Skip to content

Instantly share code, notes, and snippets.

@danleyb2
Created November 1, 2021 17:40
Show Gist options
  • Save danleyb2/c6bcbee9b21e35a341fea8eaad285f52 to your computer and use it in GitHub Desktop.
Save danleyb2/c6bcbee9b21e35a341fea8eaad285f52 to your computer and use it in GitHub Desktop.
danleyb2@ubuntu-ws:~$
danleyb2@ubuntu-ws:~$ docker scan platerecognizer/alpr
Testing platerecognizer/alpr...
✗ Low severity vulnerability found in xdg-user-dirs
Description: Improper Access Control
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-XDGUSERDIRS-347423
Introduced through: xdg-user-dirs@0.17-1ubuntu1
From: xdg-user-dirs@0.17-1ubuntu1
✗ Low severity vulnerability found in util-linux/libmount1
Description: Access Restriction Bypass
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-UTILLINUX-345957
Introduced through: util-linux/libmount1@2.31.1-0.4ubuntu3.4, util-linux/mount@2.31.1-0.4ubuntu3.4, util-linux/fdisk@2.31.1-0.4ubuntu3.4, dbus-python/python3-dbus@1.2.6-1, util-linux/libblkid1@2.31.1-0.4ubuntu3.4, e2fsprogs@1.44.1-1ubuntu1.2, util-linux/libuuid1@2.31.1-0.4ubuntu3.4, util-linux@2.31.1-0.4ubuntu3.4, sysvinit/sysvinit-utils@2.88dsf-59.10ubuntu1, util-linux/libfdisk1@2.31.1-0.4ubuntu3.4, util-linux/libsmartcols1@2.31.1-0.4ubuntu3.4
From: util-linux/libmount1@2.31.1-0.4ubuntu3.4
From: util-linux/mount@2.31.1-0.4ubuntu3.4 > util-linux/libmount1@2.31.1-0.4ubuntu3.4
From: util-linux/fdisk@2.31.1-0.4ubuntu3.4 > util-linux/libmount1@2.31.1-0.4ubuntu3.4
and 25 more...
Fixed in: 2.31.1-0.4ubuntu3.7
✗ Low severity vulnerability found in tar
Description: Loop with Unreachable Exit Condition ('Infinite Loop')
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-TAR-312298
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > tar@1.29b-2ubuntu0.1
Fixed in: 1.29b-2ubuntu0.2
✗ Low severity vulnerability found in tar
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-TAR-559435
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > tar@1.29b-2ubuntu0.1
Fixed in: 1.29b-2ubuntu0.2
✗ Low severity vulnerability found in systemd/libsystemd0
Description: Authentication Bypass
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SYSTEMD-1290723
Introduced through: systemd/libsystemd0@237-3ubuntu10.33, apt/libapt-pkg5.0@1.6.12, procps/libprocps6@2:3.3.12-3ubuntu1.2, util-linux/bsdutils@1:2.31.1-0.4ubuntu3.4, dbus-python/python3-dbus@1.2.6-1, util-linux/mount@2.31.1-0.4ubuntu3.4, python-keyring/python3-keyring@10.6.0-1, systemd/libudev1@237-3ubuntu10.33
From: systemd/libsystemd0@237-3ubuntu10.33
From: apt/libapt-pkg5.0@1.6.12 > systemd/libsystemd0@237-3ubuntu10.33
From: procps/libprocps6@2:3.3.12-3ubuntu1.2 > systemd/libsystemd0@237-3ubuntu10.33
and 7 more...
Fixed in: 237-3ubuntu10.49
✗ Low severity vulnerability found in systemd/libsystemd0
Description: Incorrect Privilege Assignment
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SYSTEMD-345433
Introduced through: systemd/libsystemd0@237-3ubuntu10.33, apt/libapt-pkg5.0@1.6.12, procps/libprocps6@2:3.3.12-3ubuntu1.2, util-linux/bsdutils@1:2.31.1-0.4ubuntu3.4, dbus-python/python3-dbus@1.2.6-1, util-linux/mount@2.31.1-0.4ubuntu3.4, python-keyring/python3-keyring@10.6.0-1, systemd/libudev1@237-3ubuntu10.33
From: systemd/libsystemd0@237-3ubuntu10.33
From: apt/libapt-pkg5.0@1.6.12 > systemd/libsystemd0@237-3ubuntu10.33
From: procps/libprocps6@2:3.3.12-3ubuntu1.2 > systemd/libsystemd0@237-3ubuntu10.33
and 7 more...
