Search CVE reports


Toggle filters

81 – 90 of 848 results


CVE-2023-2855

Medium priority
Vulnerable

Candump log parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Not affected
Show less packages

CVE-2023-2854

Medium priority
Ignored

BLF file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-1729

Medium priority

Some fixes available 13 of 61

A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.

9 affected packages

ufraw, xbmc, darktable, exactimage, libraw...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ufraw Not in release Not in release Not in release Not in release Ignored
xbmc Not in release Not in release Not in release Not in release Not in release
darktable Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
exactimage Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libraw Fixed Fixed Fixed Fixed Ignored
dcraw Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
digikam Not affected Not affected Fixed Fixed Fixed
kodi Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
rawtherapee Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
Show all 9 packages Show less packages

CVE-2023-1994

Medium priority
Vulnerable

GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-1993

Medium priority
Vulnerable

LISP dissector large loop in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-1992

Medium priority
Vulnerable

RPCoRDMA dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2021-45985

Medium priority
Needs evaluation

In Lua 5.4.3, an erroneous finalizer called during a tail call leads to a heap-based buffer over-read.

9 affected packages

lua5.2, lua5.3, lua5.4, lua50, memcached...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
lua5.2 Not affected Not affected Not affected Not affected Not affected
lua5.3 Not affected Not affected Not affected Not affected Not affected
lua5.4 Not affected Not affected Not affected Not in release Not in release
lua50 Not in release Not in release Not in release Not affected Not affected
memcached Not affected Not affected Not affected Not affected Not affected
tup Needs evaluation Needs evaluation Needs evaluation Ignored Not in release
vifm Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
darktable Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
lua5.1 Not affected Not affected Not affected Not affected Not affected
Show all 9 packages Show less packages

CVE-2023-26485

Medium priority

Some fixes available 4 of 16

cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. A polynomial time complexity issue in cmark-gfm may lead to unbounded resource exhaustion and subsequent denial of service. This CVE...

2 affected packages

cmark, cmark-gfm

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cmark Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
cmark-gfm Not affected Fixed Fixed Fixed Not in release
Show less packages

CVE-2023-24824

Medium priority
Needs evaluation

cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. A polynomial time complexity issue in cmark-gfm may lead to unbounded resource exhaustion and subsequent denial of service. This CVE...

2 affected packages

cmark, cmark-gfm

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cmark Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
cmark-gfm Not affected Not affected Not affected Not affected Not in release
Show less packages

CVE-2023-1161

Medium priority
Vulnerable

ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to 3.6.11 allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages