Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

1 – 10 of 25257 results

Status is adjusted based on your filters.


CVE-2024-8354

Medium priority
Needs evaluation

A flaw was found in QEMU. An assertion failure was present in the usb_ep_get() function in hw/net/core.c when trying to get the USB endpoint from a USB device. This flaw may allow a malicious unprivileged guest user to crash the...

1 affected packages

qemu

Package 20.04 LTS
qemu Needs evaluation
Show less packages

CVE-2024-7254

Medium priority
Needs evaluation

Any project that parses untrusted Protocol Buffers data containing an arbitrary number of nested groups / series of SGROUP tags can corrupted by exceeding the stack limit i.e. StackOverflow. Parsing nested groups as unknown fields...

1 affected packages

protobuf

Package 20.04 LTS
protobuf Needs evaluation
Show less packages

CVE-2024-45752

Medium priority

Not in release

logiops through 0.3.4, in its default configuration, allows any unprivileged user to configure its logid daemon via an unrestricted D-Bus service, including setting malicious keyboard macros. This allows for privilege escalation...

1 affected packages

logiops

Package 20.04 LTS
logiops Not in release
Show less packages

CVE-2024-35515

Medium priority

Not in release

Insecure deserialization in sqlitedict up to v2.1.0 allows attackers to execute arbitrary code.

1 affected packages

sqlitedict

Package 20.04 LTS
sqlitedict Not in release
Show less packages

CVE-2023-48727

Medium priority

Not in release

NULL pointer dereference in some Intel oneVPL software before version 23.3.5 may allow an authenticated user to potentially enable information disclosure via local access.

1 affected packages

onevpl

Package 20.04 LTS
onevpl Not in release
Show less packages

CVE-2023-48368

Medium priority
Needs evaluation

Improper input validation in Intel Media SDK software all versions may allow an authenticated user to potentially enable denial of service via local access.

1 affected packages

intel-mediasdk

Package 20.04 LTS
intel-mediasdk Needs evaluation
Show less packages

CVE-2023-47282

Medium priority
Needs evaluation

Out-of-bounds write in Intel Media SDK all versions and some Intel oneVPL software before version 23.3.5 may allow an authenticated user to potentially enable escalation of privilege via local access.

2 affected packages

intel-mediasdk, onevpl

Package 20.04 LTS
intel-mediasdk Needs evaluation
onevpl Not in release
Show less packages

CVE-2023-47169

Medium priority
Needs evaluation

Improper buffer restrictions in Intel Media SDK software all versions may allow an authenticated user to potentially enable denial of service via local access.

1 affected packages

intel-mediasdk

Package 20.04 LTS
intel-mediasdk Needs evaluation
Show less packages

CVE-2023-45221

Medium priority
Needs evaluation

Improper buffer restrictions in Intel Media SDK all versions may allow an authenticated user to potentially enable escalation of privilege via local access.

1 affected packages

intel-mediasdk

Package 20.04 LTS
intel-mediasdk Needs evaluation
Show less packages

CVE-2023-22656

Medium priority
Needs evaluation

Out-of-bounds read in Intel Media SDK and some Intel oneVPL software before version 23.3.5 may allow an authenticated user to potentially enable escalation of privilege via local access.

2 affected packages

intel-mediasdk, onevpl

Package 20.04 LTS
intel-mediasdk Needs evaluation
onevpl Not in release
Show less packages