Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

51 – 60 of 30862 results

Status is adjusted based on your filters.


CVE-2024-47764

Medium priority
Needs evaluation

cookie is a basic HTTP cookie parser and serializer for HTTP servers. The cookie name could be used to set other fields of the cookie, resulting in an unexpected cookie value. A similar escape can be used for path and domain,...

1 affected packages

node-cookie

Package 18.04 LTS
node-cookie Needs evaluation
Show less packages

CVE-2024-47211

Medium priority
Needs evaluation

In OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x and 24.x before 24.1.3, and 25.x and 26.x before 26.1.0, there is a lack of checksum validation of supplied image_source URLs when configured to convert images...

1 affected packages

ironic

Package 18.04 LTS
ironic Needs evaluation
Show less packages

CVE-2024-6444

Medium priority
Needs evaluation

No proper validation of the length of user input in olcp_ind_handler in zephyr/subsys/bluetooth/services/ots/ots_client.c.

1 affected packages

zephyr

Package 18.04 LTS
zephyr Needs evaluation
Show less packages

CVE-2024-6443

Medium priority
Needs evaluation

In utf8_trunc in zephyr/lib/utils/utf8.c, last_byte_p can point to one byte before the string pointer if the string is empty.

1 affected packages

zephyr

Package 18.04 LTS
zephyr Needs evaluation
Show less packages

CVE-2024-6442

Medium priority
Needs evaluation

In ascs_cp_rsp_add in /subsys/bluetooth/audio/ascs.c, an unchecked tailroom could lead to a global buffer overflow.

1 affected packages

zephyr

Package 18.04 LTS
zephyr Needs evaluation
Show less packages

CVE-2024-47855

Medium priority
Needs evaluation

util/JSONTokener.java in JSON-lib before 3.1.0 mishandles an unbalanced comment string.

1 affected packages

libjson-java

Package 18.04 LTS
libjson-java Needs evaluation
Show less packages

CVE-2024-47850

Medium priority
Fixed

CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The...

2 affected packages

cups-browsed, cups-filters

Package 18.04 LTS
cups-browsed
cups-filters Fixed
Show less packages

CVE-2024-47191

Medium priority
Not affected

Local root exploit in the PAM module pam_oath.so

1 affected packages

oath-toolkit

Package 18.04 LTS
oath-toolkit Not affected
Show less packages

CVE-2024-9266

Medium priority
Needs evaluation

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Express. This vulnerability affects the use of the Express Response object. This issue impacts Express: from 3.4.5 before 4.0.0.

1 affected packages

node-express

Package 18.04 LTS
node-express Needs evaluation
Show less packages

CVE-2024-8508

Medium priority
Needs evaluation

NLnet Labs Unbound up to and including version 1.21.0 contains a vulnerability when handling replies with very large RRsets that it needs to perform name compression for. Malicious upstreams responses with very large RRsets can...

1 affected packages

unbound

Package 18.04 LTS
unbound Needs evaluation
Show less packages