Search CVE reports
51 – 60 of 25599 results
An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a...
1 affected package
catdoc
Package | 24.04 LTS |
---|---|
catdoc | Needs evaluation |
A memory corruption vulnerability exists in the Shared String Table Record Parser implementation in xls2csv utility version 0.95. A specially crafted malformed file can lead to a heap buffer overflow. An attacker can provide a...
1 affected package
catdoc
Package | 24.04 LTS |
---|---|
catdoc | Needs evaluation |
YAML-LibYAML prior to 0.903.0 for Perl uses 2-args open, allowing existing files to be modified
1 affected package
libyaml-libyaml-perl
Package | 24.04 LTS |
---|---|
libyaml-libyaml-perl | Needs evaluation |
go-gh is a collection of Go modules to make authoring GitHub CLI extensions easier. A security vulnerability has been identified in versions prior to 2.12.1 where an attacker-controlled GitHub Enterprise Server could result in...
2 affected packages
golang-github-cli-go-gh, golang-github-cli-go-gh-v2
Package | 24.04 LTS |
---|---|
golang-github-cli-go-gh | Needs evaluation |
golang-github-cli-go-gh-v2 | Needs evaluation |
Perl threads have a working directory race condition where file operations may target unintended paths. If a directory handle is open at thread creation, the process-wide current working directory is temporarily changed in order...
1 affected package
perl
Package | 24.04 LTS |
---|---|
perl | Needs evaluation |
jhead v3.08 was discovered to contain a heap-use-after-free via the ProcessFile function at jhead.c.
1 affected package
jhead
Package | 24.04 LTS |
---|---|
jhead | Needs evaluation |
Improper Validation of Unsafe Equivalence in punycode by the idna crate from Servo rust-url allows an attacker to create a punycode hostname that one part of a system might treat as distinct while another part of that system would...
1 affected package
rust-idna
Package | 24.04 LTS |
---|---|
rust-idna | Needs evaluation |
A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to access the original's privileged process coredump, allowing the attacker to read...
1 affected package
systemd
Package | 24.04 LTS |
---|---|
systemd | Vulnerable |
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Z__filter_scaleoffset function.
1 affected package
hdf5
Package | 24.04 LTS |
---|---|
hdf5 | Needs evaluation |
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function.
1 affected package
hdf5
Package | 24.04 LTS |
---|---|
hdf5 | Needs evaluation |