Search CVE reports


Toggle filters

11921 – 11930 of 48196 results

Status is adjusted based on your filters.


CVE-2024-22114

Medium priority
Needs evaluation

User with no permission to any of the Hosts can access and view host count & other statistics through System Information Widget in Global View Dashboard.

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2023-31315

Medium priority
Fixed

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

1 affected package

amd64-microcode

Package 16.04 LTS
amd64-microcode Fixed
Show less packages

CVE-2024-42365

Medium priority
Needs evaluation

Asterisk is an open source private branch exchange (PBX) and telephony toolkit. Prior to asterisk versions 18.24.2, 20.9.2, and 21.4.2 and certified-asterisk versions 18.9-cert11 and 20.7-cert2, an AMI user with `write=originate`...

1 affected package

asterisk

Package 16.04 LTS
asterisk Needs evaluation
Show less packages

CVE-2024-0102

Medium priority
Needs evaluation

NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm, where an attacker can cause an out-of-bounds read issue by deceiving a user into reading a malformed ELF file. A successful exploit of this vulnerability...

1 affected package

nvidia-cuda-toolkit

Package 16.04 LTS
nvidia-cuda-toolkit Needs evaluation
Show less packages

CVE-2024-7348

Medium priority
Fixed

Time-of-check Time-of-use (TOCTOU) race condition in pg_dump in PostgreSQL allows an object creator to execute arbitrary SQL functions as the user running pg_dump, which is often a superuser. The attack involves replacing another...

7 affected packages

postgresql-16, postgresql-14, postgresql-12, postgresql-10, postgresql-9.5...

Package 16.04 LTS
postgresql-16
postgresql-14
postgresql-12
postgresql-10
postgresql-9.5 Fixed
postgresql-9.3
postgresql-9.1
Show all 7 packages Show less packages

CVE-2024-7610

Medium priority
Ignored

A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions starting with 15.9 before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2. It is possible for an attacker to cause catastrophic...

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages

CVE-2024-7554

Medium priority
Ignored

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.0.6, all versions starting from 17.1 before 17.1.4, all versions starting from 17.2 before 17.2.2. Under certain conditions, access...

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages

CVE-2024-5423

Medium priority
Ignored

Multiple Denial of Service (DoS) conditions has been discovered in GitLab CE/EE affecting all versions starting from 1.0 prior to 17.0.6, starting from 17.1 prior to 17.1.4, and starting from 17.2 prior to 17.2.2 which allowed an...

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages

CVE-2024-4207

Medium priority
Ignored

A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 prior 17.0.6, starting from 17.1 prior to 17.1.4, and starting from 17.2 prior to 17.2.2. When viewing an XML file in a repository...

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages

CVE-2024-3958

Medium priority
Ignored

An issue has been discovered in GitLab CE/EE affecting all versions before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2. An issue was found that allows someone to abuse a discrepancy between the Web application display...

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages