Search CVE reports
41 – 50 of 31282 results
A vulnerability was found in GNU Bison up to 3.8.2. It has been rated as problematic. This issue affects the function __obstack_vprintf_internal of the file obprintf.c. The manipulation leads to reachable assertion. It is possible...
1 affected package
bison
| Package | 22.04 LTS |
|---|---|
| bison | Needs evaluation |
A vulnerability was found in libxml2 up to 2.14.5. It has been declared as problematic. This vulnerability affects the function xmlParseSGMLCatalog of the component xmlcatalog. The manipulation leads to uncontrolled...
1 affected package
libxml2
| Package | 22.04 LTS |
|---|---|
| libxml2 | Needs evaluation |
[Unknown description]
11 affected packages
golang-1.10, golang-1.13, golang-1.14, golang-1.16, golang-1.17...
| Package | 22.04 LTS |
|---|---|
| golang-1.10 | Not in release |
| golang-1.13 | Needs evaluation |
| golang-1.14 | Not in release |
| golang-1.16 | Not in release |
| golang-1.17 | Needs evaluation |
| golang-1.18 | Needs evaluation |
| golang-1.20 | Needs evaluation |
| golang-1.21 | Needs evaluation |
| golang-1.22 | Needs evaluation |
| golang-1.23 | Needs evaluation |
| golang-1.24 | Not in release |
ruby-jwt v3.0.0.beta1 was discovered to contain weak encryption. NOTE: the Supplier's perspective is "keysize is not something that is enforced by this library. Currently more recent versions of OpenSSL are enforcing some key...
1 affected package
ruby-jwt
| Package | 22.04 LTS |
|---|---|
| ruby-jwt | Needs evaluation |
In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.
35 affected packages
gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...
| Package | 22.04 LTS |
|---|---|
| gst-libav1.0 | Needs evaluation |
| gst-plugins-bad1.0 | Needs evaluation |
| gst-plugins-bad1.0-contrib | Needs evaluation |
| gst-plugins-base1.0 | Needs evaluation |
| gst-plugins-good1.0 | Needs evaluation |
| gst-plugins-ugly1.0 | Needs evaluation |
| gst-python1.0 | Needs evaluation |
| gst-rtsp-server1.0 | Needs evaluation |
| gstreamer-editing-services1.0 | Needs evaluation |
| gstreamer-vaapi | Needs evaluation |
| gstreamer1.0 | Needs evaluation |
| qt-gstreamer | Needs evaluation |
| rust-gst-plugin-version-helper | Not in release |
| rust-gstreamer | Not in release |
| rust-gstreamer-allocators | Not in release |
| rust-gstreamer-allocators-sys | Not in release |
| rust-gstreamer-audio | Not in release |
| rust-gstreamer-audio-sys | Needs evaluation |
| rust-gstreamer-base | Not in release |
| rust-gstreamer-base-sys | Needs evaluation |
| rust-gstreamer-gl | Not in release |
| rust-gstreamer-gl-egl | Not in release |
| rust-gstreamer-gl-egl-sys | Not in release |
| rust-gstreamer-gl-sys | Not in release |
| rust-gstreamer-gl-wayland | Not in release |
| rust-gstreamer-gl-wayland-sys | Not in release |
| rust-gstreamer-gl-x11 | Not in release |
| rust-gstreamer-gl-x11-sys | Not in release |
| rust-gstreamer-pbutils | Not in release |
| rust-gstreamer-pbutils-sys | Not in release |
| rust-gstreamer-play | Not in release |
| rust-gstreamer-play-sys | Not in release |
| rust-gstreamer-sys | Needs evaluation |
| rust-gstreamer-video | Not in release |
| rust-gstreamer-video-sys | Needs evaluation |
In GStreamer through 1.26.1, the subparse plugin's subrip_unescape_formatting function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.
