Search CVE reports
281 – 290 of 49652 results
BusyBox dpkg read_package_field() steps past a NUL terminator on malformed .deb packages, causing an out-of-bounds heap read.
1 affected package
busybox
| Package | 20.04 LTS |
|---|---|
| busybox | Needs evaluation |
BusyBox romfs volume ID parsing uses unbounded strlen on attacker-controlled metadata, causing a heap buffer overflow when processing crafted filesystem images.
1 affected package
busybox
| Package | 20.04 LTS |
|---|---|
| busybox | Needs evaluation |
BusyBox httpd IP deny rules with invalid CIDR prefix lengths fail open, leaving a parsed IP with a zeroed mask so the rule matches no clients.
1 affected package
busybox
| Package | 20.04 LTS |
|---|---|
| busybox | Needs evaluation |
A unit confusion in BusyBox TLS Montgomery reduction buffer allocation causes a pre-authentication heap buffer overflow when processing a crafted ClientKeyExchange message.
1 affected package
busybox
| Package | 20.04 LTS |
|---|---|
| busybox | Needs evaluation |
[Fix FetchHashKeyName on IV/NV]
1 affected package
libdbi-perl
| Package | 20.04 LTS |
|---|---|
| libdbi-perl | Needs evaluation |
[Fix DBI::sql_type_cast on IV/NV]
1 affected package
libdbi-perl
| Package | 20.04 LTS |
|---|---|
| libdbi-perl | Needs evaluation |
(Mini-XML 4.0.5 contains a memory leak vulnerability in mxml_load_data( ...)
1 affected package
mxml
| Package | 20.04 LTS |
|---|---|
| mxml | Needs evaluation |
(OpenEXR 3.4.14 contains a NULL Pointer Dereference in the C++ attribut ...)
1 affected package
openexr
| Package | 20.04 LTS |
|---|---|
| openexr | Needs evaluation |
(hiredis commit 29ea279 (post-v1.5.0) contains an uncontrolled memory a ...)
1 affected package
hiredis
| Package | 20.04 LTS |
|---|---|
| hiredis | Needs evaluation |
(libde265 commit 4d45a6b contains a NULL pointer dereference vulnerabil ...)
1 affected package
libde265
| Package | 20.04 LTS |
|---|---|
| libde265 | Needs evaluation |