Search CVE reports
11 – 20 of 40395 results
CVE-2025-32909
Medium priorityA flaw was found in libsoup. SoupContentSniffer may be vulnerable to a NULL pointer dereference in the sniff_mp4 function. The HTTP server may cause the libsoup client to crash.
2 affected packages
libsoup2.4, libsoup3
Package | 16.04 LTS |
---|---|
libsoup2.4 | Needs evaluation |
libsoup3 | — |
CVE-2025-32913
Medium priorityA flaw was found in libsoup, where the soup_message_headers_get_content_disposition() function is vulnerable to a NULL pointer dereference. This flaw allows a malicious HTTP peer to crash a libsoup client or server that uses this function.
2 affected packages
libsoup2.4, libsoup3
Package | 16.04 LTS |
---|---|
libsoup2.4 | Needs evaluation |
libsoup3 | — |
CVE-2025-32908
Medium priorityA flaw was found in libsoup. The HTTP/2 server in libsoup may not fully validate the values of pseudo-headers :scheme, :authority, and :path, which may allow a user to cause a denial of service (DoS).
2 affected packages
libsoup2.4, libsoup3
Package | 16.04 LTS |
---|---|
libsoup2.4 | Needs evaluation |
libsoup3 | — |
CVE-2025-32907
Medium priorityA flaw was found in libsoup. The implementation of HTTP range requests is vulnerable to a resource consumption attack. This flaw allows a malicious client to request the same range many times in a single HTTP request, causing the...
2 affected packages
libsoup2.4, libsoup3
Package | 16.04 LTS |
---|---|
libsoup2.4 | Needs evaluation |
libsoup3 | — |
CVE-2025-32906
Medium priorityA flaw was found in libsoup, where the soup_headers_parse_request() function may be vulnerable to an out-of-bound read. This flaw allows a malicious user to use a specially crafted HTTP request to crash the HTTP server.
2 affected packages
libsoup2.4, libsoup3
Package | 16.04 LTS |
---|---|
libsoup2.4 | Needs evaluation |
libsoup3 | — |
CVE-2025-31344
Medium priorityHeap-based Buffer Overflow vulnerability in openEuler giflib on Linux. This vulnerability is associated with program files gif2rgb.C. This issue affects giflib: through 5.2.2.
1 affected package
giflib
Package | 16.04 LTS |
---|---|
giflib | Needs evaluation |
CVE-2025-3549
Medium priorityA vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. Affected is the function Assimp::MD3Importer::ValidateSurfaceHeaderOffsets of the file code/AssetLib/MD3/MD3Loader.cpp of the...
1 affected package
assimp
Package | 16.04 LTS |
---|---|
assimp | Needs evaluation |
CVE-2025-3548
Medium priorityA vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp up to 5.4.3. This issue affects the function aiString::Set in the library include/assimp/types.h of the component File Handler....
1 affected package
assimp
Package | 16.04 LTS |
---|---|
assimp | Needs evaluation |
CVE-2024-56406
Medium priorityA heap buffer overflow vulnerability was discovered in Perl. Release branches 5.34, 5.36, 5.38 and 5.40 are affected, including development versions from 5.33.1 through 5.41.10. When there are non-ASCII bytes in the left-hand-side...
1 affected package
perl
Package | 16.04 LTS |
---|---|
perl | Not affected |
CVE-2025-2814
Medium priorityCrypt::CBC versions between 1.21 and 3.04 for Perl may use the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions. This issue affects operating systems where...
1 affected package
libcrypt-cbc-perl
Package | 16.04 LTS |
---|---|
libcrypt-cbc-perl | Needs evaluation |