Search CVE reports
1201 – 1210 of 56918 results
GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required...
1 affected package
gstreamer1.0
| Package | 16.04 LTS |
|---|---|
| gstreamer1.0 | Needs evaluation |
GStreamer MRF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to...
1 affected package
gstreamer1.0
| Package | 16.04 LTS |
|---|---|
| gstreamer1.0 | Needs evaluation |
Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adminer. Authentication is...
1 affected package
adminer
| Package | 16.04 LTS |
|---|---|
| adminer | Needs evaluation |
jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource consumption vulnerability in XmlTreeBuilder that allows remote attackers to exhaust JVM heap memory by supplying a deeply nested XML document with...
1 affected package
jsoup
| Package | 16.04 LTS |
|---|---|
| jsoup | Needs evaluation |
lxml is a library for processing XML and HTML in the Python language. Prior to 6.1.1, link attributes in ``lxml.html.defs.link_attrs`` were missing ``xlink:href``, which can be used for URL bypass attacks in...
1 affected package
lxml
| Package | 16.04 LTS |
|---|---|
| lxml | Needs evaluation |
A heap out-of-bounds write exists in the Photo CD (PCD) decoder of GraphicsMagick. In DecodeImage() (coders/pcd.c), the Huffman delta loop advances its output pointer with q++ after every decoded delta and never checks it against...
1 affected package
graphicsmagick
| Package | 16.04 LTS |
|---|---|
| graphicsmagick | Needs evaluation |
Incorrect authorization in frozen BI aggregations in Checkmk <2.5.0p2, <2.4.0p29, <2.3.0p47, and all 2.2.0 versions allows an authenticated user with restricted host and service visibility to learn the names and the existence of...
1 affected package
check-mk
| Package | 16.04 LTS |
|---|---|
| check-mk | Needs evaluation |
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `/ipa/i18n_messages` endpoint by sending an arbitrarily large request body. This can cause the service to consume excessive memory,...
1 affected package
freeipa
| Package | 16.04 LTS |
|---|---|
| freeipa | Needs evaluation |
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by sending oversized form POST requests to the `/ipa/migration/migration.py` endpoint. This can force the migration handler to read...
1 affected package
freeipa
| Package | 16.04 LTS |
|---|---|
| freeipa | Needs evaluation |
A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this vulnerability by submitting an oversized One-Time Password (OTP) key value. This oversized key is then decoded and re-encoded without proper size...
1 affected package
freeipa
| Package | 16.04 LTS |
|---|---|
| freeipa | Needs evaluation |