CVEs (4,120)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Canonical LibrawOpensuse3Libraw OpensuseUbuntu LinuxApr 29, 2026 Aug 14, 2013 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple double free vulnerabilities in the LibRaw::unpack function in libraw_cxx.cpp in LibRaw before 0.15.2 allow context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitr...Show more |
5Canonical FedoraprojectOpensuse+2 more5Enterprise Linux FedoraOpensuse+2 moreApr 29, 2026 Aug 6, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Integer overflow in the read_nttrans_ea_list function in nttrans.c in smbd in Samba 3.x before 3.5.22, 3.6.x before 3.6.17, and 4.x before 4.0.8 allows remote attackers to cause a denial of service (memory consumption) v...Show more |
4Canonical HaxxOpensuse+1 more5Curl Enterprise LinuxLibcurl+2 moreApr 29, 2026 Jul 31, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Heap-based buffer overflow in the curl_easy_unescape function in lib/escape.c in cURL and libcurl 7.7 through 7.30.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary...Show more |
4Apache CanonicalCollabnet+1 more4Opensuse SubversionSubversion+1 moreApr 29, 2026 Jul 31, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 The svnserve server in Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote attackers to cause a denial of service (exit) by aborting a connection. |
4Apache CanonicalCollabnet+1 more4Opensuse SubversionSubversion+1 moreApr 29, 2026 Jul 31, 2013 N/A· v4 N/A· v3 5.5 MEDIUM· v2 Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote authenticated users to cause a denial of service (FSFS repository corruption) via a newline character in a file name. |
6Apache CanonicalIbm+3 more15Host On Demand JavaJdk+12 moreApr 29, 2026 Jul 23, 2013 N/A· v4 N/A· v3 7.1 HIGH· v2 XMLscanner.java in Apache Xerces2 Java Parser before 2.12.0, as used in the Java Runtime Environment (JRE) in IBM Java 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 before 7 SR5 as well as Oracl...Show more |
2Canonical File Roller Project2File Roller Ubuntu LinuxApr 29, 2026 Jul 18, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Directory traversal vulnerability in File Roller 3.6.x before 3.6.4, 3.8.x before 3.8.3, and 3.9.x before 3.9.3, when libarchive is used, allows remote attackers to create arbitrary files via a crafted archive that is no...Show more |
6Canonical DebianMariadb+3 more9Debian Linux Linux Enterprise DesktopLinux Enterprise Server+6 moreApr 29, 2026 Jul 17, 2013 N/A· v4 N/A· v3 3.5 LOW· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Replication...Show more |
5Canonical MariadbOpensuse+2 more8Linux Enterprise Desktop Linux Enterprise ServerLinux Enterprise Software Development Kit+5 moreApr 29, 2026 Jul 17, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect integrity via unknown vectors related to Audit Log. |
6Canonical DebianMariadb+3 more8Debian Linux Linux Enterprise DesktopLinux Enterprise Server+5 moreApr 29, 2026 Jul 17, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related...Show more |
6Canonical DebianMariadb+3 more8Debian Linux Linux Enterprise DesktopLinux Enterprise Server+5 moreApr 29, 2026 Jul 17, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related...Show more |
6Canonical DebianMariadb+3 more9Debian Linux Linux Enterprise DesktopLinux Enterprise Server+6 moreApr 29, 2026 Jul 17, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related to Data Manipulation...Show more |
6Canonical DebianMariadb+3 more8Debian Linux Linux Enterprise DesktopLinux Enterprise Server+5 moreApr 29, 2026 Jul 17, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Parser. |
3Canonical LinuxRedhat4Enterprise Linux Enterprise Linux EusLinux Kernel+1 moreApr 29, 2026 Jul 16, 2013 N/A· v4 7.8 HIGH· v3 4.4 MEDIUM· v2 The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation of memory slots for use in a guest's physical address space, which allows local users to gain privi...Show more |
4Apache CanonicalOpensuse+1 more9Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux Server+6 moreApr 29, 2026 Jul 10, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 mod_dav.c in the Apache HTTP Server before 2.2.25 does not properly determine whether DAV is enabled for a URI, which allows remote attackers to cause a denial of service (segmentation fault) via a MERGE request in which...Show more |
2Canonical Linux2Linux Kernel Ubuntu LinuxApr 29, 2026 Jul 8, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 net/ceph/auth_none.c in the Linux kernel through 3.10 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an auth_reply message t...Show more |
6Canonical DebianMozilla+3 more15Debian Linux Enterprise Linux DesktopEnterprise Linux Eus+12 moreApr 22, 2026 Jun 26, 2013 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle onreadystatechange events in conjunction with page reloading, which al...Show more |
6Canonical DebianFedoraproject+3 more6Debian Linux FedoraLibxcb+3 moreApr 29, 2026 Jun 15, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Integer overflow in X.org libxcb 1.9 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the read_packet function. |
3Canonical OpensuseX3Libxrender OpensuseUbuntu LinuxApr 29, 2026 Jun 15, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Multiple integer overflows in X.org libXrender 0.9.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XRenderQueryFilters, (2) XRenderQueryForm...Show more |
Multiple integer overflows in X.org libX11 1.5.99.901 (1.6 RC1) and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XQueryFont, (2) _XF86BigfontQu...Show more |