Search CVE reports
1341 – 1350 of 48501 results
MongoDB Server may experience an out-of-memory failure while evaluating expressions that produce deeply nested documents. The issue arises in recursive functions because the server does not periodically check the depth of the expression.
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Not affected |
Connections received from the proxy port may not count towards total accepted connections, resulting in server crashes if the total number of connections exceeds available resources. This only applies to connections accepted from...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Not affected |
Inserting certain large documents into a replica set could lead to replica set secondaries not being able to fetch the oplog from the primary. This could stall replication inside the replica set leading to server crash.
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Vulnerable |
LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API...
5 affected packages
libpng, firefox, thunderbird, chromium-browser, libpng1.6
| Package | 16.04 LTS |
|---|---|
| libpng | Fixed |
| firefox | — |
| thunderbird | — |
| chromium-browser | — |
| libpng1.6 | Fixed |
The internal locking mechanism of the MongoDB server uses an internal encoding of the resources in order to choose what lock to take. Collections may inadvertently collide with one another in this representation...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Vulnerable |
A series of specifically crafted, unauthenticated messages can exhaust available memory and crash a MongoDB server.
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Not affected |
Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable...
1 affected package
intel-microcode
| Package | 16.04 LTS |
|---|---|
| intel-microcode | Fixed |
An issue inTcpreplay v4.5.1 allows a local attacker to cause a denial of service via a crafted file to the tcpedit_dlt_getplugin function at src/tcpedit/plugins/dlt_utils.c.
1 affected package
tcpreplay
| Package | 16.04 LTS |
|---|---|
| tcpreplay | Needs evaluation |
A security vulnerability has been detected in ckolivas lrzip up to 0.651. This vulnerability affects the function ucompthread of the file stream.c. Such manipulation leads to null pointer dereference. The attack can only...
1 affected package
lrzip
| Package | 16.04 LTS |
|---|---|
| lrzip | Needs evaluation |
A vulnerability was found in ckolivas lrzip up to 0.651. This impacts the function lzma_decompress_buf of the file stream.c. Performing a manipulation results in use after free. Attacking locally is a requirement. The exploit has...
1 affected package
lrzip
| Package | 16.04 LTS |
|---|---|
| lrzip | Needs evaluation |