Search CVE reports
531 – 540 of 38020 results
proxy-addr is a Node.js module that determines a request's client address behind trusted reverse proxies, and it backs Express req.ip and req.ips. In versions 1.1.0 through 2.0.7, a trust subnet written in IPv4-mapped...
1 affected package
node-proxy-addr
| Package | 26.04 LTS |
|---|---|
| node-proxy-addr | Needs evaluation |
moment is a JavaScript date library for parsing, validating, manipulating, and formatting dates. In versions 2.29.2 through 2.30.1, a specially crafted non-string object passed to moment.locale() can bypass the locale-name...
2 affected packages
node-moment, python-xstatic-moment
| Package | 26.04 LTS |
|---|---|
| node-moment | Needs evaluation |
| python-xstatic-moment | Needs evaluation |
A vulnerability has been found in luben zstd-jni up to 1.5.7-13. This vulnerability affects the function ZstdCompressCtx.loadDict of the file ZstdCompressCtx.java of the component Dictionary Sharing. Such manipulation leads to use...
1 affected package
zstd-jni-java
| Package | 26.04 LTS |
|---|---|
| zstd-jni-java | Needs evaluation |
A weakness has been identified in Governikus AusweisApp up to 2.5.4. Affected is an unknown function of the component StartPAOSResponse Handler. Executing a manipulation of the argument ResultMessage can lead to cross site...
1 affected package
ausweisapp2
| Package | 26.04 LTS |
|---|---|
| ausweisapp2 | Needs evaluation |
GNU libextractor before 1.15 contains a stack-based buffer overflow vulnerability in the process_star_office function that sizes a variable-length stack array from attacker-controlled OLE2 stream data. Attackers can craft...
1 affected package
libextractor
| Package | 26.04 LTS |
|---|---|
| libextractor | Needs evaluation |
[Unknown description]
1 affected package
flatpak-builder
| Package | 26.04 LTS |
|---|---|
| flatpak-builder | Needs evaluation |
security update
1 affected package
network-manager-l2tp
| Package | 26.04 LTS |
|---|---|
| network-manager-l2tp | Needs evaluation |
security update
1 affected package
network-manager-l2tp
| Package | 26.04 LTS |
|---|---|
| network-manager-l2tp | Needs evaluation |
A vulnerability was detected in GNU Binutils 2.47. The affected element is the function _bfd_elf_strtab_delref of the file bfd/elf-strtab.c of the component ELF String Table. The manipulation results in memory corruption. The...
1 affected package
binutils
| Package | 26.04 LTS |
|---|---|
| binutils | Needs evaluation |
A security vulnerability has been detected in GNU Binutils 2.47. Impacted is the function _bfd_write_merged_section of the file bfd/merge.c of the component Section Merge. The manipulation leads to null pointer dereference. The...
1 affected package
binutils
| Package | 26.04 LTS |
|---|---|
| binutils | Needs evaluation |