Search CVE reports
371 – 380 of 40627 results
Not in release
FastNetMon Community Edition through 1.2.9 has out-of-bounds memory access because it incorrectly parses BGP path attributes with the extended length flag set. In src/bgp_protocol.hpp, the parse_raw_bgp_attribute()...
1 affected package
fastnetmon
| Package | 22.04 LTS |
|---|---|
| fastnetmon | Not in release |
Not in release
FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read in the NetFlow v9 options template parser. In process_netflow_v9_options_template() (src/netflow_plugin/netflow_v9_collector.cpp), the scope parsing...
1 affected package
fastnetmon
| Package | 22.04 LTS |
|---|---|
| fastnetmon | Not in release |
Not in release
FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read vulnerability in the NetFlow v9 data flowset processor. In src/netflow_plugin/netflow_v9_collector.cpp, the Data template branch (lines 1695-1702) iterates...
1 affected package
fastnetmon
| Package | 22.04 LTS |
|---|---|
| fastnetmon | Not in release |
libyang before 5.2.6 contains a heap use-after-free write vulnerability in lyd_parser_set_data_flags that incorrectly updates metadata list pointers when freeing non-head default metadata entries. Attackers can trigger...
2 affected packages
libyang, libyang2
| Package | 22.04 LTS |
|---|---|
| libyang | Needs evaluation |
| libyang2 | Needs evaluation |
Not in release
gix-submodule before 0.82.0 incorrectly validates the update field in .gitmodules, allowing attackers to bypass the CommandForbiddenInModulesConfiguration guard when a submodule has been initialized with only partial configuration...
2 affected packages
rust-gix, rust-gix-submodule
| Package | 22.04 LTS |
|---|---|
| rust-gix | Not in release |
| rust-gix-submodule | Not in release |
FreeRDP before 3.26.0 contains a heap-buffer-overflow vulnerability in gdi_CacheToSurface that allows remote attackers to write out-of-bounds heap memory. The vulnerability occurs because rectangle validation clamps coordinates to...
3 affected packages
freerdp, freerdp2, freerdp3
| Package | 22.04 LTS |
|---|---|
| freerdp | Not in release |
| freerdp2 | Needs evaluation |
| freerdp3 | Not in release |
A security flaw has been discovered in Squirrel up to 3.2. Impacted is the function ReadObject of the file squirrel/sqobject.cpp of the component Cnut File Handler. Performing a manipulation results in heap-based buffer overflow....
1 affected package
squirrel3
| Package | 22.04 LTS |
|---|---|
| squirrel3 | Needs evaluation |
Perl versions through 5.43.10 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds. Perl_study_chunk in regcomp_study.c checked the size of the joined substring buffer in...
1 affected package
perl
| Package | 22.04 LTS |
|---|---|
| perl | Needs evaluation |
Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar header. _read_tar() reads each entry's payload with $handle->read($$data, $block), where $block is derived from the...
1 affected package
perl
| Package | 22.04 LTS |
|---|---|
| perl | Needs evaluation |
[Stack Buffer Overflow in radvdump Route Information Option Parser]
1 affected package
radvd
| Package | 22.04 LTS |
|---|---|
| radvd | Needs evaluation |