Search CVE reports
1171 – 1180 of 56918 results
Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set whose last linked leg has already been closed. A malicious exit node could use this to...
1 affected package
tor
| Package | 16.04 LTS |
|---|---|
| tor | Needs evaluation |
Tor before 0.4.9.10 did not reject a CONFLUX_LINK cell that arrives on a circuit which already has attached streams. A malicious client could send a RELAY_COMMAND_BEGIN before the CONFLUX_LINK on the same circuit, attaching an...
1 affected package
tor
| Package | 16.04 LTS |
|---|---|
| tor | Needs evaluation |
Znuny before LTS 6.5.22 allows AgentTicketEmailResend template XSS.
2 affected packages
znuny, otrs2
| Package | 16.04 LTS |
|---|---|
| znuny | — |
| otrs2 | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, applications that define unusual custom libvips sources and use them to process untrusted uncompressed PPM images can trigger a...
1 affected package
vips
| Package | 16.04 LTS |
|---|---|
| vips | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, the old-style Radiance RLE decoder in libvips/foreign/radiance.c can process a repeat marker at the beginning of a scanline in...
1 affected package
vips
| Package | 16.04 LTS |
|---|---|
| vips | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, libvips built with libultrahdr support can incorrectly size an output buffer in libvips/foreign/uhdrsave.c...
1 affected package
vips
| Package | 16.04 LTS |
|---|---|
| vips | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, libvips built without libtiff support but with ImageMagick support can overflow the combined frame height while loading a...
1 affected package
vips
| Package | 16.04 LTS |
|---|---|
| vips | Needs evaluation |
libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, a crafted many-band TIFF processed through VipsForeignLoadTiff can evade scanline validation in libvips/iofuncs/image.c and cause an...
1 affected package
vips
| Package | 16.04 LTS |
|---|---|
| vips | Needs evaluation |
libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, verify_server_cert...
1 affected package
libgit2
| Package | 16.04 LTS |
|---|---|
| libgit2 | Needs evaluation |
Shaarli is a personal bookmarking service. Versions prior to 0.16.3 are vulnerable to stored XSS in `application/front/controller/visitor/BookmarkListController.php`. The `permalink` handler concatenates the raw...
1 affected package
shaarli
| Package | 16.04 LTS |
|---|---|
| shaarli | Needs evaluation |