Search CVE reports


Toggle filters

271 – 280 of 465 results


CVE-2017-0375

Medium priority
Not affected

The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the relay_send_end_cell_from_edge_ function via a malformed BEGIN cell.

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2017-3590

Low priority
Vulnerable

Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/Python). Supported versions that are affected are 2.1.5 and earlier. Easily "exploitable" vulnerability allows low privileged attacker with...

1 affected package

mysql-connector-python

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-connector-python Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-3589

Low priority
Vulnerable

Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/J). Supported versions that are affected are 5.1.41 and earlier. Easily "exploitable" vulnerability allows low privileged attacker with logon...

1 affected package

mysql-connector-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-connector-java Not in release Not in release Not in release Not affected
Show less packages

CVE-2017-3586

Medium priority
Vulnerable

Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/J). Supported versions that are affected are 5.1.41 and earlier. Easily "exploitable" vulnerability allows low privileged attacker with...

1 affected package

mysql-connector-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-connector-java Not in release Not in release Not in release Not affected
Show less packages

CVE-2017-3523

Medium priority
Vulnerable

Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/J). Supported versions that are affected are 5.1.40 and earlier. Difficult to exploit vulnerability allows low privileged attacker with...

1 affected package

mysql-connector-java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-connector-java Not in release Not in release Not in release Not affected
Show less packages

CVE-2017-6504

Medium priority
Vulnerable

WebUI in qBittorrent before 3.3.11 did not set the X-Frame-Options header, which could potentially lead to clickjacking.

1 affected package

qbittorrent

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qbittorrent Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-6503

Medium priority
Vulnerable

WebUI in qBittorrent before 3.3.11 did not escape many values, which could potentially lead to XSS.

1 affected package

qbittorrent

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
qbittorrent Not affected Not affected Not affected Not affected
Show less packages

CVE-2016-3180

Medium priority

Some fixes available 1 of 5

Tor Browser Launcher (aka torbrowser-launcher) before 0.2.4, during the initial run, allows man-in-the-middle attackers to bypass the PGP signature verification and execute arbitrary code via a Trojan horse tar file and...

1 affected package

torbrowser-launcher

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torbrowser-launcher Not affected
Show less packages

CVE-2016-7164

Low priority
Vulnerable

The construct function in puff.cpp in Libtorrent 1.1.0 allows remote torrent trackers to cause a denial of service (segmentation fault and crash) via a crafted GZIP response.

1 affected package

libtorrent-rasterbar

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libtorrent-rasterbar Not affected Not affected Not affected Not affected
Show less packages

CVE-2016-7798

Low priority

Some fixes available 5 of 16

The openssl gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryption protection mechanism.

7 affected packages

ruby-attr-encrypted, ruby-encryptor, ruby1.8, ruby1.9.1, ruby2.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ruby-attr-encrypted Not affected Not affected Not affected Not in release
ruby-encryptor Not affected Not affected Not affected Not in release
ruby1.8 Not in release Not in release Not in release Not in release
ruby1.9.1 Not in release Not in release Not in release Not in release
ruby2.0 Not in release Not in release Not in release Not in release
ruby2.1 Not in release Not in release Not in release Not in release
ruby2.3 Not in release Not in release Not in release Not in release
Show all 7 packages Show less packages