Search CVE reports
1 – 10 of 42348 results
A vulnerability was found in GPAC up to 2.4. It has been rated as problematic. Affected by this issue is the function gf_dash_download_init_segment of the file src/media_tools/dash_client.c. The manipulation of the argument...
1 affected package
gpac
Package | 16.04 LTS |
---|---|
gpac | Needs evaluation |
Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP). This vulnerability is associated with program files lib/form_data.Js. This issue affects form-data: < 2.5.4, 3.0.0 - 3.0.3,...
1 affected package
node-form-data
Package | 16.04 LTS |
---|---|
node-form-data | Needs evaluation |
[NULL Pointer Dereference in FFmpeg ALS Decoder (libavcodec/alsdec.c)]
2 affected packages
ffmpeg, libav
Package | 16.04 LTS |
---|---|
ffmpeg | Needs evaluation |
libav | — |
A vulnerability, which was classified as problematic, has been found in GNU Binutils 2.45. Affected by this issue is the function bfd_elf_set_group_contents of the file bfd/elf.c. The manipulation leads to out-of-bounds write. It...
1 affected package
binutils
Package | 16.04 LTS |
---|---|
binutils | Needs evaluation |
A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file binutils/objcopy.c. The manipulation leads to heap-based buffer overflow. Attacking...
1 affected package
binutils
Package | 16.04 LTS |
---|---|
binutils | Needs evaluation |
A flaw was found in polkit. When processing an XML policy with 32 or more nested elements in depth, an out-of-bounds write can be triggered. This issue can lead to a crash or other unexpected behavior, and arbitrary code execution...
1 affected package
policykit-1
Package | 16.04 LTS |
---|---|
policykit-1 | Needs evaluation |
A vulnerability was found in Artifex GhostPDL up to 3989415a5b8e99b9d1b87cc9902bde9b7cdea145. It has been classified as problematic. This affects the function pdf_ferror of the file devices/vector/gdevpdf.c of the component New...
1 affected package
ghostscript
Package | 16.04 LTS |
---|---|
ghostscript | Needs evaluation |
A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents...
1 affected package
libxslt
Package | 16.04 LTS |
---|---|
libxslt | Needs evaluation |
A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the...
1 affected package
libxslt
Package | 16.04 LTS |
---|---|
libxslt | Needs evaluation |
In wolfSSL release 5.8.2 blinding support is turned on by default for Curve25519 in applicable builds. The blinding configure option is only for the base C implementation of Curve25519. It is not needed, or available with; ARM...
1 affected package
wolfssl
Package | 16.04 LTS |
---|---|
wolfssl | Needs evaluation |