Search CVE reports
741 – 750 of 36897 results
FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read in the NetFlow v9 options template parser. In process_netflow_v9_options_template() (src/netflow_plugin/netflow_v9_collector.cpp), the scope parsing...
1 affected package
fastnetmon
| Package | 24.04 LTS |
|---|---|
| fastnetmon | Needs evaluation |
FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read vulnerability in the NetFlow v9 data flowset processor. In src/netflow_plugin/netflow_v9_collector.cpp, the Data template branch (lines 1695-1702) iterates...
1 affected package
fastnetmon
| Package | 24.04 LTS |
|---|---|
| fastnetmon | Needs evaluation |
libyang before 5.2.6 contains a heap use-after-free write vulnerability in lyd_parser_set_data_flags that incorrectly updates metadata list pointers when freeing non-head default metadata entries. Attackers can trigger...
2 affected packages
libyang, libyang2
| Package | 24.04 LTS |
|---|---|
| libyang | Not in release |
| libyang2 | Needs evaluation |
Not in release
gix-submodule before 0.29.0 (gitoxide before 0.5.21, gix before 0.84.0) incorrectly validates the update field in .gitmodules, allowing attackers to bypass the CommandForbiddenInModulesConfiguration guard when a submodule has been...
2 affected packages
rust-gix, rust-gix-submodule
| Package | 24.04 LTS |
|---|---|
| rust-gix | Not in release |
| rust-gix-submodule | Not in release |
FreeRDP before 3.26.0 contains a heap-buffer-overflow vulnerability in gdi_CacheToSurface that allows remote attackers to write out-of-bounds heap memory. The vulnerability occurs because rectangle validation clamps coordinates to...
3 affected packages
freerdp, freerdp2, freerdp3
| Package | 24.04 LTS |
|---|---|
| freerdp | Not in release |
| freerdp2 | Needs evaluation |
| freerdp3 | Needs evaluation |
Not in release
A security flaw has been discovered in Squirrel up to 3.2. Impacted is the function ReadObject of the file squirrel/sqobject.cpp of the component Cnut File Handler. Performing a manipulation results in heap-based buffer overflow....
1 affected package
squirrel3
| Package | 24.04 LTS |
|---|---|
| squirrel3 | Not in release |
Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds. Perl_study_chunk in regcomp_study.c checked the size of the joined substring buffer in...
1 affected package
perl
| Package | 24.04 LTS |
|---|---|
| perl | Needs evaluation |
Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar header. _read_tar() reads each entry's payload with $handle->read($$data, $block), where $block is derived from the...
1 affected package
perl
| Package | 24.04 LTS |
|---|---|
| perl | Needs evaluation |
[Stack Buffer Overflow in radvdump Route Information Option Parser]
1 affected package
radvd
| Package | 24.04 LTS |
|---|---|
| radvd | Needs evaluation |
Starlette is a lightweight ASGI framework/toolkit. Prior to version 1.0.1, the HTTP `Host` request header was not validated before being used to reconstruct `request.url`. Because the routing algorithm relies on the raw HTTP path...
1 affected package
starlette
| Package | 24.04 LTS |
|---|---|
| starlette | Needs evaluation |