Canonical
canonical
4,238 CVEs • 60 products
Products (60)
Click to collapseToggle
Products (60)
Click to collapse
CVEs (4,238)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Canonical Xkbcommon3Libxkbcommon Ubuntu LinuxXkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Unchecked NULL pointer usage in resolve_keysym in xkbcomp/parser.y in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, b...Show more |
2Canonical Xkbcommon3Libxkbcommon Ubuntu LinuxXkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Unchecked NULL pointer usage in ResolveStateAndPredicate in xkbcomp/compat.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keym...Show more |
2Canonical Xkbcommon3Libxkbcommon Ubuntu LinuxXkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Unchecked NULL pointer usage in LookupModMask in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file with...Show more |
2Canonical Xkbcommon3Libxkbcommon Ubuntu LinuxXkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Unchecked NULL pointer usage in ExprResolveLhs in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file that...Show more |
2Canonical Xkbcommon3Libxkbcommon Ubuntu LinuxXkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Unchecked NULL pointer usage when parsing invalid atoms in ExprResolveLhs in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying...Show more |
2Canonical Xkbcommon3Libxkbcommon Ubuntu LinuxXkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Unchecked NULL pointer usage when handling invalid aliases in CopyKeyAliasesToKeymap in xkbcomp/keycodes.c in xkbcommon before 0.8.1 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon pars...Show more |
2Canonical Xkbcommon3Libxkbcommon Ubuntu LinuxXkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 An invalid free in ExprAppendMultiKeysymList in xkbcomp/ast-build.c in xkbcommon before 0.8.1 could be used by local attackers to crash xkbcommon keymap parsers or possibly have unspecified other impact by supplying a cr...Show more |
2Canonical Xkbcommon2Ubuntu Linux XkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon before 0.8.1 could be used by local attackers to cause a denial of service during parsing of crafted keymap files. |
2Canonical Xkbcommon Project2Ubuntu Linux XkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Unchecked NULL pointer usage in xkbcommon before 0.8.1 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because the XkbFile for an xkb_geometry...Show more |
2Canonical Xkbcommon Project2Ubuntu Linux XkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Unchecked NULL pointer usage in xkbcommon before 0.8.1 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because geometry tokens were desupporte...Show more |
2Canonical Xkbcommon3Libxkbcommon Ubuntu LinuxXkbcommonNov 21, 2024 Aug 25, 2018 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Endless recursion exists in xkbcomp/expr.c in xkbcommon and libxkbcommon before 0.8.1, which could be used by local attackers to crash xkbcommon users by supplying a crafted keymap file that triggers boolean negation. |
2Canonical Gnome2Pango Ubuntu LinuxNov 21, 2024 Aug 24, 2018 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 libpango in Pango 1.40.8 through 1.42.3, as used in hexchat and other products, allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted text with inv...Show more |
3Canonical DebianX.org3Debian Linux Libx11Ubuntu LinuxNov 21, 2024 Aug 24, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in libX11 through 1.6.5. The function XListExtensions in ListExt.c interprets a variable as signed instead of unsigned, resulting in an out-of-bounds write (of up to 128 bytes), leading to DoS or...Show more |
5Canonical DebianFedoraproject+2 more7Debian Linux Enterprise Linux DesktopEnterprise Linux Server+4 moreNov 21, 2024 Aug 24, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in libX11 through 1.6.5. The function XListExtensions in ListExt.c is vulnerable to an off-by-one error caused by malicious server responses, leading to DoS or possibly unspecified other impact. |
4Canonical DebianFedoraproject+1 more4Debian Linux FedoraLibx11+1 moreNov 21, 2024 Aug 24, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An issue was discovered in XListExtensions in ListExt.c in libX11 through 1.6.5. A malicious server can send a reply in which the first string overflows, causing a variable to be set to NULL that will be freed later on,...Show more |
3Canonical DebianFfmpeg3Debian Linux FfmpegUbuntu LinuxNov 21, 2024 Aug 23, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to an assertion failure. |
3Canonical DebianSamba3Debian Linux SambaUbuntu LinuxNov 21, 2024 Aug 22, 2018 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 The Samba Active Directory LDAP server was vulnerable to an information disclosure flaw because of missing access control checks. An authenticated attacker could use this flaw to extract confidential attribute values usi...Show more |
2Canonical Samba2Samba Ubuntu LinuxNov 21, 2024 Aug 22, 2018 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A null pointer dereference flaw was found in the way samba checked database outputs from the LDB database layer. An authenticated attacker could use this flaw to crash a samba server in an Active Directory Domain Control...Show more |
4Canonical DebianRedhat+1 more8Debian Linux Enterprise Linux DesktopEnterprise Linux Server+5 moreNov 21, 2024 Aug 22, 2018 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 A heap-buffer overflow was found in the way samba clients processed extra long filename in a directory listing. A malicious samba server could use this flaw to cause arbitrary code execution on a samba client. Samba vers...Show more |
3Canonical RedhatSamba5Enterprise Linux Desktop Enterprise Linux ServerEnterprise Linux Workstation+2 moreNov 21, 2024 Aug 22, 2018 N/A· v4 8.1 HIGH· v3 4.3 MEDIUM· v2 A flaw was found in the way samba before 4.7.9 and 4.8.4 allowed the use of weak NTLMv1 authentication even when NTLMv1 was explicitly disabled. A man-in-the-middle attacker could use this flaw to read the credential and...Show more |