Search CVE reports
71 – 80 of 49076 results
Improper Link Resolution Before File Access in the drag source staging path of the drag and drop protocol in kitty from 0.47.0 before 0.49.0 allows a program writing to the terminal to create files and directories at paths outside...
1 affected package
kitty
| Package | 24.04 LTS |
|---|---|
| kitty | Needs evaluation |
Some fixes available 1 of 2
Timing Side-Channel in SM2 Signature Generation
6 affected packages
openssl, openssl-fips, openssl1.0, nodejs, edk2, edk2-hwe
| Package | 24.04 LTS |
|---|---|
| openssl | Fixed |
| openssl-fips | Not in release |
| openssl1.0 | Not in release |
| nodejs | Not affected |
| edk2 | Needs evaluation |
| edk2-hwe | Not in release |
(RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, URI.St ...)
1 affected package
golang-github-rabbitmq-amqp091-go
| Package | 24.04 LTS |
|---|---|
| golang-github-rabbitmq-amqp091-go | Needs evaluation |
(RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, Connec ...)
1 affected package
golang-github-rabbitmq-amqp091-go
| Package | 24.04 LTS |
|---|---|
| golang-github-rabbitmq-amqp091-go | Needs evaluation |
Not in release
(A security vulnerability has been detected in Telegram Desktop up to 6 ...)
1 affected package
telegram-desktop
| Package | 24.04 LTS |
|---|---|
| telegram-desktop | Not in release |
(Out-of-bounds read (buffer over-read) in the HTTP Cache-Control respon ...)
2 affected packages
qt6-base, qtbase-opensource-src
| Package | 24.04 LTS |
|---|---|
| qt6-base | Needs evaluation |
| qtbase-opensource-src | Needs evaluation |
Some fixes available 1 of 2
Unauthenticated and Undersized DTLS 1.2 AEAD Record Causes DoS
6 affected packages
openssl, openssl-fips, openssl1.0, nodejs, edk2, edk2-hwe
| Package | 24.04 LTS |
|---|---|
| openssl | Fixed |
| openssl-fips | Not in release |
| openssl1.0 | Not in release |
| nodejs | Not affected |
| edk2 | Needs evaluation |
| edk2-hwe | Not in release |
Some fixes available 1 of 2
NULL Pointer Dereference in CMP Client Revocation Response Handling
6 affected packages
openssl, openssl-fips, openssl1.0, nodejs, edk2, edk2-hwe
| Package | 24.04 LTS |
|---|---|
| openssl | Fixed |
| openssl-fips | Not in release |
| openssl1.0 | Not in release |
| nodejs | Not affected |
| edk2 | Needs evaluation |
| edk2-hwe | Not in release |
QUIC Connection-Level Flow Control is Not Enforced for Streams
6 affected packages
openssl, openssl-fips, openssl1.0, nodejs, edk2, edk2-hwe
| Package | 24.04 LTS |
|---|---|
| openssl | Not affected |
| openssl-fips | Not affected |
| openssl1.0 | Not in release |
| nodejs | Not affected |
| edk2 | Not affected |
| edk2-hwe | Not in release |
Not in release
(jupyterlab is an extensible environment for interactive and reproducib ...)
1 affected package
jupyterlab
| Package | 24.04 LTS |
|---|---|
| jupyterlab | Not in release |