Search CVE reports


Toggle filters

371 – 380 of 1369 results


CVE-2024-4006

Medium priority
Needs evaluation

An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.7 before 16.9.6, all versions starting from 16.10 before 16.10.4, all versions starting from 16.11 before 16.11.1 where personal access scopes...

2 affected packages

gitlab-agent, gitlab

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab-agent Needs evaluation Needs evaluation Not in release Not in release —
gitlab Not in release Not in release Not in release Not in release —
Show less packages

CVE-2024-2829

Medium priority
Needs evaluation

An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.5 before 16.9.6, all versions starting from 16.10 before 16.10.4, all versions starting from 16.11 before 16.11.1. A crafted wildcard filter in...

2 affected packages

gitlab-agent, gitlab

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab-agent Needs evaluation Needs evaluation Not in release Not in release —
gitlab Not in release Not in release Not in release Not in release —
Show less packages

CVE-2024-2434

Medium priority
Needs evaluation

An issue has been discovered in GitLab affecting all versions of GitLab CE/EE 16.9 prior to 16.9.6, 16.10 prior to 16.10.4, and 16.11 prior to 16.11.1 where path traversal could lead to DoS and restricted file read.

2 affected packages

gitlab-agent, gitlab

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab-agent Needs evaluation Needs evaluation Not in release Not in release —
gitlab Not in release Not in release Not in release Not in release —
Show less packages

CVE-2024-1347

Medium priority
Needs evaluation

An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.6, all versions starting from 16.10 before 16.10.4, all versions starting from 16.11 before 16.11.1. Under certain conditions, an attacker through a...

2 affected packages

gitlab-agent, gitlab

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitlab-agent Needs evaluation Needs evaluation Not in release Not in release —
gitlab Not in release Not in release Not in release Not in release —
Show less packages

CVE-2024-30205

Medium priority

Some fixes available 8 of 30

In Emacs before 29.3, Org mode considers contents of remote files to be trusted. This affects Org Mode before 9.6.23.

6 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25, org-mode

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Not affected Fixed Fixed —
emacs24 Not in release Not in release Not in release Not in release —
emacs25 Not in release Not in release Not in release Not in release Fixed
org-mode Not affected Fixed Fixed Fixed Fixed
Show less packages

CVE-2024-30204

Medium priority

Some fixes available 4 of 25

In Emacs before 29.3, LaTeX preview is enabled by default for e-mail attachments.

5 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Not affected Fixed Fixed —
emacs24 Not in release Not in release Not in release Not in release —
emacs25 Not in release Not in release Not in release Not in release Fixed
Show less packages

CVE-2024-30203

Medium priority

Some fixes available 4 of 25

In Emacs before 29.3, Gnus treats inline MIME contents as trusted.

5 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Not affected Fixed Fixed —
emacs24 Not in release Not in release Not in release Not in release —
emacs25 Not in release Not in release Not in release Not in release Fixed
Show less packages

CVE-2024-30202

Medium priority

Some fixes available 2 of 28

In Emacs before 29.3, arbitrary Lisp code is evaluated as part of turning on Org mode. This affects Org Mode before 9.6.23.

6 affected packages

xemacs21, xemacs21-packages, emacs, emacs24, emacs25, org-mode

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xemacs21 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
xemacs21-packages Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
emacs Not affected Not affected Not affected Not affected —
emacs24 Not in release Not in release Not in release Not in release —
emacs25 Not in release Not in release Not in release Not in release Needs evaluation
org-mode Not affected Fixed Fixed Not affected Not affected
Show less packages

CVE-2024-28584

Medium priority
Vulnerable

Null Pointer Dereference vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the J2KImageToFIBITMAP() function when reading images in J2K format.

1 affected package

freeimage

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
freeimage Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-28583

Medium priority
Vulnerable

Buffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the readLine() function when reading images in XPM format.

1 affected package

freeimage

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
freeimage Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages