Search CVE reports


Toggle filters

151 – 160 of 53318 results


CVE-2024-36619

Medium priority
Needs evaluation

FFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec library which allows for an integer overflow when handling certain block types, leading to a denial-of-service (DoS) condition.

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libav Not in release Not in release Not in release
Show less packages

CVE-2024-36618

Medium priority
Needs evaluation

FFmpeg n6.1.1 has a vulnerability in the AVI demuxer of the libavformat library which allows for an integer overflow, potentially resulting in a denial-of-service (DoS) condition.

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libav Not in release Not in release Not in release
Show less packages

CVE-2024-36617

Medium priority
Needs evaluation

FFmpeg n6.1.1 has an integer overflow vulnerability in the FFmpeg CAF decoder.

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libav Not in release Not in release Not in release
Show less packages

CVE-2024-35369

Medium priority
Needs evaluation

In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability...

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
ffmpeg Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libav Not in release Not in release Not in release
Show less packages

CVE-2024-53008

Medium priority
Fixed

Inconsistent interpretation of HTTP requests ('HTTP Request/Response Smuggling') issue exists in HAProxy. If this vulnerability is exploited, a remote attacker may access a path that is restricted by ACL (Access Control List) set...

1 affected package

haproxy

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
haproxy Fixed Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-36466

Medium priority
Needs evaluation

A bug in the code allows an attacker to sign a forged zbx_session cookie, which then allows them to sign in with admin permissions.

1 affected package

zabbix

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
zabbix Not in release Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2023-52922

Low priority
Vulnerable

In the Linux kernel, the following vulnerability has been resolved: can: bcm: Fix UAF in bcm_proc_show() BUG: KASAN: slab-use-after-free in bcm_proc_show+0x969/0xa80 Read of size 8 at addr ffff888155846230 by task cat/7862 CPU: 1...

