Search CVE reports
51 – 60 of 31050 results
Not in release
go-gh is a collection of Go modules to make authoring GitHub CLI extensions easier. A security vulnerability has been identified in versions prior to 2.12.1 where an attacker-controlled GitHub Enterprise Server could result in...
2 affected packages
golang-github-cli-go-gh, golang-github-cli-go-gh-v2
Package | 20.04 LTS |
---|---|
golang-github-cli-go-gh | Not in release |
golang-github-cli-go-gh-v2 | Not in release |
Perl threads have a working directory race condition where file operations may target unintended paths. If a directory handle is open at thread creation, the process-wide current working directory is temporarily changed in order...
1 affected package
perl
Package | 20.04 LTS |
---|---|
perl | Needs evaluation |
jhead v3.08 was discovered to contain a heap-use-after-free via the ProcessFile function at jhead.c.
1 affected package
jhead
Package | 20.04 LTS |
---|---|
jhead | Needs evaluation |
Improper Validation of Unsafe Equivalence in punycode by the idna crate from Servo rust-url allows an attacker to create a punycode hostname that one part of a system might treat as distinct while another part of that system would...
1 affected package
rust-idna
Package | 20.04 LTS |
---|---|
rust-idna | Needs evaluation |
A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to access the original's privileged process coredump, allowing the attacker to read...
1 affected package
systemd
Package | 20.04 LTS |
---|---|
systemd | Vulnerable |
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Z__filter_scaleoffset function.
1 affected package
hdf5
Package | 20.04 LTS |
---|---|
hdf5 | Needs evaluation |
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function.
1 affected package
hdf5
Package | 20.04 LTS |
---|---|
hdf5 | Needs evaluation |
Not in release
A buffer overflow, as described in CVE-2020-8927, exists in the embedded Brotli library. Versions of IO::Compress::Brotli prior to 0.007 included a version of the brotli library prior to version 1.0.8, where an...
1 affected package
libio-compress-brotli-perl
Package | 20.04 LTS |
---|---|
libio-compress-brotli-perl | Not in release |
Improper Handling of Case Sensitivity vulnerability in Apache Tomcat's GCI servlet allows security constraint bypass of security constraints that apply to the pathInfo component of a URI mapped to the CGI servlet. This issue...
3 affected packages
tomcat10, tomcat11, tomcat9
Package | 20.04 LTS |
---|---|
tomcat10 | Not in release |
tomcat11 | Not in release |
tomcat9 | Needs evaluation |
tcpreplay v4.4.4 was discovered to contain an infinite loop via the tcprewrite function at get.c.
1 affected package
tcpreplay
Package | 20.04 LTS |
---|---|
tcpreplay | Needs evaluation |