Fixed in: 237-3ubuntu10.38
✗ Low severity vulnerability found in systemd/libsystemd0
Description: Privilege Chaining
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SYSTEMD-345445
Introduced through: systemd/libsystemd0@237-3ubuntu10.33, apt/libapt-pkg5.0@1.6.12, procps/libprocps6@2:3.3.12-3ubuntu1.2, util-linux/bsdutils@1:2.31.1-0.4ubuntu3.4, dbus-python/python3-dbus@1.2.6-1, util-linux/mount@2.31.1-0.4ubuntu3.4, python-keyring/python3-keyring@10.6.0-1, systemd/libudev1@237-3ubuntu10.33
From: systemd/libsystemd0@237-3ubuntu10.33
From: apt/libapt-pkg5.0@1.6.12 > systemd/libsystemd0@237-3ubuntu10.33
From: procps/libprocps6@2:3.3.12-3ubuntu1.2 > systemd/libsystemd0@237-3ubuntu10.33
and 7 more...
Fixed in: 237-3ubuntu10.38
✗ Low severity vulnerability found in systemd/libsystemd0
Description: Missing Release of Resource after Effective Lifetime
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SYSTEMD-543507
Introduced through: systemd/libsystemd0@237-3ubuntu10.33, apt/libapt-pkg5.0@1.6.12, procps/libprocps6@2:3.3.12-3ubuntu1.2, util-linux/bsdutils@1:2.31.1-0.4ubuntu3.4, dbus-python/python3-dbus@1.2.6-1, util-linux/mount@2.31.1-0.4ubuntu3.4, python-keyring/python3-keyring@10.6.0-1, systemd/libudev1@237-3ubuntu10.33
From: systemd/libsystemd0@237-3ubuntu10.33
From: apt/libapt-pkg5.0@1.6.12 > systemd/libsystemd0@237-3ubuntu10.33
From: procps/libprocps6@2:3.3.12-3ubuntu1.2 > systemd/libsystemd0@237-3ubuntu10.33
and 7 more...
Fixed in: 237-3ubuntu10.38
✗ Low severity vulnerability found in sqlite3/libsqlite3-0
Description: CVE-2020-9991
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-1070682
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
✗ Low severity vulnerability found in sqlite3/libsqlite3-0
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-1070693
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
✗ Low severity vulnerability found in sqlite3/libsqlite3-0
Description: Improper Handling of Exceptional Conditions
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557177
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Low severity vulnerability found in sqlite3/libsqlite3-0
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-561066
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.4
✗ Low severity vulnerability found in shadow/passwd
Description: Time-of-check Time-of-use (TOCTOU)
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SHADOW-306209
Introduced through: shadow/passwd@1:4.5-1ubuntu2, apt@1.6.12, shadow/login@1:4.5-1ubuntu2
From: shadow/passwd@1:4.5-1ubuntu2
From: apt@1.6.12 > adduser@3.116ubuntu1 > shadow/passwd@1:4.5-1ubuntu2
From: shadow/login@1:4.5-1ubuntu2
✗ Low severity vulnerability found in shadow/passwd
Description: Incorrect Permission Assignment for Critical Resource
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SHADOW-306233
Introduced through: shadow/passwd@1:4.5-1ubuntu2, apt@1.6.12, shadow/login@1:4.5-1ubuntu2
From: shadow/passwd@1:4.5-1ubuntu2
From: apt@1.6.12 > adduser@3.116ubuntu1 > shadow/passwd@1:4.5-1ubuntu2
From: shadow/login@1:4.5-1ubuntu2
✗ Low severity vulnerability found in pyxdg/python3-xdg
Description: Arbitrary Code Injection
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYXDG-349163
Introduced through: pyxdg/python3-xdg@0.25-4ubuntu1
From: pyxdg/python3-xdg@0.25-4ubuntu1
Fixed in: 0.25-4ubuntu1.1
✗ Low severity vulnerability found in python3.6/libpython3.6-minimal
Description: CVE-2020-27619
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-1065946
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1.4
✗ Low severity vulnerability found in python3.6/libpython3.6-minimal
Description: HTTP Request Smuggling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-1075584
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
✗ Low severity vulnerability found in python3.6/libpython3.6-minimal
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-1300467
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
✗ Low severity vulnerability found in python3.6/libpython3.6-minimal
Description: Resource Exhaustion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-567117
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1
✗ Low severity vulnerability found in python3.6/libpython3.6-minimal
Description: Resource Exhaustion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-589952
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1.1
✗ Low severity vulnerability found in python3.6/libpython3.6-minimal
Description: Resource Exhaustion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-589953
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1.1
✗ Low severity vulnerability found in python3.6/libpython3.6-minimal
Description: Incorrect Calculation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-589954
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1.1
✗ Low severity vulnerability found in perl/perl-modules-5.26
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PERL-570821
Introduced through: perl/perl-modules-5.26@5.26.1-6ubuntu0.3, build-essential@12.4ubuntu1, perl/libperl5.26@5.26.1-6ubuntu0.3, perl@5.26.1-6ubuntu0.3, libalgorithm-diff-xs-perl@0.04-5, libalgorithm-merge-perl@0.08-3, libfile-fcntllock-perl@0.22-3build2, meta-common-packages@meta
From: perl/perl-modules-5.26@5.26.1-6ubuntu0.3
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > dpkg/libdpkg-perl@1.19.0.5ubuntu2.3 > perl@5.26.1-6ubuntu0.3 > perl/perl-modules-5.26@5.26.1-6ubuntu0.3
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > dpkg/libdpkg-perl@1.19.0.5ubuntu2.3 > perl@5.26.1-6ubuntu0.3 > perl/libperl5.26@5.26.1-6ubuntu0.3 > perl/perl-modules-5.26@5.26.1-6ubuntu0.3
and 9 more...
