Search CVE reports
1 – 7 of 7 results
Cap’n Proto is a data interchange format and capability-based RPC system. In versions 1.0 and 1.0.1, when using the KJ HTTP library with WebSocket compression enabled, a buffer underrun can be caused by a remote peer. The underrun...
1 affected package
capnproto
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
capnproto | Vulnerable | Not affected | Not affected | Not affected |
Cap’n Proto is a data interchange format and remote procedure call (RPC) system. Cap’n Proro prior to versions 0.7.1, 0.8.1, 0.9.2, and 0.10.3, as well as versions of Cap’n Proto’s Rust implementation prior to 0.13.7, 0.14.11, and...
2 affected packages
capnproto, interchange
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
capnproto | Not affected | Ignored | Ignored | Ignored |
interchange | — | Not in release | Not in release | Not in release |
Some fixes available 3 of 6
Sandstorm Cap’n Proto before 0.5.3.1 allows remote crashes related to a compiler optimization. A remote attacker can trigger a segfault in a 32-bit libcapnp application because Cap’n Proto relies on pointer arithmetic calculations...
1 affected package
capnproto
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
capnproto | — | — | — | Fixed |
Some fixes available 1 of 2
Sandstorm Cap’n Proto before 0.4.1.1 and 0.5.x before 0.5.1.2, when an application invokes the totalSize method on an object reader, allows remote peers to cause a denial of service (CPU consumption) via a crafted small message,...
1 affected package
capnproto
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
capnproto | — | — | — | Not affected |
Some fixes available 1 of 2
Sandstorm Cap’n Proto before 0.4.1.1 and 0.5.x before 0.5.1.1 allows remote peers to cause a denial of service (CPU and possibly general resource consumption) via a list with a large number of elements.
1 affected package
capnproto
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
capnproto | — | — | — | Not affected |
Some fixes available 1 of 2
Integer underflow in Sandstorm Cap’n Proto before 0.4.1.1 and 0.5.x before 0.5.1.1 might allow remote peers to cause a denial of service or possibly obtain sensitive information from memory or execute arbitrary code via a crafted message.
1 affected package
capnproto
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
capnproto | — | — | — | Not affected |
Some fixes available 1 of 2
Integer overflow in layout.c++ in Sandstorm Cap’n Proto before 0.4.1.1 and 0.5.x before 0.5.1.1 allows remote peers to cause a denial of service or possibly obtain sensitive information from memory via a crafted message, related...
1 affected package
capnproto
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
capnproto | — | — | — | Not affected |