Search CVE reports
1 – 10 of 27206 results
A vulnerability has been found in tcpreplay 4.5.1. This vulnerability affects the function mask_cidr6 of the file cidr.c of the component tcpprep. The manipulation leads to heap-based buffer overflow. The attack can be initiated...
1 affected package
tcpreplay
Package | 24.04 LTS |
---|---|
tcpreplay | Needs evaluation |
A vulnerability was identified in LibTIFF 4.7.0. This issue affects the function May of the file tiffcrop.c of the component tiffcrop. The manipulation leads to memory corruption. The attack needs to be approached locally. The...
5 affected packages
tiff, qtwebengine-opensource-src, texmaker, gdal, neuron
Package | 24.04 LTS |
---|---|
tiff | Needs evaluation |
qtwebengine-opensource-src | Needs evaluation |
texmaker | Needs evaluation |
gdal | Not affected |
neuron | Not affected |
A flaw was found in linux-pam. The pam_namespace module may improperly handle user-controlled paths, allowing local users to exploit symlink attacks and race conditions to elevate their privileges to root. This CVE provides a...
1 affected package
pam
Package | 24.04 LTS |
---|---|
pam | Needs evaluation |
Allocation of Resources Without Limits or Throttling vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java bcpkix, bcprov, bcpkix-fips on All (API modules) allows Excessive Allocation. This vulnerability is...
1 affected package
bouncycastle
Package | 24.04 LTS |
---|---|
bouncycastle | Needs evaluation |
Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
1 affected package
chromium-browser
Package | 24.04 LTS |
---|---|
chromium-browser | Not affected |
Allocation of Resources Without Limits or Throttling vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java on All (API modules) allows Excessive Allocation. This vulnerability is associated with program...
1 affected package
bouncycastle
Package | 24.04 LTS |
---|---|
bouncycastle | Needs evaluation |
Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security...
1 affected package
chromium-browser
Package | 24.04 LTS |
---|---|
chromium-browser | Not affected |
Inappropriate implementation in File Picker in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium...
1 affected package
chromium-browser
Package | 24.04 LTS |
---|---|
chromium-browser | Not affected |
Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
1 affected package
chromium-browser
Package | 24.04 LTS |
---|---|
chromium-browser | Not affected |
Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit heap corruption via a curated set of gestures. (Chromium security severity: High)
1 affected package
chromium-browser
Package | 24.04 LTS |
---|---|
chromium-browser | Not affected |