Search CVE reports
151 – 160 of 53318 results
CVE-2024-36619
Medium priorityFFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec library which allows for an integer overflow when handling certain block types, leading to a denial-of-service (DoS) condition.
2 affected packages
ffmpeg, libav
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ffmpeg | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
libav | Not in release | Not in release | Not in release | — | — |
CVE-2024-36618
Medium priorityFFmpeg n6.1.1 has a vulnerability in the AVI demuxer of the libavformat library which allows for an integer overflow, potentially resulting in a denial-of-service (DoS) condition.
2 affected packages
ffmpeg, libav
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ffmpeg | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
libav | Not in release | Not in release | Not in release | — | — |
CVE-2024-36617
Medium priorityFFmpeg n6.1.1 has an integer overflow vulnerability in the FFmpeg CAF decoder.
2 affected packages
ffmpeg, libav
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ffmpeg | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
libav | Not in release | Not in release | Not in release | — | — |
CVE-2024-35369
Medium priorityIn FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability...
2 affected packages
ffmpeg, libav
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ffmpeg | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
libav | Not in release | Not in release | Not in release | — | — |
CVE-2024-53008
Medium priorityInconsistent interpretation of HTTP requests ('HTTP Request/Response Smuggling') issue exists in HAProxy. If this vulnerability is exploited, a remote attacker may access a path that is restricted by ACL (Access Control List) set...
1 affected package
haproxy
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
haproxy | Fixed | Not affected | Not affected | Not affected | Not affected |
CVE-2024-36466
Medium priorityA bug in the code allows an attacker to sign a forged zbx_session cookie, which then allows them to sign in with admin permissions.
1 affected package
zabbix
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
zabbix | Not in release | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2023-52922
Low priorityIn the Linux kernel, the following vulnerability has been resolved: can: bcm: Fix UAF in bcm_proc_show() BUG: KASAN: slab-use-after-free in bcm_proc_show+0x969/0xa80 Read of size 8 at addr ffff888155846230 by task cat/7862 CPU: 1...
126 affected packages
linux, linux-allwinner-5.19, linux-aws, linux-aws-5.0, linux-aws-5.11...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
linux | Not affected | Vulnerable | Vulnerable | Ignored | Ignored |
linux-allwinner-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-aws | Not affected | Vulnerable | Vulnerable | Ignored | Ignored |
linux-aws-5.0 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-aws-5.11 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-aws-5.13 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-aws-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-aws-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-aws-5.3 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-aws-5.4 | Not in release | Not in release | Not in release | Vulnerable | Not in release |
linux-aws-5.8 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-aws-6.2 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-aws-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-aws-6.8 | Not in release | Not affected | Not in release | Not in release | Not in release |
linux-aws-fips | Not in release | Not in release | Not in release | Not in release | Ignored |
linux-aws-hwe | Not in release | Not in release | Not in release | Not in release | Ignored |
linux-azure | Not affected | Vulnerable | Vulnerable | Ignored | Ignored |
linux-azure-4.15 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-azure-5.11 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-azure-5.13 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-azure-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-azure-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-azure-5.3 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-azure-5.4 | Not in release | Not in release | Not in release | Vulnerable | Not in release |
linux-azure-5.8 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-azure-6.2 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-azure-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-azure-6.8 | Not in release | Not affected | Not in release | Not in release | Not in release |
linux-azure-edge | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-azure-fde | Not in release | Needs evaluation | Ignored | Not in release | Not in release |
linux-azure-fde-5.15 | Not in release | Not in release | Needs evaluation | Not in release | Not in release |
linux-azure-fde-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-azure-fde-6.2 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-azure-fips | Not in release | Not in release | Not in release | Not in release | Ignored |
linux-bluefield | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-fips | Not in release | Not in release | Not in release | Not in release | Not in release |
linux-gcp | Not affected | Vulnerable | Vulnerable | Ignored | Ignored |
linux-gcp-4.15 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-gcp-5.11 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-gcp-5.13 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-gcp-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-gcp-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-gcp-5.3 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-gcp-5.4 | Not in release | Not in release | Not in release | Vulnerable | Not in release |
linux-gcp-5.8 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-gcp-6.2 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-gcp-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-gcp-6.8 | Not in release | Not affected | Not in release | Not in release | Not in release |
linux-gcp-fips | Not in release | Not in release | Not in release | Not in release | Ignored |
linux-gke | Not affected | Vulnerable | Ignored | Not in release | Ignored |
linux-gke-4.15 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-gke-5.15 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-gke-5.4 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-gkeop | Not affected | Vulnerable | Ignored | Not in release | Not in release |
linux-gkeop-5.15 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-gkeop-5.4 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-hwe | Not in release | Not in release | Not in release | Ignored | Ignored |
