Search CVE reports


Toggle filters

1 – 2 of 2 results


CVE-2022-46871

Medium priority

Some fixes available 11 of 20

An out of date library (libusrsctp) contained vulnerabilities that could potentially be exploited. This vulnerability affects Firefox < 108.

8 affected packages

firefox, libusrsctp, mozjs38, mozjs52, mozjs68...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Not affected Not affected Fixed Fixed
libusrsctp Not affected Not affected Vulnerable Not in release
mozjs38 Not in release Not in release Ignored
mozjs52 Not in release Ignored Ignored
mozjs68 Not in release Ignored Not in release
mozjs78 Not in release Ignored Not in release Not in release
mozjs91 Ignored Not in release Not in release
thunderbird Fixed Fixed Fixed Fixed
Show all 8 packages Show less packages

CVE-2019-20503

Medium priority

Some fixes available 30 of 42

usrsctp before 2019-12-20 has out-of-bounds reads in sctp_load_addresses_from_init.

4 affected packages

chromium-browser, firefox, libusrsctp, thunderbird

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected Not affected Fixed
firefox Fixed Fixed Fixed Fixed
libusrsctp Needs evaluation Needs evaluation Needs evaluation Not in release
thunderbird Fixed Fixed Fixed Fixed
Show less packages