Search CVE reports


Toggle filters

21 – 30 of 38 results


CVE-2021-21351

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability may allow a remote attacker to load and execute arbitrary code from a remote host only...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21350

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to execute arbitrary code only by manipulating the processed input...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21349

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to request data from internal resources that are not publicly...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21348

Low priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to occupy a thread that consumes maximum CPU time and will never...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21347

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21346

Medium priority

Some fixes available 6 of 9

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Not affected Vulnerable Fixed Fixed Fixed
Show less packages

CVE-2021-21345

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker who has sufficient rights to execute commands of the host only by...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21344

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21343

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type information to recreate the formerly...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21342

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type information to recreate the formerly...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libxstream-java Fixed Fixed Fixed Fixed Fixed
Show less packages