Bugs with TODO items

Hide "check" TODOs

BugDescriptionNote
CVE-2019-19752nvOC through 3.2 ships with SSH host keys baked into the installation ...check
CVE-2019-19754HiveOS through 0.6-102@191212 ships with SSH host keys baked into the ...check
CVE-2019-19755ethOS through 1.3.3 ships with SSH host keys baked into the installati ...check
CVE-2020-5200Minerbabe through V4.16 ships with SSH host keys baked into the instal ...check
CVE-2021-36593Oxwall 1.8.7 (11111) is vulnerable to Incorrect Access Control. Unauth ...check
CVE-2021-36594SSRF in Oxwall 1.8.7 (11111) allows an attacker to execute arbitrary c ...check
CVE-2022-23538github.com/sylabs/scs-library-client is the Go client for the Singular ...check details, might as well affect golang-github-apptainer-container-library-client
CVE-2023-1000A vulnerability was found in cyanomiko dcnnt-py up to 0.9.0. It has be ...check
CVE-2023-6725An access-control flaw was found in the OpenStack Designate component ...check, details unclear
CVE-2023-26044react/http is an event-driven, streaming HTTP client and server implem ...check, is embedded inicinga-php-thirdparty, icingaweb2-module-reactbundle possibly affected
CVE-2023-36268An issue in The Document Foundation Libreoffice v.7.4.7 allows a remot ...check
CVE-2023-49316In Math/BinaryField.php in phpseclib 3 before 3.0.34, excessively larg ...check if affecting ldap-account-manager or unused path
CVE-2023-50251php-svg-lib is an SVG file parsing / rendering library. Prior to versi ...check, other packages are embedding the library: civicrm, icinga-php-thirdparty and icingaweb2 to be checked
CVE-2023-50252php-svg-lib is an SVG file parsing / rendering library. Prior to versi ...check, other packages are embedding the library: civicrm, icinga-php-thirdparty and icingaweb2 to be checked
CVE-2023-50262Dompdf is an HTML to PDF converter for PHP. When parsing SVG images Do ...check sources embedding php-dompdf if affected
CVE-2024-3209A vulnerability was found in UPX up to 4.2.2. It has been rated as cri ...check upstream report status, seems not filled as issue
CVE-2024-4418stack use-after-free in virNetClientIOEventLoop()check details
CVE-2024-21002Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...check
CVE-2024-21003Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...check
CVE-2024-21004Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...check
CVE-2024-21005Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition ...check
CVE-2024-22420JupyterLab is an extensible environment for interactive and reproducib ...check completeness, src:jupyter-notebook?
CVE-2024-22421JupyterLab is an extensible environment for interactive and reproducib ...check completeness, src:jupyter-notebook?
CVE-2024-24856The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee ...check
CVE-2024-24862In function pci1xxxx_spi_probe, there is a potential null pointer that ...check
CVE-2024-24863In malidp_mw_connector_reset, new memory is allocated with kzalloc, bu ...check
CVE-2024-26256libarchive Remote Code Execution Vulnerabilitycheck
CVE-2024-28180Package jose aims to provide an implementation of the Javascript Objec ...check completeness
CVE-2024-28836An issue was discovered in Mbed TLS 3.5.x before 3.6.0. When negotiati ...check, missing details
CVE-2024-29291An issue in Laravel Framework 8 through 11 might allow a remote attack ...check
CVE-2024-30166In Mbed TLS 3.3.0 through 3.5.2 before 3.6.0, a malicious client can c ...check, missing details
CVE-2024-32473Moby is an open source container framework that is a key component of ...check, said to be specific to the 26.0.0 and 26.0.1 versions but needs double-checking
CVE-2024-33899RARLAB WinRAR before 7.00, on Linux and UNIX platforms, allows attacke ...check

Search for package or bug name: Reporting problems