Search CVE reports
1201 – 1210 of 43991 results
Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's WebAssembly backend accepts attacker-controlled raw WASM instruction bytes through the public `cs_disasm()` and `cs_disasm_iter()` APIs. For a large...
1 affected package
capstone
| Package | 24.04 LTS |
|---|---|
| capstone | Needs evaluation |
crun is an open source OCI Container Runtime fully written in C. Prior to version 1.28, crun's default device setup opens the container rootfs `/dev` directory without `O_NOFOLLOW`. If an OCI bundle contains `rootfs/dev` as...
1 affected package
crun
| Package | 24.04 LTS |
|---|---|
| crun | Needs evaluation |
kas is a setup tool for bitbake based projects. Starting in version 4.8 and prior to version 5.3, kas checks out and processes repositories regarding configuration includes prior to validating signatures of those repositories....
1 affected package
kas
| Package | 24.04 LTS |
|---|---|
| kas | Needs evaluation |
kas is a setup tool for bitbake based projects. Prior to version 5.3, when relying solely on a git commit ID (SHA-1 or SHA-256) to qualify if a checkout of a repository is equivalent to the state validated while adding its commit...
1 affected package
kas
| Package | 24.04 LTS |
|---|---|
| kas | Needs evaluation |
VP8L decoding in golang.org/x/image/vp8l can allocate an excessive amount of memory when processing a crafted VP8L image containing many unused Huffman tree groups. This allows a remote attacker to cause a denial of service via...
1 affected package
golang-golang-x-image
| Package | 24.04 LTS |
|---|---|
| golang-golang-x-image | Needs evaluation |
A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution...
1 affected package
dnsmasq
| Package | 24.04 LTS |
|---|---|
| dnsmasq | Vulnerable |
A flaw was found in Undertow, an HTTP server, within its HTTP response header writing path. The `writeString()` method performs a silent narrowing cast from 16-bit Unicode characters to 8-bit bytes when writing HTTP response...
1 affected package
undertow
| Package | 24.04 LTS |
|---|---|
| undertow | Needs evaluation |
Not in release
actix-http versions before 3.12.1 contain an HTTP request smuggling vulnerability in the HTTP/1.1 parser that accepts requests with both Content-Length and Transfer-Encoding: chunked headers. Unauthenticated remote attackers can...
1 affected package
rust-actix-http
| Package | 24.04 LTS |
|---|---|
| rust-actix-http | Not in release |
go-chi/chi versions 0.9.0 before 5.3.0 contains an IP spoofing vulnerability in the RealIP middleware, which resolves the request source IP (Request.RemoteAddr) using the first IP in the X-Forwarded-For header without validating...
1 affected package
golang-github-go-chi-chi
| Package | 24.04 LTS |
|---|---|
| golang-github-go-chi-chi | Needs evaluation |
go-chi/chi through 5.2.1 contains an IP spoofing vulnerability in the RealIP middleware (middleware/realip.go). The realIP() function reads client-controlled headers (True-Client-IP, X-Real-IP, and X-Forwarded-For) and overwrites...
1 affected package
golang-github-go-chi-chi
| Package | 24.04 LTS |
|---|---|
| golang-github-go-chi-chi | Needs evaluation |