Search CVE reports
351 – 360 of 42506 results
systemd, a system and service manager, (as PID 1) hits an assert and freezes execution when an unprivileged IPC API call is made with spurious data. On version v249 and older the effect is not an assert, but stack overwriting,...
1 affected package
systemd
| Package | 18.04 LTS |
|---|---|
| systemd | Not affected |
A flaw was found in the GNU Binutils BFD library, a widely used component for handling binary files such as object files and executables. The issue occurs when processing specially crafted XCOFF object files, where a relocation...
1 affected package
binutils
| Package | 18.04 LTS |
|---|---|
| binutils | Needs evaluation |
strongSwan versions 4.5.0 prior to 6.0.5 contain an integer underflow vulnerability in the EAP-TTLS AVP parser that allows unauthenticated remote attackers to cause a denial of service by sending crafted AVP data with invalid...
1 affected package
strongswan
| Package | 18.04 LTS |
|---|---|
| strongswan | Needs evaluation |
Any guest issuing a Xenstore command accessing a node using the (illegal) node path "/local/domain/", will crash xenstored due to a clobbered error indicator in xenstored when verifying the node path. Note that the crash is forced...
1 affected package
xen
| Package | 18.04 LTS |
|---|---|
| xen | Needs evaluation |
The Intel EPT paging code uses an optimization to defer flushing of any cached EPT state until the p2m lock is dropped, so that multiple modifications done under the same locked region only issue a single flush. Freeing of paging...
1 affected package
xen
| Package | 18.04 LTS |
|---|---|
| xen | Needs evaluation |
DNSS Domain Name Search Software 2.1.8 contains a buffer overflow vulnerability in the registration code input field that allows local attackers to crash the application by submitting an excessively long string. Attackers can...
1 affected package
dnss
| Package | 18.04 LTS |
|---|---|
| dnss | Needs evaluation |
A vulnerability was detected in PuTTY 0.83. Affected is the function eddsa_verify of the file crypto/ecc-ssh.c of the component Ed25519 Signature Handler. The manipulation results in improper verification of cryptographic...
1 affected package
putty
| Package | 18.04 LTS |
|---|---|
| putty | Needs evaluation |
A flaw has been found in janmojzis tinyssh up to 20250501. Impacted is an unknown function of the file tinyssh/crypto_sign_ed25519_tinyssh.c of the component Ed25519 Signature Handler. This manipulation causes...
1 affected package
tinyssh
| Package | 18.04 LTS |
|---|---|
| tinyssh | Needs evaluation |
A security flaw has been discovered in pygments up to 2.19.2. The impacted element is the function AdlLexer of the file pygments/lexers/archetype.py. The manipulation results in inefficient regular expression complexity....
1 affected package
pygments
| Package | 18.04 LTS |
|---|---|
| pygments | Needs evaluation |
SOGo before 5.12.5 does not renew the OTP if a user disables/enables it, and has a too short length (only 12 digits instead of the 20 recommended).
1 affected package
sogo
| Package | 18.04 LTS |
|---|---|
| sogo | Needs evaluation |