Search CVE reports


Toggle filters

261 – 270 of 366 results


CVE-2013-1990

Medium priority

Some fixes available 3 of 4

Multiple integer overflows in X.org libXvMC 1.0.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XvMCListSurfaceTypes and (2) XvMCListSubpictureTypes functions.

1 affected package

libxvmc

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libxvmc
Show less packages

CVE-2013-2071

Medium priority

Some fixes available 2 of 3

java/org/apache/catalina/core/AsyncContextImpl.java in Apache Tomcat 7.x before 7.0.40 does not properly handle the throwing of a RuntimeException in an AsyncListener in an application, which allows context-dependent attackers to...

2 affected packages

tomcat6, tomcat7

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tomcat6
tomcat7
Show less packages

CVE-2013-2067

Medium priority

Some fixes available 4 of 6

java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication...

2 affected packages

tomcat7, tomcat6

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tomcat7
tomcat6
Show less packages

CVE-2013-1088

Medium priority
Not affected

Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary users by leveraging improper request validation by iManager code deployed...

2 affected packages

tomcat7, tomcat6

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tomcat7
tomcat6
Show less packages

CVE-2012-6112

Medium priority
Ignored

classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellchecker) addon before 2.0.6.1 for TinyMCE, as used in Moodle 2.1.x before 2.1.10, 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 and other products,...

2 affected packages

tinymce, tinymce2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tinymce Not in release Not in release Not in release Ignored Ignored
tinymce2 Not in release Not in release Not in release Not in release Not in release
Show less packages

CVE-2013-7291

Low priority
Ignored

memcached before 1.4.17, when running in verbose mode, allows remote attackers to cause a denial of service (crash) via a request that triggers an "unbounded key print" during logging, related to an issue that was "quickly grepped...

1 affected package

memcached

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
memcached
Show less packages

CVE-2013-7290

Low priority
Ignored

The do_item_get function in items.c in memcached 1.4.4 and other versions before 1.4.17, when running in verbose mode, allows remote attackers to cause a denial of service (segmentation fault) via a request to delete a key, which...

1 affected package

memcached

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
memcached
Show less packages

CVE-2013-0179

Low priority

Some fixes available 4 of 7

The process_bin_delete function in memcached.c in memcached 1.4.4 and other versions before 1.4.17, when running in verbose mode, allows remote attackers to cause a denial of service (segmentation fault) via a request to delete a...

1 affected package

memcached

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
memcached
Show less packages

CVE-2012-3544

Medium priority

Some fixes available 3 of 5

Apache Tomcat 6.x before 6.0.37 and 7.x before 7.0.30 does not properly handle chunk extensions in chunked transfer coding, which allows remote attackers to cause a denial of service by streaming data.

2 affected packages

tomcat6, tomcat7

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tomcat6
tomcat7
Show less packages

CVE-2012-4534

Medium priority
Fixed

org/apache/tomcat/util/net/NioEndpoint.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.28, when the NIO connector is used in conjunction with sendfile and HTTPS, allows remote attackers to cause a denial of service...

2 affected packages

tomcat6, tomcat7

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tomcat6
tomcat7
Show less packages