Search CVE reports
171 – 180 of 47939 results
Caddy is an extensible server platform that uses TLS by default. In version 2.11.3 and earlier, three configuration-dependent weaknesses affect the handler and placeholder layer. In...
1 affected package
caddy
| Package | 24.04 LTS |
|---|---|
| caddy | Needs evaluation |
In libsmpp35 from 0.1.0 through 1.8.0 out of bound read issue was found in the at smpp34_unpack() function via attacker controlled SMPP PDUs, leading to memory corruption.
1 affected package
libsmpp34
| Package | 24.04 LTS |
|---|---|
| libsmpp34 | Needs evaluation |
In osmo-iuh from 0.1.0 through 1.8.0 a reachable assertion was found in the ranap_handle_co_dt() function via a arbitrarily sized NAS-PDU that leads to process crash and remote denial of service.
1 affected package
osmo-iuh
| Package | 24.04 LTS |
|---|---|
| osmo-iuh | Needs evaluation |
In osmo-bsc from 1.0.1 through 1.14.1 a heap based buffer overflow issue was found in the ipaccess_proxy_read_msg() function via IPA frame lengths.
1 affected package
osmo-bsc
| Package | 24.04 LTS |
|---|---|
| osmo-bsc | Needs evaluation |
In osmo-ggsn 1.14.0 an out of bounds write issue was found in the gtp_decode_pdp_ctx() function through the PDP context GSN-Address sub-field, leading to memory corruption.
1 affected package
osmo-ggsn
| Package | 24.04 LTS |
|---|---|
| osmo-ggsn | Needs evaluation |
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.17 and 8.0.6, src/flow-hash.c can treat an IPv4 and IPv6 flow as equal without comparing the IP...
1 affected package
suricata
| Package | 24.04 LTS |
|---|---|
| suricata | Needs evaluation |
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, DNS-over-HTTP/2 processing in rust/src/http2/http2.rs retains previously processed...
1 affected package
suricata
| Package | 24.04 LTS |
|---|---|
| suricata | Needs evaluation |
Mojolicious is a real-time web framework for Perl. Prior to 9.47, the pure-Perl implementation of Mojo::JSON does not limit nesting depth when Cpanel::JSON::XS is unavailable or MOJO_NO_JSON_XS is enabled. An attacker who can...
1 affected package
perl
| Package | 24.04 LTS |
|---|---|
| perl | Needs evaluation |
Not in release
A vulnerability was found in CRI-O related to the container checkpoint and restore feature. When CRI-O is configured to restore containers from checkpoint archives, insufficient validation of restore metadata may allow a user with...
1 affected package
cri-o
| Package | 24.04 LTS |
|---|---|
| cri-o | Not in release |
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, the HTTP/1 parser limits decompression work per transaction but does not limit how many...
1 affected package
suricata
| Package | 24.04 LTS |
|---|---|
| suricata | Needs evaluation |