Search CVE reports
1231 – 1240 of 37797 results
An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers...
1 affected package
binutils
| Package | 22.04 LTS |
|---|---|
| binutils | Needs evaluation |
An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User...
1 affected package
zabbix
| Package | 22.04 LTS |
|---|---|
| zabbix | Needs evaluation |
Not in release
PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, there is a stack buffer overflow vulnerability when pjmedia-codec parses an RTP payload contain more frames than...
1 affected package
pjproject
| Package | 22.04 LTS |
|---|---|
| pjproject | Not in release |
Not in release
PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, a heap use-after-free vulnerability exists in PJSIP's event subscription framework (evsub.c) that is triggered during presence...
1 affected package
pjproject
| Package | 22.04 LTS |
|---|---|
| pjproject | Not in release |
jackson-core contains core low-level incremental ("streaming") parser and generator abstractions used by Jackson Data Processor. From version 3.0.0 to before version 3.1.0, the UTF8DataInputJsonParser, which is used when parsing...
1 affected package
jackson-core
| Package | 22.04 LTS |
|---|---|
| jackson-core | Needs evaluation |
Not in release
pypdf is a free and open-source pure-python PDF library. Prior to version 6.7.5, an attacker who uses this vulnerability can craft a PDF which leads to long runtimes. This requires accessing a stream which uses the /ASCIIHexDecode...
1 affected package
pypdf
| Package | 22.04 LTS |
|---|---|
| pypdf | Not in release |
Authlib is a Python library which builds OAuth and OpenID Connect servers. From version 1.6.5 to before version 1.6.7, previous tests involving passing a malicious JWT containing alg: none and an empty signature was passing the...
1 affected package
python-authlib
| Package | 22.04 LTS |
|---|---|
| python-authlib | Needs evaluation |
A vulnerability has been found in Ettercap 0.8.4-Garofalo. Affected by this vulnerability is the function add_data_segment of the file src/ettercap/utils/etterfilter/ef_output.c of the component etterfilter. The manipulation leads...
1 affected package
ettercap
| Package | 22.04 LTS |
|---|---|
| ettercap | Needs evaluation |
NLTK versions <=3.9.2 are vulnerable to arbitrary code execution due to improper input validation in the StanfordSegmenter module. The module dynamically loads external Java .jar files without verification or sandboxing. An...
1 affected package
nltk
| Package | 22.04 LTS |
|---|---|
| nltk | Vulnerable |
Not in release
lxml_html_clean is a project for HTML cleaning functionalities copied from `lxml.html.clean`. Prior to version 0.4.4, the <base> tag passes through the default Cleaner configuration. While page_structure=True removes html, head,...
1 affected package
lxml-html-clean
| Package | 22.04 LTS |
|---|---|
| lxml-html-clean | Not in release |