Vulnerability index

Browse CVEs

1,284 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2019-9850 LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained … Ubuntu Linux 6.2.6+ Fix from $2,3002019-08-15 CRITICAL 9.8 CVE-2019-9851EPSS 78% LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained … Ubuntu Linux 6.2.6+ Fix from $2,3002019-08-15 HIGH 7.8 CVE-2019-9852 LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events such as mouse-over, document… Ubuntu Linux 6.2.6+ Fix from $1,9502019-08-15 HIGH 8.1 CVE-2019-9506 The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker fr… Ubuntu Linux Mitigation only Fix from $1,9502019-08-14 MEDIUM 6.5 CVE-2019-14433 An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request from an authenticated user en… Ubuntu Linux 17.0.12 / 18.2.2+ Fix from $1,6002019-08-09 HIGH 7.8 CVE-2019-14496 LoaderXM::load in LoaderXM.cpp in milkyplay in MilkyTracker 1.02.00 has a stack-based buffer overflow. Ubuntu Linux No fix yet Fix from $1,9502019-08-01 HIGH 7.8 CVE-2019-14497 ModuleEditor::convertInstrument in tracker/ModuleEditor.cpp in MilkyTracker 1.02.00 has a heap-based buffer overflow. Ubuntu Linux No fix yet Fix from $1,9502019-08-01 HIGH 7.5 CVE-2019-14494 An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tilingPatternFill at SplashOutput… Ubuntu Linux after 0.78.0 Fix from $1,9502019-08-01 MEDIUM 5.5 CVE-2019-14464 XMFile::read in XMFile.cpp in milkyplay in MilkyTracker 1.02.00 has a heap-based buffer overflow. Ubuntu Linux No fix yet Fix from $1,6002019-07-31 HIGH 7.5 CVE-2019-14452 Sigil before 0.9.16 is vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in a ZIP archive en… Ubuntu Linux 0.9.16+ Fix from $1,9502019-07-31 MEDIUM 5.5 CVE-2019-14444 apply_relocations in readelf.c in GNU Binutils 2.32 contains an integer overflow that allows attackers to trigger a write access violation (in byte_p… Ubuntu Linux Patch available Fix from $1,6002019-07-30 HIGH 7.5 CVE-2019-13565EPSS 5% An issue was discovered in OpenLDAP 2.x before 2.4.48. When using SASL authentication and session encryption, and relying on the SASL security layers… Ubuntu Linux 10.13.6 / 10.14.6+ Fix from $1,9502019-07-26 MEDIUM 5.5 CVE-2019-14250 An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_match in simple-object-elf.c does not check for a ze… Ubuntu Linux No fix yet Fix from $1,6002019-07-24 MEDIUM 5.3 CVE-2019-2762 Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Utilities). Supported versions that are affected are Java S… Ubuntu Linux Patch available Fix from $1,6002019-07-23 CRITICAL 9.8 CVE-2019-9848EPSS 31% LibreOffice has a feature where documents can specify that pre-installed scripts can be executed on various document events such as mouse-over, etc. … Ubuntu Linux 6.2.5+ Fix from $2,3002019-07-17 HIGH 7.8 CVE-2019-1010006 Evince 3.26.0 is affected by buffer overflow. The impact is: DOS / Possible code execution. The component is: backend/tiff/tiff-document.c. The attac… Ubuntu Linux No fix yet Fix from $1,9502019-07-15 HIGH 8.8 CVE-2019-13308 ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow in MagickCore/fourier.c in ComplexImage. Ubuntu Linux Patch available Fix from $1,9502019-07-05 MEDIUM 6.5 CVE-2019-13310 ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c. Ubuntu Linux Patch available Fix from $1,6002019-07-05 MEDIUM 6.5 CVE-2019-13311 ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of a wand/mogrify.c error. Ubuntu Linux Patch available Fix from $1,6002019-07-05 HIGH 7.8 CVE-2019-13241 FlightCrew v0.9.2 and older are vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in a ZIP a… Ubuntu Linux after 0.9.2 Fix from $1,9502019-07-04 MEDIUM 5.5 CVE-2019-12972 An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer o… Ubuntu Linux Patch available Fix from $1,6002019-06-26 HIGH 7.0 CVE-2019-12817 arch/powerpc/mm/mmu_context_book3s64.c in the Linux kernel before 5.1.15 for powerpc has a bug where unrelated processes may be able to read/write to… Ubuntu Linux 5.1.15+ Fix from $1,9502019-06-25 HIGH 7.5 CVE-2018-20843EPSS 7% In libexpat in Expat before 2.2.7, XML input including XML names that contain a large number of colons could make the XML parser consume a high amoun… Ubuntu Linux 2.2.7+ Fix from $1,9502019-06-24 MEDIUM 6.5 CVE-2019-12436 Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to an AD DC LDAP server Denial of Service. This is related to an attacker using th… Ubuntu Linux 4.10.5+ Fix from $1,6002019-06-19 HIGH 7.1 CVE-2019-12749 dbus before 1.10.28, 1.12.x before 1.12.16, and 1.13.x before 1.13.12, as used in DBusServer in Canonical Upstart in Ubuntu 14.04 (and in some, less … Ubuntu Linux 1.10.28 / 1.12.16+ Fix from $1,9502019-06-11 CRITICAL 9.8 CVE-2019-10149 KEVEPSS 100% A flaw was found in Exim versions 4.87 to 4.91 (inclusive). Improper validation of recipient address in deliver_message() function in /src/deliver.c … Ubuntu Linux after 4.91 Fix from $2,3002019-06-05 HIGH 7.3 CVE-2019-12447 An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles file ownership because setfsuid is not used. Ubuntu Linux after 1.41.2 Fix from $1,9502019-05-29 MEDIUM 5.7 CVE-2019-12449 An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles a file's user and group ownership during move (and … Ubuntu Linux after 1.41.2 Fix from $1,6002019-05-29 HIGH 7.5 CVE-2019-12211 When FreeImage 3.18.0 reads a tiff file, it will be handed to the Load function of the PluginTIFF.cpp file, but a memcpy occurs in which the destinat… Ubuntu Linux No fix yet Fix from $1,9502019-05-20 MEDIUM 6.5 CVE-2019-12213 When FreeImage 3.18.0 reads a special TIFF file, the TIFFReadDirectory function in PluginTIFF.cpp always returns 1, leading to stack exhaustion. Ubuntu Linux No fix yet Fix from $1,6002019-05-20