Search CVE reports
1101 – 1110 of 43788 results
[GHSA-5xr9-fmm8-7p8x: remotetrx NetUplink: connection object leak DoS]
1 affected package
svxlink
| Package | 24.04 LTS |
|---|---|
| svxlink | Needs evaluation |
[GHSA-xmcv-mjpv-x46q: Audio decoders: stack VLA exhaustion]
1 affected package
svxlink
| Package | 24.04 LTS |
|---|---|
| svxlink | Needs evaluation |
rsync daemon 2.0.0 before 3.5.0 contains a denial of service vulnerability that allows unauthenticated remote attackers to exhaust daemon connection slots by stalling the handshake process before or after module selection without...
1 affected package
rsync
| Package | 24.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync 3.1.0 before 3.5.0 contains an authorization bypass in auth users directive parsing. The auth users parser uses comma-only tokenization when splitting the user list, which fails to correctly handle entries of the form @Group...
1 affected package
rsync
| Package | 24.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync 3.1.0 before 3.5.0 contains a signed integer overflow vulnerability in the I/O timeout implementation that allows attackers to permanently disable connection timeouts by injecting MSG_IO_TIMEOUT messages...
1 affected package
rsync
| Package | 24.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync 3.2.5 before 3.5.0 contains a heap out-of-bounds write vulnerability that allows remote unauthenticated attackers to write one attacker-controlled byte past the end of a heap allocation by supplying a crafted files-from...
1 affected package
rsync
| Package | 24.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync 2.3.3 before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to escape the module root by exploiting symlinks within the module file tree when using --partial-dir or --backup-dir options....
1 affected package
rsync
| Package | 24.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync 3.0.0 before 3.5.0 contains a null pointer dereference vulnerability in the daemon child process that allows remote attackers to crash the daemon by sending a file list whose first entry is a dot entry not typed as a...
1 affected package
rsync
| Package | 24.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync 3.0.0 before 3.5.0 contains an out-of-bounds write vulnerability that allows attackers to corrupt memory by triggering HLINK_BUMP processing on file entries with the FLAG_HLINKED flag set while the hard-link preservation...
1 affected package
rsync
| Package | 24.04 LTS |
|---|---|
| rsync | Needs evaluation |
rsync 3.2.3 before 3.5.0 contains an out-of-bounds write in parse_size_arg() where the return value of snprintf() is used directly as an index into a .bss-segment array without bounds checking. When snprintf truncates the...
1 affected package
rsync
| Package | 24.04 LTS |
|---|---|
| rsync | Needs evaluation |