Search CVE reports
341 – 350 of 44358 results
Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, the OcspServerCertificateValidator flags an out-of-date OCSP response but does not stop processing it, so an...
1 affected package
netty
| Package | 20.04 LTS |
|---|---|
| netty | Needs evaluation |
[Unknown description]
1 affected package
librabbitmq
| Package | 20.04 LTS |
|---|---|
| librabbitmq | Needs evaluation |
[Unknown description]
1 affected package
librabbitmq
| Package | 20.04 LTS |
|---|---|
| librabbitmq | Needs evaluation |
Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, HttpPostRequestEncoder constructs multipart HTTP request bodies by directly concatenating user-supplied...
1 affected package
netty
| Package | 20.04 LTS |
|---|---|
| netty | Needs evaluation |
Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, if a malicious actor can supply unrestricted content for rendering by Dompdf they can utilize the SVG rendering functionality to leak filesystem information...
1 affected package
php-dompdf
| Package | 20.04 LTS |
|---|---|
| php-dompdf | Needs evaluation |
Dompdf is an HTML to PDF converter for PHP. Versions 3.15 and prior are vulnerable to a Denial of Service (DoS) attack via resource exhaustion. An attacker can crash the PHP process by providing a specially crafted HTML document...
1 affected package
php-dompdf
| Package | 20.04 LTS |
|---|---|
| php-dompdf | Needs evaluation |
Dompdf is an HTML to PDF converter for PHP. Versions 3.15 and prior accept a BMP image and generates a PDF-compatible PNG based only on its declared header dimensions and never bounds width × height before the image is converted...
1 affected package
php-dompdf
| Package | 20.04 LTS |
|---|---|
| php-dompdf | Needs evaluation |
Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, aAn attacker who controls the HTML input can bypass this restriction by embedding a target file path inside an SVG image delivered through a data: URI,...
1 affected package
php-dompdf
| Package | 20.04 LTS |
|---|---|
| php-dompdf | Needs evaluation |
Dompdf is an HTML to PDF converter for PHP. Versions 3.15 and prior are vulnerable to a File Existence Oracle attack through the manipulation of the CSS @font-face directive. By providing malicious HTML that references local files...
1 affected package
php-dompdf
| Package | 20.04 LTS |
|---|---|
| php-dompdf | Needs evaluation |
Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, the validateLocalUri() method enforces chroot boundaries with a strpos() prefix check after normalizing paths with realpath() . Because normalization strips...
1 affected package
php-dompdf
| Package | 20.04 LTS |
|---|---|
| php-dompdf | Needs evaluation |