Search CVE reports
1281 – 1290 of 48688 results
A flaw was found in the admin backend of gvfs. The privileged gvfsd-admin daemon changes the ownership of newly created private D-Bus sockets by calling the link-following chown() function on a pathname inside a user-controlled...
1 affected package
gvfs
| Package | 20.04 LTS |
|---|---|
| gvfs | Needs evaluation |
cookies is a Node.js library for reading and writing HTTP cookies, used by Koa via ctx.cookies. In versions before 0.9.2 the library validates the cookie name and value against character sets that reject the semicolon separator,...
1 affected package
node-cookies
| Package | 20.04 LTS |
|---|---|
| node-cookies | Needs evaluation |
A flaw was found in Evolution. A remote attacker can exploit this vulnerability by sending a specially crafted HTML email containing a spoofed vCard control. When a victim clicks on this control, Evolution's trusted JavaScript...
1 affected package
evolution
| Package | 20.04 LTS |
|---|---|
| evolution | Needs evaluation |
A flaw was found in PCS (Pacemaker Configuration System). A local attacker with membership in the 'haclient' group can exploit the 'pcs host auth --token' command to read the contents of arbitrary files on the filesystem, provided...
1 affected package
pcs
| Package | 20.04 LTS |
|---|---|
| pcs | Not affected |
t-digest versions 3.1 through 3.3 contain a denial of service vulnerability in MergingDigest.fromBytes that fails to validate length and capacity fields from serialized data. Attackers can supply crafted serialized digests with...
1 affected package
t-digest
| Package | 20.04 LTS |
|---|---|
| t-digest | Needs evaluation |
A flaw was found in crun. After pivot_root, reopening /dev/null for stdio can follow a symlink and attach a host file to container stdio, then change that file's ownership. Affected versions are crun 1.29.1 and earlier. Default...
1 affected package
crun
| Package | 20.04 LTS |
|---|---|
| crun | Needs evaluation |
A flaw was found in crun. When the container configuration does not give /dev a dedicated mount, terminal setup can redirect /dev/console onto an attacker-controlled path, including via the read-only-rootfs bind-mount fallback....
1 affected package
crun
| Package | 20.04 LTS |
|---|---|
| crun | Needs evaluation |
A flaw was found in crun. When crun is built with libkrun and a container is started rootful with passt networking (krun.use_passt), crun can execute attacker-controlled payload from the container image with host root privileges....
1 affected package
crun
| Package | 20.04 LTS |
|---|---|
| crun | Needs evaluation |
fs_read_glyphs() in the libXfont2 font-server client (src/fc/fserve.c) indexes the per-character encoding[] array using num_chars from the FS_QueryXBitmaps16 reply, but that array was allocated with a size derived from num_extents...
2 affected packages
libxfont, libxfont2
| Package | 20.04 LTS |
|---|---|
| libxfont | Needs evaluation |
| libxfont2 | — |
fs_read_glyphs() in the libXfont2 font-server client (src/fc/fserve.c) copies each glyph's bitmap into a single buffer. Existing checks validates only that the source slice (position, length) lies within the source bitmap buffer....
2 affected packages
libxfont, libxfont2
| Package | 20.04 LTS |
|---|---|
| libxfont | Needs evaluation |
| libxfont2 | — |