Search CVE reports
91 – 100 of 31371 results
In wolfSSL release 5.8.2 blinding support is turned on by default for Curve25519 in applicable builds. The blinding configure option is only for the base C implementation of Curve25519. It is not needed, or available with; ARM...
1 affected package
wolfssl
Package | 22.04 LTS |
---|---|
wolfssl | Needs evaluation |
A certificate verification error in wolfSSL when building with the WOLFSSL_SYS_CA_CERTS and WOLFSSL_APPLE_NATIVE_CERT_VALIDATION options results in the wolfSSL client failing to properly verify the server certificate's domain...
1 affected package
wolfssl
Package | 22.04 LTS |
---|---|
wolfssl | Needs evaluation |
In the OpenSSL compatibility layer implementation, the function RAND_poll() was not behaving as expected and leading to the potential for predictable values returned from RAND_bytes() after fork() is called. This can lead to weak...
1 affected package
wolfssl
Package | 22.04 LTS |
---|---|
wolfssl | Needs evaluation |
Rejected reason: Upon investigtion upstream maintainers discovered this was not a real issue. See the references for more details. See: https://gitlab.gnome.org/GNOME/libsoup/-/issues/430#note_2494090.
1 affected package
libsoup3
Package | 22.04 LTS |
---|---|
libsoup3 | Not affected |
A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c). When processing maliciously crafted JPEG images, a heap buffer overflow can...
1 affected package
gdk-pixbuf
Package | 22.04 LTS |
---|---|
gdk-pixbuf | Fixed |
on-headers is a node.js middleware for listening to when a response writes headers. A bug in on-headers versions `<1.1.0` may result in response headers being inadvertently modified when an array is passed...
1 affected package
node-on-headers
Package | 22.04 LTS |
---|---|
node-on-headers | Needs evaluation |
Not in release
An authorized user can issue queries with duplicate _id fields, that leads to unexpected behavior in MongoDB Server, which may result to crash. This issue can only be triggered by authorized users and cause Denial of Service. This...
1 affected package
mongodb
Package | 22.04 LTS |
---|---|
mongodb | Not in release |
A vulnerability, which was classified as problematic, was found in mruby up to 3.4.0-rc2. Affected is the function scope_new of the file mrbgems/mruby-compiler/core/codegen.c of the component nregs Handler. The manipulation leads...
1 affected package
mruby
Package | 22.04 LTS |
---|---|
mruby | Needs evaluation |
A vulnerability, which was classified as problematic, was found in HDF5 1.14.6. Affected is the function H5FS__sect_link_size of the file src/H5FSsection.c. The manipulation leads to heap-based buffer overflow. It is possible to...
1 affected package
hdf5
Package | 22.04 LTS |
---|---|
hdf5 | Needs evaluation |
A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5FL__malloc of the file src/H5FL.c. The manipulation leads to memory leak. Attacking locally is a requirement....
1 affected package
hdf5
Package | 22.04 LTS |
---|---|
hdf5 | Needs evaluation |