35 affected packages
gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...
| Package | 22.04 LTS |
|---|---|
| gst-libav1.0 | Needs evaluation |
| gst-plugins-bad1.0 | Needs evaluation |
| gst-plugins-bad1.0-contrib | Needs evaluation |
| gst-plugins-base1.0 | Needs evaluation |
| gst-plugins-good1.0 | Needs evaluation |
| gst-plugins-ugly1.0 | Needs evaluation |
| gst-python1.0 | Needs evaluation |
| gst-rtsp-server1.0 | Needs evaluation |
| gstreamer-editing-services1.0 | Needs evaluation |
| gstreamer-vaapi | Needs evaluation |
| gstreamer1.0 | Needs evaluation |
| qt-gstreamer | Needs evaluation |
| rust-gst-plugin-version-helper | Not in release |
| rust-gstreamer | Not in release |
| rust-gstreamer-allocators | Not in release |
| rust-gstreamer-allocators-sys | Not in release |
| rust-gstreamer-audio | Not in release |
| rust-gstreamer-audio-sys | Needs evaluation |
| rust-gstreamer-base | Not in release |
| rust-gstreamer-base-sys | Needs evaluation |
| rust-gstreamer-gl | Not in release |
| rust-gstreamer-gl-egl | Not in release |
| rust-gstreamer-gl-egl-sys | Not in release |
| rust-gstreamer-gl-sys | Not in release |
| rust-gstreamer-gl-wayland | Not in release |
| rust-gstreamer-gl-wayland-sys | Not in release |
| rust-gstreamer-gl-x11 | Not in release |
| rust-gstreamer-gl-x11-sys | Not in release |
| rust-gstreamer-pbutils | Not in release |
| rust-gstreamer-pbutils-sys | Not in release |
| rust-gstreamer-play | Not in release |
| rust-gstreamer-play-sys | Not in release |
| rust-gstreamer-sys | Needs evaluation |
| rust-gstreamer-video | Not in release |
| rust-gstreamer-video-sys | Needs evaluation |
In GStreamer through 1.26.1, the subparse plugin's parse_subrip_time function may write data past the bounds of a stack buffer, leading to a crash.
35 affected packages
gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...
| Package | 22.04 LTS |
|---|---|
| gst-libav1.0 | Needs evaluation |
| gst-plugins-bad1.0 | Needs evaluation |
| gst-plugins-bad1.0-contrib | Needs evaluation |
| gst-plugins-base1.0 | Needs evaluation |
| gst-plugins-good1.0 | Needs evaluation |
| gst-plugins-ugly1.0 | Needs evaluation |
| gst-python1.0 | Needs evaluation |
| gst-rtsp-server1.0 | Needs evaluation |
| gstreamer-editing-services1.0 | Needs evaluation |
| gstreamer-vaapi | Needs evaluation |
| gstreamer1.0 | Needs evaluation |
| qt-gstreamer | Needs evaluation |
| rust-gst-plugin-version-helper | Not in release |
| rust-gstreamer | Not in release |
| rust-gstreamer-allocators | Not in release |
| rust-gstreamer-allocators-sys | Not in release |
| rust-gstreamer-audio | Not in release |
| rust-gstreamer-audio-sys | Needs evaluation |
| rust-gstreamer-base | Not in release |
| rust-gstreamer-base-sys | Needs evaluation |
| rust-gstreamer-gl | Not in release |
| rust-gstreamer-gl-egl | Not in release |
| rust-gstreamer-gl-egl-sys | Not in release |
| rust-gstreamer-gl-sys | Not in release |
| rust-gstreamer-gl-wayland | Not in release |
| rust-gstreamer-gl-wayland-sys | Not in release |
| rust-gstreamer-gl-x11 | Not in release |
| rust-gstreamer-gl-x11-sys | Not in release |
| rust-gstreamer-pbutils | Not in release |
| rust-gstreamer-pbutils-sys | Not in release |
| rust-gstreamer-play | Not in release |
| rust-gstreamer-play-sys | Not in release |
| rust-gstreamer-sys | Needs evaluation |
| rust-gstreamer-video | Not in release |
| rust-gstreamer-video-sys | Needs evaluation |
In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_trak function may read past the end of a heap buffer while parsing an MP4 file, possibly leading to information disclosure.
