Search CVE reports
1011 – 1020 of 48458 results
A flaw was found in GStreamer's gst-plugins-good isomp4 plugin. When processing a specially crafted MP4 or MOV file containing CEA-608 closed-caption data, an integer overflow in 32-bit unsigned arithmetic can bypass a bounds...
1 affected package
gst-plugins-good1.0
| Package | 20.04 LTS |
|---|---|
| gst-plugins-good1.0 | Needs evaluation |
A NULL pointer dereference vulnerability exists in the Prism parser component of mruby 4.0.0. An attacker can provide a specially crafted Ruby source file that triggers the parser to pass a NULL pointer to nonnull string handling...
1 affected package
mruby
| Package | 20.04 LTS |
|---|---|
| mruby | Needs evaluation |
GoBGP is an open source Border Gateway Protocol (BGP) implementation in the Go Programming Language. Prior to version 4.7.0, GoBGP accepts a zero-length AS_PATH during UPDATE decoding and later panics while validating that...
1 affected package
gobgp
| Package | 20.04 LTS |
|---|---|
| gobgp | Needs evaluation |
GoBGP is an open source Border Gateway Protocol (BGP) implementation in the Go Programming Language. Versions prior to 4.6.0 contain a BGP OPEN capability parsing issue where several concrete capability decoders may parse data...
1 affected package
gobgp
| Package | 20.04 LTS |
|---|---|
| gobgp | Needs evaluation |
An out-of-bounds read vulnerability exists in the xls_dumpSummary() function of libxls 1.6.3 due to insufficient validation of file-controlled OLE summary offsets.
1 affected package
r-cran-readxl
| Package | 20.04 LTS |
|---|---|
| r-cran-readxl | Needs evaluation |
A heap-buffer-overflow and use-after-free vulnerability exists in the xls_getCSS() function of libxls 1.6.3 due to insufficient validation of a file-controlled font index.
1 affected package
r-cran-readxl
| Package | 20.04 LTS |
|---|---|
| r-cran-readxl | Needs evaluation |
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.30, 21.2.22, and 22.1.4, Angular server-side rendering (SSR)...
1 affected package
angular.js
| Package | 20.04 LTS |
|---|---|
| angular.js | Needs evaluation |
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.28, 21.2.20, and 22.1.1, Angular's @angular/common HttpTransferCache can cache an...
1 affected package
angular.js
| Package | 20.04 LTS |
|---|---|
| angular.js | Needs evaluation |
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.30, 21.2.22, and 22.1.4, Angular server-side rendering (SSR)...
1 affected package
angular.js
| Package | 20.04 LTS |
|---|---|
| angular.js | Needs evaluation |
Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.28, 21.2.20, and 22.1.0, Angular's compiler and runtime in @angular/core and...
1 affected package
angular.js
| Package | 20.04 LTS |
|---|---|
| angular.js | Needs evaluation |