Search CVE reports
21 – 30 of 58662 results
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's NE relocation fixup-chain parser was vulnerable because the NE relocation parser followed fixup chains without an active...
1 affected package
radare2
| Package | 16.04 LTS |
|---|---|
| radare2 | Needs evaluation |
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Mach-O LC_DATA_IN_CODE parser was vulnerable because the Mach-O LC_DATA_IN_CODE parser trusted dataoff and datasize and...
1 affected package
radare2
| Package | 16.04 LTS |
|---|---|
| radare2 | Needs evaluation |
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Lua 5.3 bytecode function parser was vulnerable because the Lua 5.3 bytecode function parser read fixed function-metadata...
1 affected package
radare2
| Package | 16.04 LTS |
|---|---|
| radare2 | Needs evaluation |
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's binary property-list Unicode parser was vulnerable because the binary-property-list Unicode parser underallocated an...
1 affected package
radare2
| Package | 16.04 LTS |
|---|---|
| radare2 | Needs evaluation |
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Mach-O Swift field-metadata parser was vulnerable because a relative Swift field pointer could be lower than...
1 affected package
radare2
| Package | 16.04 LTS |
|---|---|
| radare2 | Needs evaluation |
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Apple Preferred Executable Format loader was vulnerable because the PEF loader accepted relocSecCount values that were not...
1 affected package
radare2
| Package | 16.04 LTS |
|---|---|
| radare2 | Needs evaluation |
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's ELF PN_XNUM handling was vulnerable because the ELF parser allocated the program-header array using the resolved PN_XNUM...
1 affected package
radare2
| Package | 16.04 LTS |
|---|---|
| radare2 | Needs evaluation |
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's CPython bytecode .pyc marshal parser was vulnerable because the CPython marshal readers accepted a 32-bit string length...
1 affected package
radare2
| Package | 16.04 LTS |
|---|---|
| radare2 | Needs evaluation |
webpy web.py 0.76 is vulnerable to Session Fixation. The component Session._load() reads session_id directly from the request cookie and loads that session from the store, and _save() writes back under the same session_id; no...
1 affected package
webpy
| Package | 16.04 LTS |
|---|---|
| webpy | Needs evaluation |
webpy web.py 0.76 is vulnerable to Cross Site Scripting (XSS) via render_jinja.__init__().
1 affected package
webpy
| Package | 16.04 LTS |
|---|---|
| webpy | Needs evaluation |