Search CVE reports
181 – 190 of 36210 results
A race condition vulnerability exists in MedusaJS Medusa v2.12.2 and earlier in the registerUsage() function of the promotion module. The function performs a non-atomic read-check-update operation when enforcing promotion usage...
1 affected package
medusa
| Package | 22.04 LTS |
|---|---|
| medusa | Needs evaluation |
Not in release
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.11 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to view...
2 affected packages
gitlab, gitlab-agent
| Package | 22.04 LTS |
|---|---|
| gitlab | Not in release |
| gitlab-agent | Not in release |
Not in release
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to...
2 affected packages
gitlab, gitlab-agent
| Package | 22.04 LTS |
|---|---|
| gitlab | Not in release |
| gitlab-agent | Not in release |
Not in release
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.1 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user to...
2 affected packages
gitlab, gitlab-agent
| Package | 22.04 LTS |
|---|---|
| gitlab | Not in release |
| gitlab-agent | Not in release |
Not in release
GitLab has remediated an issue in GitLab EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions could have allowed an authenticated user with...
2 affected packages
gitlab, gitlab-agent
| Package | 22.04 LTS |
|---|---|
| gitlab | Not in release |
| gitlab-agent | Not in release |
A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An...
1 affected package
graphicsmagick
| Package | 22.04 LTS |
|---|---|
| graphicsmagick | Needs evaluation |
Not in release
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions, could have allowed an authenticated user to...
2 affected packages
gitlab, gitlab-agent
| Package | 22.04 LTS |
|---|---|
| gitlab | Not in release |
| gitlab-agent | Not in release |
Improper isolation of shared resources on a system on a chip by a malicious local attacker with high privileges could potentially lead to a partial loss of integrity.
1 affected package
amd64-microcode
| Package | 22.04 LTS |
|---|---|
| amd64-microcode | Needs evaluation |
Improper Prevention of Lock Bit Modification in SEV firmware could allow a privileged attacker to downgrade firmware potentially resulting in a loss of integrity.
1 affected package
amd64-microcode
| Package | 22.04 LTS |
|---|---|
| amd64-microcode | Needs evaluation |
Improper bound check within AMD CPU microcode can allow a malicious guest to write to host memory, potentially resulting in loss of integrity.
1 affected package
amd64-microcode
| Package | 22.04 LTS |
|---|---|
| amd64-microcode | Needs evaluation |