Search CVE reports
321 – 330 of 50428 results
FreeRDP before 3.26.0 contains a heap-buffer-overflow vulnerability in gdi_CacheToSurface that allows remote attackers to write out-of-bounds heap memory. The vulnerability occurs because rectangle validation clamps coordinates to...
3 affected packages
freerdp, freerdp2, freerdp3
| Package | 16.04 LTS |
|---|---|
| freerdp | Needs evaluation |
| freerdp2 | — |
| freerdp3 | — |
Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds. Perl_study_chunk in regcomp_study.c checked the size of the joined substring buffer in...
1 affected package
perl
| Package | 16.04 LTS |
|---|---|
| perl | Needs evaluation |
Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar header. _read_tar() reads each entry's payload with $handle->read($$data, $block), where $block is derived from the...
1 affected package
perl
| Package | 16.04 LTS |
|---|---|
| perl | Needs evaluation |
[Stack Buffer Overflow in radvdump Route Information Option Parser]
1 affected package
radvd
| Package | 16.04 LTS |
|---|---|
| radvd | Needs evaluation |
A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta...
1 affected package
samba
| Package | 16.04 LTS |
|---|---|
| samba | Needs evaluation |
Unauthenticated Remote Code Execution in Samba DCE/RPC SAMR server
1 affected package
samba
| Package | 16.04 LTS |
|---|---|
| samba | Needs evaluation |
Archive::Tar versions before 3.08 for Perl extract hardlinks to attacker controlled paths outside the extraction directory. _make_special_file() passes the tar header's linkname to link() without validating it against absolute...
1 affected package
perl
| Package | 16.04 LTS |
|---|---|
| perl | Needs evaluation |
Archive::Tar versions before 3.08 for Perl extract symlinks with attacker controlled targets outside the extraction directory. _make_special_file() passes the tar header's linkname to symlink() without validating it against...
1 affected package
perl
| Package | 16.04 LTS |
|---|---|
| perl | Needs evaluation |
Denial of service against AD DC WINS server
1 affected package
samba
| Package | 16.04 LTS |
|---|---|
| samba | Needs evaluation |
auto-enrolment GPO installing CA certificate over http without verification
1 affected package
samba
| Package | 16.04 LTS |
|---|---|
| samba | Not affected |