Search CVE reports
171 – 180 of 47892 results
MapServer is a system for developing web-based GIS applications. From 6.0 until 8.6.4, MapServer's OpenLayers HTML output for SERVICE=WMS&REQUEST=GetMap&FORMAT=application/openlayers reflects an attacker-controlled...
1 affected package
mapserver
| Package | 24.04 LTS |
|---|---|
| mapserver | Needs evaluation |
MapServer is a system for developing web-based GIS applications. Prior to 8.6.4, MapServer's PostGIS runtime filter translation in src/mappostgis.cpp and msPostGISLayerTranslateFilter() treats a filteritem as numeric...
1 affected package
mapserver
| Package | 24.04 LTS |
|---|---|
| mapserver | Needs evaluation |
JabRef is a desktop application for managing BibTeX and BibLaTeX libraries. Prior to 6.0-alpha.6, when jabsrv or JabRef's built-in HTTP server is enabled, the GET /better-bibtex/cayw endpoint accepts an external command query...
1 affected package
jabref
| Package | 24.04 LTS |
|---|---|
| jabref | Needs evaluation |
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to versions 3.0.16.0 and 3.1.11.0, processing a crafted BMP file through oiiotool or...
1 affected package
openimageio
| Package | 24.04 LTS |
|---|---|
| openimageio | Needs evaluation |
(libre is a generic library for real-time communications with asynchron ...)
1 affected package
libre
| Package | 24.04 LTS |
|---|---|
| libre | Needs evaluation |
Not in release
(CakePHP is a rapid development framework for PHP. In versions 4.5.11 a ...)
1 affected package
cakephp
| Package | 24.04 LTS |
|---|---|
| cakephp | Not in release |
(QDomDocument XML parsing is vulnerable to a remotely-triggerable denia ...)
2 affected packages
qt6-base, qtbase-opensource-src
| Package | 24.04 LTS |
|---|---|
| qt6-base | Needs evaluation |
| qtbase-opensource-src | Needs evaluation |
Not in release
A vulnerability was found in CRI-O related to the container checkpoint and restore feature. When CRI-O is configured to restore containers from checkpoint archives, insufficient validation of restore metadata may allow a user with...
1 affected package
cri-o
| Package | 24.04 LTS |
|---|---|
| cri-o | Not in release |
(Uncontrolled recursion (CWE-674) in the QDomDocument/QDomNode serializ ...)
2 affected packages
qt6-base, qtbase-opensource-src
| Package | 24.04 LTS |
|---|---|
| qt6-base | Needs evaluation |
| qtbase-opensource-src | Needs evaluation |
security update
1 affected package
network-manager-l2tp
| Package | 24.04 LTS |
|---|---|
| network-manager-l2tp | Needs evaluation |