Fixed in: 5.26.1-6ubuntu0.5
✗ Low severity vulnerability found in perl/perl-modules-5.26
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PERL-570822
Introduced through: perl/perl-modules-5.26@5.26.1-6ubuntu0.3, build-essential@12.4ubuntu1, perl/libperl5.26@5.26.1-6ubuntu0.3, perl@5.26.1-6ubuntu0.3, libalgorithm-diff-xs-perl@0.04-5, libalgorithm-merge-perl@0.08-3, libfile-fcntllock-perl@0.22-3build2, meta-common-packages@meta
From: perl/perl-modules-5.26@5.26.1-6ubuntu0.3
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > dpkg/libdpkg-perl@1.19.0.5ubuntu2.3 > perl@5.26.1-6ubuntu0.3 > perl/perl-modules-5.26@5.26.1-6ubuntu0.3
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > dpkg/libdpkg-perl@1.19.0.5ubuntu2.3 > perl@5.26.1-6ubuntu0.3 > perl/libperl5.26@5.26.1-6ubuntu0.3 > perl/perl-modules-5.26@5.26.1-6ubuntu0.3
and 9 more...
Fixed in: 5.26.1-6ubuntu0.5
✗ Low severity vulnerability found in perl/perl-modules-5.26
Description: Buffer Overflow
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PERL-570823
Introduced through: perl/perl-modules-5.26@5.26.1-6ubuntu0.3, build-essential@12.4ubuntu1, perl/libperl5.26@5.26.1-6ubuntu0.3, perl@5.26.1-6ubuntu0.3, libalgorithm-diff-xs-perl@0.04-5, libalgorithm-merge-perl@0.08-3, libfile-fcntllock-perl@0.22-3build2, meta-common-packages@meta
From: perl/perl-modules-5.26@5.26.1-6ubuntu0.3
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > dpkg/libdpkg-perl@1.19.0.5ubuntu2.3 > perl@5.26.1-6ubuntu0.3 > perl/perl-modules-5.26@5.26.1-6ubuntu0.3
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > dpkg/libdpkg-perl@1.19.0.5ubuntu2.3 > perl@5.26.1-6ubuntu0.3 > perl/libperl5.26@5.26.1-6ubuntu0.3 > perl/perl-modules-5.26@5.26.1-6ubuntu0.3
and 9 more...
Fixed in: 5.26.1-6ubuntu0.5
✗ Low severity vulnerability found in pcre3/libpcre3
Description: Uncontrolled Recursion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PCRE3-452543
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > pcre3/libpcre3@2:8.39-9
✗ Low severity vulnerability found in pcre3/libpcre3
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PCRE3-572723
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > pcre3/libpcre3@2:8.39-9
✗ Low severity vulnerability found in pcre3/libpcre3
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PCRE3-572730
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > pcre3/libpcre3@2:8.39-9
✗ Low severity vulnerability found in patch
Description: Double Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PATCH-303858
Introduced through: patch@2.7.6-2ubuntu1.1, build-essential@12.4ubuntu1
From: patch@2.7.6-2ubuntu1.1
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > patch@2.7.6-2ubuntu1.1
✗ Low severity vulnerability found in openssl/libssl1.1
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-1075592
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.8
✗ Low severity vulnerability found in openssl/libssl1.1
Description: Use of a Broken or Risky Cryptographic Algorithm
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-466482
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.6
✗ Low severity vulnerability found in openssl/libssl1.1
Description: Missing Encryption of Sensitive Data
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-466490
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.6
✗ Low severity vulnerability found in openssl/libssl1.1
Description: Use of Insufficiently Random Values
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-466493
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.6
✗ Low severity vulnerability found in openssl/libssl1.1
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-536861
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.6
✗ Low severity vulnerability found in nettle/libnettle6
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-NETTLE-302013
Introduced through: nettle/libnettle6@3.4-1, curl@7.58.0-2ubuntu3.8, nettle/libhogweed4@3.4-1
From: nettle/libnettle6@3.4-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > rtmpdump/librtmp1@2.4+20151223.gitfa8646d.1-1 > nettle/libnettle6@3.4-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2 > nettle/libnettle6@3.4-1
and 4 more...
