Search CVE reports


Toggle filters

41451 – 41460 of 68840 results


CVE-2018-1000226

Medium priority
Fixed

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Incorrect Access Control vulnerability in XMLRPC...

1 affected package

cobbler

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cobbler Not in release Not in release Not in release
Show less packages

CVE-2018-1000225

Medium priority
Fixed

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Cross Site Scripting (XSS) vulnerability in cobbler-web...

1 affected package

cobbler

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cobbler Not in release Not in release Not in release
Show less packages

CVE-2018-1000223

Medium priority

Some fixes available 12 of 13

soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via...

1 affected package

soundtouch

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
soundtouch Fixed Fixed Fixed
Show less packages

CVE-2018-1000221

Medium priority
Not affected

pkgconf version 1.5.0 to 1.5.2 contains a Buffer Overflow vulnerability in dequote() that can result in dequote() function returns 1-byte allocation if initial length is 0, leading to buffer overflow. This attack appear to be...

1 affected package

pkgconf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pkgconf Not affected
Show less packages

CVE-2018-1000217

Medium priority

Not in release

Dave Gamble cJSON version 1.7.3 and earlier contains a CWE-416: Use After Free vulnerability in cJSON library that can result in Possible crash, corruption of data or even RCE. This attack appear to be exploitable via Depends on...

1 affected package

cjson

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cjson Not in release
Show less packages

CVE-2018-1000216

Medium priority

Not in release

Dave Gamble cJSON version 1.7.2 and earlier contains a CWE-415: Double Free vulnerability in cJSON library that can result in Possible crash or RCE. This attack appear to be exploitable via Attacker must be able to force victim to...

1 affected package

cjson

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cjson Not in release
Show less packages

CVE-2018-1000215

Medium priority
Ignored

Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service (DoS). This attack appear to be exploitable via If the attacker can force the data to be printed...

1 affected package

cjson

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cjson Not affected Not affected Not affected Not in release
Show less packages

CVE-2018-1000657

Medium priority
Not affected

Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability...

1 affected package

rustc

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rustc Not affected
Show less packages

CVE-2018-1000656

Low priority
Fixed

The Pallets Project flask version Before 0.12.3 contains a CWE-20: Improper Input Validation vulnerability in flask that can result in Large amount of memory usage possibly leading to denial of service. This attack appear to be...

1 affected package

flask

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flask Not affected Fixed
Show less packages

CVE-2018-1000654

Negligible priority

Some fixes available 1 of 8

GNU Libtasn1-4.13 libtasn1-4.13 version libtasn1-4.13, libtasn1-4.12 contains a DoS, specifically CPU usage will reach 100% when running asn1Paser against the POC due to an issue in _asn1_expand_object_id(p_tree), after a long...

2 affected packages

libtasn1-6, libtasn1-3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libtasn1-6 Not affected Not affected Not affected Not affected Needs evaluation
libtasn1-3 Not in release Not in release Not in release Not in release Not in release
Show less packages