Search CVE reports
471 – 480 of 52944 results
(DCMTK through 3.7.0 contains a heap over-read vulnerability in Concate ...)
1 affected package
dcmtk
| Package | 22.04 LTS |
|---|---|
| dcmtk | Needs evaluation |
(sprintf-js through 1.1.3 passes unbounded precision specifiers to toFi ...)
1 affected package
node-sprintf-js
| Package | 22.04 LTS |
|---|---|
| node-sprintf-js | Needs evaluation |
A flaw was found in librsvg. When processing an SVG document containing nested XML inclusions (Xincludes) with duplicate entity declarations, a use-after-free error can occur. This vulnerability arises because the library...
1 affected package
librsvg
| Package | 22.04 LTS |
|---|---|
| librsvg | Needs evaluation |
In Flatpak before 1.18.1, the revokefs writer, used by the flatpak-system-helper to receive repository data from unprivileged callers, validated file paths by rejecting literal .. components but did not prevent symlink traversal....
1 affected package
flatpak
| Package | 22.04 LTS |
|---|---|
| flatpak | Needs evaluation |
In Flatpak before 1.18.1, a malicious sandboxed app can replace ~/.var/app/$appid/.ld.so with a symlink, causing regenerate_ld_cache to write files at an arbitrary location. The filenames and content are not attacker controlled,...
1 affected package
flatpak
| Package | 22.04 LTS |
|---|---|
| flatpak | Needs evaluation |
(An integer overflow in the BSON document encoding component of the Mon ...)
1 affected package
pymongo
| Package | 22.04 LTS |
|---|---|
| pymongo | Needs evaluation |
(PyMongo's connection string parsing decodes percent-encoded characters ...)
1 affected package
pymongo
| Package | 22.04 LTS |
|---|---|
| pymongo | Needs evaluation |
(The client-side field level encryption support in the MongoDB Python D ...)
1 affected package
pymongo
| Package | 22.04 LTS |
|---|---|
| pymongo | Needs evaluation |
(An out-of-bounds write in the connection-monitoring logic of the Mongo ...)
1 affected package
pymongo
| Package | 22.04 LTS |
|---|---|
| pymongo | Needs evaluation |
(Deserialization of untrusted data in the command monitoring support of ...)
1 affected package
pymongo
| Package | 22.04 LTS |
|---|---|
| pymongo | Needs evaluation |