Search CVE reports


Toggle filters

191 – 200 of 503 results


CVE-2019-11187

Low priority

Some fixes available 1 of 3

Incorrect Access Control in the LDAP class of GONICUS GOsa through 2019-04-11 allows an attacker to log into any account with a username containing the case-insensitive substring "success" when an arbitrary password is provided.

2 affected packages

fusiondirectory, gosa

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fusiondirectory Not in release Not in release Not affected Not affected Ignored
gosa Not affected Not affected Not affected Not affected Ignored
Show less packages

CVE-2019-10141

Medium priority
Vulnerable

A vulnerability was found in openstack-ironic-inspector all versions excluding 5.0.2, 6.0.3, 7.2.4, 8.0.3 and 8.2.1. A SQL-injection vulnerability was found in openstack-ironic-inspector's node_cache.find_node(). This function...

1 affected package

ironic-inspector

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ironic-inspector Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2019-14294

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, due to an out of bounds read.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14293

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14292

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 1.

4 affected packages

ipe, libextractor, xpdf, poppler

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
poppler Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2019-14291

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 3.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14290

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 2.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14289

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "multiple bytes per line" case.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-14288

Medium priority
Needs evaluation

An issue was discovered in Xpdf 4.01.01. There is an Integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "one byte per line" case.

4 affected packages

ipe, libextractor, poppler, xpdf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ipe Needs evaluation Needs evaluation Needs evaluation Ignored Ignored
libextractor Not affected Not affected Not affected Not affected Not affected
poppler Not affected Not affected Not affected Not affected Not affected
xpdf Not affected Not affected Not affected Not in release Not affected
Show less packages

CVE-2019-13640

Medium priority
Vulnerable

In qBittorrent before 4.1.7, the function Application::runExternalProgram() located in app/application.cpp allows command injection via shell metacharacters in the torrent name parameter or current tracker parameter, as...

1 affected package

qbittorrent

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qbittorrent Not affected Not affected Not affected Not affected Vulnerable
Show less packages