Search CVE reports
21 – 30 of 46861 results
Not in release
[Built-in TCP/IP malformed TCP option handling]
1 affected package
mongoose
| Package | 22.04 LTS |
|---|---|
| mongoose | Not in release |
Not in release
[Built-in TLS X.509 DER parsing bounds check]
1 affected package
mongoose
| Package | 22.04 LTS |
|---|---|
| mongoose | Not in release |
Not in release
[Built-in TLS short-record handling]
1 affected package
mongoose
| Package | 22.04 LTS |
|---|---|
| mongoose | Not in release |
Not in release
[Built-in TLS certificate-chain verification with CA bundles]
1 affected package
mongoose
| Package | 22.04 LTS |
|---|---|
| mongoose | Not in release |
Not in release
amazing-print/amazing_print at commit dc890dfafdf07088ea901df53c19c2710e5c5234 contains a Ruby code injection condition in AwesomeMethodArray#grep. A specially named method containing Ruby interpolation syntax can be interpolated...
1 affected package
ruby-amazing-print
| Package | 22.04 LTS |
|---|---|
| ruby-amazing-print | Not in release |
[Unknown description]
1 affected package
qemu
| Package | 22.04 LTS |
|---|---|
| qemu | Needs evaluation |
Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. ...
7 affected packages
postgresql-18, postgresql-16, postgresql-14, postgresql-12, postgresql-10...
| Package | 22.04 LTS |
|---|---|
| postgresql-18 | Not in release |
| postgresql-16 | Not in release |
| postgresql-14 | Needs evaluation |
| postgresql-12 | Not in release |
| postgresql-10 | Not in release |
| postgresql-9.5 | Not in release |
| postgresql-9.3 | Not in release |
Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of service against ALTER and DROP of the type, via creating a dependency on the type. Many DDL operations did check the privilege, but...
7 affected packages
postgresql-18, postgresql-16, postgresql-14, postgresql-12, postgresql-10...
| Package | 22.04 LTS |
|---|---|
| postgresql-18 | Not in release |
| postgresql-16 | Not in release |
| postgresql-14 | Needs evaluation |
| postgresql-12 | Not in release |
| postgresql-10 | Not in release |
| postgresql-9.5 | Not in release |
| postgresql-9.3 | Not in release |
Incorrect ownership assignment in PostgreSQL ALTER TABLE ALTER TYPE command reassigns ownership of dependent statistics objects to the current user. This wrongly allows the table owner to run DROP STATISTICS and ALTER STATISTICS...
7 affected packages
postgresql-18, postgresql-16, postgresql-14, postgresql-12, postgresql-10...
| Package | 22.04 LTS |
|---|---|
| postgresql-18 | Not in release |
| postgresql-16 | Not in release |
| postgresql-14 | Needs evaluation |
| postgresql-12 | Not in release |
| postgresql-10 | Not in release |
| postgresql-9.5 | Not in release |
| postgresql-9.3 | Not in release |
Untrusted data inclusion in PostgreSQL psql COPY may allow a server administrator to elicit execution of data lines as psql commands, via error injection. If the "COPY FROM STDIN" or "\copy FROM STDIN" command fails before the...
7 affected packages
postgresql-18, postgresql-16, postgresql-14, postgresql-12, postgresql-10...
| Package | 22.04 LTS |
|---|---|
| postgresql-18 | Not in release |
| postgresql-16 | Not in release |
| postgresql-14 | Needs evaluation |
| postgresql-12 | Not in release |
| postgresql-10 | Not in release |
| postgresql-9.5 | Not in release |
| postgresql-9.3 | Not in release |