Search CVE reports
141 – 150 of 42198 results
A vulnerability in the GPT file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This...
1 affected package
clamav
| Package | 24.04 LTS |
|---|---|
| clamav | Needs evaluation |
A vulnerability in the PESpin file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an...
1 affected package
clamav
| Package | 24.04 LTS |
|---|---|
| clamav | Needs evaluation |
A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper memory handling when processing content in...
1 affected package
clamav
| Package | 24.04 LTS |
|---|---|
| clamav | Needs evaluation |
A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper boundary checks for content in zip files...
1 affected package
clamav
| Package | 24.04 LTS |
|---|---|
| clamav | Needs evaluation |
Not in release
Consul Community Edition and Consul Enterprise 1.3.0 through 2.0.2 are vulnerable to an unauthenticated denial of service in several agent HTTP API endpoints. A remote caller could cause the agent to consume substantial memory...
1 affected package
consul
| Package | 24.04 LTS |
|---|---|
| consul | Not in release |
Imager versions from 0.45_02 before 1.034 for Perl may expose adjacent heap bytes via strlen() over-read from zero-count ASCII EXIF entries in copy_string_tags. copy_string_tags() computes an ASCII EXIF tag's length as...
1 affected package
libimager-perl
| Package | 24.04 LTS |
|---|---|
| libimager-perl | Needs evaluation |
Not in release
Consul Community Edition and Consul Enterprise 1.18.21 through 2.0.2 are vulnerable to a partial arbitrary file read when configured to use the Vault Connect CA provider with JWT or AppRole authentication. A privileged attacker...
1 affected package
consul
| Package | 24.04 LTS |
|---|---|
| consul | Not in release |
Not in release
Consul Community Edition and Consul Enterprise 1.19.1 through 2.0.2 did not enforce the {{session:write}} ACL permission for session deletion operations submitted through the transaction API. An authenticated caller with network...
1 affected package
consul
| Package | 24.04 LTS |
|---|---|
| consul | Not in release |
Not in release
Consul Community Edition and Consul Enterprise 1.2.0 through 2.0.2 are vulnerable to an uncontrolled resource consumption issue in the Connect CA roots endpoint that may allow a remote caller to grow the agent's Connect CA roots...
1 affected package
consul
| Package | 24.04 LTS |
|---|---|
| consul | Not in release |
Not in release
Consul Community Edition and Consul Enterprise 1.17.0 through 2.0.2 are vulnerable to an uncontrolled resource consumption issue in the Connect authorization endpoint that may allow a caller to grow the agent's intention-match...
1 affected package
consul
| Package | 24.04 LTS |
|---|---|
| consul | Not in release |