Search CVE reports
111 – 120 of 59015 results
(An out-of-bounds write in the connection-monitoring logic of the Mongo ...)
1 affected package
pymongo
| Package | 16.04 LTS |
|---|---|
| pymongo | Needs evaluation |
(Deserialization of untrusted data in the command monitoring support of ...)
1 affected package
pymongo
| Package | 16.04 LTS |
|---|---|
| pymongo | Needs evaluation |
alsa-lib through 1.2.16.1 contains a denial of service vulnerability in the multi PCM plugin that fails to validate sparse binding indices before array access. Attackers can supply a malicious ALSA configuration file with sparse...
1 affected package
alsa-lib
| Package | 16.04 LTS |
|---|---|
| alsa-lib | Needs evaluation |
alsa-lib through 1.2.16.1 computes combined topology element size using 32-bit arithmetic in src/topology/ctl.c, allowing integer overflow that defeats bounds checks. Attackers can supply crafted topology files that wrap size...
1 affected package
alsa-lib
| Package | 16.04 LTS |
|---|---|
| alsa-lib | Needs evaluation |
FFmpeg before 9.0 has a signed integer overflow in libavformat/mov.c. In mov_read_ispe(), uint32_t width/height values from a crafted HEIF ispe box are stored into signed int fields without bounds checking, allowing...
2 affected packages
ffmpeg, libav
| Package | 16.04 LTS |
|---|---|
| ffmpeg | Needs evaluation |
| libav | — |
A one-byte out-of-bounds heap read flaw was found in GIMP's uncompressed DDS image loader. When a user opens an uncompressed DDS image, the file-dds plug-in performs an unconditional one-byte look-ahead after processing the final...
1 affected package
gimp
| Package | 16.04 LTS |
|---|---|
| gimp | Needs evaluation |
An out-of-bounds heap read flaw was found in GIMP's TIM image loader. When a user opens a crafted 4bpp TIM image that causes promotion to an RGBA layer, the file-tim plug-in allocates an undersized row buffer but processes it...
1 affected package
gimp
| Package | 16.04 LTS |
|---|---|
| gimp | Needs evaluation |
A flaw was found in sudo. When sudoers rules use NOTBEFORE or NOTAFTER time-based access restrictions with timestamps that omit the trailing 'Z' timezone indicator, the time evaluation relies on the TZ environment variable...
1 affected package
sudo
| Package | 16.04 LTS |
|---|---|
| sudo | Needs evaluation |
A code execution flaw was found in Emacs, affecting versions prior to 31.2. The Flymake mode using language backends other than Lisp would execute arbitrary code from the edited file while performing syntax checking. Viewing or...
5 affected packages
emacs, xemacs21, xemacs21-packages, emacs24, emacs25
| Package | 16.04 LTS |
|---|---|
| emacs | — |
| xemacs21 | Needs evaluation |
| xemacs21-packages | Needs evaluation |
| emacs24 | Needs evaluation |
| emacs25 | — |
[Unknown description]
1 affected package
lemonldap-ng
| Package | 16.04 LTS |
|---|---|
| lemonldap-ng | Needs evaluation |