Search CVE reports
1131 – 1140 of 49237 results
(Improper Verification of Cryptographic Signature vulnerability in dash ...)
1 affected package
dash
| Package | 24.04 LTS |
|---|---|
| dash | Not affected |
Mini-XML 4.0.5 contains a memory leak vulnerability in mxml_load_data() during malformed XML parsing. Specially crafted XML input can cause text nodes allocated by mxmlNewText() to become unlinked before a parse error transfers...
1 affected package
mxml
| Package | 24.04 LTS |
|---|---|
| mxml | Needs evaluation |
OpenEXR 3.4.14 contains a NULL Pointer Dereference in the C++ attribute parsing path. A specially crafted EXR file containing an unknown-type attribute with dataSize set to zero causes the parser to create an opaque attribute with...
1 affected package
openexr
| Package | 24.04 LTS |
|---|---|
| openexr | Needs evaluation |
Not in release
libical 4.0.6 contains an incompatible function pointer in icalparameter_string_to_kind(). When parsing iCalendar data containing a parameterized property, the function passes icalparameter_compare_kind_map() to bsearch() through...
1 affected package
libical
| Package | 24.04 LTS |
|---|---|
| libical | Not in release |
hiredis commit 29ea279 (post-v1.5.0) contains an uncontrolled memory allocation vulnerability in its RESP aggregate parser.
1 affected package
hiredis
| Package | 24.04 LTS |
|---|---|
| hiredis | Needs evaluation |
QuickJS commit 04be24600 contains a heap out-of-bounds write condition in JS_ReadFunctionTag().
1 affected package
quickjs
| Package | 24.04 LTS |
|---|---|
| quickjs | Needs evaluation |
libde265 commit 4d45a6b contains a NULL pointer dereference vulnerability in the NAL parsing path. When de265_push_NAL() is called with a zero-length NAL unit, the resulting NAL_unit may retain a NULL backing buffer, which...
1 affected package
libde265
| Package | 24.04 LTS |
|---|---|
| libde265 | Needs evaluation |
libsndfile 1.2.2 contains an integer overflow vulnerability in mat4_read_header() when parsing crafted MAT4 (MATLAB v4) files.
1 affected package
libsndfile
| Package | 24.04 LTS |
|---|---|
| libsndfile | Needs evaluation |
ZBar commit 2ea2ca58 contains an undefined-behavior vulnerability in the Code 128 decode6() function. When processing specially crafted Code 128 input, decode_e() can return -1 for an invalid edge pattern, and...
1 affected package
zbar
| Package | 24.04 LTS |
|---|---|
| zbar | Needs evaluation |
zserge jsmn commit 25647e6 is vulnerable to Buffer Overflow in example/jsondump.c dump().
1 affected package
jsmn
| Package | 24.04 LTS |
|---|---|
| jsmn | Needs evaluation |