Search CVE reports


Toggle filters

21 – 30 of 42 results


CVE-2021-39141

Medium priority

Some fixes available 2 of 4

XStream is a simple library to serialize objects to XML and back again. In affected versions this vulnerability may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating the processed...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Not affected Fixed Fixed
Show less packages

CVE-2021-39140

Medium priority

Some fixes available 2 of 4

XStream is a simple library to serialize objects to XML and back again. In affected versions this vulnerability may allow a remote attacker to allocate 100% CPU time on the target system depending on CPU type or parallel execution...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Not affected Fixed Fixed
Show less packages

CVE-2021-39139

Medium priority

Some fixes available 2 of 4

XStream is a simple library to serialize objects to XML and back again. In affected versions this vulnerability may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating the processed...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Not affected Fixed Fixed
Show less packages

CVE-2021-29505

Medium priority
Vulnerable

XStream is software for serializing Java objects to XML and back again. A vulnerability in XStream versions prior to 1.4.17 may allow a remote attacker has sufficient rights to execute commands of the host only by manipulating the...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Not affected Not affected Vulnerable Vulnerable
Show less packages

CVE-2021-21351

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability may allow a remote attacker to load and execute arbitrary code from a remote host only...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21350

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to execute arbitrary code only by manipulating the processed input...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21349

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to request data from internal resources that are not publicly...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21348

Low priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to occupy a thread that consumes maximum CPU time and will never...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21347

Medium priority
Fixed

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-21346

Medium priority

Some fixes available 6 of 9

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code from a remote host only by...

1 affected package

libxstream-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxstream-java Not affected Vulnerable Fixed Fixed
Show less packages