Search CVE reports
61 – 70 of 44619 results
A flaw was found in FreeIPA. The trust-fetch-domains command is gated by a read-only permission on the trust object rather than a trust-administration permission, allowing an authenticated, non-privileged IPA user to trigger...
1 affected package
freeipa
| Package | 20.04 LTS |
|---|---|
| freeipa | Needs evaluation |
Multiple Use-After-Free vulnerabilities were found in the add_archive_element function in ld/ldmain.c of the GNU linker (ld), a component of binutils. The root cause is that plugin_maybe_claim() in ld/plugin.c frees the original...
1 affected package
binutils
| Package | 20.04 LTS |
|---|---|
| binutils | Needs evaluation |
A flaw was found in DBI. This is a fix for a partial fix for CVE-2026-14380 for RHEL 9.8.z and 10.2.z. For a detailed Statement, Description and Mitigation please reffer to the original...
1 affected package
libdbi-perl
| Package | 20.04 LTS |
|---|---|
| libdbi-perl | Needs evaluation |
Improper Validation of Specified Quantity in Input vulnerability in Samsung Open Source rlottie allows Input Data Manipulation.
1 affected package
rlottie
| Package | 20.04 LTS |
|---|---|
| rlottie | Needs evaluation |
Improper Validation of Specified Quantity in Input and Allocation of Resources Without Limits or Throttling vulnerability in Samsung Open Source rlottie allows Excessive Allocation.
1 affected package
rlottie
| Package | 20.04 LTS |
|---|---|
| rlottie | Needs evaluation |
A NULL pointer vulnerability has been found in the the shim application of dp.c library. A missing NULL pointer could allow attackers to perform a denial of service attack on a system that uses shim application for UEFI bootloader.
3 affected packages
secureboot-db, shim-signed, shim
| Package | 20.04 LTS |
|---|---|
| secureboot-db | Needs evaluation |
| shim-signed | Needs evaluation |
| shim | Needs evaluation |
security update
1 affected package
lemonldap-ng
| Package | 20.04 LTS |
|---|---|
| lemonldap-ng | Needs evaluation |
A JEXL expression sandbox bypass exists in multiple versions of OpenNMS Meridian and Horizon. A low-privileged authenticated user can submit a crafted expression to the Measurements REST API that escapes the sandbox and loads...
1 affected package
horizon
| Package | 20.04 LTS |
|---|---|
| horizon | Needs evaluation |
A flaw was found in open-iscsi. An integer underflow vulnerability in the `iscsiuio` component, specifically during IPv4 Dynamic Host Configuration Protocol (DHCP) parsing, allows a remote attacker on the same local...
1 affected package
open-iscsi
| Package | 20.04 LTS |
|---|---|
| open-iscsi | Needs evaluation |
A flaw was found in open-iscsi's iscsiuio component. This vulnerability involves an integer underflow and out-of-bounds read during Dynamic Host Configuration Protocol for IPv6 (DHCPv6) packet parsing. Specifically, crafted DHCPv6...
1 affected package
open-iscsi
| Package | 20.04 LTS |
|---|---|
| open-iscsi | Needs evaluation |