Search CVE reports
61 – 70 of 50631 results
In Bouncy Castle for Java before 1.86, the Messaging Layer Security (MLS, RFC 9420) implementation did not bind an X.509 credential to a LeafNode's signature_key. LeafNode.verify() checked a leaf's signature against...
1 affected package
bouncycastle
| Package | 20.04 LTS |
|---|---|
| bouncycastle | Needs evaluation |
NULL Pointer Dereference, Use of Uninitialized Variable vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 20.04 LTS |
|---|---|
| thrift | Needs evaluation |
The protocol skip routine in several Apache Thrift bindings did not apply the binding's recursion limit, so a message that nests unknown fields deeply enough can exhaust the stack. Affected: the Python C++ accelerator (the...
3 affected packages
php-horde-thrift, python-thrift, thrift
| Package | 20.04 LTS |
|---|---|
| php-horde-thrift | — |
| python-thrift | — |
| thrift | Needs evaluation |
Stack-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in Apache Thrift php bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 20.04 LTS |
|---|---|
| thrift | Needs evaluation |
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Delphi bindings buffered transport. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which...
1 affected package
thrift
| Package | 20.04 LTS |
|---|---|
| thrift | Needs evaluation |
Access of Uninitialized Pointer vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 20.04 LTS |
|---|---|
| thrift | Needs evaluation |
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift C++, Java, Go, netstd, Python and Delphi bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version...
3 affected packages
libthrift-java, python-thrift, thrift
| Package | 20.04 LTS |
|---|---|
| libthrift-java | — |
| python-thrift | — |
| thrift | Needs evaluation |
Allocation of Resources Without Limits or Throttling, Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.25.0. Users are...
1 affected package
thrift
| Package | 20.04 LTS |
|---|---|
| thrift | Needs evaluation |
[virtio-gpu: disable blob scanouts on mapping cleanup]
2 affected packages
qemu, qemu-hwe
| Package | 20.04 LTS |
|---|---|
| qemu | Needs evaluation |
| qemu-hwe | — |
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift go bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 20.04 LTS |
|---|---|
| thrift | Needs evaluation |