Security Check #58
Annotations
10 errors, 11 warnings, and 5 notices
Scan for vulnerabilities
CVE-2024-52533 - HIGH severity - glib: buffer overflow in set_connect_msg() vulnerability in libglib2.0-0
|
Scan for vulnerabilities
CVE-2024-52533 - HIGH severity - glib: buffer overflow in set_connect_msg() vulnerability in libglib2.0-bin
|
Scan for vulnerabilities
CVE-2024-52533 - HIGH severity - glib: buffer overflow in set_connect_msg() vulnerability in libglib2.0-data
|
Scan for vulnerabilities
CVE-2024-7592 - HIGH severity - cpython: python: Uncontrolled CPU resource consumption when in http.cookies module vulnerability in libpython3.11-minimal
|
Scan for vulnerabilities
CVE-2024-7592 - HIGH severity - cpython: python: Uncontrolled CPU resource consumption when in http.cookies module vulnerability in libpython3.11-stdlib
|
Scan for vulnerabilities
CVE-2023-52356 - HIGH severity - libtiff: Segment fault in libtiff in TIFFReadRGBATileExt() leading to denial of service vulnerability in libtiff6
|
Scan for vulnerabilities
CVE-2024-7006 - HIGH severity - libtiff: NULL pointer dereference in tif_dirinfo.c vulnerability in libtiff6
|
Scan for vulnerabilities
CVE-2024-47745 - HIGH severity - kernel: mm: call the security_mmap_file() LSM hook in remap_file_pages() vulnerability in linux-libc-dev
|
Scan for vulnerabilities
CVE-2024-49861 - HIGH severity - kernel: bpf: Fix helper writes to read-only maps vulnerability in linux-libc-dev
|
Scan for vulnerabilities
CVE-2024-49996 - HIGH severity - kernel: cifs: Fix buffer overflow when parsing NFS reparse points vulnerability in linux-libc-dev
|
ubuntu-latest pipelines will use ubuntu-24.04 soon. For more details, see https://github.com/actions/runner-images/issues/10636
|
Scan for vulnerabilities
Dockerfile not provided. Skipping sarif scan result.
|
Scan for vulnerabilities
CVE-2023-52339 - MEDIUM severity - In libebml before 1.4.5, an integer overflow in MemIOCallback.cpp can ... vulnerability in libebml5
|
Scan for vulnerabilities
CVE-2023-27043 - MEDIUM severity - python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple vulnerability in libpython3.11-minimal
|
Scan for vulnerabilities
CVE-2024-6923 - MEDIUM severity - cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection vulnerability in libpython3.11-minimal
|
Scan for vulnerabilities
CVE-2024-9287 - MEDIUM severity - python: Virtual environment (venv) activation scripts don't quote paths vulnerability in libpython3.11-minimal
|
Scan for vulnerabilities
CVE-2023-27043 - MEDIUM severity - python: Parsing errors in email/_parseaddr.py lead to incorrect value in email address part of tuple vulnerability in libpython3.11-stdlib
|
Scan for vulnerabilities
CVE-2024-6923 - MEDIUM severity - cpython: python: email module doesn't properly quotes newlines in email headers, allowing header injection vulnerability in libpython3.11-stdlib
|
Scan for vulnerabilities
CVE-2024-9287 - MEDIUM severity - python: Virtual environment (venv) activation scripts don't quote paths vulnerability in libpython3.11-stdlib
|
Scan for vulnerabilities
CVE-2023-25433 - MEDIUM severity - libtiff: Buffer Overflow via /libtiff/tools/tiffcrop.c vulnerability in libtiff6
|
Scan for vulnerabilities
CVE-2023-26965 - MEDIUM severity - libtiff: heap-based use after free via a crafted TIFF image in loadImage() in tiffcrop.c vulnerability in libtiff6
|
Scan for vulnerabilities
CVE-2024-11168 - LOW severity - python: Improper validation of IPv6 and IPvFuture addresses vulnerability in libpython3.11-minimal
|
Scan for vulnerabilities
CVE-2024-11168 - LOW severity - python: Improper validation of IPv6 and IPvFuture addresses vulnerability in libpython3.11-stdlib
|
Scan for vulnerabilities
CVE-2024-53161 - LOW severity - kernel: EDAC/bluefield: Fix potential integer overflow vulnerability in linux-libc-dev
|
Scan for vulnerabilities
CVE-2024-11168 - LOW severity - python: Improper validation of IPv6 and IPvFuture addresses vulnerability in python3.11
|
Scan for vulnerabilities
CVE-2024-11168 - LOW severity - python: Improper validation of IPv6 and IPvFuture addresses vulnerability in python3.11-minimal
|
Loading