Search CVE reports


Toggle filters

131 – 140 of 142 results


CVE-2009-1515

Low priority
Not affected

Heap-based buffer overflow in the cdf_read_sat function in src/cdf.c in Christos Zoulas file 5.00 allows user-assisted remote attackers to execute arbitrary code via a crafted compound document file, as demonstrated by a .msi,...

1 affected package

file

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
file
Show less packages

CVE-2009-0186

Medium priority
Fixed

Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, allows context-dependent attackers to execute arbitrary code via crafted description chunks in a CAF audio file, leading to a heap-based buffer overflow.

1 affected package

libsndfile

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsndfile
Show less packages

CVE-2008-5824

Medium priority

Some fixes available 10 of 11

Heap-based buffer overflow in msadpcm.c in libaudiofile in audiofile 0.2.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WAV file.

2 affected packages

audiofile, normalize-audio

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
audiofile
normalize-audio
Show less packages

CVE-2007-4974

Medium priority
Fixed

Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 1.0.17 and earlier might allow remote attackers to execute arbitrary code via a FLAC file with crafted PCM data containing a block with a size that exceeds...

1 affected package

libsndfile

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsndfile
Show less packages

CVE-2007-2799

Medium priority
Fixed

Integer overflow in the "file" program 4.20, when running on 32-bit systems, as used in products including The Sleuth Kit, might allow user-assisted attackers to execute arbitrary code via a large file that triggers an overflow...

1 affected package

file

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
file
Show less packages

CVE-2007-2318

Medium priority
Not affected

Multiple format string vulnerabilities in FileZilla before 2.2.32 allow remote attackers to execute arbitrary code via format string specifiers in (1) FTP server responses or (2) data sent by an FTP server. NOTE: some of these...

1 affected package

filezilla

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
filezilla
Show less packages

CVE-2007-2026

Medium priority
Not affected

The gnu regular expression code in file 4.20 allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted document with a large number of line feed characters, which is not well handled by OS/2...

1 affected package

file

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
file
Show less packages

CVE-2007-1536

Medium priority
Fixed

Integer underflow in the file_printf function in the "file" program before 4.20 allows user-assisted attackers to execute arbitrary code via a file that triggers a heap-based buffer overflow.

1 affected package

file

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
file
Show less packages

CVE-2007-0317

Medium priority
Fixed

Format string vulnerability in the LogMessage function in FileZilla before 3.0.0-beta5 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted arguments. NOTE: some...

1 affected package

filezilla

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
filezilla
Show less packages

CVE-2006-0876

Medium priority

Some fixes available 7 of 8

POPFile before 0.22.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors involving character sets within e-mail messages.

1 affected package

popfile

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
popfile
Show less packages