Search CVE reports
111 – 120 of 50227 results
(An improper neutralization of special elements vulnerability in LXD's ...)
1 affected package
lxd
| Package | 20.04 LTS |
|---|---|
| lxd | Needs evaluation |
(WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a R ...)
1 affected package
wordpress
| Package | 20.04 LTS |
|---|---|
| wordpress | Needs evaluation |
(Smarty is a template engine for PHP, facilitating the separation of pr ...)
2 affected packages
smarty3, smarty4
| Package | 20.04 LTS |
|---|---|
| smarty3 | Needs evaluation |
| smarty4 | — |
[Unknown description]
1 affected package
gimp
| Package | 20.04 LTS |
|---|---|
| gimp | Needs evaluation |
RabbitMQ is a messaging and streaming broker. From 4.0.0 until 4.3.3, 4.2.9, 4.1.14, and 4.0.23, AMQP 1.0 management GET /bindings exposes full binding topology to any authenticated AMQP user without resource/management permission...
1 affected package
rabbitmq-server
| Package | 20.04 LTS |
|---|---|
| rabbitmq-server | Needs evaluation |
Non-Constant-Time SM2 Scalar Multiplication on ARM64 and RISC-V
6 affected packages
openssl, openssl-fips, openssl1.0, nodejs, edk2, edk2-hwe
| Package | 20.04 LTS |
|---|---|
| openssl | Not affected |
| openssl-fips | — |
| openssl1.0 | — |
| nodejs | Not affected |
| edk2 | Not affected |
| edk2-hwe | — |
Some fixes available 1 of 2
Timing Side-Channel in Scalar Multiplication for Non-NIST EC Curves
6 affected packages
openssl, openssl-fips, openssl1.0, nodejs, edk2, edk2-hwe
| Package | 20.04 LTS |
|---|---|
| openssl | Fixed |
| openssl-fips | — |
| openssl1.0 | — |
| nodejs | Not affected |
| edk2 | Needs evaluation |
| edk2-hwe | — |
Network UPS Tools is a collection of programs which provide a common interface for monitoring and administering UPS, PDU and SCD hardware. Prior to commits 658b24e and 1aa31d1, the GitHub Actions script used to prepare NUT...
1 affected package
nut
| Package | 20.04 LTS |
|---|---|
| nut | Needs evaluation |
An issue in the VMware datastore driver of OpenStack glance_store. When an authenticated attacker provides a maliciously crafted image location URI pointing to an external server, the _retry_request function fails to validate the...
1 affected package
glance
| Package | 20.04 LTS |
|---|---|
| glance | Needs evaluation |
A Server-Side Request Forgery (SSRF) vulnerability exists in the Image API (v2) of OpenStack Glance. When the show_multiple_locations configuration option is enabled in glance-api.conf, an authenticated attacker can manipulate the...
1 affected package
glance
| Package | 20.04 LTS |
|---|---|
| glance | Needs evaluation |