Search CVE reports
1 – 10 of 40452 results
A local attacker with control over GRUB's configuration can bypass lockdown restrictions when booting with Secure Boot and load an unsigned GRUB module, while GRUB continues to report lockdown is enabled. The vulnerability is...
3 affected packages
grub2, grub2-unsigned, grub2-signed
| Package | 26.04 LTS |
|---|---|
| grub2 | Not affected |
| grub2-unsigned | Needs evaluation |
| grub2-signed | Needs evaluation |
In Bouncy Castle for Java before 1.86, the raw JCA provider's legacy PBES1 (PKCS#5 scheme 1) and PKCS#12 PBE families ran their password-based key derivation with an iteration count taken from untrusted input without bounding it,...
1 affected package
bouncycastle
| Package | 26.04 LTS |
|---|---|
| bouncycastle | Needs evaluation |
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Erlang bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 26.04 LTS |
|---|---|
| thrift | Needs evaluation |
Uncaught exception, Improper Handling of Exceptional Conditions vulnerability in Apache Thrift NodeJS bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 26.04 LTS |
|---|---|
| thrift | Needs evaluation |
Inefficient regular expression complexity, Inefficient Algorithmic Complexity vulnerability in Apache Thrift Lua bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which...
1 affected package
thrift
| Package | 26.04 LTS |
|---|---|
| thrift | Needs evaluation |
Uncontrolled Recursion vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
2 affected packages
php-horde-thrift, thrift
| Package | 26.04 LTS |
|---|---|
| php-horde-thrift | Not in release |
| thrift | Needs evaluation |
Uncontrolled Recursion, Allocation of resources without limits or throttling vulnerability in Apache Thrift Erlang bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0,...
1 affected package
thrift
| Package | 26.04 LTS |
|---|---|
| thrift | Needs evaluation |
Inefficient Algorithmic Complexity vulnerability in Apache Thrift Perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 26.04 LTS |
|---|---|
| thrift | Needs evaluation |
Uncaught exception vulnerability in Apache Thrift Perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 26.04 LTS |
|---|---|
| thrift | Needs evaluation |
Not in release
Uncaught exception, Improper Handling of Exceptional Conditions vulnerability in Apache Thrift Ruby bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
ruby-thrift
| Package | 26.04 LTS |
|---|---|
| ruby-thrift | Not in release |