Search CVE reports


Toggle filters

231 – 240 of 251 results


CVE-2007-3377

Medium priority
Fixed

Header.pm in Net::DNS before 0.60, a Perl module, (1) generates predictable sequence IDs with a fixed increment and (2) can use the same starting ID for all child processes of a forking server, which allows remote attackers to...

1 affected package

libnet-dns-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libnet-dns-perl
Show less packages

CVE-2007-2459

Medium priority

Some fixes available 1 of 3

Heap-based buffer overflow in the BMP reader (bmp.c) in Imager perl module (libimager-perl) 0.45 through 0.56 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted...

1 affected package

libimager-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libimager-perl
Show less packages

CVE-2007-2413

Medium priority

Some fixes available 5 of 7

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2459. Reason: This candidate is a duplicate of CVE-2007-2459. Notes: All CVE users should reference CVE-2007-2459 instead of this candidate. All references...

1 affected package

libimager-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libimager-perl
Show less packages

CVE-2007-2383

Low priority
Ignored

The Prototype (prototypejs) framework before 1.5.1 RC3 exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves...

1 affected package

libhtml-prototype-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libhtml-prototype-perl
Show less packages

CVE-2007-1349

Medium priority
Fixed

PerlRun.pm in Apache mod_perl before 1.30, and RegistryCooker.pm in mod_perl 2.x, does not properly escape PATH_INFO before use in a regular expression, which allows remote attackers to cause a denial of service (resource...

1 affected package

libapache2-mod-perl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libapache2-mod-perl2
Show less packages

CVE-2006-0053

Medium priority
Not affected

Imager (libimager-perl) before 0.50 allows user-assisted attackers to cause a denial of service (segmentation fault) by writing a 2- or 4-channel JPEG image (or a 2-channel TGA image) to a scalar, which triggers a NULL pointer dereference.

1 affected package

libimager-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libimager-perl
Show less packages

CVE-2006-1280

Medium priority
Fixed

CGI::Session 4.03-1 does not set proper permissions on temporary files created in (1) Driver::File and (2) Driver::db_file, which allows local users to obtain privileged information, such as session keys, by viewing the files.

1 affected package

libcgi-session-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcgi-session-perl
Show less packages

CVE-2006-1279

Medium priority
Fixed

CGI::Session 4.03-1 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by (1) Driver::File, (2) Driver::db_file, and possibly (3) Driver::sqlite.

1 affected package

libcgi-session-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcgi-session-perl
Show less packages

CVE-2006-0898

Medium priority
Fixed

Crypt::CBC Perl module 2.16 and earlier, when running in RandomIV mode, uses an initialization vector (IV) of 8 bytes, which results in weaker encryption when used with a cipher that requires a larger block size than 8 bytes, such...

1 affected package

libcrypt-cbc-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcrypt-cbc-perl
Show less packages

CVE-2005-4536

Medium priority
Fixed

Mail::Audit module in libmail-audit-perl 2.1-5, when logging is enabled without a default log file specified, uses predictable log filenames, which allows local users to overwrite arbitrary files via a symlink attack on...

1 affected package

libmail-audit-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmail-audit-perl
Show less packages