Search CVE reports
381 – 390 of 46438 results
Not in release
llama.cpp builds b1886 through b7445 contain a double free vulnerability in the LLaMA-Android JNI wrapper where new_1batch() allocates memory using malloc() while free_1batch() deallocates it using the C++ delete operator, causing...
1 affected package
llama.cpp
| Package | 22.04 LTS |
|---|---|
| llama.cpp | Not in release |
Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: from 1.3.0 through 1.6.3.
1 affected package
apr-util
| Package | 22.04 LTS |
|---|---|
| apr-util | Needs evaluation |
Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility redis client. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3. Users are recommended to upgrade to version 1.6.4, which fixes...
1 affected package
apr-util
| Package | 22.04 LTS |
|---|---|
| apr-util | Needs evaluation |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Portable Runtime Utility via apr_dbd_oracle provider. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3
1 affected package
apr-util
| Package | 22.04 LTS |
|---|---|
| apr-util | Needs evaluation |
A bug in APR-util version 1.6.3 (and earlier) allows a stack recursion attack against any library consumer which parses XML from untrusted sources and uses theĀ apr_xml_quote_elem() function. Users are recommended to upgrade to...
1 affected package
apr-util
| Package | 22.04 LTS |
|---|---|
| apr-util | Needs evaluation |
APR-util versions 1.6.3 (and earlier) function apr_password_validate() was not constant-time with regards to hashes or passwords comparisons, potentially leaking their content via a side channel timing attack particularly on...
1 affected package
apr-util
| Package | 22.04 LTS |
|---|---|
| apr-util | Needs evaluation |
A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A...
1 affected package
gst-plugins-good1.0
| Package | 22.04 LTS |
|---|---|
| gst-plugins-good1.0 | Needs evaluation |
security update
1 affected package
udisks2
| Package | 22.04 LTS |
|---|---|
| udisks2 | Needs evaluation |
rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend in backend/local/local.go relies on the configurable filename encoder to...
1 affected package
rclone
| Package | 22.04 LTS |
|---|---|
| rclone | Needs evaluation |
rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to v1.75.0, rclone interpolates remote SFTP paths into PowerShell hash commands in backend/sftp/sftp.go, and...
1 affected package
rclone
| Package | 22.04 LTS |
|---|---|
| rclone | Needs evaluation |