Search CVE reports
101 – 110 of 28239 results
CVE-2024-28047
Medium priorityImproper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
1 affected package
intel-microcode
Package | 20.04 LTS |
---|---|
intel-microcode | Ignored |
CVE-2024-24582
Medium priorityImproper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.
1 affected package
intel-microcode
Package | 20.04 LTS |
---|---|
intel-microcode | Ignored |
CVE-2023-43758
Medium priorityImproper input validation in UEFI firmware for some Intel(R) processors may allow a privileged user to potentially enable escalation of privilege via local access.
1 affected package
intel-microcode
Package | 20.04 LTS |
---|---|
intel-microcode | Ignored |
CVE-2023-34440
Medium priorityImproper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
1 affected package
intel-microcode
Package | 20.04 LTS |
---|---|
intel-microcode | Ignored |
CVE-2025-1215
Medium priorityA vulnerability classified as problematic was found in vim up to 9.1.1096. This vulnerability affects unknown code of the file src/main.c. The manipulation of the argument --log leads to memory corruption. It is possible to launch...
1 affected package
vim
Package | 20.04 LTS |
---|---|
vim | Needs evaluation |
CVE-2025-0937
Medium priorityNomad Community and Nomad Enterprise ("Nomad") event stream configured with a wildcard namespace can bypass the ACL Policy allowing reads on other namespaces.
1 affected package
nomad
Package | 20.04 LTS |
---|---|
nomad | Needs evaluation |
CVE-2025-25184
Medium priorityRack provides an interface for developing web applications in Ruby. Prior to versions 2.2.11, 3.0.12, and 3.1.10, Rack::CommonLogger can be exploited by crafting input that includes newline characters to manipulate log entries....
1 affected package
ruby-rack
Package | 20.04 LTS |
---|---|
ruby-rack | Needs evaluation |
CVE-2025-0516
Medium priorityNot in release
Improper Authorization in GitLab CE/EE affecting all versions from 17.7 prior to 17.7.4, 17.8 prior to 17.8.2 allow users with limited permissions to perform unauthorized actions on critical project data.
1 affected package
gitlab
Package | 20.04 LTS |
---|---|
gitlab | Not in release |
CVE-2024-9870
Medium priorityNot in release
An external service interaction vulnerability in GitLab EE affecting all versions from 15.11 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to send requests from the GitLab server to unintended services.
1 affected package
gitlab
Package | 20.04 LTS |
---|---|
gitlab | Not in release |
CVE-2025-1244
Medium priorityA flaw was found in the Emacs text editor. Improper handling of custom "man" URI schemes allows attackers to execute arbitrary shell commands by tricking users into visiting a specially crafted website or an HTTP URL with a redirect.
5 affected packages
emacs, emacs24, emacs25, xemacs21, xemacs21-packages
Package | 20.04 LTS |
---|---|
emacs | Needs evaluation |
emacs24 | Not in release |
emacs25 | Not in release |
xemacs21 | Needs evaluation |
xemacs21-packages | Needs evaluation |