Search CVE reports


Toggle filters

361 – 370 of 374 results


CVE-2008-4989

Medium priority

Some fixes available 4 of 5

The _gnutls_x509_verify_certificate function in lib/x509/verify.c in libgnutls in GnuTLS before 2.6.1 trusts certificate chains in which the last certificate is an arbitrary trusted, self-signed certificate, which allows...

4 affected packages

gnutls11, gnutls12, gnutls13, gnutls26

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls11
gnutls12
gnutls13
gnutls26
Show less packages

CVE-2008-2377

Low priority
Not affected

Use-after-free vulnerability in the _gnutls_handshake_hash_buffers_clear function in lib/gnutls_handshake.c in libgnutls in GnuTLS 2.3.5 through 2.4.0 allows remote attackers to cause a denial of service (crash) or possibly...

3 affected packages

gnutls12, gnutls13, gnutls26

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls12
gnutls13
gnutls26
Show less packages

CVE-2008-2310

Low priority
Ignored

Format string vulnerability in c++filt in Apple Mac OS X 10.5 before 10.5.4 allows user-assisted attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted string in (1) C++ or (2) Java source code.

1 affected package

binutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils
Show less packages

CVE-2008-1950

Medium priority
Fixed

Integer signedness error in the _gnutls_ciphertext2compressed function in lib/gnutls_cipher.c in libgnutls in GnuTLS before 2.2.4 allows remote attackers to cause a denial of service (buffer over-read and crash) via a certain...

3 affected packages

gnutls12, gnutls13, gnutls26

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls12
gnutls13
gnutls26
Show less packages

CVE-2008-1949

Medium priority
Fixed

The _gnutls_recv_client_kx_message function in lib/gnutls_kx.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4 continues to process Client Hello messages within a TLS message after one has already been processed, which allows...

3 affected packages

gnutls12, gnutls13, gnutls26

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls12
gnutls13
gnutls26
Show less packages

CVE-2008-1948

Medium priority
Fixed

The _gnutls_server_name_recv_params function in lib/ext_server_name.c in libgnutls in gnutls-serv in GnuTLS before 2.2.4 does not properly calculate the number of Server Names in a TLS 1.0 Client Hello message during extension...

3 affected packages

gnutls12, gnutls13, gnutls26

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls12
gnutls13
gnutls26
Show less packages

CVE-2007-1217

Negligible priority
Ignored

Buffer overflow in the bufprint function in capiutil.c in libcapi, as used in Linux kernel 2.6.9 to 2.6.20 and isdn4k-utils, allows local users to cause a denial of service (crash) and possibly gain privileges via a crafted CAPI packet.

1 affected package

isdnutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
isdnutils
Show less packages

CVE-2006-4790

Medium priority
Fixed

verify.c in GnuTLS before 1.4.4, when using an RSA key with exponent 3, does not properly handle excess data in the digestAlgorithm.parameters field when generating a hash, which allows remote attackers to forge a PKCS #1 v1.5...

3 affected packages

gnutls11, gnutls12, gnutls13

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnutls11
gnutls12
gnutls13
Show less packages

CVE-2006-2362

Medium priority
Fixed

Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation GNU Binutils before 20060423, as used by GNU strings, allows context-dependent attackers to cause a denial of service (application crash) and possibly...

1 affected package

binutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils
Show less packages

CVE-2005-4808

Medium priority
Not affected

Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.

1 affected package

binutils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
binutils
Show less packages