple REST API Quick Setup endpoints in Checkmk 2.5.0 (beta) before version 2.5.0b2 and 2.4.0 before version 2.4.0p25 allows low-privileged users to perform unauthorized actions or obtain...
1 affected package
check-mk
| Package | 18.04 LTS |
|---|---|
| check-mk | Needs evaluation |