Search CVE reports
271 – 280 of 42162 results
An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29. `URLField.to_python()` in Django calls `urllib.parse.urlsplit()`, which performs NFKC normalization on Windows that is disproportionately slow...
1 affected package
python-django
| Package | 18.04 LTS |
|---|---|
| python-django | Not affected |
Improper authorization in the API endpoint GET /1.0/certificates in Canonical LXD 6.6 on Linux allows an authenticated, restricted user to enumerate all certificate fingerprints trusted by the lxd server.
1 affected package
lxd
| Package | 18.04 LTS |
|---|---|
| lxd | Needs evaluation |
two potential OOB memory accesses in virtio-snd
1 affected package
qemu
| Package | 18.04 LTS |
|---|---|
| qemu | Needs evaluation |
two potential OOB memory accesses in virtio-snd
1 affected package
qemu
| Package | 18.04 LTS |
|---|---|
| qemu | Needs evaluation |
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an uncaught exception was found in Exiv2. The vulnerability is in the preview...
1 affected package
exiv2
| Package | 18.04 LTS |
|---|---|
| exiv2 | Fixed |
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an out-of-bounds read was found in Exiv2. The vulnerability is in the preview...
1 affected package
exiv2
| Package | 18.04 LTS |
|---|---|
| exiv2 | Fixed |
Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an out-of-bounds read was found. The vulnerability is in the CRW image parser....
1 affected package
exiv2
| Package | 18.04 LTS |
|---|---|
| exiv2 | Fixed |
An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable...
1 affected package
freetype
| Package | 18.04 LTS |
|---|---|
| freetype | Not affected |
A vulnerability was identified in Open Babel up to 3.1.1. This impacts the function OBAtom::GetExplicitValence of the file isrc/atom.cpp of the component CDXML File Handler. Such manipulation leads to null pointer dereference. The...
1 affected package
openbabel
| Package | 18.04 LTS |
|---|---|
| openbabel | Needs evaluation |
A vulnerability was determined in Squirrel up to 3.2. This vulnerability affects the function sqstd_rex_newnode in the library sqstdlib/sqstdrex.cpp. Executing a manipulation can lead to null pointer dereference. The attack can...
1 affected package
squirrel3
| Package | 18.04 LTS |
|---|---|
| squirrel3 | Needs evaluation |