Search CVE reports
1231 – 1240 of 55813 results
rsync before 3.5.0 contains a filter rule bypass vulnerability that allows authenticated clients to override module-level filter restrictions by supplying malicious --filter merge file directives. Attackers can inject client-side...
1 affected package
rsync
| Package | 16.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to write files outside the intended destination directory tree by crafting relative paths with symlink components in --relative mode. The...
1 affected package
rsync
| Package | 16.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync before 3.5.0 contains a path traversal vulnerability that allows remote clients to access files outside the intended module root when use chroot is disabled and the module root path or a component of it is a symlink. The...
1 affected package
rsync
| Package | 16.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync before 3.5.0 contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability in the rrsync restricted shell wrapper that allows authenticated clients to escape enforced directory restrictions by substituting a...
1 affected package
rsync
| Package | 16.04 LTS |
|---|---|
| rsync | Needs evaluation |
Ixia IxVeriWave and Vector Informatik BLF file parser crashes in 4.6.0 to 4.6.7 allows denial of service on Windows
1 affected package
wireshark
| Package | 16.04 LTS |
|---|---|
| wireshark | Needs evaluation |
Gammu DCT3 trace file parser crash in 4.6.0 to 4.6.7 allows denial of service
1 affected package
gammu
| Package | 16.04 LTS |
|---|---|
| gammu | Needs evaluation |
TTX Logger file parser crash in 4.6.0 to 4.6.7 allows denial of service
1 affected package
wireshark
| Package | 16.04 LTS |
|---|---|
| wireshark | Needs evaluation |
A JEXL expression sandbox bypass exists in multiple versions of OpenNMS Meridian and Horizon. A low-privileged authenticated user can submit a crafted expression to the Measurements REST API that escapes the sandbox and loads...
1 affected package
horizon
| Package | 16.04 LTS |
|---|---|
| horizon | Needs evaluation |
A flaw was found in open-iscsi. An integer underflow vulnerability in the `iscsiuio` component, specifically during IPv4 Dynamic Host Configuration Protocol (DHCP) parsing, allows a remote attacker on the same local...
1 affected package
open-iscsi
| Package | 16.04 LTS |
|---|---|
| open-iscsi | Needs evaluation |
[Unknown description]
1 affected package
nltk
| Package | 16.04 LTS |
|---|---|
| nltk | Needs evaluation |