Search CVE reports
291 – 300 of 60133 results
(In wpas_handle_robust_av_scs_recv_action of robust_av.c, there is a po ...)
1 affected package
wpa
| Package | 16.04 LTS |
|---|---|
| wpa | Needs evaluation |
[GHSA-5pww-8rfg-9crf: RFC 2231 filename* parameter bypasses multipart filename rules]
2 affected packages
modsecurity, modsecurity-apache
| Package | 16.04 LTS |
|---|---|
| modsecurity | — |
| modsecurity-apache | Needs evaluation |
[GHSA-qrch-pjfr-9g47: t:removeComments mishandles the character after a comment terminator, bypassing rules]
2 affected packages
modsecurity, modsecurity-apache
| Package | 16.04 LTS |
|---|---|
| modsecurity | — |
| modsecurity-apache | Needs evaluation |
A flaw was found in sssd. This vulnerability allows a local user to cause a Denial of Service (DoS) by submitting a specially crafted passkey authentication token that lacks null terminators. The authentication service reads past...
1 affected package
sssd
| Package | 16.04 LTS |
|---|---|
| sssd | Needs evaluation |
A flaw was found in SSSD. A local attacker can exploit this vulnerability by sending a specially crafted request to the autofs responder UNIX socket. Due to improper buffer offset calculation during request parsing, the service...
1 affected package
sssd
| Package | 16.04 LTS |
|---|---|
| sssd | Needs evaluation |
gpgtar in GnuPG before 2.5.19 can allow file overwrite via crafted data in an archive. When extracting an untrusted archive with --directory (aka -C) into an existing directory containing a pre-existing symlink, gpgtar can follow...
1 affected package
gnupg2
| Package | 16.04 LTS |
|---|---|
| gnupg2 | Needs evaluation |
An argument injection flaw was found in CUPS. When email notification is configured, the CUPS scheduler accepts printer subscription requests that supply a mailto notify-recipient-uri. The mailto notifier passes the recipient...
1 affected package
cups
| Package | 16.04 LTS |
|---|---|
| cups | Needs evaluation |
A vulnerability has been found in django-haystack up to 3.3.0. Affected is the function _to_python of the file haystack/backends/elasticsearch_backend.py of the component more_like_this Template Tag Handler. Such manipulation of...
1 affected package
django-haystack
| Package | 16.04 LTS |
|---|---|
| django-haystack | Needs evaluation |
A security flaw has been discovered in Shaarli up to 0.16.3. The affected element is the function MetadataController of the file application/front/controller/admin/MetadataController.php of the component Admin Metadata Endpoint....
1 affected package
shaarli
| Package | 16.04 LTS |
|---|---|
| shaarli | Needs evaluation |
A local attacker with control over GRUB's configuration can bypass lockdown restrictions when booting with Secure Boot and load an unsigned GRUB module, while GRUB continues to report lockdown is enabled. The vulnerability is...
3 affected packages
grub2, grub2-unsigned, grub2-signed
| Package | 16.04 LTS |
|---|---|
| grub2 | Not affected |
| grub2-unsigned | Needs evaluation |
| grub2-signed | Needs evaluation |