Search CVE reports
581 – 590 of 53354 results
A vulnerability in the PDF file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This...
1 affected package
clamav
| Package | 16.04 LTS |
|---|---|
| clamav | Needs evaluation |
A vulnerability in the GPT file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This...
1 affected package
clamav
| Package | 16.04 LTS |
|---|---|
| clamav | Needs evaluation |
A vulnerability in the PESpin file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an...
1 affected package
clamav
| Package | 16.04 LTS |
|---|---|
| clamav | Needs evaluation |
A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper memory handling when processing content in...
1 affected package
clamav
| Package | 16.04 LTS |
|---|---|
| clamav | Needs evaluation |
A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper boundary checks for content in zip files...
1 affected package
clamav
| Package | 16.04 LTS |
|---|---|
| clamav | Needs evaluation |
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malicious third-party website hosted by an attacker, it is possible for this to be escalated to an RCE...
1 affected package
wordpress
| Package | 16.04 LTS |
|---|---|
| wordpress | Needs evaluation |
An injection vulnerability was found in libvirt's virtual network driver. The network XML parser does not strip newline characters from DNS TXT record value attributes and SRV record domain/target attributes. These values are...
1 affected package
libvirt
| Package | 16.04 LTS |
|---|---|
| libvirt | Vulnerable |
A flaw was found in p11-kit. A local attacker, or one with equivalent access to a reachable RPC channel, could exploit an integer overflow vulnerability. By sending specially crafted messages, the attacker can cause the system to...
1 affected package
p11-kit
| Package | 16.04 LTS |
|---|---|
| p11-kit | Needs evaluation |
jsoup is a Java library for working with real-world HTML. From 1.14.3 until 1.23.1, jsoup's HTML parser could incorrectly handle a malformed tag name ending in a control character, causing the tag to acquire the parsing behavior...
1 affected package
jsoup
| Package | 16.04 LTS |
|---|---|
| jsoup | Needs evaluation |
league/commonmark is a PHP library for parsing and rendering CommonMark Markdown. From 0.6.0 until 2.9.0, specially crafted Markdown lines can cause the parser to have quadratic time complexity when converting, because several...
2 affected packages
commonmark, markdown
| Package | 16.04 LTS |
|---|---|
| commonmark | — |
| markdown | Needs evaluation |