Search CVE reports


Toggle filters

91 – 100 of 846 results


CVE-2021-32142

Low priority

Some fixes available 10 of 54

Buffer Overflow vulnerability in LibRaw linux/unix v0.20.0 allows attacker to escalate privileges via the LibRaw_buffer_datastream::gets(char*, int) in /src/libraw/src/libraw_datastream.cpp.

9 affected packages

darktable, dcraw, digikam, exactimage, kodi...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
darktable Needs evaluation Needs evaluation Ignored Ignored
dcraw Needs evaluation Needs evaluation Ignored Ignored
digikam Not affected Not affected Fixed Not affected
exactimage Needs evaluation Needs evaluation Ignored Ignored
kodi Needs evaluation Needs evaluation Ignored Ignored
libraw Fixed Fixed Fixed Vulnerable
rawtherapee Needs evaluation Needs evaluation Ignored Ignored
ufraw Not in release Not in release Ignored
xbmc Not in release Not in release Not in release
Show all 9 packages Show less packages

CVE-2023-22486

Medium priority

Some fixes available 4 of 17

cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29.0.gfm.7 contain a polynomial time complexity issue in handle_close_bracket that may lead to unbounded...

2 affected packages

cmark, cmark-gfm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cmark Needs evaluation Needs evaluation Needs evaluation Needs evaluation
cmark-gfm Fixed Fixed Fixed Not in release
Show less packages

CVE-2023-0417

Medium priority
Vulnerable

Memory leak in the NFS dissector in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-0416

Medium priority
Vulnerable

GNW dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Vulnerable Vulnerable Not affected
Show less packages

CVE-2023-0415

Medium priority
Vulnerable

iSCSI dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-0414

Medium priority
Ignored

Crash in the EAP dissector in Wireshark 4.0.0 to 4.0.2 allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-0413

Medium priority
Vulnerable

Dissection engine bug in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-0412

Medium priority
Vulnerable

TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-0411

Medium priority
Vulnerable

Excessive loops in multiple dissectors in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Vulnerable Not affected Not affected
Show less packages

CVE-2023-22485

Medium priority
Ignored

cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. In versions prior 0.29.0.gfm.7, a crafted markdown document can trigger an out-of-bounds read in the `validate_protocol` function....

1 affected package

cmark-gfm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cmark-gfm Ignored Ignored Ignored Not in release
Show less packages