Search CVE reports
1 – 6 of 6 results
The icaltime_from_string function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted string to the icalparser_parse_string function.
1 affected package
libical
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libical | Not in release | Not in release | Not in release | Not in release | Vulnerable |
The parser_get_next_char function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (out-of-bounds heap read) by crafting a string to the icalparser_parse_string function.
1 affected package
libical
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libical | Not in release | Not in release | Not in release | Not in release | Vulnerable |
The icalparser_parse_string function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted ics file.
1 affected package
libical
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libical | Not in release | Not in release | Not in release | Not in release | Vulnerable |
The icalproperty_new_clone function in libical 0.47 and 1.0 allows remote attackers to cause a denial of service (use-after-free) via a crafted ics file.
1 affected package
libical
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libical | Not in release | Not in release | Not in release | Not in release | Vulnerable |
Some fixes available 19 of 28
libical 1.0 allows remote attackers to cause a denial of service (use-after-free) via a crafted ics file.
2 affected packages
libical, thunderbird
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libical | Not in release | Not in release | Not in release | Not in release | Vulnerable |
| thunderbird | Fixed | Fixed | Fixed | Fixed | Fixed |
libical allows remote attackers to cause a denial of service (use-after-free) and possibly read heap memory via a crafted ics file.
2 affected packages
libical, libical3
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libical | Not in release | Not in release | Not in release | Not in release | Vulnerable |
| libical3 | Not affected | Not affected | Not affected | Not affected | Not affected |