Search CVE reports
11 – 16 of 16 results
In klibc 1.5.20 and 1.5.21, the DHCP options written by ipconfig to /tmp/net-$DEVICE.conf are not properly escaped. This may allow a remote attacker to send a specially crafted DHCP reply which could execute arbitrary code with...
1 affected package
klibc
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| klibc | — | — | — | — | — |
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-1930. Reason: This candidate is a reservation duplicate of CVE-2011-1930. Notes: All CVE users should reference CVE-2011-1930 instead of this candidate. ...
1 affected package
klibc
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| klibc | — | — | — | — | — |
Some fixes available 27 of 42
The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.
4 affected packages
zsync, klibc, rsync, zlib
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| zsync | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| klibc | Fixed | Fixed | Fixed | Fixed | Fixed |
| rsync | Fixed | Fixed | Fixed | Fixed | Fixed |
| zlib | Not affected | Not affected | Not affected | Not affected | Not affected |
Some fixes available 18 of 32
The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers.
4 affected packages
zsync, klibc, rsync, zlib
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| zsync | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| klibc | Not affected | Not affected | Not affected | Not affected | Not affected |
| rsync | Fixed | Fixed | Fixed | Fixed | Fixed |
| zlib | Not affected | Not affected | Not affected | Not affected | Not affected |
Some fixes available 29 of 42
inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
4 affected packages
zsync, klibc, rsync, zlib
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| zsync | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| klibc | Fixed | Fixed | Fixed | Fixed | Fixed |
| rsync | Fixed | Fixed | Fixed | Fixed | Fixed |
| zlib | Not affected | Not affected | Not affected | Not affected | Not affected |
Some fixes available 29 of 42
inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
4 affected packages
zsync, klibc, rsync, zlib
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| zsync | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| klibc | Fixed | Fixed | Fixed | Fixed | Fixed |
| rsync | Fixed | Fixed | Fixed | Fixed | Fixed |
| zlib | Not affected | Not affected | Not affected | Not affected | Not affected |