Fixed in: 3.4.1-0ubuntu0.18.04.1
✗ Low severity vulnerability found in ncurses/libncursesw5
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-NCURSES-481908
Introduced through: meta-common-packages@meta, ncurses/libncurses5@6.1-1ubuntu1.18.04, procps@2:3.3.12-3ubuntu1.2, ncurses/ncurses-base@6.1-1ubuntu1.18.04, ncurses/ncurses-bin@6.1-1ubuntu1.18.04
From: meta-common-packages@meta > ncurses/libncursesw5@6.1-1ubuntu1.18.04
From: meta-common-packages@meta > ncurses/libtinfo5@6.1-1ubuntu1.18.04
From: ncurses/libncurses5@6.1-1ubuntu1.18.04
and 3 more...
✗ Low severity vulnerability found in ncurses/libncursesw5
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-NCURSES-482343
Introduced through: meta-common-packages@meta, ncurses/libncurses5@6.1-1ubuntu1.18.04, procps@2:3.3.12-3ubuntu1.2, ncurses/ncurses-base@6.1-1ubuntu1.18.04, ncurses/ncurses-bin@6.1-1ubuntu1.18.04
From: meta-common-packages@meta > ncurses/libncursesw5@6.1-1ubuntu1.18.04
From: meta-common-packages@meta > ncurses/libtinfo5@6.1-1ubuntu1.18.04
From: ncurses/libncurses5@6.1-1ubuntu1.18.04
and 3 more...
✗ Low severity vulnerability found in libxml2
Description: Missing Release of Resource after Effective Lifetime
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBXML2-540754
Introduced through: libxml2@2.9.4+dfsg1-6.1ubuntu1.2, shared-mime-info@1.9-2
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: shared-mime-info@1.9-2 > libxml2@2.9.4+dfsg1-6.1ubuntu1.2
Fixed in: 2.9.4+dfsg1-6.1ubuntu1.3
✗ Low severity vulnerability found in libxml2
Description: Loop with Unreachable Exit Condition ('Infinite Loop')
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBXML2-548410
Introduced through: libxml2@2.9.4+dfsg1-6.1ubuntu1.2, shared-mime-info@1.9-2
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: shared-mime-info@1.9-2 > libxml2@2.9.4+dfsg1-6.1ubuntu1.2
Fixed in: 2.9.4+dfsg1-6.1ubuntu1.3
✗ Low severity vulnerability found in libxml2
Description: Memory Leak
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBXML2-609729
Introduced through: libxml2@2.9.4+dfsg1-6.1ubuntu1.2, shared-mime-info@1.9-2
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: shared-mime-info@1.9-2 > libxml2@2.9.4+dfsg1-6.1ubuntu1.2
Fixed in: 2.9.4+dfsg1-6.1ubuntu1.4
✗ Low severity vulnerability found in libxml2
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBXML2-609732
Introduced through: libxml2@2.9.4+dfsg1-6.1ubuntu1.2, shared-mime-info@1.9-2
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: shared-mime-info@1.9-2 > libxml2@2.9.4+dfsg1-6.1ubuntu1.2
Fixed in: 2.9.4+dfsg1-6.1ubuntu1.4
✗ Low severity vulnerability found in libtasn1-6
Description: Resource Management Errors
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBTASN16-339588
Introduced through: libtasn1-6@4.13-2, curl@7.58.0-2ubuntu3.8
From: libtasn1-6@4.13-2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2 > libtasn1-6@4.13-2
✗ Low severity vulnerability found in libjpeg-turbo/libjpeg-turbo8
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBJPEGTURBO-1299080
Introduced through: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > libjpeg-turbo/libjpeg-turbo8@1.5.2-0ubuntu5.18.04.4
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8@1.5.2-0ubuntu5.18.04.4
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4
✗ Low severity vulnerability found in libjpeg-turbo/libjpeg-turbo8
Description: Excessive Iteration
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBJPEGTURBO-573090
Introduced through: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > libjpeg-turbo/libjpeg-turbo8@1.5.2-0ubuntu5.18.04.4
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8@1.5.2-0ubuntu5.18.04.4
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4
✗ Low severity vulnerability found in libgcrypt20
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBGCRYPT20-1297920
Introduced through: libgcrypt20@1.8.1-4ubuntu1.1, gnupg2/gpgv@2.2.4-1ubuntu1.2, gnupg2/gpgconf@2.2.4-1ubuntu1.2, apt/libapt-pkg5.0@1.6.12, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: libgcrypt20@1.8.1-4ubuntu1.1
From: gnupg2/gpgv@2.2.4-1ubuntu1.2 > libgcrypt20@1.8.1-4ubuntu1.1
From: gnupg2/gpgconf@2.2.4-1ubuntu1.2 > libgcrypt20@1.8.1-4ubuntu1.1
and 8 more...
