Search CVE reports
21 – 30 of 36 results
Some fixes available 2 of 5
In etcd before versions 3.3.23 and 3.4.10, the etcd gateway is a simple TCP proxy to allow for basic service discovery and access. However, it is possible to include the gateway address as an endpoint. This results in a denial of...
1 affected package
etcd
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
etcd | Not affected | Not affected | Fixed | Fixed |
Some fixes available 2 of 13
In etcd before versions 3.3.23 and 3.4.10, certain directory paths are created (etcd data directory and the directory path when provided to automatically generate self-signed certificates for TLS connections with clients) with...
1 affected package
etcd
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
etcd | Vulnerable | Vulnerable | Fixed | Fixed |
Some fixes available 2 of 13
In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as...
1 affected package
etcd
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
etcd | Vulnerable | Vulnerable | Fixed | Fixed |
Some fixes available 2 of 13
In etcd before versions 3.3.23 and 3.4.10, a large slice causes panic in decodeRecord method. The size of a record is stored in the length field of a WAL file and no additional validation is done on this data. Therefore, it is...
1 affected package
etcd
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
etcd | Vulnerable | Vulnerable | Fixed | Fixed |
An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_char_content() tries to use realloc on a block that was not allocated, leading to an invalid free and segmentation fault.
5 affected packages
navit, mapcache, netcdf-parallel, scilab, netcdf
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
navit | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
mapcache | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
netcdf-parallel | Needs evaluation | Needs evaluation | Needs evaluation | Not in release |
scilab | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
netcdf | Not affected | Ignored | Ignored | Not affected |
An issue was discovered in ezXML 0.8.3 through 0.8.6. The ezxml_parse_* functions mishandle XML entities, leading to an infinite loop in which memory allocations occur.
4 affected packages
mapcache, netcdf, netcdf-parallel, scilab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mapcache | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
netcdf | Not affected | Ignored | Ignored | Not affected |
netcdf-parallel | Needs evaluation | Needs evaluation | Needs evaluation | Not in release |
scilab | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing crafted a XML file, performs incorrect memory handling, leading to a heap-based buffer over-read in the "normalize line endings" feature.
5 affected packages
mapcache, scilab, netcdf, navit, netcdf-parallel
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mapcache | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
scilab | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
netcdf | Not affected | Ignored | Ignored | Not affected |
navit | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
netcdf-parallel | Needs evaluation | Needs evaluation | Needs evaluation | Not in release |
An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing a crafted XML file, performs incorrect memory handling, leading to NULL pointer dereference while running strlen() on a NULL pointer.
4 affected packages
mapcache, netcdf, scilab, netcdf-parallel
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mapcache | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
netcdf | Not affected | Ignored | Ignored | Not affected |
scilab | Vulnerable | Vulnerable | Vulnerable | Vulnerable |
netcdf-parallel | Vulnerable | Vulnerable | Vulnerable | Not in release |
An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_ent_ok() mishandles recursion, leading to stack consumption for a crafted XML file.
5 affected packages
mapcache, scilab, navit, netcdf, netcdf-parallel
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mapcache | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
scilab | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
navit | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
netcdf | Not affected | Ignored | Ignored | Not affected |
netcdf-parallel | Needs evaluation | Needs evaluation | Needs evaluation | Not in release |
An issue was discovered in ezXML 0.8.2 through 0.8.6. The function ezxml_str2utf8, while parsing a crafted XML file, performs zero-length reallocation in ezxml.c, leading to returning a NULL pointer (in some compilers). After...
4 affected packages
mapcache, netcdf, netcdf-parallel, scilab
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mapcache | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
netcdf | Not affected | Ignored | Ignored | Not affected |
netcdf-parallel | Needs evaluation | Needs evaluation | Needs evaluation | Not in release |
scilab | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |