Search CVE reports
101 – 110 of 53354 results
Vim is an open source, command line text editor. Prior to 9.2.0841, prop_add_one() in src/textprop.c uses the proplen value from get_text_props() to increment a uint16_t property count beyond 0xffff, wrapping the count to zero and...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Needs evaluation |
Vim is an open source, command line text editor. Prior to 9.2.0846, set_sofo() in src/spellfile.c reuses sl_sal_first[] without resetting values left by set_sal_first(), so a crafted spell file containing an SN_SAL section before...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Needs evaluation |
Vim is an open source, command line text editor. From 9.2.0511 until 9.2.0844, json_decode_item() in src/json.c can retain a stale pointer after json_decode_string() invokes channel_fill() to refill and free the current buffer,...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Needs evaluation |
Vim is an open source, command line text editor. Prior to 9.2.0842, the socket server backend in src/socketserver.c accepts unbounded client connections in socketserver_accept(), causing descriptors to overflow fd_set structures...
1 affected package
vim
| Package | 16.04 LTS |
|---|---|
| vim | Needs evaluation |
Tesseract is an open source OCR engine. Prior to 5.5.3, a crafted .traineddata model loaded through TessBaseAPI::Init can cause SquishedDawg::read_squished_dawg in src/dict/dawg.cpp to accept an unterminated forward-edge run,...
1 affected package
tesseract
| Package | 16.04 LTS |
|---|---|
| tesseract | Needs evaluation |
Tesseract is an open source OCR engine. Prior to 5.5.3, a crafted .traineddata LSTM model component loaded through Tesseract's deserializer can cause an unchecked signed integer multiplication in Convolve::DeSerialize in...
1 affected package
tesseract
| Package | 16.04 LTS |
|---|---|
| tesseract | Needs evaluation |
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it's a duplicate of CVE-2026-73241.
3 affected packages
freerdp, freerdp2, freerdp3
| Package | 16.04 LTS |
|---|---|
| freerdp | Not affected |
| freerdp2 | — |
| freerdp3 | — |
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it's a duplicate of CVE-2026-73242.
3 affected packages
freerdp, freerdp2, freerdp3
| Package | 16.04 LTS |
|---|---|
| freerdp | Not affected |
| freerdp2 | — |
| freerdp3 | — |
Nmap versions up to and including 7.99 contains a denial of service vulnerability that allows remote attackers to crash the application by sending a crafted packet containing a zero-length TCP option. The malformed packet forces...
1 affected package
nmap
| Package | 16.04 LTS |
|---|---|
| nmap | Needs evaluation |
A flaw was found in MRTG. When the MRTG daemon is started as a root user and subsequently drops privileges, a local, low-privileged attacker can exploit a symbolic link (symlink) following vulnerability. By influencing or...
1 affected package
mrtg
| Package | 16.04 LTS |
|---|---|
| mrtg | Needs evaluation |