Search CVE reports
1 – 10 of 52646 results
[Unknown description]
1 affected package
libvirt
| Package | 16.04 LTS |
|---|---|
| libvirt | Needs evaluation |
Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: from 1.3.0 through 1.6.3.
1 affected package
apr-util
| Package | 16.04 LTS |
|---|---|
| apr-util | Needs evaluation |
Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility redis client. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3. Users are recommended to upgrade to version 1.6.4, which fixes...
1 affected package
apr-util
| Package | 16.04 LTS |
|---|---|
| apr-util | Needs evaluation |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Portable Runtime Utility via apr_dbd_oracle provider. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3
1 affected package
apr-util
| Package | 16.04 LTS |
|---|---|
| apr-util | Needs evaluation |
A bug in APR-util version 1.6.3 (and earlier) allows a stack recursion attack against any library consumer which parses XML from untrusted sources and uses theĀ apr_xml_quote_elem() function. Users are recommended to upgrade to...
1 affected package
apr-util
| Package | 16.04 LTS |
|---|---|
| apr-util | Needs evaluation |
A flaw was found in p11-kit. A local attacker, or one with equivalent access to a reachable RPC channel, could exploit an integer overflow vulnerability. By sending specially crafted messages, the attacker can cause the system to...
1 affected package
p11-kit
| Package | 16.04 LTS |
|---|---|
| p11-kit | Needs evaluation |
APR-util versions 1.6.3 (and earlier) function apr_password_validate() was not constant-time with regards to hashes or passwords comparisons, potentially leaking their content via a side channel timing attack particularly on...
1 affected package
apr-util
| Package | 16.04 LTS |
|---|---|
| apr-util | Needs evaluation |
(An integer underflow was found in the popt library when formatting hel ...)
1 affected package
popt
| Package | 16.04 LTS |
|---|---|
| popt | Needs evaluation |
In OpenStack Neutron before 28.0.2, the subnetpool onboarding API does not verify ownership of the target subnets. An authenticated user can onboard subnets from another project's shared network into their own subnetpool, mutating...
1 affected package
neutron
| Package | 16.04 LTS |
|---|---|
| neutron | Needs evaluation |
[Font Server Client encoding Out-Of-Bounds Read/Write]
2 affected packages
libxfont, libxfont2
| Package | 16.04 LTS |
|---|---|
| libxfont | Needs evaluation |
| libxfont2 | Needs evaluation |