Search CVE reports
1131 – 1140 of 48842 results
Caddy is an extensible server platform that uses TLS by default. In version 2.11.3 and earlier, three configuration-dependent weaknesses affect the handler and placeholder layer. In...
1 affected package
caddy
| Package | 24.04 LTS |
|---|---|
| caddy | Needs evaluation |
OpenSlide is a C library for reading whole slide image files. Prior to 4.0.1, a behavior change in libtiff 4.7.1 causes the indirect TIFF tile path in src/openslide-decode-tiff.c and _openslide_tiff_read_tile() to request a...
1 affected package
openslide
| Package | 24.04 LTS |
|---|---|
| openslide | Needs evaluation |
MapServer is a system for developing web-based GIS applications. From 6.0 until 8.6.4, MapServer's OpenLayers HTML output for SERVICE=WMS&REQUEST=GetMap&FORMAT=application/openlayers reflects an attacker-controlled...
1 affected package
mapserver
| Package | 24.04 LTS |
|---|---|
| mapserver | Needs evaluation |
MapServer is a system for developing web-based GIS applications. Prior to 8.6.4, MapServer's PostGIS runtime filter translation in src/mappostgis.cpp and msPostGISLayerTranslateFilter() treats a filteritem as numeric...
1 affected package
mapserver
| Package | 24.04 LTS |
|---|---|
| mapserver | Needs evaluation |
OpenSlide is a C library for reading whole slide image files. From 3.4.1 until 4.0.1, OpenSlide's parse_level0_xml() processing in src/openslide-vendor-ventana.c accepts nonpositive row or column tile counts from a crafted Ventana...
1 affected package
openslide
| Package | 24.04 LTS |
|---|---|
| openslide | Needs evaluation |
NetworkManager-l2tp contains an improper input validation vulnerability that allows local users with VPN connection creation permissions to inject arbitrary pppd directives by supplying mru or mtu property values containing...
1 affected package
network-manager-l2tp
| Package | 24.04 LTS |
|---|---|
| network-manager-l2tp | Needs evaluation |
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to 1.0.0, sail_codec_load_frame_v8_xbm() in src/sail-codecs/xbm/xbm.c allocates the decoded pixel buffer...
1 affected package
sail
| Package | 24.04 LTS |
|---|---|
| sail | Needs evaluation |
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. In 0.9.10 and earlier, psd_private_sail_pixel_format() in src/sail-codecs/psd/helpers.c resolves a one-channel...
1 affected package
sail
| Package | 24.04 LTS |
|---|---|
| sail | Needs evaluation |
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. In 0.9.10 and earlier, the TGA_INDEXED_RLE path selected by image_type == 9 allocates an image buffer using the...
1 affected package
sail
| Package | 24.04 LTS |
|---|---|
| sail | Needs evaluation |
Not in release
Elixir protobuf is a pure Elixir implementation of Google Protobuf. From 0.8.0 until 0.16.1, services that decode attacker-controlled protobuf bytes with Protobuf.Decoder can be taken offline when the schema contains...
1 affected package
elixir
| Package | 24.04 LTS |
|---|---|
| elixir | Not in release |