Search CVE reports
851 – 860 of 42732 results
dr_libs dr_wav.h version 0.14.4 and earlier (fixed in commit 8a7258c) contain a heap buffer overflow vulnerability in the drwav__read_smpl_to_metadata_obj() function of dr_wav.h that allows memory corruption via crafted WAV files....
5 affected packages
dosbox-x, faudio, octave-ltfat, qtads, roc-toolkit
| Package | 18.04 LTS |
|---|---|
| dosbox-x | — |
| faudio | — |
| octave-ltfat | Needs evaluation |
| qtads | Needs evaluation |
| roc-toolkit | — |
An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29. Race condition in file-system storage and file-based cache backends in Django allows an attacker to cause file system objects to be created...
1 affected package
python-django
| Package | 18.04 LTS |
|---|---|
| python-django | Needs evaluation |
An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29. `URLField.to_python()` in Django calls `urllib.parse.urlsplit()`, which performs NFKC normalization on Windows that is disproportionately slow...
1 affected package
python-django
| Package | 18.04 LTS |
|---|---|
| python-django | Not affected |
Improper authorization in the API endpoint GET /1.0/certificates in Canonical LXD 6.6 on Linux allows an authenticated, restricted user to enumerate all certificate fingerprints trusted by the lxd server.
1 affected package
lxd
| Package | 18.04 LTS |
|---|---|
| lxd | Needs evaluation |
two potential OOB memory accesses in virtio-snd
1 affected package
qemu
| Package | 18.04 LTS |
|---|---|
| qemu | Needs evaluation |
two potential OOB memory accesses in virtio-snd
1 affected package
qemu
| Package | 18.04 LTS |
|---|---|
| qemu | Needs evaluation |
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an uncaught exception was found in Exiv2. The vulnerability is in the preview...
1 affected package
exiv2
| Package | 18.04 LTS |
|---|---|
| exiv2 | Fixed |
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an out-of-bounds read was found in Exiv2. The vulnerability is in the preview...
1 affected package
exiv2
| Package | 18.04 LTS |
|---|---|
| exiv2 | Fixed |
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an out-of-bounds read was found. The vulnerability is in the CRW image parser....
1 affected package
exiv2
| Package | 18.04 LTS |
|---|---|
| exiv2 | Fixed |
An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable...
1 affected package
freetype
| Package | 18.04 LTS |
|---|---|
| freetype | Not affected |