Search CVE reports
971 – 980 of 37267 results
A vulnerability was detected in CCExtractor up to 0.96.5. Affected is the function processmp4 in the library src/lib_ccx/mp4.c. Performing a manipulation results in use after free. The attack is only possible with local access....
1 affected package
ccextractor
| Package | 22.04 LTS |
|---|---|
| ccextractor | Needs evaluation |
ZoneMinder is a free, open source closed-circuit television software application. In versions 1.36.37 and below and 1.37.61 through 1.38.0, there is a second-order SQL Injection vulnerability in the web/ajax/status.php file within...
1 affected package
zoneminder
| Package | 22.04 LTS |
|---|---|
| zoneminder | Needs evaluation |
Not in release
Zumba Json Serializer is a library to serialize PHP variables in JSON format. In versions 3.2.2 and below, the library allows deserialization of PHP objects from JSON using a special @type field. The deserializer instantiates any...
1 affected package
php-zumba-json-serializer
| Package | 22.04 LTS |
|---|---|
| php-zumba-json-serializer | Not in release |
Flask is a web server gateway interface (WSGI) web application framework. In versions 3.1.2 and below, when the session object is accessed, Flask should set the Vary: Cookie header., resulting in a Use of Cache...
1 affected package
flask
| Package | 22.04 LTS |
|---|---|
| flask | Fixed |
Werkzeug is a comprehensive WSGI web application library. Versions 3.1.5 and below, the safe_join function allows Windows device names as filenames if preceded by other path segments. This was previously reported...
1 affected package
python-werkzeug
| Package | 22.04 LTS |
|---|---|
| python-werkzeug | Not affected |
Not in release
A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX content using mimetex, insufficient execution time limits could allow specially crafted formulas to consume excessive server...
1 affected package
moodle
| Package | 22.04 LTS |
|---|---|
| moodle | Not in release |
Not in release
A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitization of configuration input could allow command injection. On sites where the TeX filter is enabled and ImageMagick is installed, a...
1 affected package
moodle
| Package | 22.04 LTS |
|---|---|
| moodle | Not in release |
Not in release
A flaw was identified in Moodle’s backup restore functionality where specially crafted backup files were not properly validated during processing. If a malicious backup file is restored, it could lead to unintended execution of...
1 affected package
moodle
| Package | 22.04 LTS |
|---|---|
| moodle | Not in release |
Not in release
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. All versions are vulnerable to Heap-based Buffer Overflow through the XWD parser's use of the bytes_per_line...
1 affected package
sail
| Package | 22.04 LTS |
|---|---|
| sail | Not in release |
Not in release
TensorFlow HDF5 Library Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of TensorFlow. An attacker must first...
1 affected package
tensorflow
| Package | 22.04 LTS |
|---|---|
| tensorflow | Not in release |