Your submission was sent successfully! Close

Thank you for contacting us. A member of our team will be in touch shortly. Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

1 – 10 of 21 results


CVE-2020-0093

Low priority

Some fixes available 5 of 19

In exif_data_save_data_entry of exif-data.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is...

2 affected packages

libexif, sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libexif Not affected Not affected Fixed Fixed Fixed
sleuthkit Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2020-10233

Medium priority
Needs evaluation

In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a heap-based buffer over-read in ntfs_dinode_lookup in fs/ntfs.c.

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2020-10232

Medium priority
Vulnerable

In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a stack buffer overflow vulnerability in the YAFFS file timestamp parsing logic in yaffsfs_istat() in fs/yaffs.c.

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Not affected Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2019-14532

Low priority
Vulnerable

An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off-by-one overwrite due to an underflow on tools/hashtools/hfind.cpp while using a bogus hash table.

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2019-14531

Low priority
Vulnerable

An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an out of bounds read on iso9660 while parsing System Use Sharing Protocol data in fs/iso9660.c.

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2019-1010065

Medium priority
Vulnerable

The Sleuth Kit 4.6.0 and earlier is affected by: Integer Overflow. The impact is: Opening crafted disk image triggers crash in tsk/fs/hfs_dent.c:237. The component is: Overflow in fls tool used on HFS image. Bug is in tsk/fs/hfs.c...

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Not affected Not affected Not affected Vulnerable Vulnerable
Show less packages

CVE-2018-19497

Medium priority
Vulnerable

In The Sleuth Kit (TSK) through 4.6.4, hfs_cat_traverse in tsk/fs/hfs.c does not properly determine when a key length is too large, which allows attackers to cause a denial of service (SEGV on unknown address with READ memory...

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Not affected Not affected Not affected Vulnerable Not affected
Show less packages

CVE-2018-11740

Medium priority
Vulnerable

An issue was discovered in libtskbase.a in The Sleuth Kit (TSK) from release 4.0.2 through to 4.6.1. An out-of-bounds read of a memory region was found in the function tsk_UTF16toUTF8 in tsk/base/tsk_unicode.c which could be...

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2018-11739

Medium priority
Vulnerable

An issue was discovered in libtskimg.a in The Sleuth Kit (TSK) from release 4.0.2 through to 4.6.1. An out-of-bounds read of a memory region was found in the function raw_read in tsk/img/raw.c which could be leveraged by...

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2018-11738

Medium priority
Vulnerable

An issue was discovered in libtskfs.a in The Sleuth Kit (TSK) from release 4.0.2 through to 4.6.1. An out-of-bounds read of a memory region was found in the function ntfs_make_data_run in tsk/fs/ntfs.c which could be leveraged by...

1 affected packages

sleuthkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sleuthkit Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages