Search CVE reports
2871 – 2880 of 26567 results
ImpactA server can reply with a WebSocket frame using the 64-bit length form and an extremely large length. undici's ByteParser overflows internal math, ends up in an invalid state, and throws a fatal TypeError that terminates the...
1 affected package
node-undici
| Package | 26.04 LTS |
|---|---|
| node-undici | Needs evaluation |
ImpactWhen an application passes user-controlled input to the upgrade option of client.request(), an attacker can inject CRLF sequences (\r\n) to: * Inject arbitrary HTTP headers * Terminate the HTTP request prematurely and...
1 affected package
node-undici
| Package | 26.04 LTS |
|---|---|
| node-undici | Needs evaluation |
The undici WebSocket client is vulnerable to a denial-of-service attack via unbounded memory consumption during permessage-deflate decompression. When a WebSocket connection negotiates the permessage-deflate extension, the client...
1 affected package
node-undici
| Package | 26.04 LTS |
|---|---|
| node-undici | Needs evaluation |
Black is the uncompromising Python code formatter. Prior to 26.3.1, Black writes a cache file, the name of which is computed from various formatting options. The value of the --python-cell-magics option was placed in the filename...
1 affected package
black
| Package | 26.04 LTS |
|---|---|
| black | Needs evaluation |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9.13-41, when a memory allocation fails in the sixel encoder it would be possible to write past the end of a...
1 affected package
imagemagick
| Package | 26.04 LTS |
|---|---|
| imagemagick | Needs evaluation |
Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, when using Transfer-Encoding: chunked, if a chunk's size parsed to a value of 2^64 or larger, it would be truncated to a 64-bit integer. In...
1 affected package
capnproto
| Package | 26.04 LTS |
|---|---|
| capnproto | Needs evaluation |
Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, a negative Content-Length value was converted to unsigned, treating it as an impossibly large length instead. In theory, this bug could...
1 affected package
capnproto
| Package | 26.04 LTS |
|---|---|
| capnproto | Needs evaluation |
Undici allows duplicate HTTP Content-Length headers when they are provided in an array with case-variant names (e.g., Content-Length and content-length). This produces malformed HTTP/1.1 requests with multiple...
1 affected package
node-undici
| Package | 26.04 LTS |
|---|---|
| node-undici | Needs evaluation |
flatted is a circular JSON parser. Prior to 3.4.0, flatted's parse() function uses a recursive revive() phase to resolve circular references in deserialized JSON. When given a crafted payload with deeply nested or self-referential...
1 affected package
node-flatted
| Package | 26.04 LTS |
|---|---|
| node-flatted | Needs evaluation |
Magic Wormhole makes it possible to get arbitrary-sized files and directories from one computer to another. From 0.21.0 to before 0.23.0, receiving a file (wormhole receive) from a malicious party could result in overwriting...
1 affected package
magic-wormhole
| Package | 26.04 LTS |
|---|---|
| magic-wormhole | Needs evaluation |