Search CVE reports
541 – 550 of 47985 results
OOM Denial of Service via Unbounded Map Pre-Sizing in Apache OpenNLP SymSpellModelSerializer Versions Affected: - 3.0.0-M4 - 3.0.0-M5 (The opennlp-spellcheck extension was introduced in 3.0.0-M4. Releases 1.x and 2.x do not...
1 affected package
apache-opennlp
| Package | 20.04 LTS |
|---|---|
| apache-opennlp | Needs evaluation |
A flaw was found in libtiff. A heap-buffer overflow vulnerability exists in the `tiff2pdf` utility due to an integer truncation error when processing crafted BigTIFF files. An attacker can provide a specially crafted BigTIFF file,...
5 affected packages
tiff, qtwebengine-opensource-src, texmaker, gdal, neuron
| Package | 20.04 LTS |
|---|---|
| tiff | Needs evaluation |
| qtwebengine-opensource-src | Needs evaluation |
| texmaker | Needs evaluation |
| gdal | Not affected |
| neuron | Needs evaluation |
SPIP before 4.4.18 contains a mass assignment vulnerability in the editer_objet action that allows unauthenticated attackers to write arbitrary rows to any SQL table lacking a champs_editables allowlist by supplying an...
1 affected package
spip
| Package | 20.04 LTS |
|---|---|
| spip | Needs evaluation |
SPIP before version 4.4.18 contains a missing authorization vulnerability in sensitive actions under ecrire/action/ that allows unauthenticated attackers to invoke privileged actions by supplying only a valid CSRF nonce without...
1 affected package
spip
| Package | 20.04 LTS |
|---|---|
| spip | Needs evaluation |
SPIP before 4.4.18 contains an unauthenticated blind SQL injection vulnerability in the SQL escaping layer that allows unauthenticated attackers to inject arbitrary SQL by supplying a crafted annee parameter value matching a word...
1 affected package
spip
| Package | 20.04 LTS |
|---|---|
| spip | Needs evaluation |
jackson-databind binds a JSON string to a javax.xml.datatype.Duration or javax.xml.datatype.XMLGregorianCalendar field by passing the raw string verbatim to DatatypeFactory.newDuration(value) or newXMLGregorianCalendar(value) in...
1 affected package
jackson-databind
| Package | 20.04 LTS |
|---|---|
| jackson-databind | Needs evaluation |
A symlink-following flaw was found in libvirt's qemuTPMEmulatorPrepareHost() function. The function uses a path-based chown() on the swtpm logfile without checking for symbolic links. A local attacker with access to the swtpm...
2 affected packages
libvirt, libvirt-hwe
| Package | 20.04 LTS |
|---|---|
| libvirt | Needs evaluation |
| libvirt-hwe | — |
(Netty versions 4.1.133.Final through 4.1.137.Final and 4.2.13.Final th ...)
1 affected package
netty
| Package | 20.04 LTS |
|---|---|
| netty | Needs evaluation |
(A flaw was found in the admin backend of gvfs. The privileged gvfsd-ad ...)
1 affected package
gvfs
| Package | 20.04 LTS |
|---|---|
| gvfs | Needs evaluation |
(A flaw was found in Evolution. A remote attacker can exploit this vuln ...)
1 affected package
evolution
| Package | 20.04 LTS |
|---|---|
| evolution | Needs evaluation |