Search CVE reports
1 – 10 of 50806 results
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution via operating system command injection.
1 affected package
hplip
| Package | 16.04 LTS |
|---|---|
| hplip | Needs evaluation |
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution via an integer overflow in the...
1 affected package
hplip
| Package | 16.04 LTS |
|---|---|
| hplip | Needs evaluation |
(XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap m ...)
1 affected package
libxml-libxml-perl
| Package | 16.04 LTS |
|---|---|
| libxml-libxml-perl | Needs evaluation |
Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to...
1 affected package
pam
| Package | 16.04 LTS |
|---|---|
| pam | Needs evaluation |
[Attacker-controlled heap out-of-bounds write in libvncclient Tight decoder]
6 affected packages
libvncserver, vino, x11vnc, veyon, italc, tightvnc
| Package | 16.04 LTS |
|---|---|
| libvncserver | Needs evaluation |
| vino | Needs evaluation |
| x11vnc | — |
| veyon | — |
| italc | — |
| tightvnc | — |
Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting') vulnerability in ninenines cowlib allows HTTP response splitting via non-VCHAR bytes in structured-fields string values....
1 affected package
rabbitmq-server
| Package | 16.04 LTS |
|---|---|
| rabbitmq-server | Needs evaluation |
Config::IniFiles versions before 3.001000 for Perl allow OS command injection and file overwrite via a 2-arg open() of the -file argument in _make_filehandle. Config::IniFiles::_make_filehandle opens a filename argument with...
1 affected package
libconfig-inifiles-perl
| Package | 16.04 LTS |
|---|---|
| libconfig-inifiles-perl | Needs evaluation |
Moby is an open source container framework. In Docker Engine prior to version 29.5.1, Docker Daemon versions 28.5.2 and prior, and Moby Daemon prior to version 2.0.0-beta.14, a race condition during docker cp mount setup allows a...
2 affected packages
docker.io, docker.io-app
| Package | 16.04 LTS |
|---|---|
| docker.io | Needs evaluation |
| docker.io-app | — |
Moby is an open source container framework. In Docker Engine prior to version 29.5.1, Docker Daemon versions 28.5.2 and prior, and Moby Daemon prior to version 2.0.0-beta.14, a race condition during docker cp mount setup allows a...
2 affected packages
docker.io, docker.io-app
| Package | 16.04 LTS |
|---|---|
| docker.io | Needs evaluation |
| docker.io-app | — |
A flaw was found in QEMU's virtio-blk device. The issue arises because the device does not properly validate the size of input descriptors before writing data. A malicious guest with high privileges could exploit...
1 affected package
qemu
| Package | 16.04 LTS |
|---|---|
| qemu | Needs evaluation |