Search CVE reports
1411 – 1420 of 44409 results
(libexpat before 2.7.6 uses insufficient entropy, and thus hash floodin ...)
23 affected packages
expat, apache2, apr-util, cmake, ghostscript...
| Package | 18.04 LTS |
|---|---|
| expat | Needs evaluation |
| apache2 | Not affected |
| apr-util | Not affected |
| cmake | Not affected |
| ghostscript | Not affected |
| texlive-bin | Not affected |
| xmlrpc-c | Needs evaluation |
| vnc4 | Needs evaluation |
| wbxml2 | Needs evaluation |
| swish-e | Needs evaluation |
| insighttoolkit4 | Needs evaluation |
| cadaver | Needs evaluation |
| gdcm | Needs evaluation |
| ayttm | — |
| cableswig | — |
| coin3 | Needs evaluation |
| matanza | Needs evaluation |
| tdom | Needs evaluation |
| vtk | — |
| smart | Needs evaluation |
| firefox | — |
| thunderbird | — |
| libxmltok | Needs evaluation |
(MuPDF mutool does not sanitize PDF metadata fields before writing them ...)
1 affected package
mupdf
| Package | 18.04 LTS |
|---|---|
| mupdf | Needs evaluation |
pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large...
2 affected packages
pypdf, pypdf2
| Package | 18.04 LTS |
|---|---|
| pypdf | — |
| pypdf2 | Needs evaluation |
Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did not limit the amount of GZIP-compressed data read when decoding a FITS image, making them vulnerable to decompression bomb attacks. A specially crafted FITS...
2 affected packages
pillow, pillow-python2
| Package | 18.04 LTS |
|---|---|
| pillow | Not affected |
| pillow-python2 | — |
(Prometheus is an open-source monitoring system and time series databas ...)
1 affected package
prometheus
| Package | 18.04 LTS |
|---|---|
| prometheus | Needs evaluation |
(Allocation of resources without limits or throttling vulnerability in ...)
1 affected package
bouncycastle
| Package | 18.04 LTS |
|---|---|
| bouncycastle | Needs evaluation |
(Improper neutralization of special elements used in an LDAP query ('LD ...)
1 affected package
bouncycastle
| Package | 18.04 LTS |
|---|---|
| bouncycastle | Needs evaluation |
(Insufficient checks of the RMP on host buffer access in IOMMU may allo ...)
1 affected package
amd64-microcode
| Package | 18.04 LTS |
|---|---|
| amd64-microcode | Needs evaluation |
openCryptoki is a PKCS#11 library and provides tooling for Linux and AIX. In versions 3.26.0 and below, the BER/DER decoding functions in the shared common library (asn1.c) accept a raw pointer but no buffer length parameter, and...
1 affected package
opencryptoki
| Package | 18.04 LTS |
|---|---|
| opencryptoki | Needs evaluation |
zlib is a Ruby interface for the zlib compression/decompression library. Versions 3.0.0 and below, 3.1.0, 3.1.1, 3.2.0 and 3.2.1 contain a buffer overflow vulnerability in the Zlib::GzipReader. The zstream_buffer_ungets function...
7 affected packages
ruby2.3, ruby2.5, ruby2.7, ruby3.0, ruby3.2...
| Package | 18.04 LTS |
|---|---|
| ruby2.3 | — |
| ruby2.5 | Needs evaluation |
| ruby2.7 | — |
| ruby3.0 | — |
| ruby3.2 | — |
| ruby3.3 | — |
| jruby | Needs evaluation |