Search CVE reports
1 – 10 of 48142 results
(A user with access to the cluster with a limited set of privilege acti ...)
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image, which can...
1 affected package
libarchive
| Package | 16.04 LTS |
|---|---|
| libarchive | Needs evaluation |
A flaw was found in libsoup. When establishing HTTPS tunnels through a configured HTTP proxy, sensitive session cookies are transmitted in cleartext within the initial HTTP CONNECT request. A network-positioned attacker or a...
2 affected packages
libsoup2.4, libsoup3
| Package | 16.04 LTS |
|---|---|
| libsoup2.4 | Needs evaluation |
| libsoup3 | — |
A vulnerability has been found in FRRouting FRR up to 10.5.1. This affects the function process_type2_route of the file bgpd/bgp_evpn.c of the component EVPN Type-2 Route Handler. The manipulation leads to improper access...
2 affected packages
frr, quagga
| Package | 16.04 LTS |
|---|---|
| frr | — |
| quagga | Needs evaluation |
Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib. Compress::Raw::Zlib is included in the Perl package as a dual-life...
1 affected package
perl
| Package | 16.04 LTS |
|---|---|
| perl | Needs evaluation |
(The iconv() function in the GNU C Library versions 2.43 and earlier ma ...)
2 affected packages
glibc, eglibc
| Package | 16.04 LTS |
|---|---|
| glibc | Needs evaluation |
| eglibc | — |
An integer overflow vulnerability in the HTTP chunked transfer encoding parser in tinyproxy up to and including version 1.11.3 allows an unauthenticated remote attacker to cause a denial of service (DoS). The issue occurs because...
1 affected package
tinyproxy
| Package | 16.04 LTS |
|---|---|
| tinyproxy | Needs evaluation |
(Vim before 9.2.0272 allows code execution that happens immediately upo ...)
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Not affected |
[Whitespace padding in filenames bypasses file upload extension checks]
1 affected package
modsecurity-crs
| Package | 16.04 LTS |
|---|---|
| modsecurity-crs | Needs evaluation |
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.3 before 18.8.7, 18.9 before 18.9.3, and 18.10 before 18.10.1 affecting Jira Connect installations that could have allowed an authenticated user with...
1 affected package
gitlab
| Package | 16.04 LTS |
|---|---|
| gitlab | Ignored |