Search CVE reports
1931 – 1940 of 43788 results
Not in release
An issue in open62541 v.1.5.5 and before allows a remote attacker to cause a denial of service via crafted CreateSubscription, CreateMonitoredItems(Sampling), Publish, TransferSubscriptions, and DeleteSubscriptions requests
1 affected package
open62541
| Package | 24.04 LTS |
|---|---|
| open62541 | Not in release |
Not in release
open62541 contains a heap use-after-free in the GDS PushManagement certificate update workflow when UA_ENABLE_GDS_PUSHMANAGEMENT is enabled. This allows a remote attacker to cause a denial of service.
1 affected package
open62541
| Package | 24.04 LTS |
|---|---|
| open62541 | Not in release |
Not in release
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the TCP message framing layer parses the Content-Length header using unsigned int arithmetic with no overflow check....
1 affected package
opensips
| Package | 24.04 LTS |
|---|---|
| opensips | Not in release |
Not in release
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0-beta through 3.6.5 and 4.0.0-beta contain a buffer overflow in the {s.b64encode} string transformation. The size check for {s.b64encode} only...
1 affected package
opensips
| Package | 24.04 LTS |
|---|---|
| opensips | Not in release |
Not in release
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0 through 3.6.5 contain a denial of service vulnerability in the presence module. When the presence module's handle_publish() function processes a...
1 affected package
opensips
| Package | 24.04 LTS |
|---|---|
| opensips | Not in release |
An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c
1 affected package
vim
| Package | 24.04 LTS |
|---|---|
| vim | Vulnerable |
An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c
1 affected package
vim
| Package | 24.04 LTS |
|---|---|
| vim | Vulnerable |
Not in release
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP message with a header name longer than 255 bytes causes a stack buffer overflow when sip_to_json() is called in...
1 affected package
opensips
| Package | 24.04 LTS |
|---|---|
| opensips | Not in release |
A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer size before processing. A local attacker can exploit this via a crafted...
1 affected package
sssd
| Package | 24.04 LTS |
|---|---|
| sssd | Needs evaluation |
Not in release
PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during initialization, allowing an attacker-controlled file in an...
1 affected package
pdm
| Package | 24.04 LTS |
|---|---|
| pdm | Not in release |