Search CVE reports
211 – 220 of 31528 results
A flaw was found in libssh. During SFTP server directory listing, the longname field is constructed with unsafe concatenation into a fixed-size stack buffer. When a client causes the server to list attacker-controlled filenames,...
1 affected package
libssh
| Package | 26.04 LTS |
|---|---|
| libssh | Needs evaluation |
Not in release
Improper permission enforcement in Checkmk versions 2.5.0 before 2.5.0p9, 2.4.0 before 2.4.0p34, 2.3.0 before 2.3.0p49, and 2.2.0 (EOL) allows users without permissions to view and modify BI packs and rules
1 affected package
check-mk
| Package | 26.04 LTS |
|---|---|
| check-mk | Not in release |
A vulnerability was found in the internal Access Control List (ACL) subsystem of kronosnet (Version affected: <= 1.34). When the framework is explicitly configured to manage dynamic links (accepting network traffic from any IP...
1 affected package
kronosnet
| Package | 26.04 LTS |
|---|---|
| kronosnet | Needs evaluation |
The SyncTeX parser (synctex_parser.c) shipped with TeX Live and embedded by downstream consumers such as GNOME Evince contains a heap use-after-free vulnerability that allows attackers to crash applications or potentially execute...
1 affected package
texlive-bin
| Package | 26.04 LTS |
|---|---|
| texlive-bin | Needs evaluation |
Netty is a network application framework for development of protocol servers and clients. Prior to 4.1.136.Final and 4.2.16.Final, Netty SPDY header decoding continues inflating zlib-compressed header blocks after the raw header...
1 affected package
netty
| Package | 26.04 LTS |
|---|---|
| netty | Needs evaluation |
Netty is a network application framework for development of protocol servers and clients. Prior to 4.1.136.Final and 4.2.16.Final, Netty's SPDY SETTINGS decoder accepts a peer-declared SETTINGS entry count up to the 24-bit...
1 affected package
netty
| Package | 26.04 LTS |
|---|---|
| netty | Needs evaluation |
(Crypt::Password versions through 0.28 for Perl are susceptible to timi ...)
1 affected package
libcrypt-password-perl
| Package | 26.04 LTS |
|---|---|
| libcrypt-password-perl | Needs evaluation |
(FreeRDP before 3.28.0 (affected 3.x through 3.27.1) contains a double- ...)
3 affected packages
freerdp, freerdp2, freerdp3
| Package | 26.04 LTS |
|---|---|
| freerdp | Not in release |
| freerdp2 | Not in release |
| freerdp3 | Needs evaluation |
(FreeRDP before 3.28.0 (affected <=3.27.1) contains a heap-based buffer ...)
3 affected packages
freerdp, freerdp2, freerdp3
| Package | 26.04 LTS |
|---|---|
| freerdp | Not in release |
| freerdp2 | Not in release |
| freerdp3 | Needs evaluation |
(A flaw was found in libcupsfilters and cups-filters. The PNG image rea ...)
2 affected packages
cups-filters, libcupsfilters
| Package | 26.04 LTS |
|---|---|
| cups-filters | Needs evaluation |
| libcupsfilters | Needs evaluation |