Search CVE reports
1801 – 1810 of 51437 results
A flaw in libcurl makes it wrongly reuse an HTTP connection setup for a given hostname using Negotiate authentication, when the initial request is done using empty credentials. This can make user B's request get sent over...
1 affected package
curl
| Package | 22.04 LTS |
|---|---|
| curl | Vulnerable |
A flaw in libcurl's handling of HTTP/2 Server Push streams, when the parent handle is set to share connections with other handles, can lead to use-after-free in the cleanup process.
1 affected package
curl
| Package | 22.04 LTS |
|---|---|
| curl | Vulnerable |
A flaw in the libcurl SASL negotiation for LDAP authentication allows an incomplete handshake sequence to be misinterpreted as a successful cryptographic verification. An attacker executing a Man-in-the-Middle (MITM) attack can...
1 affected package
curl
| Package | 22.04 LTS |
|---|---|
| curl | Not affected |
libpcap BPF interpreter treats the offset in the 'ja L' BPF instruction as a signed integer to implement looping via backward jumps, but it does not limit the number of loop iterations. In particular uncommon use cases a crafted...
1 affected package
libpcap
| Package | 22.04 LTS |
|---|---|
| libpcap | Needs evaluation |
libpcap BPF interpreter for the 'div #k' and 'mod #k' ALU instructions does not check whether the immediate value is zero. In particular uncommon use cases a crafted filter program can cause a division by zero.
1 affected package
libpcap
| Package | 22.04 LTS |
|---|---|
| libpcap | Needs evaluation |
libpcap BPF interpreter detects neither reaching the end of the filter program buffer due to lack of a return instruction nor executing a jump instruction with an offset that translates to a pointer outside of the buffer. In...
1 affected package
libpcap
| Package | 22.04 LTS |
|---|---|
| libpcap | Needs evaluation |
libpcap BPF interpreter calls abort() if it encounters a BPF instruction that has an invalid opcode. In particular uncommon use cases a crafted filter program can terminate the OS process.
1 affected package
libpcap
| Package | 22.04 LTS |
|---|---|
| libpcap | Needs evaluation |
rpcapd can allocate up to 65536 bytes per each RPCAP_MSG_UPDATEFILTER_REQ or RPCAP_MSG_STARTCAP_REQ message received from the client, but it never frees the memory, so it leaks memory even under normal use. A malicious client can...
1 affected package
libpcap
| Package | 22.04 LTS |
|---|---|
| libpcap | Needs evaluation |
The rpcap client code that processes a RPCAP_MSG_PACKET message received from the server incorrectly validates its headers. A malicious server can send a crafted message and cause the client to treat up to 20 bytes of the client...
1 affected package
libpcap
| Package | 22.04 LTS |
|---|---|
| libpcap | Needs evaluation |
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular...
1 affected package
libpcap
| Package | 22.04 LTS |
|---|---|
| libpcap | Needs evaluation |