Search CVE reports
611 – 620 of 48457 results
alsa-lib through 1.2.16.1 contains a stack buffer overflow in the __snd_ctl_ascii_elem_id_parse() function that writes one byte past a 64-byte buffer when parsing a name= field with 64 or more characters. Attackers can supply a...
1 affected package
alsa-lib
| Package | 20.04 LTS |
|---|---|
| alsa-lib | Needs evaluation |
Nodemailer versions 9.1.0 through 10.0.4 contain a quadratic time complexity vulnerability in the addressparser component when parsing email addresses with RFC 5322 comments. Attackers can craft malicious email headers with...
1 affected package
node-nodemailer
| Package | 20.04 LTS |
|---|---|
| node-nodemailer | Needs evaluation |
An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3.5-dev5. Exploitation requires an HTTP/3 frontend: HAProxy must be built with QUIC support and configured with a QUIC bind listener, and the affected...
1 affected package
haproxy
| Package | 20.04 LTS |
|---|---|
| haproxy | Needs evaluation |
wasm2c in WebAssembly wabt through 1.0.41 allows sandbox escape in some situations that primarily involve 32-bit platforms, aka a "table flip" attack. It does not check the return value of calloc()...
1 affected package
wabt
| Package | 20.04 LTS |
|---|---|
| wabt | Needs evaluation |
In Flatpak before 1.18.1, a malicious sandboxed app can obtain arbitrary read and write access to files on the host, which can be escalated to arbitrary code execution on the host, a different vulnerability than CVE-2026-76925....
1 affected package
flatpak
| Package | 20.04 LTS |
|---|---|
| flatpak | Needs evaluation |
sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header values exceed the 255-byte buffer limit. Attackers can craft malicious SIP packets with oversized...
1 affected package
sngrep
| Package | 20.04 LTS |
|---|---|
| sngrep | Needs evaluation |
Freeciv versions 3.1.0 through 3.2.5 contain an out-of-bounds read vulnerability in sg_load_player_unit() when processing savegame files with invalid unit activity indices. An attacker can craft a malicious savegame file with an...
1 affected package
freeciv
| Package | 20.04 LTS |
|---|---|
| freeciv | Needs evaluation |
Freeciv versions before 3.2.6 contain a heap buffer overflow in worklist_load() when processing savegame files with declared worklist lengths exceeding the fixed array bound of 64 elements. Attackers can craft malicious savegame...
1 affected package
freeciv
| Package | 20.04 LTS |
|---|---|
| freeciv | Needs evaluation |
msgpack-java through 0.9.12 contains an integer overflow vulnerability in MessageUnpacker.skipValue() when processing MAP32 containers with large element counts. Attackers can supply a MAP32 element count at or above 0x40000000...
1 affected package
msgpack-java
| Package | 20.04 LTS |
|---|---|
| msgpack-java | Needs evaluation |
msgpack-java through 0.9.12 contains a stack overflow vulnerability in MessageUnpacker.unpackValue() that recursively deserializes arrays and maps without nesting depth limits. Attackers can craft payloads with deeply nested...
1 affected package
msgpack-java
| Package | 20.04 LTS |
|---|---|
| msgpack-java | Needs evaluation |