Search CVE reports
491 – 500 of 44457 results
[Unknown description]
1 affected package
netatalk
| Package | 22.04 LTS |
|---|---|
| netatalk | Needs evaluation |
[Unknown description]
1 affected package
netatalk
| Package | 22.04 LTS |
|---|---|
| netatalk | Needs evaluation |
[Unknown description]
1 affected package
netatalk
| Package | 22.04 LTS |
|---|---|
| netatalk | Needs evaluation |
[Unknown description]
1 affected package
trafficserver
| Package | 22.04 LTS |
|---|---|
| trafficserver | Needs evaluation |
YAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via an unbounded newline scan in newline_len. In the bundled libsyck newline_len and is_newline dereference the scan pointer, and the following byte for a "\r\n"...
1 affected package
libyaml-syck-perl
| Package | 22.04 LTS |
|---|---|
| libyaml-syck-perl | Needs evaluation |
YAML::Syck versions before 1.47 for Perl allow a heap use-after-free via an anchor name reused as an anchors-table key in syck_hdlr_add_anchor. In the bundled libsyck an anchor name allocated by syck_strndup is stored both as...
1 affected package
libyaml-syck-perl
| Package | 22.04 LTS |
|---|---|
| libyaml-syck-perl | Needs evaluation |
YAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via a signed-char lookup-table index in syck_base64dec. The base64 decoder in the bundled libsyck indexes the 256-entry static table b64_xtable with a signed...
1 affected package
libyaml-syck-perl
| Package | 22.04 LTS |
|---|---|
| libyaml-syck-perl | Needs evaluation |
XML::Bare versions through 0.53 for Perl have an unbounded character lookahead. The parserc_parse function attempts to check for multicharacter strings such as "<![CDATA" or element terminators such as ">" without checking...
1 affected package
libxml-bare-perl
| Package | 22.04 LTS |
|---|---|
| libxml-bare-perl | Needs evaluation |
A flaw was found in PipeWire, a multimedia server. This vulnerability allows an attacker to escape sandboxed applications, such as Flatpak, by exploiting PipeWire's PulseAudio compatibility layer. An attacker with minimal...
1 affected package
pipewire
| Package | 22.04 LTS |
|---|---|
| pipewire | Needs evaluation |
h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. Prior to commit 9265bdd, there is an HTTP/2 state amplification issue that combines HPACK decompression amplification with Slowloris-style stream stalling....
2 affected packages
h2o, dnsdist
| Package | 22.04 LTS |
|---|---|
| h2o | Needs evaluation |
| dnsdist | Not affected |