Search CVE reports
281 – 290 of 39399 results
BusyBox passwd/group tokenize() references a stale endpoint pointer after trimming, causing an out-of-bounds write of heap pointers.
1 affected package
busybox
| Package | 26.04 LTS |
|---|---|
| busybox | Needs evaluation |
BusyBox httpd treats yescrypt ($y$) password hashes as plaintext during Basic Authentication, inverting the authentication check.
1 affected package
busybox
| Package | 26.04 LTS |
|---|---|
| busybox | Needs evaluation |
BusyBox dpkg read_package_field() steps past a NUL terminator on malformed .deb packages, causing an out-of-bounds heap read.
1 affected package
busybox
| Package | 26.04 LTS |
|---|---|
| busybox | Needs evaluation |
BusyBox romfs volume ID parsing uses unbounded strlen on attacker-controlled metadata, causing a heap buffer overflow when processing crafted filesystem images.
1 affected package
busybox
| Package | 26.04 LTS |
|---|---|
| busybox | Needs evaluation |
BusyBox httpd IP deny rules with invalid CIDR prefix lengths fail open, leaving a parsed IP with a zeroed mask so the rule matches no clients.
1 affected package
busybox
| Package | 26.04 LTS |
|---|---|
| busybox | Needs evaluation |
A unit confusion in BusyBox TLS Montgomery reduction buffer allocation causes a pre-authentication heap buffer overflow when processing a crafted ClientKeyExchange message.
1 affected package
busybox
| Package | 26.04 LTS |
|---|---|
| busybox | Needs evaluation |
[Fix FetchHashKeyName on IV/NV]
1 affected package
libdbi-perl
| Package | 26.04 LTS |
|---|---|
| libdbi-perl | Needs evaluation |
[Fix DBI::sql_type_cast on IV/NV]
1 affected package
libdbi-perl
| Package | 26.04 LTS |
|---|---|
| libdbi-perl | Needs evaluation |
(Mini-XML 4.0.5 contains a memory leak vulnerability in mxml_load_data( ...)
1 affected package
mxml
| Package | 26.04 LTS |
|---|---|
| mxml | Needs evaluation |
(OpenEXR 3.4.14 contains a NULL Pointer Dereference in the C++ attribut ...)
1 affected package
openexr
| Package | 26.04 LTS |
|---|---|
| openexr | Needs evaluation |