Search CVE reports
481 – 490 of 42343 results
Not in release
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the TCP message framing layer parses the Content-Length header using unsigned int arithmetic with no overflow check....
1 affected package
opensips
| Package | 24.04 LTS |
|---|---|
| opensips | Not in release |
Not in release
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0-beta through 3.6.5 and 4.0.0-beta contain a buffer overflow in the {s.b64encode} string transformation. The size check for {s.b64encode} only...
1 affected package
opensips
| Package | 24.04 LTS |
|---|---|
| opensips | Not in release |
Not in release
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0 through 3.6.5 contain a denial of service vulnerability in the presence module. When the presence module's handle_publish() function processes a...
1 affected package
opensips
| Package | 24.04 LTS |
|---|---|
| opensips | Not in release |
An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c
1 affected package
vim
| Package | 24.04 LTS |
|---|---|
| vim | Vulnerable |
An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c
1 affected package
vim
| Package | 24.04 LTS |
|---|---|
| vim | Vulnerable |
Not in release
OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP message with a header name longer than 255 bytes causes a stack buffer overflow when sip_to_json() is called in...
1 affected package
opensips
| Package | 24.04 LTS |
|---|---|
| opensips | Not in release |
A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer size before processing. A local attacker can exploit this via a crafted...
1 affected package
sssd
| Package | 24.04 LTS |
|---|---|
| sssd | Needs evaluation |
Not in release
PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during initialization, allowing an attacker-controlled file in an...
1 affected package
pdm
| Package | 24.04 LTS |
|---|---|
| pdm | Not in release |
Not in release
pdm is a Python package and dependency manager supporting the latest PEP standards. Versions prior to 2.27.0 are vulnerable to path traversal through write_to_fs. InstallDestination.write_to_fs()...
1 affected package
pdm
| Package | 24.04 LTS |
|---|---|
| pdm | Not in release |
Not in release
pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes several project-local state or configuration files without symlink protection. If a malicious repository...
1 affected package
pdm
| Package | 24.04 LTS |
|---|---|
| pdm | Not in release |