Search CVE reports
1 – 10 of 45609 results
A flaw in libsoup’s HTTP header handling allows multiple Host: headers in a request and returns the last occurrence for server-side processing. Common front proxies often honor the first Host: header, so this mismatch can cause...
2 affected packages
libsoup2.4, libsoup3
| Package | 16.04 LTS |
|---|---|
| libsoup2.4 | Needs evaluation |
| libsoup3 | — |
A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib's GIO (GLib Input/Output) escape_byte_string() function when processing malicious file or...
1 affected package
glib2.0
| Package | 16.04 LTS |
|---|---|
| glib2.0 | Needs evaluation |
Multiple constant-time implementations in wolfSSL before version 5.8.4 may be transformed into non-constant-time binary by LLVM optimizations, which can potentially result in observable timing discrepancies and lead to information...
1 affected package
wolfssl
| Package | 16.04 LTS |
|---|---|
| wolfssl | Needs evaluation |
ImageMagick is a software suite to create, edit, compose, or convert bitmap images. In versions 7.1.2-9 and prior, the TIM (PSX TIM) image parser contains a critical integer overflow vulnerability in its ReadTIMImage function...
1 affected package
imagemagick
| Package | 16.04 LTS |
|---|---|
| imagemagick | Needs evaluation |
A Path Traversal vulnerability in usbmuxd allows local users to escalate to the service user.This issue affects usbmuxd: before 3ded00c9985a5108cfc7591a309f9a23d57a8cba.
1 affected package
usbmuxd
| Package | 16.04 LTS |
|---|---|
| usbmuxd | Needs evaluation |
[Unknown description]
1 affected package
smb4k
| Package | 16.04 LTS |
|---|---|
| smb4k | Needs evaluation |
[Unknown description]
1 affected package
smb4k
| Package | 16.04 LTS |
|---|---|
| smb4k | Needs evaluation |
An integer overflow in the psdParser::ReadImageData function of FreeImage v3.18.0 and before allows attackers to cause a Denial of Service (DoS) via supplying a crafted PSD file.
1 affected package
freeimage
| Package | 16.04 LTS |
|---|---|
| freeimage | Needs evaluation |
Dotclear 2.29 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the media upload functionality. Attackers can exploit the file upload process by crafting a PHP...
1 affected package
dotclear
| Package | 16.04 LTS |
|---|---|
| dotclear | Needs evaluation |
Buffer underflow on Glib through glib/gvariant via bytestring_parse() or string_parse() leads to OOB Write
1 affected package
glib2.0
| Package | 16.04 LTS |
|---|---|
| glib2.0 | Needs evaluation |