Search CVE reports
1181 – 1190 of 43643 results
[Unknown description]
1 affected package
nltk
| Package | 24.04 LTS |
|---|---|
| nltk | Needs evaluation |
Improper handling of values for some Intel(R) Processors within Ring 0: Kernel, Hypervisor and Bare Metal OS may allow an escalation of privilege. Authorized adversary with a privileged user combined with a high complexity attack...
1 affected package
intel-microcode
| Package | 24.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Insufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(R) TDX may allow an information disclosure. Authorized adversary with an authenticated user combined with a...
1 affected package
intel-microcode
| Package | 24.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processors when using Intel(R) TDX within SMM may allow an escalation of privilege. SMM adversary with a privileged user combined with a high...
1 affected package
intel-microcode
| Package | 24.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Not in release
OP-TEE OS through 4.10.0, fixed in commit 7b8b494, contains a buffer underwrite vulnerability in the RSA NOPAD encrypt and decrypt operations within the mbedTLS software backend and SE050 hardware driver that allows a malicious...
1 affected package
optee-os
| Package | 24.04 LTS |
|---|---|
| optee-os | Not in release |
Not in release
OP-TEE OS through 4.10.0, fixed in commit 8794043, contains a use-after-free vulnerability in the Trusted Application loader that allows attackers with the ability to load a signed Trusted Application to corrupt secure-world...
1 affected package
optee-os
| Package | 24.04 LTS |
|---|---|
| optee-os | Not in release |
Not in release
OP-TEE OS through 4.10.0, fixed in commit 0aadfc2, contains a null pointer dereference vulnerability in the Widevine pseudo-TA open_session handler that allows Normal World clients to cause a denial of service...
1 affected package
optee-os
| Package | 24.04 LTS |
|---|---|
| optee-os | Not in release |
When expanding paths that begin with a tilde (~) followed by a username, the internal parse_tilde function extracts the username to determine the user's home directory. The implementation allocates memory for this username...
2 affected packages
glibc, eglibc
| Package | 24.04 LTS |
|---|---|
| glibc | Needs evaluation |
| eglibc | Not in release |
Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to version 2.43 can cause the interface to return invalid memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.
2 affected packages
glibc, eglibc
| Package | 24.04 LTS |
|---|---|
| glibc | Needs evaluation |
| eglibc | Not in release |
A flaw was found in GIMP's file format plugins, including those for PSD and PAA files. A remote attacker could exploit these vulnerabilities by tricking a user into opening a specially crafted image file. This could lead to...
1 affected package
gimp
| Package | 24.04 LTS |
|---|---|
| gimp | Needs evaluation |