Fixed in: 1.8.1-4ubuntu1.3
✗ Low severity vulnerability found in krb5/libkrb5support0
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-KRB5-459140
Introduced through: curl@7.58.0-2ubuntu3.8, krb5/krb5-locales@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libk5crypto3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5-3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
and 5 more...
✗ Low severity vulnerability found in krb5/libkrb5support0
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-KRB5-646343
Introduced through: curl@7.58.0-2ubuntu3.8, krb5/krb5-locales@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libk5crypto3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5-3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
and 5 more...
✗ Low severity vulnerability found in icu/libicu60
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-ICU-1656600
Introduced through: icu/libicu60@60.2-3ubuntu3, libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: icu/libicu60@60.2-3ubuntu3
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2 > icu/libicu60@60.2-3ubuntu3
✗ Low severity vulnerability found in heimdal/libheimbase1-heimdal
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-HEIMDAL-1766740
Introduced through: curl@7.58.0-2ubuntu3.8, meta-common-packages@meta
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > heimdal/libgssapi3-heimdal@7.5.0+dfsg-1 > heimdal/libhcrypto4-heimdal@7.5.0+dfsg-1 > heimdal/libheimbase1-heimdal@7.5.0+dfsg-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > heimdal/libgssapi3-heimdal@7.5.0+dfsg-1 > heimdal/libheimntlm0-heimdal@7.5.0+dfsg-1 > heimdal/libkrb5-26-heimdal@7.5.0+dfsg-1 > heimdal/libheimbase1-heimdal@7.5.0+dfsg-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > heimdal/libgssapi3-heimdal@7.5.0+dfsg-1 > heimdal/libheimntlm0-heimdal@7.5.0+dfsg-1 > heimdal/libkrb5-26-heimdal@7.5.0+dfsg-1 > heimdal/libhx509-5-heimdal@7.5.0+dfsg-1 > heimdal/libheimbase1-heimdal@7.5.0+dfsg-1
and 14 more...
✗ Low severity vulnerability found in heimdal/libheimbase1-heimdal
Description: Key Management Errors
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-HEIMDAL-346634
Introduced through: curl@7.58.0-2ubuntu3.8, meta-common-packages@meta
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > heimdal/libgssapi3-heimdal@7.5.0+dfsg-1 > heimdal/libhcrypto4-heimdal@7.5.0+dfsg-1 > heimdal/libheimbase1-heimdal@7.5.0+dfsg-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > heimdal/libgssapi3-heimdal@7.5.0+dfsg-1 > heimdal/libheimntlm0-heimdal@7.5.0+dfsg-1 > heimdal/libkrb5-26-heimdal@7.5.0+dfsg-1 > heimdal/libheimbase1-heimdal@7.5.0+dfsg-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > heimdal/libgssapi3-heimdal@7.5.0+dfsg-1 > heimdal/libheimntlm0-heimdal@7.5.0+dfsg-1 > heimdal/libkrb5-26-heimdal@7.5.0+dfsg-1 > heimdal/libhx509-5-heimdal@7.5.0+dfsg-1 > heimdal/libheimbase1-heimdal@7.5.0+dfsg-1
and 14 more...
✗ Low severity vulnerability found in gnutls28/libgnutls30
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GNUTLS28-340583
Introduced through: gnutls28/libgnutls30@3.5.18-1ubuntu1.2, apt@1.6.12, gnupg2/gnupg@2.2.4-1ubuntu1.2, curl@7.58.0-2ubuntu3.8
From: gnutls28/libgnutls30@3.5.18-1ubuntu1.2
From: apt@1.6.12 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2
and 2 more...
