Search CVE reports


Toggle filters

71 – 80 of 87 results


CVE-2013-4257

Medium priority

Some fixes available 3 of 4

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-4256. Reason: This issue was MERGED into CVE-2013-4256 because it is the same type of vulnerability. Notes: All CVE users should reference CVE-2013-4256...

1 affected package

nas

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nas
Show less packages

CVE-2013-4256

Medium priority

Some fixes available 3 of 4

Multiple stack-based and heap-based buffer overflows in Network Audio System (NAS) 1.9.3 allow local users to cause a denial of service (crash) or possibly execute arbitrary code via the (1) display command argument to the...

1 affected package

nas

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nas
Show less packages

CVE-2012-1175

Medium priority
Ignored

Integer overflow in the GnashImage::size method in libbase/GnashImage.h in GNU Gnash 0.8.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SWF file, which triggers a...

1 affected package

gnash

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnash
Show less packages

CVE-2011-4328

Medium priority

Some fixes available 4 of 9

plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.

1 affected package

gnash

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnash
Show less packages

CVE-2010-4337

Low priority
Ignored

The configure script in gnash 0.8.8 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/gnash-configure-errors.$$, (2) /tmp/gnash-configure-warnings.$$, or (3) /tmp/gnash-configure-recommended.$$ files.

1 affected package

gnash

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnash
Show less packages

CVE-2009-0125

Negligible priority
Ignored

NOTE: this issue has been disputed by the upstream vendor. nasl/nasl_crypto2.c in the Nessus Attack Scripting Language library (aka libnasl) 2.2.11 does not properly check the return value from the OpenSSL DSA_do_verify function,...

1 affected package

libnasl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libnasl
Show less packages

CVE-2008-7177

Low priority
Ignored

Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.

1 affected package

nasm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nasm
Show less packages

CVE-2008-2719

Medium priority
Fixed

Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted file that triggers a...

1 affected package

nasm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nasm
Show less packages

CVE-2007-2500

Medium priority
Fixed

server/parser/sprite_definition.cpp in GNU Gnash (aka GNU Flash Player) 0.7.2 allows remote attackers to execute arbitrary code via a large number of SHOWFRAME elements within a DEFINESPRITE element, which triggers...

1 affected package

gnash

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnash
Show less packages

CVE-2007-1547

Medium priority
Fixed

The ReadRequestFromClient function in server/os/io.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (crash) via multiple simultaneous connections, which triggers a NULL...

1 affected package

nas

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nas
Show less packages