Search CVE reports
11 – 20 of 57083 results
A vulnerability was found in the libsoup package. This flaw stems from its failure to correctly verify the termination of multipart HTTP messages. This can allow a remote attacker to send a specially crafted multipart HTTP body,...
2 affected packages
libsoup2.4, libsoup3
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libsoup2.4 | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
libsoup3 | Vulnerable | Vulnerable | Not in release | — |
jq is a command-line JSON processor. In versions up to and including 1.7.1, a heap-buffer-overflow is present in function `jv_string_vfmt` in the jq_fuzz_execute harness from oss-fuzz. This crash happens on file jv.c, line 1456...
1 affected package
jq
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
jq | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Versions up to and including 2.9.8 are vulnerable to denial of service in one special case (in stable...
1 affected package
modsecurity
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
modsecurity | Needs evaluation | Needs evaluation | Needs evaluation | — |
containerd is an open-source container runtime. A bug was found in the containerd’s CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn’t put usernamespaced containers under...
2 affected packages
containerd, containerd-app
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
containerd | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
containerd-app | Needs evaluation | Needs evaluation | Needs evaluation | — |
The x509 application adds trusted use instead of rejected use
4 affected packages
edk2, nodejs, openssl, openssl1.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
edk2 | Not affected | Not affected | Not affected | Not affected |
nodejs | Not affected | Not affected | Not affected | Not affected |
openssl | Not affected | Not affected | Not affected | Not affected |
openssl1.0 | Not in release | Not in release | Not in release | Not affected |
IEEE P802.11-REVme D1.1 through D7.0 allows FragAttacks against mesh networks. In mesh networks using Wi-Fi Protected Access (WPA, WPA2, or WPA3) or Wired Equivalent Privacy (WEP), an adversary can exploit this vulnerability to...
132 affected packages
linux, linux-allwinner-5.19, linux-aws, linux-aws-5.0, linux-aws-5.11...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
linux-allwinner-5.19 | Not in release | Ignored | Not in release | — |
linux-aws | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
linux-aws-5.0 | Not in release | Not in release | Not in release | Ignored |
linux-aws-5.11 | Not in release | Not in release | Ignored | — |
linux-aws-5.13 | Not in release | Not in release | Ignored | — |
linux-aws-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-aws-5.19 | Not in release | Ignored | Not in release | — |
linux-aws-5.3 | Not in release | Not in release | Not in release | Ignored |
linux-aws-5.4 | Not in release | Not in release | Not in release | Needs evaluation |
linux-aws-5.8 | Not in release | Not in release | Ignored | — |
linux-aws-6.2 | Not in release | Ignored | Not in release | — |
linux-aws-6.5 | Not in release | Ignored | Not in release | — |
linux-aws-6.8 | Not in release | Needs evaluation | Not in release | — |
linux-aws-fips | Not in release | Needs evaluation | Needs evaluation | Needs evaluation |
linux-aws-hwe | Not in release | Not in release | Not in release | — |
linux-azure | Needs evaluation | Needs evaluation | Needs evaluation | Ignored |
linux-azure-4.15 | Not in release | Not in release | Not in release | Needs evaluation |
linux-azure-5.11 | Not in release | Not in release | Ignored | — |
linux-azure-5.13 | Not in release | Not in release | Ignored | — |
linux-azure-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-azure-5.19 | Not in release | Ignored | Not in release | — |
linux-azure-5.3 | Not in release | Not in release | Not in release | Ignored |
linux-azure-5.4 | Not in release | Not in release | Not in release | Needs evaluation |
linux-azure-5.8 | Not in release | Not in release | Ignored | — |
linux-azure-6.11 | Needs evaluation | Not in release | Not in release | — |
linux-azure-6.2 | Not in release | Ignored | Not in release | — |
linux-azure-6.5 | Not in release | Ignored | Not in release | — |
linux-azure-6.8 | Not in release | Needs evaluation | Not in release | — |
