Search CVE reports
101 – 110 of 51391 results
Nil-pointer dereference in CreateCustomVolumeFromBackup in LXD up to version 6.8 and 5.21 on Linux allows an authenticated user with can_create_storage_volumes permissions to cause a denial of service via a specially crafted...
1 affected package
lxd
| Package | 16.04 LTS |
|---|---|
| lxd | Not affected |
Broken Access Control in the devLXDInstancePatchHandler component of Canonical LXD allows an untrusted guest to mount, read, and overwrite another guest's custom storage volume via a crafted device PATCH request over /dev/lxd when...
1 affected package
lxd
| Package | 16.04 LTS |
|---|---|
| lxd | Not affected |
Server side template inject (SSTI) in the expression evaluation component in Genshi Template Engine version 0.7.9 allows a remote attacker to achieve remote code execution (RCE) via crafted template expressions.
1 affected package
genshi
| Package | 16.04 LTS |
|---|---|
| genshi | Needs evaluation |
A vulnerability exists where a new transfer that uses STARTTLS to upgrade the connection might reuse an existing live connection even though the TLS configuration mismatches so it should not.
1 affected package
curl
| Package | 16.04 LTS |
|---|---|
| curl | Vulnerable |
Vim is an open source, command line text editor. Prior to 9.2.0699, Vim's Python omni-completion (runtime/autoload/python3complete.vim and the legacy pythoncomplete.vim) executes reconstructed function and class definitions from...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Vulnerable |
Vim is an open source, command line text editor. Prior to 9.2.0698, the single-byte branch of spell_soundfold_sofo() in src/spell.c translates a word through a spell file's SOFO (sound-folding) byte map into a caller-owned result...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Vulnerable |
Vim is an open source, command line text editor. From 9.2.0320 until 9.2.0679, a crafted undo or swap file can store a virtual-text property whose offset and length point outside the line's property data. When Vim restores or...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Not affected |
Vim is an open source, command line text editor. From 9.1.1784 until 9.2.0678, when the bundled zip plugin autoload/zip.vim falls back to PowerShell to browse, read, extract, update or delete entries in a zip archive, it builds...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Not affected |
Vim is an open source, command line text editor. Prior to 9.2.0671, when Vim opens a file encrypted with the VimCrypt~04! or VimCrypt~05! method (xchacha20poly1305, requires the +sodium feature) whose body is shorter than a single...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Not affected |
Vim is an open source, command line text editor. Prior to 9.2.0670, get_text_props() in src/textprop.c reads a uint16 property count stored inline after a line's text and returns it as the number of 32-byte textprop_T entries that...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Not affected |