Search CVE reports


Toggle filters

1 – 8 of 8 results


CVE-2024-34403

Medium priority
Needs evaluation

An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a long string.

1 affected package

uriparser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
uriparser Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-34402

Medium priority
Needs evaluation

An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long keys or values, with a resultant buffer overflow.

1 affected package

uriparser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
uriparser Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2021-46142

Medium priority

Some fixes available 4 of 6

An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriNormalizeSyntax.

1 affected package

uriparser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
uriparser Not affected Not affected Fixed Fixed Fixed
Show less packages

CVE-2021-46141

Medium priority

Some fixes available 4 of 6

An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriFreeUriMembers and uriMakeOwner.

1 affected package

uriparser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
uriparser Not affected Not affected Fixed Fixed Fixed
Show less packages

CVE-2018-20721

Medium priority
Fixed

URI_FUNC() in UriParse.c in uriparser before 0.9.1 has an out-of-bounds read (in uriParse*Ex* functions) for an incomplete URI with an IPv6 address containing an embedded IPv4 address, such as a "//[::44.1" address.

1 affected package

uriparser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
uriparser Not affected Not affected Fixed Fixed
Show less packages

CVE-2018-19200

Medium priority

Some fixes available 4 of 5

An issue was discovered in uriparser before 0.9.0. UriCommon.c allows attempted operations on NULL input via a uriResetUri* function.

1 affected package

uriparser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
uriparser Not affected Not affected Fixed Fixed
Show less packages

CVE-2018-19199

Medium priority

Some fixes available 4 of 5

An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an integer overflow via a uriComposeQuery* or uriComposeQueryEx* function because of an unchecked multiplication.

1 affected package

uriparser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
uriparser Not affected Not affected Fixed Fixed
Show less packages

CVE-2018-19198

Medium priority

Some fixes available 4 of 5

An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an out-of-bounds write via a uriComposeQuery* or uriComposeQueryEx* function because the '&' character is mishandled in certain contexts.

1 affected package

uriparser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
uriparser Not affected Not affected Fixed Fixed
Show less packages