Search CVE reports
1421 – 1430 of 47438 results
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.14. Easily exploitable vulnerability allows high privileged attacker with logon to the...
1 affected package
virtualbox
| Package | 20.04 LTS |
|---|---|
| virtualbox | Needs evaluation |
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.14. Easily exploitable vulnerability allows high privileged attacker with logon to the...
1 affected package
virtualbox
| Package | 20.04 LTS |
|---|---|
| virtualbox | Needs evaluation |
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access...
1 affected package
virtualbox
| Package | 20.04 LTS |
|---|---|
| virtualbox | Needs evaluation |
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32,...
11 affected packages
openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...
| Package | 20.04 LTS |
|---|---|
| openjdk-8 | Needs evaluation |
| openjdk-9 | — |
| openjdk-lts | Needs evaluation |
| openjdk-13 | Ignored |
| openjdk-16 | Ignored |
| openjdk-17 | Needs evaluation |
| openjdk-17-crac | — |
| openjdk-18 | — |
| openjdk-21 | Needs evaluation |
| openjdk-21-crac | — |
| openjdk-25 | — |
Vulnerability in Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Java SE: 25.0.4 and 26.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple...
11 affected packages
openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...
| Package | 20.04 LTS |
|---|---|
| openjdk-8 | Not affected |
| openjdk-9 | — |
| openjdk-lts | Not affected |
| openjdk-13 | Ignored |
| openjdk-16 | Ignored |
| openjdk-17 | Not affected |
| openjdk-17-crac | — |
| openjdk-18 | — |
| openjdk-21 | Not affected |
| openjdk-21-crac | — |
| openjdk-25 | — |
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20,...
11 affected packages
openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...
| Package | 20.04 LTS |
|---|---|
| openjdk-8 | Needs evaluation |
| openjdk-9 | — |
| openjdk-lts | Needs evaluation |
| openjdk-13 | Ignored |
| openjdk-16 | Ignored |
| openjdk-17 | Needs evaluation |
| openjdk-17-crac | — |
| openjdk-18 | — |
| openjdk-21 | Needs evaluation |
| openjdk-21-crac | — |
| openjdk-25 | — |
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20,...
11 affected packages
openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...
| Package | 20.04 LTS |
|---|---|
| openjdk-8 | Needs evaluation |
| openjdk-9 | — |
| openjdk-lts | Needs evaluation |
| openjdk-13 | Ignored |
| openjdk-16 | Ignored |
| openjdk-17 | Needs evaluation |
| openjdk-17-crac | — |
| openjdk-18 | — |
| openjdk-21 | Needs evaluation |
| openjdk-21-crac | — |
| openjdk-25 | — |
The tar extraction routines in moby/go-archive (Unpack, UnpackLayer, Untar/UntarUncompressed, and the ApplyLayer helpers) do not confine filesystem operations to the destination directory. The extractor decides where each archive...
2 affected packages
docker.io, docker.io-app
| Package | 20.04 LTS |
|---|---|
| docker.io | Needs evaluation |
| docker.io-app | Needs evaluation |
Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to the content-addressable cache, relying only on CRC32 checksums for piece validation. Attackers on the...
1 affected package
kraken
| Package | 20.04 LTS |
|---|---|
| kraken | Needs evaluation |
WeasyPrint helps web developers to create PDF documents. Prior to 69.0, WeasyPrint embeds unescaped HTML presentational-hint attribute values into CSS in weasyprint/css/__init__.py when presentational_hints=True. The background...
1 affected package
weasyprint
| Package | 20.04 LTS |
|---|---|
| weasyprint | Needs evaluation |