Search CVE reports
21 – 30 of 36937 results
Not in release
MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might...
1 affected package
mariadb
| Package | 22.04 LTS |
|---|---|
| mariadb | Not in release |
SOGo before 5.12.5 is prone to a XSS vulnerability with events, tasks, and contacts categories.
1 affected package
sogo
| Package | 22.04 LTS |
|---|---|
| sogo | Needs evaluation |
AWStats 8.0 is vulnerable to Command Injection via the open function
1 affected package
awstats
| Package | 22.04 LTS |
|---|---|
| awstats | Needs evaluation |
DNSS Domain Name Search Software 2.1.8 contains a buffer overflow vulnerability in the registration code input field that allows local attackers to crash the application by submitting an excessively long string. Attackers can...
1 affected package
dnss
| Package | 22.04 LTS |
|---|---|
| dnss | Needs evaluation |
Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the URL field. Attackers can paste a buffer of 5000 characters into the 'From...
1 affected package
deluge
| Package | 22.04 LTS |
|---|---|
| deluge | Needs evaluation |
Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Webseeds field. Attackers can paste a buffer of 5000 bytes into...
1 affected package
deluge
| Package | 22.04 LTS |
|---|---|
| deluge | Needs evaluation |
Pidgin 2.13.0 contains a denial of service vulnerability that allows local attackers to crash the application by providing an excessively long username string during account creation. Attackers can input a buffer of 1000...
1 affected package
pidgin
| Package | 22.04 LTS |
|---|---|
| pidgin | Needs evaluation |
Local unprivileged user can trigger an assert in systemd
1 affected package
systemd
| Package | 22.04 LTS |
|---|---|
| systemd | Fixed |
Integer Underflow When Handling EAP-TTLS AVP. A vulnerability in the eap-ttls plugin related to processing EAP-TTLS AVPs was discovered in strongSwan that can result in resource exhaustion or a crash. All versions since 4.5.0 are affected.
1 affected package
strongswan
| Package | 22.04 LTS |
|---|---|
| strongswan | Fixed |
Not in release
(fast-xml-parser before 4.1.2 allows __proto__ for Prototype Pollution.)
1 affected package
node-webfont
| Package | 22.04 LTS |
|---|---|
| node-webfont | Not in release |