Search CVE reports
1141 – 1150 of 49237 results
NanoSVG commit 239e102ec contains an incorrect numeric conversion vulnerability in the rasterizer's nsvg__addActive() function. A specially crafted SVG document containing sufficiently large geometry coordinates can cause...
1 affected package
nanosvg
| Package | 24.04 LTS |
|---|---|
| nanosvg | Needs evaluation |
NanoSVG 239e102ec contains an incorrect numeric conversion vulnerability in nsvg__curveDivs() during SVG stroke rasterization. A specially crafted SVG document containing an extremely large stroke-width can cause floating-point...
1 affected package
nanosvg
| Package | 24.04 LTS |
|---|---|
| nanosvg | Needs evaluation |
NanoSVG commit 239e102ec contains an incorrect numeric conversion vulnerability in nsvg__pathArcTo() when parsing SVG arc commands. A specially crafted SVG document containing extreme arc radius values can cause intermediate arc...
1 affected package
nanosvg
| Package | 24.04 LTS |
|---|---|
| nanosvg | Needs evaluation |
MuJS e892c9fdb contains an incorrect numeric conversion vulnerability in jsR_isindex() in jsrun.c. A specially crafted JavaScript input containing an excessively large numeric array index can cause an out-of-range floating-point...
1 affected package
mujs
| Package | 24.04 LTS |
|---|---|
| mujs | Needs evaluation |
libvips 8.19.0 contains a memory access vulnerability when processing little-endian PFM images. If the PFM text header length is not a multiple of four bytes, the mmap-based loader can expose pixel data at an address that is not...
1 affected package
vips
| Package | 24.04 LTS |
|---|---|
| vips | Needs evaluation |
libfyaml 0.9.6 contains a stack exhaustion vulnerability in fy_atom_iter_format(). When processing a specially crafted YAML document containing a very large literal or folded block scalar, the function repeatedly grows an internal...
1 affected package
libfyaml
| Package | 24.04 LTS |
|---|---|
| libfyaml | Needs evaluation |
simdjson 4.6.1 contains a one-byte out-of-bounds read vulnerability in dom::parser::parse_unpadded(). A specially crafted truncated JSON document whose final structural token closes a nested array or object can...
1 affected package
simdjson
| Package | 24.04 LTS |
|---|---|
| simdjson | Needs evaluation |
nDPI 5.1.0 contains a memory access issue in the DNS dissector and serializer deserialization code. Specially crafted network input can cause byte-buffer addresses at odd offsets to be cast to uint16_t or wider integer pointers...
1 affected package
ndpi
| Package | 24.04 LTS |
|---|---|
| ndpi | Needs evaluation |
An integer overflow vulnerability exists in the MPack Node API in MPack 1.1.1 on 32-bit platforms. When parsing a specially crafted MessagePack array32 or map32 object with an excessively large element count, the page allocation...
1 affected package
mpack
| Package | 24.04 LTS |
|---|---|
| mpack | Needs evaluation |
[Unknown description]
1 affected package
kubernetes
| Package | 24.04 LTS |
|---|---|
| kubernetes | Not affected |