126 affected packages

linux, linux-allwinner-5.19, linux-aws, linux-aws-5.0, linux-aws-5.11...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Vulnerable Vulnerable Ignored Ignored
linux-allwinner-5.19 Not in release Ignored Not in release Not in release Not in release
linux-aws Not affected Vulnerable Vulnerable Ignored Ignored
linux-aws-5.0 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Ignored Not in release Not in release
linux-aws-5.13 Not in release Not in release Ignored Not in release Not in release
linux-aws-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-aws-5.19 Not in release Ignored Not in release Not in release Not in release
linux-aws-5.3 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.4 Not in release Not in release Not in release Vulnerable Not in release
linux-aws-5.8 Not in release Not in release Ignored Not in release Not in release
linux-aws-6.2 Not in release Ignored Not in release Not in release Not in release
linux-aws-6.5 Not in release Ignored Not in release Not in release Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release Not in release
linux-aws-fips Not in release Not in release Not in release Not in release Ignored
linux-aws-hwe Not in release Not in release Not in release Not in release Ignored
linux-azure Not affected Vulnerable Vulnerable Ignored Ignored
linux-azure-4.15 Not in release Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Ignored Not in release Not in release
linux-azure-5.13 Not in release Not in release Ignored Not in release Not in release
linux-azure-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-azure-5.19 Not in release Ignored Not in release Not in release Not in release
linux-azure-5.3 Not in release Not in release Not in release Ignored Not in release
linux-azure-5.4 Not in release Not in release Not in release Vulnerable Not in release
linux-azure-5.8 Not in release Not in release Ignored Not in release Not in release
linux-azure-6.2 Not in release Ignored Not in release Not in release Not in release
linux-azure-6.5 Not in release Ignored Not in release Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release Not in release
linux-azure-edge Not in release Not in release Not in release Ignored Not in release
linux-azure-fde Not in release Needs evaluation Ignored Not in release Not in release
linux-azure-fde-5.15 Not in release Not in release Needs evaluation Not in release Not in release
linux-azure-fde-5.19 Not in release Ignored Not in release Not in release Not in release
linux-azure-fde-6.2 Not in release Ignored Not in release Not in release Not in release
linux-azure-fips Not in release Not in release Not in release Not in release Ignored
linux-bluefield Not in release Not in release Vulnerable Not in release Not in release
linux-fips Not in release Not in release Not in release Not in release Not in release
linux-gcp Not affected Vulnerable Vulnerable Ignored Ignored
linux-gcp-4.15 Not in release Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Ignored Not in release Not in release
linux-gcp-5.13 Not in release Not in release Ignored Not in release Not in release
linux-gcp-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-gcp-5.19 Not in release Ignored Not in release Not in release Not in release
linux-gcp-5.3 Not in release Not in release Not in release Ignored Not in release
linux-gcp-5.4 Not in release Not in release Not in release Vulnerable Not in release
linux-gcp-5.8 Not in release Not in release Ignored Not in release Not in release
linux-gcp-6.2 Not in release Ignored Not in release Not in release Not in release
linux-gcp-6.5 Not in release Ignored Not in release Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release Not in release
linux-gcp-fips Not in release Not in release Not in release Not in release Ignored
linux-gke Not affected Vulnerable Ignored Not in release Ignored
linux-gke-4.15 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.15 Not in release Not in release Ignored Not in release Not in release
linux-gke-5.4 Not in release Not in release Not in release Ignored Not in release
linux-gkeop Not affected Vulnerable Ignored Not in release Not in release
linux-gkeop-5.15 Not in release Not in release Ignored Not in release Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Ignored Not in release
linux-hwe Not in release Not in release Not in release Ignored Ignored
linux-hwe-5.11 Not in release Not in release Ignored Not in release Not in release
linux-hwe-5.13 Not in release Not in release Ignored Not in release Not in release
linux-hwe-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-hwe-5.19 Not in release Ignored Not in release Not in release Not in release
linux-hwe-5.4 Not in release Not in release Not in release Vulnerable Not in release
linux-hwe-5.8 Not in release Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Ignored Not in release Not in release Not in release
linux-hwe-6.5 Not in release Ignored Not in release Not in release Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored Ignored
linux-ibm Not affected Vulnerable Vulnerable Not in release Not in release
linux-ibm-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-ibm-5.4 Not in release Not in release Not in release Vulnerable Not in release
linux-intel Not affected Not in release Not in release Not in release Not in release
linux-intel-5.13 Not in release Not in release Ignored Not in release Not in release
linux-intel-iotg Not in release Vulnerable Not in release Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-intel-iot-realtime Not in release Not in release Not in release Not in release Not in release
linux-iot Not in release Not in release Vulnerable Not in release Not in release
linux-kvm Not in release Vulnerable Vulnerable Ignored Ignored
linux-lowlatency Not affected Vulnerable Not in release Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-lowlatency-hwe-5.19 Not in release Ignored Not in release Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Ignored Not in release Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Ignored Not in release Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release Not in release
linux-nvidia Not affected Vulnerable Not in release Not in release Not in release
linux-nvidia-6.2 Not in release Ignored Not in release Not in release Not in release
linux-nvidia-6.5 Not in release Ignored Not in release Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored Ignored
linux-oem-5.10 Not in release Not in release Ignored Not in release Not in release
linux-oem-5.13 Not in release Not in release Ignored Not in release Not in release
linux-oem-5.14 Not in release Not in release Ignored Not in release Not in release
linux-oem-5.17 Not in release Ignored Not in release Not in release Not in release
linux-oem-5.6 Not in release Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Ignored Not in release Not in release Not in release
linux-oem-6.1 Not in release Ignored Not in release Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release Not in release
linux-oem-6.5 Not in release Ignored Not in release Not in release Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release Not in release
linux-oracle Not affected Vulnerable Vulnerable Ignored Ignored
linux-oracle-5.0 Not in release Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Ignored Not in release Not in release
linux-oracle-5.13 Not in release Not in release Ignored Not in release Not in release
linux-oracle-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-oracle-5.3 Not in release Not in release Not in release Ignored Not in release
linux-oracle-5.4 Not in release Not in release Not in release Vulnerable Not in release
linux-oracle-5.8 Not in release Not in release Ignored Not in release Not in release
linux-oracle-6.5 Not in release Ignored Not in release Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release Not in release
linux-raspi Not affected Vulnerable Vulnerable Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Ignored Ignored
linux-raspi-5.4 Not in release Not in release Not in release Vulnerable Not in release
linux-raspi-realtime Not in release Not in release Not in release Not in release Not in release
linux-realtime Not in release Ignored Not in release Not in release Not in release
linux-riscv Not affected Ignored Ignored Not in release Not in release
linux-riscv-5.11 Not in release Not in release Ignored Not in release Not in release
linux-riscv-5.15 Not in release Not in release Vulnerable Not in release Not in release
linux-riscv-5.19 Not in release Ignored Not in release Not in release Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Ignored Not in release Not in release Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release Not in release
linux-starfive-5.19 Not in release Ignored Not in release Not in release Not in release
linux-starfive-6.2 Not in release Ignored Not in release Not in release Not in release
linux-starfive-6.5 Not in release Ignored Not in release Not in release Not in release
linux-xilinx-zynqmp Not in release Vulnerable Vulnerable Not in release Not in release
Show all 126 packages Show less packages

CVE-2024-53859

Medium priority
Needs evaluation

go-gh is a Go module for interacting with the `gh` utility and the GitHub API from the command line. A security vulnerability has been identified in `go-gh` that could leak authentication tokens intended for GitHub hosts...

1 affected package

golang-github-cli-go-gh-v2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
golang-github-cli-go-gh-v2 Needs evaluation Not in release Not in release
Show less packages

CVE-2024-53858

Medium priority
Needs evaluation

The gh cli is GitHub’s official command line tool. A security vulnerability has been identified in the GitHub CLI that could leak authentication tokens when cloning repositories containing `git` submodules hosted outside...

1 affected package

gh

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
gh Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2024-9369

Medium priority
Not affected

Insufficient data validation in Mojo in Google Chrome prior to 129.0.6668.89 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page. (Chromium security...

1 affected package

chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser Not affected Not affected Not affected
Show less packages