Search CVE reports
2371 – 2380 of 45001 results
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-0 and 6.9.13-26, in ImageMagick's `magick mogrify` command, specifying multiple consecutive `%d` format...
1 affected package
imagemagick
| Package | 16.04 LTS |
|---|---|
| imagemagick | Fixed |
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-0 and 6.9.13-26, in ImageMagick's `magick stream` command, specifying multiple consecutive `%d` format...
1 affected package
imagemagick
| Package | 16.04 LTS |
|---|---|
| imagemagick | Fixed |
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-0, infinite lines occur when writing during a specific XMP file conversion command. Version 7.1.2-0 fixes the issue.
1 affected package
imagemagick
| Package | 16.04 LTS |
|---|---|
| imagemagick | Needs evaluation |
ImageMagick is free and open-source software used for editing and manipulating digital images. Versions prior to 7.1.2-0 and 6.9.13-26 have a heap buffer overflow in the `InterpretImageFilename` function. The issue stems from an...
1 affected package
imagemagick
| Package | 16.04 LTS |
|---|---|
| imagemagick | Fixed |
A flaw was found in polkit. When processing an XML policy with 32 or more nested elements in depth, an out-of-bounds write can be triggered. This issue can lead to a crash or other unexpected behavior, and arbitrary code execution...
1 affected package
policykit-1
| Package | 16.04 LTS |
|---|---|
| policykit-1 | Needs evaluation |
Blind XXE Vulnerabilities in jackrabbit-spi-commons and jackrabbit-core in Apache Jackrabbit < 2.23.2 due to usage of an unsecured document build to load privileges. Users are recommended to upgrade to versions 2.20.17 (Java 8),...
1 affected package
jackrabbit
| Package | 16.04 LTS |
|---|---|
| jackrabbit | Needs evaluation |
In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* pgsql and pdo_pgsql escaping functions do not check if the underlying quoting functions returned errors. ThisĀ could cause crashes if Postgres...
7 affected packages
php8.1, php5, php7.0, php7.2, php7.4...
| Package | 16.04 LTS |
|---|---|
| php8.1 | — |
| php5 | — |
| php7.0 | Fixed |
| php7.2 | — |
| php7.4 | — |
| php8.3 | — |
| php8.4 | — |
In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 some functions like fsockopen() lack validation that the hostname supplied does not contain null characters. This may lead to other...
7 affected packages
php8.4, php5, php7.0, php7.2, php7.4...
| Package | 16.04 LTS |
|---|---|
| php8.4 | — |
| php5 | — |
| php7.0 | Fixed |
| php7.2 | — |
| php7.4 | — |
| php8.1 | — |
| php8.3 | — |
A vulnerability, which was classified as problematic, has been found in GNU Binutils 2.45. Affected by this issue is the function bfd_elf_set_group_contents of the file bfd/elf.c. The manipulation leads to out-of-bounds write. It...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Not affected |
A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file binutils/objcopy.c. The manipulation leads to heap-based buffer overflow. Attacking...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Fixed |