Search CVE reports
101 – 110 of 37267 results
yTree 1.94-1.1 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an excessively long argument to the application. Attackers can craft a malicious command-line...
1 affected package
ytree
| Package | 22.04 LTS |
|---|---|
| ytree | Needs evaluation |
xwpe 1.5.30a-2.1 and prior contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying overly long input strings that exceed buffer boundaries. Attackers can craft...
1 affected package
xwpe
| Package | 22.04 LTS |
|---|---|
| xwpe | Needs evaluation |
A weakness has been identified in Orc discount up to 3.0.1.2. This issue affects the function compile of the file markdown.c of the component Markdown Handler. This manipulation causes uncontrolled recursion. The attack is...
1 affected package
discount
| Package | 22.04 LTS |
|---|---|
| discount | Needs evaluation |
Not in release
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.11.0 and prior to versions 2.11.15 and 2.12.6, a valid client which uses message tracing headers can indicate...
1 affected package
nats-server
| Package | 22.04 LTS |
|---|---|
| nats-server | Not in release |
Not in release
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, when using mTLS for client identity, with `verify_and_map` to derive a NATS identity from the...
1 affected package
nats-server
| Package | 22.04 LTS |
|---|---|
| nats-server | Not in release |
Not in release
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, if a nats-server is run with static credentials for all clients provided via argv (the...
1 affected package
nats-server
| Package | 22.04 LTS |
|---|---|
| nats-server | Not in release |
Not in release
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. The nats-server offers a `Nats-Request-Info:` message header, providing information about a request. This is supposed to provide...
1 affected package
nats-server
| Package | 22.04 LTS |
|---|---|
| nats-server | Not in release |
Not in release
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, the NATS message header `Nats-Request-Info:` is supposed to be a guarantee of identity by the...
1 affected package
nats-server
| Package | 22.04 LTS |
|---|---|
| nats-server | Not in release |
Not in release
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, users with JetStream admin API access to restore one stream could restore to other stream names,...
1 affected package
nats-server
| Package | 22.04 LTS |
|---|---|
| nats-server | Not in release |
Not in release
NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, a malicious client which can connect to the WebSockets port can cause unbounded memory use in...
1 affected package
nats-server
| Package | 22.04 LTS |
|---|---|
| nats-server | Not in release |