Search CVE reports
13151 – 13160 of 44632 results
jbig2enc v0.28 was discovered to contain a SEGV via jbig2_add_page in src/jbig2enc.cc:512.
1 affected package
jbig2enc
Package | 16.04 LTS |
---|---|
jbig2enc | Ignored |
jbig2enc v0.28 was discovered to contain a heap-use-after-free via jbig2enc_auto_threshold_using_hash in src/jbig2enc.cc.
1 affected package
jbig2enc
Package | 16.04 LTS |
---|---|
jbig2enc | Ignored |
An issue discovered in Axios 1.5.1 inadvertently reveals the confidential XSRF-TOKEN stored in cookies by including it in the HTTP header X-XSRF-TOKEN for every request made to any host allowing attackers to view sensitive information.
1 affected package
node-axios
Package | 16.04 LTS |
---|---|
node-axios | Ignored |
Use after free in WebAudio in Google Chrome prior to 119.0.6045.123 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Buffer Overflow vulnerability in gpac MP4Box v.2.3-DEV-rev573-g201320819-master allows a local attacker to cause a denial of service via the gpac/src/isomedia/isom_read.c:2807:51 function in gf_isom_get_user_data.
1 affected package
gpac
Package | 16.04 LTS |
---|---|
gpac | Needs evaluation |
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV.
1 affected package
gpac
Package | 16.04 LTS |
---|---|
gpac | Needs evaluation |
Videolan VLC prior to version 3.0.20 contains an Integer underflow that leads to an incorrect packet length.
1 affected package
vlc
Package | 16.04 LTS |
---|---|
vlc | Fixed |
Videolan VLC prior to version 3.0.20 contains an incorrect offset read that leads to a Heap-Based Buffer Overflow in function GetPacket() and results in a memory corruption.
1 affected package
vlc
Package | 16.04 LTS |
---|---|
vlc | Fixed |
Cross Site Scripting vulnerability in BootBox Bootbox.js v.3.2 through 6.0 allows a remote attacker to execute arbitrary code via a crafted payload to alert(), confirm(), prompt() functions.
1 affected package
libjs-bootbox
Package | 16.04 LTS |
---|---|
libjs-bootbox | Ignored |
DOMPurify before 1.0.11 allows reverse tabnabbing in demos/hooks-target-blank-demo.html because links lack a 'rel="noopener noreferrer"' attribute.
1 affected package
dompurify.js
Package | 16.04 LTS |
---|---|
dompurify.js | Needs evaluation |