linux-hwe-5.11 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-hwe-5.13 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-hwe-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-hwe-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-hwe-5.4 | Not in release | Not in release | Not in release | Vulnerable | Not in release |
linux-hwe-5.8 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-hwe-6.2 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-hwe-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-hwe-6.8 | Not in release | Not affected | Not in release | Not in release | Not in release |
linux-hwe-edge | Not in release | Not in release | Not in release | Ignored | Ignored |
linux-ibm | Not affected | Vulnerable | Vulnerable | Not in release | Not in release |
linux-ibm-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-ibm-5.4 | Not in release | Not in release | Not in release | Vulnerable | Not in release |
linux-intel | Not affected | Not in release | Not in release | Not in release | Not in release |
linux-intel-5.13 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-intel-iotg | Not in release | Vulnerable | Not in release | Not in release | Not in release |
linux-intel-iotg-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-intel-iot-realtime | Not in release | Not in release | Not in release | Not in release | Not in release |
linux-iot | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-kvm | Not in release | Vulnerable | Vulnerable | Ignored | Ignored |
linux-lowlatency | Not affected | Vulnerable | Not in release | Not in release | Not in release |
linux-lowlatency-hwe-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-lowlatency-hwe-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-lowlatency-hwe-6.2 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-lowlatency-hwe-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-lowlatency-hwe-6.8 | Not in release | Not affected | Not in release | Not in release | Not in release |
linux-lts-xenial | Not in release | Not in release | Not in release | Not in release | Not in release |
linux-nvidia | Not affected | Vulnerable | Not in release | Not in release | Not in release |
linux-nvidia-6.2 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-nvidia-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-nvidia-6.8 | Not in release | Not affected | Not in release | Not in release | Not in release |
linux-nvidia-lowlatency | Not affected | Not in release | Not in release | Not in release | Not in release |
linux-oem | Not in release | Not in release | Not in release | Ignored | Ignored |
linux-oem-5.10 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-oem-5.13 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-oem-5.14 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-oem-5.17 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-oem-5.6 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-oem-6.0 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-oem-6.1 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-oem-6.11 | Not affected | Not in release | Not in release | Not in release | Not in release |
linux-oem-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-oem-6.8 | Not affected | Not in release | Not in release | Not in release | Not in release |
linux-oracle | Not affected | Vulnerable | Vulnerable | Ignored | Ignored |
linux-oracle-5.0 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-oracle-5.11 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-oracle-5.13 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-oracle-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-oracle-5.3 | Not in release | Not in release | Not in release | Ignored | Not in release |
linux-oracle-5.4 | Not in release | Not in release | Not in release | Vulnerable | Not in release |
linux-oracle-5.8 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-oracle-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-oracle-6.8 | Not in release | Not affected | Not in release | Not in release | Not in release |
linux-raspi | Not affected | Vulnerable | Vulnerable | Not in release | Not in release |
linux-raspi2 | Not in release | Not in release | Ignored | Ignored | Ignored |
linux-raspi-5.4 | Not in release | Not in release | Not in release | Vulnerable | Not in release |
linux-raspi-realtime | Not in release | Not in release | Not in release | Not in release | Not in release |
linux-realtime | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-riscv | Not affected | Ignored | Ignored | Not in release | Not in release |
linux-riscv-5.11 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-riscv-5.15 | Not in release | Not in release | Vulnerable | Not in release | Not in release |
linux-riscv-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-riscv-5.8 | Not in release | Not in release | Ignored | Not in release | Not in release |
linux-riscv-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-riscv-6.8 | Not in release | Not affected | Not in release | Not in release | Not in release |
linux-starfive-5.19 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-starfive-6.2 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-starfive-6.5 | Not in release | Ignored | Not in release | Not in release | Not in release |
linux-xilinx-zynqmp | Not in release | Vulnerable | Vulnerable | Not in release | Not in release |
CVE-2024-53859
Medium prioritygo-gh is a Go module for interacting with the `gh` utility and the GitHub API from the command line. A security vulnerability has been identified in `go-gh` that could leak authentication tokens intended for GitHub hosts...
1 affected package
golang-github-cli-go-gh-v2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
golang-github-cli-go-gh-v2 | Needs evaluation | Not in release | Not in release | — | — |
CVE-2024-53858
Medium priorityThe gh cli is GitHub’s official command line tool. A security vulnerability has been identified in the GitHub CLI that could leak authentication tokens when cloning repositories containing `git` submodules hosted outside...
1 affected package
gh
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
gh | Needs evaluation | Needs evaluation | Not in release | — | — |
CVE-2024-9369
Medium priorityInsufficient data validation in Mojo in Google Chrome prior to 129.0.6668.89 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page. (Chromium security...
1 affected package
chromium-browser
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
chromium-browser | Not affected | Not affected | Not affected | — | — |