linux-azure-edge | Not in release | Not in release | Not in release | Ignored |
linux-azure-fde | Not in release | Needs evaluation | Ignored | — |
linux-azure-fde-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-azure-fde-5.19 | Not in release | Ignored | Not in release | — |
linux-azure-fde-6.2 | Not in release | Ignored | Not in release | — |
linux-azure-fips | Not in release | Needs evaluation | Needs evaluation | Needs evaluation |
linux-azure-nvidia | Needs evaluation | Not in release | Not in release | — |
linux-bluefield | Not in release | Not in release | Needs evaluation | — |
linux-fips | Not in release | Needs evaluation | Needs evaluation | Needs evaluation |
linux-gcp | Needs evaluation | Needs evaluation | Needs evaluation | Ignored |
linux-gcp-4.15 | Not in release | Not in release | Not in release | Needs evaluation |
linux-gcp-5.11 | Not in release | Not in release | Ignored | — |
linux-gcp-5.13 | Not in release | Not in release | Ignored | — |
linux-gcp-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-gcp-5.19 | Not in release | Ignored | Not in release | — |
linux-gcp-5.3 | Not in release | Not in release | Not in release | Ignored |
linux-gcp-5.4 | Not in release | Not in release | Not in release | Needs evaluation |
linux-gcp-5.8 | Not in release | Not in release | Ignored | — |
linux-gcp-6.11 | Needs evaluation | Not in release | Not in release | — |
linux-gcp-6.2 | Not in release | Ignored | Not in release | — |
linux-gcp-6.5 | Not in release | Ignored | Not in release | — |
linux-gcp-6.8 | Not in release | Needs evaluation | Not in release | — |
linux-gcp-fips | Not in release | Needs evaluation | Needs evaluation | Needs evaluation |
linux-gke | Needs evaluation | Needs evaluation | Ignored | — |
linux-gke-4.15 | Not in release | Not in release | Not in release | Ignored |
linux-gke-5.15 | Not in release | Not in release | Ignored | — |
linux-gke-5.4 | Not in release | Not in release | Not in release | Ignored |
linux-gkeop | Needs evaluation | Needs evaluation | Ignored | — |
linux-gkeop-5.15 | Not in release | Not in release | Ignored | — |
linux-gkeop-5.4 | Not in release | Not in release | Not in release | Ignored |
linux-hwe | Not in release | Not in release | Not in release | Ignored |
linux-hwe-5.11 | Not in release | Not in release | Ignored | — |
linux-hwe-5.13 | Not in release | Not in release | Ignored | — |
linux-hwe-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-hwe-5.19 | Not in release | Ignored | Not in release | — |
linux-hwe-5.4 | Not in release | Not in release | Not in release | Needs evaluation |
linux-hwe-5.8 | Not in release | Not in release | Ignored | — |
linux-hwe-6.11 | Needs evaluation | Not in release | Not in release | — |
linux-hwe-6.2 | Not in release | Ignored | Not in release | — |
linux-hwe-6.5 | Not in release | Ignored | Not in release | — |
linux-hwe-6.8 | Not in release | Needs evaluation | Not in release | — |
linux-hwe-edge | Not in release | Not in release | Not in release | Ignored |
linux-ibm | Needs evaluation | Needs evaluation | Needs evaluation | — |
linux-ibm-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-ibm-5.4 | Not in release | Not in release | Not in release | Needs evaluation |
linux-intel-5.13 | Not in release | Not in release | Ignored | — |
linux-intel-iot-realtime | Not in release | Needs evaluation | Not in release | — |
linux-intel-iotg | Not in release | Needs evaluation | Not in release | — |
linux-intel-iotg-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-iot | Not in release | Not in release | Needs evaluation | — |
linux-kvm | Not in release | Needs evaluation | Needs evaluation | Needs evaluation |
linux-lowlatency | Needs evaluation | Needs evaluation | Not in release | — |
linux-lowlatency-hwe-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-lowlatency-hwe-5.19 | Not in release | Ignored | Not in release | — |
linux-lowlatency-hwe-6.11 | Needs evaluation | Not in release | Not in release | — |
linux-lowlatency-hwe-6.2 | Not in release | Ignored | Not in release | — |
linux-lowlatency-hwe-6.5 | Not in release | Ignored | Not in release | — |
linux-lowlatency-hwe-6.8 | Not in release | Needs evaluation | Not in release | — |
linux-lts-xenial | Not in release | Not in release | Not in release | — |
linux-nvidia | Needs evaluation | Needs evaluation | Not in release | — |
