Search CVE reports


Toggle filters

501 – 510 of 1235 results


CVE-2020-13902

Low priority
Ignored

ImageMagick 7.0.9-27 through 7.0.10-17 has a heap-based buffer over-read in BlobToStringInfo in MagickCore/string.c during TIFF image decoding.

1 affected package

imagemagick

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
imagemagick Not affected Not affected
Show less packages

CVE-2020-8159

Medium priority
Needs evaluation

There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view.

1 affected package

ruby-actionpack-page-caching

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ruby-actionpack-page-caching Not in release Not affected Not affected Needs evaluation Needs evaluation
Show less packages

CVE-2018-19516

Medium priority
Vulnerable

messagepartthemes/default/defaultrenderer.cpp in messagelib in KDE Applications before 18.12.0 does not properly restrict the handling of an http-equiv="REFRESH" value.

1 affected package

kf5-messagelib

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kf5-messagelib Not in release Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2012-1096

Low priority
Vulnerable

NetworkManager 0.9 and earlier allows local users to use other users' certificates or private keys when making a connection via the file path when adding a new connection.

1 affected package

network-manager

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
network-manager Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2020-10251

Low priority
Ignored

In ImageMagick 7.0.9, an out-of-bounds read vulnerability exists within the ReadHEICImageByID function in coders\heic.c. It can be triggered via an image with a width or height value that exceeds the actual size of the image.

1 affected package

imagemagick

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
imagemagick Not affected Not affected
Show less packages

CVE-2020-9355

Medium priority
Vulnerable

danfruehauf NetworkManager-ssh before 1.2.11 allows privilege escalation because extra options are mishandled.

1 affected package

network-manager-ssh

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
network-manager-ssh Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2014-1947

Medium priority
Ignored

Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of...

1 affected package

imagemagick

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
imagemagick
Show less packages

CVE-2011-4115

Low priority
Vulnerable

Parallel::ForkManager module before 1.0.0 for Perl does not properly handle temporary files.

1 affected package

libparallel-forkmanager-perl

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libparallel-forkmanager-perl Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2006-7246

Low priority
Ignored

NetworkManager 0.9.x does not pin a certificate's subject to an ESSID when 802.11X authentication is used.

1 affected package

network-manager

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
network-manager
Show less packages

CVE-2014-0104

Low priority
Ignored

In fence-agents before 4.0.17 does not verify remote SSL certificates in the fence_cisco_ucs.py script which can potentially allow for man-in-the-middle attackers to spoof SSL servers via arbitrary SSL certificates.

1 affected package

fence-agents

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fence-agents Not affected Not affected
Show less packages