Search CVE reports


Toggle filters

41291 – 41300 of 69301 results


CVE-2018-16847

Medium priority
Fixed

An OOB heap buffer r/w access issue was found in the NVM Express Controller emulation in QEMU. It could occur in nvme_cmb_ops routines in nvme device. A guest user/process could use this flaw to crash the QEMU process resulting in...

2 affected packages

qemu, qemu-kvm

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qemu Fixed
qemu-kvm Not in release
Show less packages

CVE-2018-3977

Medium priority

Some fixes available 4 of 5

An exploitable code execution vulnerability exists in the XCF image rendering functionality of SDL2_image-2.0.3. A specially crafted XCF image can cause a heap overflow, resulting in code execution. An attacker can display a...

2 affected packages

libsdl2-image, sdl-image1.2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl2-image Not affected Not affected Not affected
sdl-image1.2 Not affected Not affected Fixed
Show less packages

CVE-2018-14660

Medium priority

Some fixes available 1 of 2

A flaw was found in glusterfs server through versions 4.1.4 and 3.1.2 which allowed repeated usage of GF_META_LOCK_KEY xattr. A remote, authenticated attacker could use this flaw to create multiple locks for single inode by using...

1 affected package

glusterfs

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
glusterfs Not affected Not affected Fixed
Show less packages

CVE-2016-2120

Medium priority
Ignored

An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authorized user to crash the server by inserting a specially crafted record in a zone under their control then sending...

1 affected package

pdns

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pdns Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2018-18883

Medium priority
Vulnerable

An issue was discovered in Xen 4.9.x through 4.11.x, on Intel x86 platforms, allowing x86 HVM and PVH guests to cause a host OS denial of service (NULL pointer dereference) or possibly have unspecified other impact because nested...

1 affected package

xen

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xen Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2018-14651

Medium priority

Some fixes available 3 of 4

It was found that the fix for CVE-2018-10927, CVE-2018-10928, CVE-2018-10929, CVE-2018-10930, and CVE-2018-10926 was incomplete. A remote, authenticated attacker could use one of these flaws to execute arbitrary code, create...

1 affected package

glusterfs

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
glusterfs Not affected Not affected Fixed
Show less packages

CVE-2016-6328

Low priority

Some fixes available 2 of 5

A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some critical heap chunk metadata, even...

1 affected package

libexif

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libexif Not affected
Show less packages

CVE-2018-14661

Medium priority

Some fixes available 3 of 4

It was found that usage of snprintf function in feature/locks translator of glusterfs server 3.8.4, as shipped with Red Hat Gluster Storage, was vulnerable to a format string attack. A remote, authenticated attacker could use this...

1 affected package

glusterfs

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
glusterfs Not affected Not affected Fixed
Show less packages

CVE-2018-11759

Medium priority
Not affected

The Apache Web Server (httpd) specific code that normalised the requested path before matching it to the URI-worker map in Apache Tomcat JK (mod_jk) Connector 1.2.0 to 1.2.44 did not handle some edge cases correctly. If only a...

1 affected package

libapache-mod-jk

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libapache-mod-jk Not affected Not affected
Show less packages

CVE-2018-14659

Medium priority

Some fixes available 3 of 4

The Gluster file system through versions 4.1.4 and 3.1.2 is vulnerable to a denial of service attack via use of the 'GF_XATTR_IOSTATS_DUMP_KEY' xattr. A remote, authenticated attacker could exploit this by mounting a...

1 affected package

glusterfs

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
glusterfs Not affected Not affected Fixed
Show less packages