Search CVE reports
1481 – 1490 of 39983 results
xrdp is an open source RDP server. Versions through 0.10.5 contain a heap-based buffer overflow vulnerability in its logon processing. In environments where domain_user_separator is configured in xrdp.ini, an unauthenticated...
1 affected package
xrdp
| Package | 20.04 LTS |
|---|---|
| xrdp | Needs evaluation |
xrdp is an open source RDP server. Versions through 0.10.5 contain a heap-based buffer overflow vulnerability in the NeutrinoRDP module. When proxying RDP sessions from xrdp to another server, the module fails to properly validate...
1 affected package
xrdp
| Package | 20.04 LTS |
|---|---|
| xrdp | Needs evaluation |
xrdp is an open source RDP server. In versions through 0.10.5, the session execution component did not properly handle an error during the privilege drop process. This improper privilege management could allow an authenticated...
1 affected package
xrdp
| Package | 20.04 LTS |
|---|---|
| xrdp | Needs evaluation |
xrdp is an open source RDP server. In versions through 0.10.5, xrdp does not implement verification for the Message Authentication Code (MAC) signature of encrypted RDP packets when using the "Classic RDP Security" layer. While...
1 affected package
xrdp
| Package | 20.04 LTS |
|---|---|
| xrdp | Needs evaluation |
Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, when deserializing a slice packet, the xdr_datum() function does not validate that a cstring length conforms to the...
2 affected packages
firebird3.0, firebird4.0
| Package | 20.04 LTS |
|---|---|
| firebird3.0 | Needs evaluation |
| firebird4.0 | — |
Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, when the server receives an op_crypt_key_callback packet without prior authentication, the port_server_crypt_callback...
2 affected packages
firebird3.0, firebird4.0
| Package | 20.04 LTS |
|---|---|
| firebird3.0 | Needs evaluation |
| firebird4.0 | — |
Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, the ClumpletReader::getClumpletSize() function can overflow the totalLength value when parsing a Wide type clumplet,...
2 affected packages
firebird3.0, firebird4.0
| Package | 20.04 LTS |
|---|---|
| firebird3.0 | Needs evaluation |
| firebird4.0 | — |
Firebird is an open-source relational database management system. In versions prior to 6.0.0, 5.0.4, 4.0.7 and 3.0.14, when processing an op_slice network packet, the server passes an unprepared structure containing a null pointer...
2 affected packages
firebird3.0, firebird4.0
| Package | 20.04 LTS |
|---|---|
| firebird3.0 | Needs evaluation |
| firebird4.0 | — |
Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, when processing CNCT_specific_data segments during authentication, the server assumes segments arrive in strictly...
2 affected packages
firebird3.0, firebird4.0
| Package | 20.04 LTS |
|---|---|
| firebird3.0 | Needs evaluation |
| firebird4.0 | — |
Firebird is an open-source relational database management system. In versions FB3 of the client library placed incorrect data length values into XSQLDA fields when communicating with FB4 or higher servers, resulting in an...
2 affected packages
firebird3.0, firebird4.0
| Package | 20.04 LTS |
|---|---|
| firebird3.0 | Needs evaluation |
| firebird4.0 | — |