Search CVE reports
691 – 700 of 26181 results
PDFunite 0.41.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by processing malformed PDF files during merge operations. Attackers can trigger a segmentation fault in...
1 affected package
poppler
| Package | 26.04 LTS |
|---|---|
| poppler | Not affected |
librsvg2-bin 2.40.13 contains a buffer overflow vulnerability that allows local attackers to cause a denial of service by processing malformed SVG files. Attackers can supply crafted SVG input to the rsvg conversion tool to...
1 affected package
librsvg
| Package | 26.04 LTS |
|---|---|
| librsvg | Not affected |
When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances. Similar to CVE-2024-11053.
1 affected package
curl
| Package | 26.04 LTS |
|---|---|
| curl | Fixed |
Using libcurl, when a custom `Host:` header is first set for a HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use...
1 affected package
curl
| Package | 26.04 LTS |
|---|---|
| curl | Fixed |
curl might erroneously pass on credentials for a first proxy to a second proxy.
1 affected package
curl
| Package | 26.04 LTS |
|---|---|
| curl | Fixed |
libcurl might in some circumstances reuse the wrong connection for SMB(S) transfers.
1 affected package
curl
| Package | 26.04 LTS |
|---|---|
| curl | Fixed |
libcurl might in some circumstances reuse the wrong connection when asked to do an authenticated HTTP(S) request after a Negotiate-authenticated one, when both use the same host.
1 affected package
curl
| Package | 26.04 LTS |
|---|---|
| curl | Fixed |
A vulnerability exists where a connection requiring TLS incorrectly reuses an existing unencrypted connection from the same connection pool. If an initial transfer is made in clear-text (via IMAP, SMTP, or POP3), a subsequent...
1 affected package
curl
| Package | 26.04 LTS |
|---|---|
| curl | Fixed |
Possible OOB read/write with SPA authenticator
1 affected package
exim4
| Package | 26.04 LTS |
|---|---|
| exim4 | Fixed |
Possible OOB read with large UTF8 trailing characters
1 affected package
exim4
| Package | 26.04 LTS |
|---|---|
| exim4 | Fixed |