Search CVE reports


Toggle filters

11891 – 11900 of 48193 results

Status is adjusted based on your filters.


CVE-2023-49141

Medium priority
Fixed

Improper isolation in some Intel(R) Processors stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access.

1 affected package

intel-microcode

Package 16.04 LTS
intel-microcode Fixed
Show less packages

CVE-2023-42667

Medium priority
Fixed

Improper isolation in the Intel(R) Core(TM) Ultra Processor stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access.

1 affected package

intel-microcode

Package 16.04 LTS
intel-microcode Fixed
Show less packages

CVE-2024-37015

Medium priority
Needs evaluation

An issue was discovered in Ada Web Server 20.0. When configured to use SSL (which is not the default setting), the SSL/TLS used to establish connections to external services is done without proper hostname validation. This is...

1 affected package

libaws

Package 16.04 LTS
libaws Needs evaluation
Show less packages

CVE-2023-31356

Medium priority
Not affected

Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.

1 affected package

amd64-microcode

Package 16.04 LTS
amd64-microcode Not affected
Show less packages

CVE-2023-20584

Medium priority
Not affected

IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP,...

1 affected package

amd64-microcode

Package 16.04 LTS
amd64-microcode Not affected
Show less packages

CVE-2024-6384

Medium priority
Not affected

"Hot" backup files may be downloaded by underprivileged users, if they are capable of acquiring a unique backup identifier. This issue affects MongoDB Enterprise Server v6.0 versions prior to 6.0.16, MongoDB Enterprise Server v7.0...

1 affected package

mongodb

Package 16.04 LTS
mongodb Not affected
Show less packages

CVE-2024-38168

Medium priority

Not in release

.NET and Visual Studio Denial of Service Vulnerability

3 affected packages

dotnet6, dotnet7, dotnet8

Package 16.04 LTS
dotnet6 Not in release
dotnet7 Not in release
dotnet8 Not in release
Show less packages

CVE-2024-38167

Medium priority

Not in release

.NET and Visual Studio Information Disclosure Vulnerability

3 affected packages

dotnet6, dotnet7, dotnet8

Package 16.04 LTS
dotnet6 Not in release
dotnet7 Not in release
dotnet8 Not in release
Show less packages

CVE-2024-43360

Medium priority
Needs evaluation

ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder is affected by a time-based SQL Injection vulnerability. This vulnerability is fixed in 1.36.34 and 1.37.61.

1 affected package

zoneminder

Package 16.04 LTS
zoneminder Needs evaluation
Show less packages

CVE-2024-43359

Medium priority
Needs evaluation

ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder has a cross-site scripting vulnerability in the montagereview via the displayinterval, speed, and scale parameters. This vulnerability is...

1 affected package

zoneminder

Package 16.04 LTS
zoneminder Needs evaluation
Show less packages