Search CVE reports


Toggle filters

91 – 100 of 848 results


CVE-2023-26303

Medium priority

Some fixes available 7 of 9

Denial of service could be caused to markdown-it-py, before v2.2.0, if an attacker was allowed to force null assertions with specially crafted input.

1 affected package

markdown-it-py

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
markdown-it-py Fixed Fixed Needs evaluation Not in release Not in release
Show less packages

CVE-2023-26302

Medium priority

Some fixes available 7 of 9

Denial of service could be caused to the command line interface of markdown-it-py, before v2.2.0, if an attacker was allowed to use invalid UTF-8 characters as input.

1 affected package

markdown-it-py

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
markdown-it-py Fixed Fixed Needs evaluation Not in release Not in release
Show less packages

CVE-2021-32142

Low priority

Some fixes available 11 of 60

Buffer Overflow vulnerability in LibRaw linux/unix v0.20.0 allows attacker to escalate privileges via the LibRaw_buffer_datastream::gets(char*, int) in /src/libraw/src/libraw_datastream.cpp.

9 affected packages

darktable, dcraw, digikam, exactimage, kodi...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
darktable Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
dcraw Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
digikam Not affected Not affected Not affected Fixed Not affected
exactimage Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
kodi Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libraw Fixed Fixed Fixed Fixed Vulnerable
rawtherapee Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
ufraw Not in release Not in release Ignored
xbmc Not in release Not in release Not in release
Show all 9 packages Show less packages

CVE-2023-22486

Medium priority

Some fixes available 4 of 16

cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29.0.gfm.7 contain a polynomial time complexity issue in handle_close_bracket that may lead to unbounded...

2 affected packages

cmark, cmark-gfm

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cmark Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
cmark-gfm Not affected Fixed Fixed Fixed Not in release
Show less packages

CVE-2023-0417

Medium priority
Vulnerable

Memory leak in the NFS dissector in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-0416

Medium priority
Vulnerable

GNW dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Not affected
Show less packages

CVE-2023-0415

Medium priority
Vulnerable

iSCSI dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-0414

Medium priority
Ignored

Crash in the EAP dissector in Wireshark 4.0.0 to 4.0.2 allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-0413

Medium priority
Vulnerable

Dissection engine bug in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-0412

Medium priority
Vulnerable

TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages