Search CVE reports
41 – 50 of 43999 results
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
1 affected package
wireshark
| Package | 24.04 LTS |
|---|---|
| wireshark | Needs evaluation |
In OpenStack Aodh before 22.0.1, the alarm list API bypasses project scoping when the all_projects query parameter is set to false. The API checks for the presence of the all_projects key rather than its value; a true value...
2 affected packages
aodh, watcher
| Package | 24.04 LTS |
|---|---|
| aodh | Needs evaluation |
| watcher | Needs evaluation |
(Expat through 2.8.3 contains an out-of-bounds read vulnerability that ...)
23 affected packages
expat, apache2, apr-util, cmake, ghostscript...
| Package | 24.04 LTS |
|---|---|
| expat | Needs evaluation |
| apache2 | Not affected |
| apr-util | Not affected |
| cmake | Not affected |
| ghostscript | Not affected |
| texlive-bin | Not affected |
| xmlrpc-c | Needs evaluation |
| vnc4 | Not in release |
| wbxml2 | Needs evaluation |
| swish-e | Needs evaluation |
| insighttoolkit4 | Not in release |
| cadaver | Needs evaluation |
| gdcm | Not affected |
| ayttm | Not in release |
| cableswig | Not in release |
| coin3 | Not affected |
| matanza | Ignored |
| tdom | Needs evaluation |
| vtk | Not in release |
| smart | Not in release |
| firefox | Not affected |
| thunderbird | Not affected |
| libxmltok | Needs evaluation |
Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Final and 4.2.17.Final, the default io.netty.handler.ssl.SniHandler constructors use the pre-handshake ClientHello aggregation path...
1 affected package
netty
| Package | 24.04 LTS |
|---|---|
| netty | Needs evaluation |
Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Fina and 4.2.17.Final, io.netty.handler.ssl.SslClientHelloHandler#decode checks the wrong offset before reading the four-byte TLS handshake...
1 affected package
netty
| Package | 24.04 LTS |
|---|---|
| netty | Needs evaluation |
(jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolle ...)
1 affected package
jsoup
| Package | 24.04 LTS |
|---|---|
| jsoup | Needs evaluation |
Not in release
(Incorrect authorization in frozen BI aggregations in Checkmk <2.5.0p2, ...)
1 affected package
check-mk
| Package | 24.04 LTS |
|---|---|
| check-mk | Not in release |
Not in release
(Mongoose is an embedded web server and network library. Prior to 7.22, ...)
1 affected package
mongoose
| Package | 24.04 LTS |
|---|---|
| mongoose | Not in release |
Not in release
(Mongoose is an embedded web server and network library. Prior to 7.22, ...)
1 affected package
mongoose
| Package | 24.04 LTS |
|---|---|
| mongoose | Not in release |
Not in release
(Mongoose is an embedded web server and network library. Priro to versi ...)
1 affected package
mongoose
| Package | 24.04 LTS |
|---|---|
| mongoose | Not in release |