35 affected packages
gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...
| Package | 22.04 LTS |
|---|---|
| gst-libav1.0 | Needs evaluation |
| gst-plugins-bad1.0 | Needs evaluation |
| gst-plugins-bad1.0-contrib | Needs evaluation |
| gst-plugins-base1.0 | Needs evaluation |
| gst-plugins-good1.0 | Needs evaluation |
| gst-plugins-ugly1.0 | Needs evaluation |
| gst-python1.0 | Needs evaluation |
| gst-rtsp-server1.0 | Needs evaluation |
| gstreamer-editing-services1.0 | Needs evaluation |
| gstreamer-vaapi | Needs evaluation |
| gstreamer1.0 | Needs evaluation |
| qt-gstreamer | Needs evaluation |
| rust-gst-plugin-version-helper | Not in release |
| rust-gstreamer | Not in release |
| rust-gstreamer-allocators | Not in release |
| rust-gstreamer-allocators-sys | Not in release |
| rust-gstreamer-audio | Not in release |
| rust-gstreamer-audio-sys | Needs evaluation |
| rust-gstreamer-base | Not in release |
| rust-gstreamer-base-sys | Needs evaluation |
| rust-gstreamer-gl | Not in release |
| rust-gstreamer-gl-egl | Not in release |
| rust-gstreamer-gl-egl-sys | Not in release |
| rust-gstreamer-gl-sys | Not in release |
| rust-gstreamer-gl-wayland | Not in release |
| rust-gstreamer-gl-wayland-sys | Not in release |
| rust-gstreamer-gl-x11 | Not in release |
| rust-gstreamer-gl-x11-sys | Not in release |
| rust-gstreamer-pbutils | Not in release |
| rust-gstreamer-pbutils-sys | Not in release |
| rust-gstreamer-play | Not in release |
| rust-gstreamer-play-sys | Not in release |
| rust-gstreamer-sys | Needs evaluation |
| rust-gstreamer-video | Not in release |
| rust-gstreamer-video-sys | Needs evaluation |
In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_tree function may read past the end of a heap buffer while parsing an MP4 file, leading to information disclosure.
35 affected packages
gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...
| Package | 22.04 LTS |
|---|---|
| gst-libav1.0 | Needs evaluation |
| gst-plugins-bad1.0 | Needs evaluation |
| gst-plugins-bad1.0-contrib | Needs evaluation |
| gst-plugins-base1.0 | Needs evaluation |
| gst-plugins-good1.0 | Needs evaluation |
| gst-plugins-ugly1.0 | Needs evaluation |
| gst-python1.0 | Needs evaluation |
| gst-rtsp-server1.0 | Needs evaluation |
| gstreamer-editing-services1.0 | Needs evaluation |
| gstreamer-vaapi | Needs evaluation |
| gstreamer1.0 | Needs evaluation |
| qt-gstreamer | Needs evaluation |
| rust-gst-plugin-version-helper | Not in release |
| rust-gstreamer | Not in release |
| rust-gstreamer-allocators | Not in release |
| rust-gstreamer-allocators-sys | Not in release |
| rust-gstreamer-audio | Not in release |
| rust-gstreamer-audio-sys | Needs evaluation |
| rust-gstreamer-base | Not in release |
| rust-gstreamer-base-sys | Needs evaluation |
| rust-gstreamer-gl | Not in release |
| rust-gstreamer-gl-egl | Not in release |
| rust-gstreamer-gl-egl-sys | Not in release |
| rust-gstreamer-gl-sys | Not in release |
| rust-gstreamer-gl-wayland | Not in release |
| rust-gstreamer-gl-wayland-sys | Not in release |
| rust-gstreamer-gl-x11 | Not in release |
| rust-gstreamer-gl-x11-sys | Not in release |
| rust-gstreamer-pbutils | Not in release |
| rust-gstreamer-pbutils-sys | Not in release |
| rust-gstreamer-play | Not in release |
| rust-gstreamer-play-sys | Not in release |
| rust-gstreamer-sys | Needs evaluation |
| rust-gstreamer-video | Not in release |
| rust-gstreamer-video-sys | Needs evaluation |
Cancelling a query (e.g. by cancelling the context passed to one of the query methods) during a call to the Scan method of the returned Rows can result in unexpected results if other queries are being made in parallel. This can...
11 affected packages
golang-1.10, golang-1.13, golang-1.14, golang-1.16, golang-1.17...
| Package | 22.04 LTS |
|---|---|
| golang-1.10 | Not in release |
| golang-1.13 | Needs evaluation |
| golang-1.14 | Not in release |
| golang-1.16 | Not in release |
| golang-1.17 | Needs evaluation |
| golang-1.18 | Needs evaluation |
| golang-1.20 | Needs evaluation |
| golang-1.21 | Needs evaluation |
| golang-1.22 | Needs evaluation |
| golang-1.23 | Needs evaluation |
| golang-1.24 | Not in release |