Search CVE reports
31 – 33 of 33 results
Heap-based buffer overflow in the showQueryPackage function in librpm in RPM Package Manager 4.4.8, when the LANG environment variable is set to ru_RU.UTF-8, might allow user-assisted attackers to execute arbitrary code via...
1 affected package
rpm
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| rpm | — | — | — | — | — |
inftrees.h in zlib 1.2.2 allows remote attackers to cause a denial of service (application crash) via an invalid file that causes a large dynamic tree to be produced.
6 affected packages
aide, dpkg, ia32-libs, rpm, sash, zlib
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| aide | — | — | — | — | — |
| dpkg | — | — | — | — | — |
| ia32-libs | — | — | — | — | — |
| rpm | — | — | — | — | — |
| sash | — | — | — | — | — |
| zlib | — | — | — | — | — |
Some fixes available 19 of 21
zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a crafted compressed stream with an incomplete code description of a length greater than 1, which leads to a buffer overflow, as...
9 affected packages
aide, bacula, dpkg, dump, ia32-libs...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| aide | — | — | — | — | — |
| bacula | — | — | — | — | — |
| dpkg | — | — | — | — | — |
| dump | — | — | — | — | — |
| ia32-libs | — | — | — | — | — |
| rpm | — | — | — | — | — |
| sash | — | — | — | — | — |
| zlib | — | — | — | — | — |
| zsync | — | — | — | — | — |