Search CVE reports


Toggle filters

201 – 210 of 254 results


CVE-2016-8881

Medium priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4517. Reason: This candidate is a duplicate of CVE-2011-4517. Notes: All CVE users should reference CVE-2011-4517 instead of this candidate. All references...

3 affected packages

ghostscript, jasper, netpbm-free

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
jasper
netpbm-free
Show less packages

CVE-2016-8880

Medium priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4516. Reason: This candidate is a duplicate of CVE-2011-4516. Notes: All CVE users should reference CVE-2011-4516 instead of this candidate. All references...

3 affected packages

ghostscript, jasper, netpbm-free

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
jasper
netpbm-free
Show less packages

CVE-2016-9117

Low priority
Vulnerable

NULL Pointer Access in function imagetopnm of convert.c(jp2):1289 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file.

3 affected packages

ghostscript, openjpeg2, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript Not affected Not affected Not affected Not affected
openjpeg2 Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-9116

Low priority
Vulnerable

NULL Pointer Access in function imagetopnm of convert.c:2226(jp2) in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file.

3 affected packages

ghostscript, openjpeg2, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript Not affected Not affected Not affected Not affected
openjpeg2 Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-9115

Low priority
Vulnerable

Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file.

3 affected packages

ghostscript, openjpeg2, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript Not affected Not affected Not affected Not affected
openjpeg2 Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-9114

Low priority
Vulnerable

There is a NULL Pointer Access in function imagetopnm of convert.c:1943(jp2) of OpenJPEG 2.1.2. image->comps[compno].data is not assigned a value after initialization(NULL). Impact is Denial of Service.

3 affected packages

openjpeg2, ghostscript, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg2 Not affected Not affected Not affected Not affected
ghostscript Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-9113

Low priority
Vulnerable

There is a NULL pointer dereference in function imagetobmp of convertbmp.c:980 of OpenJPEG 2.1.2. image->comps[0].data is not assigned a value after initialization(NULL). Impact is Denial of Service.

3 affected packages

openjpeg2, ghostscript, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg2 Not affected Not affected Not affected Not affected
ghostscript Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-8602

Medium priority
Fixed

The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Postscript document that calls...

1 affected package

ghostscript

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
Show less packages

CVE-2016-7979

Medium priority
Fixed

Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code by leveraging type confusion in .initialize_dsc_parser.

1 affected package

ghostscript

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
Show less packages

CVE-2016-7978

Medium priority
Fixed

Use-after-free vulnerability in Ghostscript 9.20 might allow remote attackers to execute arbitrary code via vectors related to a reference leak in .setdevice.

1 affected package

ghostscript

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
Show less packages