Search CVE reports


Toggle filters

11 – 20 of 32 results


CVE-2024-38531

Medium priority

Some fixes available 2 of 4

Nix is a package manager for Linux and other Unix systems that makes package management reliable and reproducible. A build process has access to and can change the permissions of the build directory. After creating a setuid binary...

1 affected package

nix

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nix Not affected Fixed Fixed Not in release —
Show less packages

CVE-2024-36050

Medium priority
Vulnerable

Nix through 2.22.1 mishandles certain usage of hash caches, which makes it easier for attackers to replace current source code with attacker-controlled source code by luring a maintainer into accepting a malicious pull request.

1 affected package

nix

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nix Vulnerable Vulnerable Vulnerable Not in release —
Show less packages

CVE-2024-1013

Medium priority

Some fixes available 9 of 10

An out-of-bounds stack write flaw was found in unixODBC on 64-bit architectures where the caller has 4 bytes and callee writes 8 bytes. This issue may go unnoticed on little-endian architectures, while big-endian architectures can...

1 affected package

unixodbc

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
unixodbc — Fixed Fixed Fixed Fixed
Show less packages

CVE-2024-27297

Medium priority

Some fixes available 2 of 5

Nix is a package manager for Linux and other Unix systems. A fixed-output derivations on Linux can send file descriptors to files in the Nix store to another program running on the host (or another fixed-output derivation) via...

2 affected packages

guix, nix

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
guix Not in release Not affected Fixed Not in release —
nix Not affected Fixed Not affected Not in release —
Show less packages

CVE-2022-40704

Low priority
Needs evaluation

A XSS vulnerability was found in phoromatic_r_add_test_details.php in phoronix-test-suite.

1 affected package

phoronix-test-suite

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
phoronix-test-suite — — Not in release Not in release Needs evaluation
Show less packages

CVE-2022-0571

Medium priority
Needs evaluation

Cross-site Scripting (XSS) - Reflected in GitHub repository phoronix-test-suite/phoronix-test-suite prior to 10.8.2.

1 affected package

phoronix-test-suite

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
phoronix-test-suite — — — — Needs evaluation
Show less packages

CVE-2022-0238

Medium priority
Needs evaluation

phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF)

1 affected package

phoronix-test-suite

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
phoronix-test-suite — — — — Needs evaluation
Show less packages

CVE-2022-0197

Medium priority
Needs evaluation

phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF)

1 affected package

phoronix-test-suite

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
phoronix-test-suite Not in release Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2022-0196

Medium priority
Needs evaluation

phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF)

1 affected package

phoronix-test-suite

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
phoronix-test-suite Not in release Not in release Not in release Not in release Needs evaluation
Show less packages

CVE-2022-0157

Medium priority
Needs evaluation

phoronix-test-suite is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

1 affected package

phoronix-test-suite

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
phoronix-test-suite Not in release Not in release Not in release Not in release Needs evaluation
Show less packages