Search CVE reports


Toggle filters

16261 – 16270 of 44107 results

Status is adjusted based on your filters.


CVE-2022-43238

Medium priority
Fixed

Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_h_3_v_3_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

1 affected package

libde265

Package 16.04 LTS
libde265 Fixed
Show less packages

CVE-2022-43237

Medium priority
Fixed

Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via void put_epel_hv_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a...

1 affected package

libde265

Package 16.04 LTS
libde265 Fixed
Show less packages

CVE-2022-43236

Medium priority
Fixed

Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

1 affected package

libde265

Package 16.04 LTS
libde265 Fixed
Show less packages

CVE-2022-43235

Medium priority
Fixed

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_epel_pixels_8_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

1 affected package

libde265

Package 16.04 LTS
libde265 Fixed
Show less packages

CVE-2022-3810

Medium priority
Ignored

A vulnerability was found in Axiomatic Bento4. It has been classified as problematic. This affects the function AP4_File::AP4_File of the file Mp42Hevc.cpp of the component mp42hevc. The manipulation leads to denial of service. It...

1 affected package

kodi-inputstream-adaptive

Package 16.04 LTS
kodi-inputstream-adaptive Ignored
Show less packages

CVE-2022-3809

Medium priority
Ignored

A vulnerability was found in Axiomatic Bento4 and classified as problematic. Affected by this issue is the function ParseCommandLine of the file Mp4Tag/Mp4Tag.cpp of the component mp4tag. The manipulation leads to denial of...

1 affected package

kodi-inputstream-adaptive

Package 16.04 LTS
kodi-inputstream-adaptive Ignored
Show less packages

CVE-2021-37789

Medium priority
Ignored

stb_image.h 2.27 has a heap-based buffer over in stbi__jpeg_load, leading to Information Disclosure or Denial of Service.

1 affected package

libstb

Package 16.04 LTS
libstb Ignored
Show less packages

CVE-2022-42919

High priority
Not affected

Python 3.9.x before 3.9.16 and 3.10.x before 3.10.9 on Linux allows local privilege escalation in a non-default configuration. The Python multiprocessing library, when used with the forkserver start method on Linux, allows pickles...

9 affected packages

python2.7, python3.5, python3.6, python3.9, python3.10...

Package 16.04 LTS
python2.7 Not affected
python3.5 Not affected
python3.6 Not in release
python3.9 Not in release
python3.10 Not in release
python3.4 Not in release
python3.7 Not in release
python3.8 Not in release
python3.11 Not in release
Show all 9 packages Show less packages

CVE-2022-3723

Medium priority
Ignored

Type confusion in V8 in Google Chrome prior to 107.0.5304.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 16.04 LTS
chromium-browser Ignored
Show less packages

CVE-2022-3661

Medium priority
Ignored

Insufficient data validation in Extensions in Google Chrome prior to 107.0.5304.62 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted Chrome extension. (Chromium security...

1 affected package

chromium-browser

Package 16.04 LTS
chromium-browser Ignored
Show less packages