Search CVE reports
121 – 130 of 47730 results
Hostname verification in Apache ZooKeeper ZKTrustManager falls back to reverse DNS (PTR) when IP SAN validation fails, allowing attackers who control or spoof PTR records to impersonate ZooKeeper servers or clients with a valid...
1 affected package
zookeeper
| Package | 16.04 LTS |
|---|---|
| zookeeper | Needs evaluation |
It was discovered that dpkg-deb (a component of dpkg, the Debian package management system) does not properly validate the end of the data stream when uncompressing a zstd-compressed .deb archive, which may result in denial of...
1 affected package
dpkg
| Package | 16.04 LTS |
|---|---|
| dpkg | Needs evaluation |
GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due to incomplete state cleanup...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Needs evaluation |
GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT relocation handling, dump_relocations may return early without initializing the...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Needs evaluation |
GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Needs evaluation |
GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors,...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Needs evaluation |
Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Needs evaluation |
Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Needs evaluation |
An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers...
1 affected package
binutils
| Package | 16.04 LTS |
|---|---|
| binutils | Needs evaluation |
An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User...
1 affected package
zabbix
| Package | 16.04 LTS |
|---|---|
| zabbix | Needs evaluation |