Search CVE reports
91 – 100 of 58627 results
[Unknown description]
1 affected package
ppp
| Package | 16.04 LTS |
|---|---|
| ppp | Needs evaluation |
PJSIP is a free and open source multimedia communication library written in C. In 2.17 and earlier, the OpenSSL and GnuTLS backends in pjlib/src/pj/ssl_sock_ossl.c and pjlib/src/pj/ssl_sock_gtls.c copy DNS SubjectAltName values...
2 affected packages
asterisk, pjproject
| Package | 16.04 LTS |
|---|---|
| asterisk | Needs evaluation |
| pjproject | Needs evaluation |
Pod::Text versions before 6.1.1 for Perl allow CPU and memory exhaustion formatting a POD document whose =over nesting drives the margin to the output width. Each =over adds its indent to the margin, which wrap() subtracts from...
1 affected package
perl
| Package | 16.04 LTS |
|---|---|
| perl | Needs evaluation |
A flaw was found in QEMU. The VAPIC setup hypercall in hw/i386/vapic.c does not validate that the writable RAM alias remains within the option ROM window. A privileged guest user on a Q35/KVM machine can position this alias over...
2 affected packages
qemu, qemu-hwe
| Package | 16.04 LTS |
|---|---|
| qemu | Needs evaluation |
| qemu-hwe | — |
Mojolicious is a real-time web framework for Perl. Prior to 9.48, the Mojolicious CSRF helpers csrf_field, csrf_token, and csrf_protect reuse an unchanged per-session token in rendered HTML. When response compression is enabled...
1 affected package
perl
| Package | 16.04 LTS |
|---|---|
| perl | Needs evaluation |
Autobahn Python is a WebSocket and WAMP implementation for Python that supports Twisted and asyncio. Prior to 26.7.1, WebSocket endpoints that accept permessage-deflate and rely on maxMessagePayloadSize enforce that limit against...
1 affected package
python-autobahn
| Package | 16.04 LTS |
|---|---|
| python-autobahn | Needs evaluation |
PJSIP is a free and open source multimedia communication library written in C. In 2.17 and earlier, the PJSIP AVI parser in pjmedia/src/pjmedia/avi_player.c uses an input-file video chunk length as the number of bytes copied into...
2 affected packages
asterisk, pjproject
| Package | 16.04 LTS |
|---|---|
| asterisk | Needs evaluation |
| pjproject | Needs evaluation |
In libsmpp35 from 0.1.0 through 1.8.0 out of bound read issue was found in theĀ at smpp34_unpack() function via attacker controlledĀ SMPP PDUs, leading to memory corruption.
1 affected package
libsmpp34
| Package | 16.04 LTS |
|---|---|
| libsmpp34 | Needs evaluation |
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.17 and 8.0.6, src/flow-hash.c can treat an IPv4 and IPv6 flow as equal without comparing the IP...
1 affected package
suricata
| Package | 16.04 LTS |
|---|---|
| suricata | Needs evaluation |
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, DNS-over-HTTP/2 processing in rust/src/http2/http2.rs retains previously processed...
1 affected package
suricata
| Package | 16.04 LTS |
|---|---|
| suricata | Needs evaluation |