Search CVE reports
1291 – 1300 of 47438 results
Znuny before LTS 6.5.22 allows AgentTicketEmailResend template XSS.
2 affected packages
znuny, otrs2
| Package | 20.04 LTS |
|---|---|
| znuny | — |
| otrs2 | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, applications that define unusual custom libvips sources and use them to process untrusted uncompressed PPM images can trigger a...
1 affected package
vips
| Package | 20.04 LTS |
|---|---|
| vips | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, the old-style Radiance RLE decoder in libvips/foreign/radiance.c can process a repeat marker at the beginning of a scanline in...
1 affected package
vips
| Package | 20.04 LTS |
|---|---|
| vips | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, libvips built with libultrahdr support can incorrectly size an output buffer in libvips/foreign/uhdrsave.c...
1 affected package
vips
| Package | 20.04 LTS |
|---|---|
| vips | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, libvips built without libtiff support but with ImageMagick support can overflow the combined frame height while loading a...
1 affected package
vips
| Package | 20.04 LTS |
|---|---|
| vips | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, a crafted many-band TIFF processed through VipsForeignLoadTiff can evade scanline validation in libvips/iofuncs/image.c and cause an...
1 affected package
vips
| Package | 20.04 LTS |
|---|---|
| vips | Needs evaluation |
msgpack_unpacker_expand_buffer in src/unpack.c, reached through the public msgpack_unpacker_reserve_buffer API, computes its new buffer size using an unchecked size_t addition of the requested size and the amount already used. The...
1 affected package
msgpack-c
| Package | 20.04 LTS |
|---|---|
| msgpack-c | Needs evaluation |
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, verify_server_cert...
1 affected package
libgit2
| Package | 20.04 LTS |
|---|---|
| libgit2 | Needs evaluation |
Catalyst::Plugin::Static::Simple versions through 0.38 for Perl mark responses as publicly cacheable. The _serve_static method always sets the Cache-Control header to "public", with no means of overriding it. This advises proxies...
1 affected package
libcatalyst-plugin-static-simple-perl
| Package | 20.04 LTS |
|---|---|
| libcatalyst-plugin-static-simple-perl | Needs evaluation |
Expat through 2.8.3 contains an out-of-bounds read vulnerability that allows attackers to trigger memory corruption by processing XML with external entity parsers created via XML_ExternalEntityParserCreate. A struct size mismatch...
23 affected packages
expat, apache2, apr-util, cmake, ghostscript...
| Package | 20.04 LTS |
|---|---|
| expat | Vulnerable |
| apache2 | Not affected |
| apr-util | Not affected |
| cmake | Not affected |
| ghostscript | Not affected |
| texlive-bin | Not affected |
| xmlrpc-c | Needs evaluation |
| vnc4 | — |
| wbxml2 | Needs evaluation |
| swish-e | Needs evaluation |
| insighttoolkit4 | Needs evaluation |
| cadaver | Needs evaluation |
| gdcm | Not affected |
| ayttm | — |
| cableswig | — |
| coin3 | Not affected |
| matanza | Ignored |
| tdom | Needs evaluation |
| vtk | — |
| smart | — |
| firefox | — |
| thunderbird | — |
| libxmltok | Needs evaluation |