Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.49%
  • Veröffentlicht 17.04.2018 20:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:13

An issue was discovered in Perl 5.22 through 5.26. Matching a crafted locale dependent regular expression can cause a heap-based buffer over-read and potentially information disclosure.

  • EPSS 3.9%
  • Veröffentlicht 17.04.2018 20:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:24

Heap-based buffer overflow in the pack function in Perl before 5.26.2 allows context-dependent attackers to execute arbitrary code via a large item count.

Exploit
  • EPSS 0.33%
  • Veröffentlicht 16.04.2018 23:29:00
  • Zuletzt bearbeitet 21.11.2024 03:40:57

In ImageMagick 7.0.7-28, there is an infinite loop in the ReadOneMNGImage function of the coders/png.c file. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted mng file.

  • EPSS 37.09%
  • Veröffentlicht 16.04.2018 18:29:00
  • Zuletzt bearbeitet 21.11.2024 03:38:50

The OpenSSL RSA Key generation algorithm has been shown to be vulnerable to a cache timing side channel attack. An attacker with sufficient access to mount cache timing attacks during the RSA key generation process could recover the private key. Fixe...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 16.04.2018 14:29:00
  • Zuletzt bearbeitet 21.11.2024 03:40:52

The kill_something_info function in kernel/signal.c in the Linux kernel before 4.13, when an unspecified architecture and compiler is used, might allow local users to cause a denial of service via an INT_MIN argument.

  • EPSS 0.55%
  • Veröffentlicht 16.04.2018 09:58:10
  • Zuletzt bearbeitet 21.11.2024 03:40:52

sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrect integer data type in the StgSmallStrm class, which allows remote attackers to cause a denial of service (use-after-free with write access) or possib...

  • EPSS 0.5%
  • Veröffentlicht 16.04.2018 09:58:10
  • Zuletzt bearbeitet 21.11.2024 03:40:52

The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreOffice before 5.4.6.1 and 6.x before 6.0.2.1 does not validate a customizations index, which allows remote attackers to cause a denial of service (heap-based buffer overfl...

  • EPSS 0.08%
  • Veröffentlicht 13.04.2018 13:29:00
  • Zuletzt bearbeitet 21.11.2024 03:40:47

The kernel_wait4 function in kernel/exit.c in the Linux kernel before 4.13, when an unspecified architecture and compiler is used, might allow local users to cause a denial of service by triggering an attempted use of the -INT_MIN value.

  • EPSS 0.31%
  • Veröffentlicht 12.04.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:59:08

corosync before version 2.4.4 is vulnerable to an integer overflow in exec/totemcrypto.c.

  • EPSS 0.07%
  • Veröffentlicht 11.04.2018 19:29:01
  • Zuletzt bearbeitet 21.11.2024 03:59:10

zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the utils.c:checkmailpath function. A local attacker could exploit this to execute arbitrary code in the context of another user.