Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.2%
  • Veröffentlicht 23.02.2016 19:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The ecc_256_modq function in ecc-256.c in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-256 NIST elliptic curve, which allows attackers to have unspecified impact via unknown...

  • EPSS 11.88%
  • Veröffentlicht 23.02.2016 19:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

x86_64/ecc-384-modp.asm in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-384 NIST elliptic curve, which allows attackers to have unspecified impact via unknown vectors.

  • EPSS 12.34%
  • Veröffentlicht 23.02.2016 19:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The ecc_256_modp function in ecc-256.c in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-256 NIST elliptic curve, which allows attackers to have unspecified impact via unknown...

  • EPSS 0.55%
  • Veröffentlicht 18.02.2016 21:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (lwp) document.

  • EPSS 0.49%
  • Veröffentlicht 18.02.2016 21:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The lwp filter in LibreOffice before 5.0.4 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document.

  • EPSS 93.87%
  • Veröffentlicht 18.02.2016 21:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc or libc6) before 2.23 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrar...

  • EPSS 9.47%
  • Veröffentlicht 17.02.2016 15:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a ...

  • EPSS 0.96%
  • Veröffentlicht 17.02.2016 15:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privilege...

  • EPSS 7.51%
  • Veröffentlicht 17.02.2016 15:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, allows remote attackers to cause a denial of service (...

  • EPSS 33.18%
  • Veröffentlicht 15.02.2016 19:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 does not properly limit CNAME resolution, which allows remote attackers to cause a denial of service (worker process resource consumption) via vectors related to arbitrary name resolution.