✗ Low severity vulnerability found in gnupg2/gpgv
Description: Improper Certificate Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GNUPG2-453470
Introduced through: gnupg2/gpgv@2.2.4-1ubuntu1.2, apt@1.6.12, gnupg2/gnupg@2.2.4-1ubuntu1.2, gnupg2/dirmngr@2.2.4-1ubuntu1.2, gnupg2/gpgconf@2.2.4-1ubuntu1.2, gnupg2/gnupg-l10n@2.2.4-1ubuntu1.2, gnupg2/gnupg-utils@2.2.4-1ubuntu1.2, gnupg2/gpg@2.2.4-1ubuntu1.2, gnupg2/gpg-agent@2.2.4-1ubuntu1.2, gnupg2/gpg-wks-client@2.2.4-1ubuntu1.2, gnupg2/gpg-wks-server@2.2.4-1ubuntu1.2, gnupg2/gpgsm@2.2.4-1ubuntu1.2
From: gnupg2/gpgv@2.2.4-1ubuntu1.2
From: apt@1.6.12 > gnupg2/gpgv@2.2.4-1ubuntu1.2
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/gpgv@2.2.4-1ubuntu1.2
and 27 more...
✗ Low severity vulnerability found in gnupg2/gpgv
Description: Use of a Broken or Risky Cryptographic Algorithm
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GNUPG2-541656
Introduced through: gnupg2/gpgv@2.2.4-1ubuntu1.2, apt@1.6.12, gnupg2/gnupg@2.2.4-1ubuntu1.2, gnupg2/dirmngr@2.2.4-1ubuntu1.2, gnupg2/gpgconf@2.2.4-1ubuntu1.2, gnupg2/gnupg-l10n@2.2.4-1ubuntu1.2, gnupg2/gnupg-utils@2.2.4-1ubuntu1.2, gnupg2/gpg@2.2.4-1ubuntu1.2, gnupg2/gpg-agent@2.2.4-1ubuntu1.2, gnupg2/gpg-wks-client@2.2.4-1ubuntu1.2, gnupg2/gpg-wks-server@2.2.4-1ubuntu1.2, gnupg2/gpgsm@2.2.4-1ubuntu1.2
From: gnupg2/gpgv@2.2.4-1ubuntu1.2
From: apt@1.6.12 > gnupg2/gpgv@2.2.4-1ubuntu1.2
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/gpgv@2.2.4-1ubuntu1.2
and 27 more...
Fixed in: 2.2.4-1ubuntu1.3
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Loop with Unreachable Exit Condition ('Infinite Loop')
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-1055781
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-1055791
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Reachable Assertion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-1122575
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Improper Data Handling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-345677
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-356373
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Improper Data Handling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-356503
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-451233
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
Fixed in: 2.27-3ubuntu1.2
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-451499
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-565053
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
Fixed in: 2.27-3ubuntu1.2
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Integer Underflow
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-571383
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-571387
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
Fixed in: 2.27-3ubuntu1.2
✗ Low severity vulnerability found in glibc/libc6-dev
Description: Out-of-Bounds
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-571391
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
Fixed in: 2.27-3ubuntu1.2
✗ Low severity vulnerability found in dbus
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-DBUS-1131329
Introduced through: dbus@1.12.2-1ubuntu1.1, python-keyring/python3-keyring@10.6.0-1, dbus/libdbus-1-3@1.12.2-1ubuntu1.1, dbus-python/python3-dbus@1.2.6-1
From: dbus@1.12.2-1ubuntu1.1
From: python-keyring/python3-keyring@10.6.0-1 > python-secretstorage/python3-secretstorage@2.3.1-2 > dbus@1.12.2-1ubuntu1.1
From: dbus/libdbus-1-3@1.12.2-1ubuntu1.1
and 2 more...
