Search CVE reports
31 – 40 of 31371 results
MacOS version of GIMP bundles a Python interpreter that inherits the Transparency, Consent, and Control (TCC) permissions granted by the user to the main application bundle. An attacker with local user access can invoke this...
1 affected package
gimp
Package | 22.04 LTS |
---|---|
gimp | Not affected |
A mismatch caused by client-triggered server-sent stream resets between HTTP/2 specifications and the internal architectures of some HTTP/2 implementations may result in excessive server resource consumption leading to...
4 affected packages
h2o, haproxy, lighttpd, varnish
Package | 22.04 LTS |
---|---|
h2o | Needs evaluation |
haproxy | Needs evaluation |
lighttpd | Needs evaluation |
varnish | Needs evaluation |
A vulnerability, which was classified as problematic, was found in libav up to 12.3. This affects the function ff_seek_frame_binary of the file /libavformat/utils.c of the component MPEG File Parser. The manipulation leads to null...
2 affected packages
ffmpeg, libav
Package | 22.04 LTS |
---|---|
ffmpeg | Needs evaluation |
libav | Not in release |
A vulnerability, which was classified as critical, has been found in libav up to 12.3. Affected by this issue is the function main of the file /avtools/avconv.c of the component DSS File Demuxer. The manipulation leads to double...
2 affected packages
ffmpeg, libav
Package | 22.04 LTS |
---|---|
ffmpeg | Needs evaluation |
libav | Not in release |
A vulnerability classified as problematic was found in libav up to 12.3. Affected by this vulnerability is the function av_buffer_unref of the file libavutil/buffer.c of the component AVI File Parser. The manipulation leads to...
2 affected packages
libav, ffmpeg
Package | 22.04 LTS |
---|---|
libav | Not in release |
ffmpeg | Needs evaluation |
Inappropriate implementation in Permissions in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
1 affected package
chromium-browser
Package | 22.04 LTS |
---|---|
chromium-browser | Not affected |
Insufficient validation of untrusted input in Core in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Low)
1 affected package
chromium-browser
Package | 22.04 LTS |
---|---|
chromium-browser | Not affected |
Inappropriate implementation in Extensions in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium...
1 affected package
chromium-browser
Package | 22.04 LTS |
---|---|
chromium-browser | Not affected |
Inappropriate implementation in Filesystems in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
1 affected package
chromium-browser
Package | 22.04 LTS |
---|---|
chromium-browser | Not affected |
Inappropriate implementation in Picture In Picture in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium...
1 affected package
chromium-browser
Package | 22.04 LTS |
---|---|
chromium-browser | Not affected |