Search CVE reports


Toggle filters

1301 – 1310 of 1355 results


CVE-2011-2732

Medium priority
Ignored

CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting...

1 affected package

libspring-security-2.0-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libspring-security-2.0-java
Show less packages

CVE-2011-2731

Medium priority
Ignored

Race condition in the RunAsManager mechanism in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 stores the Authentication object in the shared security context, which allows attackers to gain privileges via...

1 affected package

libspring-security-2.0-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libspring-security-2.0-java
Show less packages

CVE-2011-2730

Low priority
Ignored

VMware SpringSource Spring Framework before 2.5.6.SEC03, 2.5.7.SR023, and 3.x before 3.0.6, when a container supports Expression Language (EL), evaluates EL expressions in tags twice, which allows remote attackers to obtain...

1 affected package

libspring-2.5-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libspring-2.5-java
Show less packages

CVE-2012-4444

Medium priority

Some fixes available 3 of 22

The ip6_frag_queue function in net/ipv6/reassembly.c in the Linux kernel before 2.6.36 allows remote attackers to bypass intended network restrictions via overlapping IPv6 fragments.

14 affected packages

linux, linux-armadaxp, linux-ec2, linux-fsl-imx51, linux-linaro-omap...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-armadaxp
linux-ec2
linux-fsl-imx51
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-backport-maverick
linux-lts-backport-oneiric
linux-lts-quantal
linux-lts-raring
linux-mvl-dove
linux-qcm-msm
linux-ti-omap4
Show all 14 packages Show less packages

CVE-2012-4571

Medium priority

Some fixes available 2 of 3

Python Keyring 0.9.1 does not securely initialize the cipher when encrypting passwords for CryptedFileKeyring files, which makes it easier for local users to obtain passwords via a brute-force attack.

1 affected package

python-keyring

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-keyring
Show less packages

CVE-2012-3466

Medium priority
Ignored

GNOME gnome-keyring 3.4.0 through 3.4.1, when gpg-cache-method is set to "idle" or "timeout," does not properly limit the amount of time a passphrase is cached, which allows attackers to have an unspecified impact via unknown...

1 affected package

gnome-keyring

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnome-keyring
Show less packages

CVE-2012-4530

Low priority

Some fixes available 12 of 48

The load_script function in fs/binfmt_script.c in the Linux kernel before 3.7.2 does not properly handle recursion, which allows local users to obtain sensitive information from kernel stack memory via a crafted application.

32 affected packages

linux-fsl-imx51, linux, linux-armadaxp, linux-aws, linux-ec2...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-fsl-imx51
linux
linux-armadaxp
linux-aws
linux-ec2
linux-flo
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-backport-maverick
linux-lts-backport-natty
linux-lts-backport-oneiric
linux-lts-quantal
linux-lts-raring
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2012-4398

Medium priority

Some fixes available 7 of 34

The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 does not set a certain killable attribute, which allows local users to cause a denial of service (memory consumption) via a crafted application.

32 affected packages

linux-aws, linux-flo, linux-hwe-edge, linux-lts-trusty, linux-lts-utopic...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws
linux-flo
linux-hwe-edge
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-gke
linux-hwe
linux
linux-lts-backport-natty
linux-linaro-omap
linux-armadaxp
linux-ec2
linux-fsl-imx51
linux-goldfish
linux-grouper
linux-linaro-shared
linux-linaro-vexpress
linux-lts-backport-maverick
linux-lts-backport-oneiric
linux-lts-quantal
linux-lts-raring
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2012-3400

Low priority

Some fixes available 10 of 45

Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a...

32 affected packages

linux-flo, linux, linux-armadaxp, linux-aws, linux-ec2...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-flo
linux
linux-armadaxp
linux-aws
linux-ec2
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-backport-maverick
linux-lts-backport-natty
linux-lts-backport-oneiric
linux-lts-quantal
linux-lts-raring
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-mvl-dove
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 32 packages Show less packages

CVE-2012-2372

Low priority

Some fixes available 11 of 48

The rds_ib_xmit function in net/rds/ib_send.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel 3.7.4 and earlier allows local users to cause a denial of service (BUG_ON and kernel panic) by...

33 affected packages

linux, linux-ec2, linux-mvl-dove, linux-aws, linux-armadaxp...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux
linux-ec2
linux-mvl-dove
linux-aws
linux-armadaxp
linux-flo
linux-fsl-imx51
linux-gke
linux-goldfish
linux-grouper
linux-hwe
linux-hwe-edge
linux-linaro-omap
linux-linaro-shared
linux-linaro-vexpress
linux-lts-backport-maverick
linux-lts-backport-natty
linux-lts-backport-oneiric
linux-lts-quantal
linux-lts-raring
linux-lts-saucy
linux-lts-trusty
linux-lts-utopic
linux-lts-vivid
linux-lts-wily
linux-lts-xenial
linux-maguro
linux-mako
linux-manta
linux-qcm-msm
linux-raspi2
linux-snapdragon
linux-ti-omap4
Show all 33 packages Show less packages