Search CVE reports


Toggle filters

71 – 80 of 90 results


CVE-2017-11111

Low priority

Some fixes available 3 of 5

In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

1 affected package

nasm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nasm Not affected
Show less packages

CVE-2017-10686

Low priority

Some fixes available 3 of 5

In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm. The related heap is allocated in the token() function and freed in the detoken() function (called by pp_getline()) - it...

1 affected package

nasm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nasm Not affected
Show less packages

CVE-2013-4258

Medium priority
Ignored

Format string vulnerability in the osLogMsg function in server/os/aulog.c in Network Audio System (NAS) 1.9.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string...

1 affected package

nas

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nas
Show less packages

CVE-2013-4257

Medium priority

Some fixes available 3 of 4

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-4256. Reason: This issue was MERGED into CVE-2013-4256 because it is the same type of vulnerability. Notes: All CVE users should reference CVE-2013-4256...

1 affected package

nas

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nas
Show less packages

CVE-2013-4256

Medium priority

Some fixes available 3 of 4

Multiple stack-based and heap-based buffer overflows in Network Audio System (NAS) 1.9.3 allow local users to cause a denial of service (crash) or possibly execute arbitrary code via the (1) display command argument to the...

1 affected package

nas

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nas
Show less packages

CVE-2012-1175

Medium priority
Ignored

Integer overflow in the GnashImage::size method in libbase/GnashImage.h in GNU Gnash 0.8.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SWF file, which triggers a...

1 affected package

gnash

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnash
Show less packages

CVE-2011-4328

Medium priority

Some fixes available 4 of 9

plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.

1 affected package

gnash

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnash
Show less packages

CVE-2010-4337

Low priority
Ignored

The configure script in gnash 0.8.8 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/gnash-configure-errors.$$, (2) /tmp/gnash-configure-warnings.$$, or (3) /tmp/gnash-configure-recommended.$$ files.

1 affected package

gnash

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnash
Show less packages

CVE-2008-7177

Low priority
Ignored

Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.

1 affected package

nasm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nasm
Show less packages

CVE-2009-0125

Negligible priority
Ignored

NOTE: this issue has been disputed by the upstream vendor. nasl/nasl_crypto2.c in the Nessus Attack Scripting Language library (aka libnasl) 2.2.11 does not properly check the return value from the OpenSSL DSA_do_verify function,...

1 affected package

libnasl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libnasl
Show less packages