linux-nvidia-6.2 | Not in release | Ignored | Not in release | — |
linux-nvidia-6.5 | Not in release | Ignored | Not in release | — |
linux-nvidia-6.8 | Not in release | Needs evaluation | Not in release | — |
linux-nvidia-lowlatency | Needs evaluation | Not in release | Not in release | — |
linux-nvidia-tegra | Needs evaluation | Needs evaluation | Not in release | — |
linux-nvidia-tegra-igx | Not in release | Needs evaluation | Not in release | — |
linux-oem | Not in release | Not in release | Not in release | Ignored |
linux-oem-5.10 | Not in release | Not in release | Ignored | — |
linux-oem-5.13 | Not in release | Not in release | Ignored | — |
linux-oem-5.14 | Not in release | Not in release | Ignored | — |
linux-oem-5.17 | Not in release | Ignored | Not in release | — |
linux-oem-5.6 | Not in release | Not in release | Ignored | — |
linux-oem-6.0 | Not in release | Ignored | Not in release | — |
linux-oem-6.1 | Not in release | Ignored | Not in release | — |
linux-oem-6.11 | Needs evaluation | Not in release | Not in release | — |
linux-oem-6.5 | Not in release | Ignored | Not in release | — |
linux-oem-6.8 | Needs evaluation | Not in release | Not in release | — |
linux-oracle | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
linux-oracle-5.0 | Not in release | Not in release | Not in release | Ignored |
linux-oracle-5.11 | Not in release | Not in release | Ignored | — |
linux-oracle-5.13 | Not in release | Not in release | Ignored | — |
linux-oracle-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-oracle-5.3 | Not in release | Not in release | Not in release | Ignored |
linux-oracle-5.4 | Not in release | Not in release | Not in release | Needs evaluation |
linux-oracle-5.8 | Not in release | Not in release | Ignored | — |
linux-oracle-6.5 | Not in release | Ignored | Not in release | — |
linux-oracle-6.8 | Not in release | Needs evaluation | Not in release | — |
linux-raspi | Needs evaluation | Needs evaluation | Needs evaluation | — |
linux-raspi-5.4 | Not in release | Not in release | Not in release | Needs evaluation |
linux-raspi-realtime | Needs evaluation | Not in release | Not in release | — |
linux-raspi2 | Not in release | Not in release | Ignored | — |
linux-realtime | Needs evaluation | Needs evaluation | Not in release | — |
linux-riscv | Needs evaluation | Ignored | Ignored | — |
linux-riscv-5.11 | Not in release | Not in release | Ignored | — |
linux-riscv-5.15 | Not in release | Not in release | Needs evaluation | — |
linux-riscv-5.19 | Not in release | Ignored | Not in release | — |
linux-riscv-5.8 | Not in release | Not in release | Ignored | — |
linux-riscv-6.5 | Not in release | Ignored | Not in release | — |
linux-riscv-6.8 | Not in release | Needs evaluation | Not in release | — |
linux-starfive-5.19 | Not in release | Ignored | Not in release | — |
linux-starfive-6.2 | Not in release | Ignored | Not in release | — |
linux-starfive-6.5 | Not in release | Ignored | Not in release | — |
linux-xilinx-zynqmp | Not in release | Needs evaluation | Needs evaluation | — |
Argument injection in special agent configuration in Checkmk <2.4.0p1, <2.3.0p32, <2.2.0p42 and 2.1.0 allows authenticated attackers to write arbitrary files
1 affected package
check-mk
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
check-mk | Not in release | Not in release | Not in release | Needs evaluation |
jq is a command-line JSON processor. In versions up to and including 1.7.1, an integer overflow arises when assigning value using an index of 2147483647, the signed integer limit. This causes a denial of service. Commit...
1 affected package
jq
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
jq | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
Stack overflow leading to DoS can be triggered by a malicious authenticated client in Clickhouse before 19.14.3.3.
1 affected package
clickhouse
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
clickhouse | Needs evaluation | Not in release | Needs evaluation | — |
DNS message with invalid TSIG causes an assertion failure
3 affected packages
bind9, bind9-libs, isc-dhcp
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
bind9 | Not affected | Not affected | Not affected | Not affected |
bind9-libs | Not in release | Not affected | Not affected | — |
isc-dhcp | Not affected | Not affected | Not affected | Not affected |