✗ Low severity vulnerability found in curl/libcurl4
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1049529
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.12
✗ Low severity vulnerability found in curl/libcurl4
Description: Missing Initialization of Resource
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1296913
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.14
✗ Low severity vulnerability found in curl/libcurl4
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-607881
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.10
✗ Low severity vulnerability found in coreutils
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-COREUTILS-317469
Introduced through: coreutils@8.28-1ubuntu1
From: coreutils@8.28-1ubuntu1
✗ Low severity vulnerability found in binutils
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-1138116
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.7
✗ Low severity vulnerability found in binutils
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-1244928
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.7
✗ Low severity vulnerability found in binutils
Description: Missing Release of Resource after Effective Lifetime
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348872
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Loop with Unreachable Exit Condition ('Infinite Loop')
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348874
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348915
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-Bounds
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348917
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348919
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348945
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348949
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Uncontrolled Recursion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348951
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-348955
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349004
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Resource Exhaustion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349005
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-Bounds
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349064
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349100
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349102
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349106
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349159
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349194
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349234
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Loop with Unreachable Exit Condition ('Infinite Loop')
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349237
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Loop with Unreachable Exit Condition ('Infinite Loop')
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349267
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Resource Management Errors
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349282
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Uncontrolled Recursion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349312
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-Bounds
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349354
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349382
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Resource Exhaustion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349432
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349433
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349435
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349436
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-349506
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Allocation of Resources Without Limits or Throttling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-403700
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
✗ Low severity vulnerability found in binutils
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561068
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561069
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561070
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561073
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561075
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561078
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Allocation of Resources Without Limits or Throttling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561084
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561087
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Uncontrolled Recursion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561088
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Allocation of Resources Without Limits or Throttling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561094
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Allocation of Resources Without Limits or Throttling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561097
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561418
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
✗ Low severity vulnerability found in binutils
Description: Uncontrolled Recursion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-567264
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-567265
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Low severity vulnerability found in binutils
Description: Missing Release of Resource after Effective Lifetime
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-842776
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
✗ Low severity vulnerability found in bash
Description: Improper Check for Dropped Privileges
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BASH-542613
Introduced through: bash@4.4.18-2ubuntu1.2
From: bash@4.4.18-2ubuntu1.2
✗ Medium severity vulnerability found in systemd/libsystemd0
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SYSTEMD-546491
Introduced through: systemd/libsystemd0@237-3ubuntu10.33, apt/libapt-pkg5.0@1.6.12, procps/libprocps6@2:3.3.12-3ubuntu1.2, util-linux/bsdutils@1:2.31.1-0.4ubuntu3.4, dbus-python/python3-dbus@1.2.6-1, util-linux/mount@2.31.1-0.4ubuntu3.4, python-keyring/python3-keyring@10.6.0-1, systemd/libudev1@237-3ubuntu10.33
From: systemd/libsystemd0@237-3ubuntu10.33
From: apt/libapt-pkg5.0@1.6.12 > systemd/libsystemd0@237-3ubuntu10.33
From: procps/libprocps6@2:3.3.12-3ubuntu1.2 > systemd/libsystemd0@237-3ubuntu10.33
and 7 more...
Fixed in: 237-3ubuntu10.38
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557148
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557150
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557153
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: CVE-2019-19959
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557155
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557165
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Unrestricted Upload of File with Dangerous Type
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557166
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557168
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Use of Uninitialized Resource
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557171
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-557174
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-559131
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.3
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-571696
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.4
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-571706
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-571710
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.4
✗ Medium severity vulnerability found in sqlite3/libsqlite3-0
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SQLITE3-571711
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > sqlite3/libsqlite3-0@3.22.0-1ubuntu0.2
Fixed in: 3.22.0-1ubuntu0.4
✗ Medium severity vulnerability found in python3.6/libpython3.6-minimal
Description: Improper Encoding or Escaping of Output
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-1018699
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1.3
✗ Medium severity vulnerability found in python3.6/libpython3.6-minimal
Description: Buffer Overflow
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-1065936
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1.4
✗ Medium severity vulnerability found in python3.6/libpython3.6-minimal
Description: Arbitrary Code Injection
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-474724
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1
✗ Medium severity vulnerability found in python3.6/libpython3.6-minimal
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHON36-589959
Introduced through: meta-common-packages@meta, python3-defaults/python3@3.6.7-1~18.04, python3-defaults/python3-dev@3.6.7-1~18.04, python3.6/libpython3.6@3.6.9-1~18.04, python3.6/libpython3.6-dev@3.6.9-1~18.04, python3.6/python3.6-dev@3.6.9-1~18.04
From: meta-common-packages@meta > python3.6/libpython3.6-minimal@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3-defaults/libpython3-stdlib@3.6.7-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
From: python3-defaults/python3@3.6.7-1~18.04 > python3.6@3.6.9-1~18.04 > python3.6/libpython3.6-stdlib@3.6.9-1~18.04
and 14 more...
