← Back

Leap

leap

Vendor: Opensuse • 1,898 CVEs

CVEs (1,898)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Imagemagick
Opensuse
2Imagemagick
Leap
May 13, 2026
Mar 23, 2017
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Heap-based buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.9.4-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted RLE f...Show more
Heap-based buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.9.4-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted RLE file.Show less
3Fedoraproject
OpensusePercona
3Fedora
LeapXtrabackup
May 13, 2026
Mar 23, 2017
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
xbcrypt in Percona XtraBackup before 2.3.6 and 2.4.x before 2.4.5 does not properly set the initialization vector (IV) for encryption, which makes it easier for context-dependent attackers to obtain sensitive information...Show more
xbcrypt in Percona XtraBackup before 2.3.6 and 2.4.x before 2.4.5 does not properly set the initialization vector (IV) for encryption, which makes it easier for context-dependent attackers to obtain sensitive information from encrypted backup files via a Chosen-Plaintext attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6394.Show less
2Opensuse
Sane Backends Project
2Leap
Sane Backends
May 13, 2026
Mar 20, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
saned in sane-backends 1.0.25 allows remote attackers to obtain sensitive memory information via a crafted SANE_NET_CONTROL_OPTION packet.
2Opensuse
Postfixadmin Project
2Leap
Postfixadmin
May 13, 2026
Mar 20, 2017
N/A· v4
2.7 LOW· v3
3.5 LOW· v2
The AliasHandler component in PostfixAdmin before 3.0.2 allows remote authenticated domain admins to delete protected aliases via the delete parameter to delete.php, involving a missing permission check.
4Canonical
ImagemagickOpensuse+1 more
10Imagemagick
LeapLeap+7 more
May 13, 2026
Mar 20, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Memory leak in ImageMagick allows remote attackers to cause a denial of service (memory consumption).
5Canonical
ImagemagickOpensuse+2 more
11Imagemagick
LeapLeap+8 more
May 13, 2026
Mar 20, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact.
5Canonical
ImagemagickOpensuse+2 more
11Imagemagick
LeapLeap+8 more
May 13, 2026
Mar 20, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
The ReadDIBImage function in coders/dib.c in ImageMagick allows remote attackers to cause a denial of service (crash) via a corrupted dib file.
4Canonical
ImagemagickOpensuse+1 more
7Imagemagick
LeapLinux Enterprise Server+4 more
May 13, 2026
Mar 17, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
coders/tiff.c in ImageMagick allows remote attackers to cause a denial of service (application crash) via vectors related to the "identification of image."
6Canonical
ImagemagickNovell+3 more
11Imagemagick
LeapLeap+8 more
May 13, 2026
Mar 17, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Memory leak in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (memory consumption) via a crafted rle file.
3Imagemagick
OpensuseSuse
7Imagemagick
LeapLinux Enterprise Desktop+4 more
May 13, 2026
Mar 17, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
distribute-cache.c in ImageMagick re-uses objects after they have been destroyed, which allows remote attackers to have unspecified impact via unspecified vectors.
4Debian
OpensuseOpensuse Project+1 more
4Debian Linux
LeapLeap+1 more
May 13, 2026
Mar 15, 2017
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x before 1.1.26 allows remote attackers to inject arbitrary web script or HTML via the nav_data name.
2Imagemagick
Opensuse
2Imagemagick
Leap
May 13, 2026
Mar 3, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Heap-based buffer overflow in the CalcMinMax function in coders/mat.c in ImageMagick before 6.9.4-0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted mat file.
2Imagemagick
Opensuse
2Imagemagick
Leap
May 13, 2026
Mar 3, 2017
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
The ReadVIFFImage function in coders/viff.c in ImageMagick before 7.0.1-0 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.
3Fedoraproject
Libass ProjectOpensuse
4Fedora
LeapLibass+1 more
May 13, 2026
Mar 3, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The check_allocations function in libass/ass_shaper.c in libass before 0.13.4 allows remote attackers to cause a denial of service (memory allocation failure) via unspecified vectors.
3Fedoraproject
Libass ProjectOpensuse
4Fedora
LeapLibass+1 more
May 13, 2026
Mar 3, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, related to "0/3 line wrapping equalization."
3Imagemagick
OpensuseOpensuse Project
3Imagemagick
LeapLeap
May 13, 2026
Mar 2, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
The MSL interpreter in ImageMagick before 6.9.6-4 allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafted XML file.
2Imagemagick
Opensuse
2Imagemagick
Leap
May 13, 2026
Mar 2, 2017
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Buffer overflow in coders/tiff.c in ImageMagick before 6.9.5-1 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.
3Debian
GraphicsmagickOpensuse
4Debian Linux
GraphicsmagickLeap+1 more
May 13, 2026
Mar 1, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
The MagickRealloc function in memory.c in Graphicsmagick 1.3.25 allows remote attackers to cause a denial of service (crash) via large dimensions in a jpeg image.
2Opensuse
Tigervnc
2Leap
Tigervnc
May 13, 2026
Feb 28, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The Xvnc server in TigerVNC allows remote attackers to cause a denial of service (invalid memory access and crash) by terminating a TLS handshake early.
2Imagemagick
Opensuse
3Imagemagick
LeapOpensuse
May 13, 2026
Feb 15, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure. NOTE: thi...Show more
The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8862.Show less