Fixed in: 3.6.9-1~18.04ubuntu1.1
✗ Medium severity vulnerability found in python-pip/python-pip-whl
Description: Arbitrary Code Injection
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHONPIP-1015443
Introduced through: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > python-pip/python-pip-whl@9.0.1-2.3~ubuntu1.18.04.1
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
Fixed in: 9.0.1-2.3~ubuntu1.18.04.3
✗ Medium severity vulnerability found in python-pip/python-pip-whl
Description: Directory Traversal
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHONPIP-1021158
Introduced through: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > python-pip/python-pip-whl@9.0.1-2.3~ubuntu1.18.04.1
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
Fixed in: 9.0.1-2.3~ubuntu1.18.04.4
✗ Medium severity vulnerability found in python-pip/python-pip-whl
Description: Insufficiently Protected Credentials
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHONPIP-609614
Introduced through: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > python-pip/python-pip-whl@9.0.1-2.3~ubuntu1.18.04.1
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
Fixed in: 9.0.1-2.3~ubuntu1.18.04.2
✗ Medium severity vulnerability found in python-cryptography/python3-cryptography
Description: Covert Timing Channel
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-PYTHONCRYPTOGRAPHY-1023575
Introduced through: python-cryptography/python3-cryptography@2.1.4-1ubuntu1.3, python-keyring/python3-keyring@10.6.0-1
From: python-cryptography/python3-cryptography@2.1.4-1ubuntu1.3
From: python-keyring/python3-keyring@10.6.0-1 > python-secretstorage/python3-secretstorage@2.3.1-2 > python-cryptography/python3-cryptography@2.1.4-1ubuntu1.3
Fixed in: 2.1.4-1ubuntu1.4
✗ Medium severity vulnerability found in p11-kit/libp11-kit0
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-P11KIT-1052983
Introduced through: p11-kit/libp11-kit0@0.23.9-2, curl@7.58.0-2ubuntu3.8
From: p11-kit/libp11-kit0@0.23.9-2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2 > p11-kit/libp11-kit0@0.23.9-2
Fixed in: 0.23.9-2ubuntu0.1
✗ Medium severity vulnerability found in p11-kit/libp11-kit0
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-P11KIT-1052992
Introduced through: p11-kit/libp11-kit0@0.23.9-2, curl@7.58.0-2ubuntu3.8
From: p11-kit/libp11-kit0@0.23.9-2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2 > p11-kit/libp11-kit0@0.23.9-2
Fixed in: 0.23.9-2ubuntu0.1
✗ Medium severity vulnerability found in p11-kit/libp11-kit0
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-P11KIT-1052997
Introduced through: p11-kit/libp11-kit0@0.23.9-2, curl@7.58.0-2ubuntu3.8
From: p11-kit/libp11-kit0@0.23.9-2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2 > p11-kit/libp11-kit0@0.23.9-2
Fixed in: 0.23.9-2ubuntu0.1
✗ Medium severity vulnerability found in openssl/libssl1.1
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-1075560
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.8
✗ Medium severity vulnerability found in openssl/libssl1.1
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-1569460
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.13
✗ Medium severity vulnerability found in openldap/libldap-common
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1035738
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.7
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Reachable Assertion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1040478
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.8
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Reachable Assertion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1040482
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.8
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Reachable Assertion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064803
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Access of Resource Using Incompatible Type ('Type Confusion')
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064809
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Integer Underflow
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064815
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Loop with Unreachable Exit Condition ('Infinite Loop')
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064821
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: CVE-2020-36226
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064827
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Release of Invalid Pointer or Reference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064833
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Reachable Assertion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064839
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Double Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064845
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Out-of-bounds Read
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064851
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Integer Underflow
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1064857
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.9
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Reachable Assertion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-1075545
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.10
✗ Medium severity vulnerability found in openldap/libldap-common
Description: Resource Exhaustion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENLDAP-568034
Introduced through: curl@7.58.0-2ubuntu3.8, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > openldap/libldap-common@2.4.45+dfsg-1ubuntu1.4
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
From: gnupg2/gnupg@2.2.4-1ubuntu1.2 > gnupg2/dirmngr@2.2.4-1ubuntu1.2 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4
Fixed in: 2.4.45+dfsg-1ubuntu1.5
✗ Medium severity vulnerability found in nghttp2/libnghttp2-14
Description: Resource Exhaustion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-NGHTTP2-459190
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > nghttp2/libnghttp2-14@1.30.0-1ubuntu1
✗ Medium severity vulnerability found in nghttp2/libnghttp2-14
Description: Allocation of Resources Without Limits or Throttling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-NGHTTP2-459213
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > nghttp2/libnghttp2-14@1.30.0-1ubuntu1
✗ Medium severity vulnerability found in nettle/libnettle6
Description: Use of a Broken or Risky Cryptographic Algorithm
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-NETTLE-1090729
Introduced through: nettle/libnettle6@3.4-1, curl@7.58.0-2ubuntu3.8, nettle/libhogweed4@3.4-1
From: nettle/libnettle6@3.4-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > rtmpdump/librtmp1@2.4+20151223.gitfa8646d.1-1 > nettle/libnettle6@3.4-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2 > nettle/libnettle6@3.4-1
and 4 more...
Fixed in: 3.4-1ubuntu0.1
✗ Medium severity vulnerability found in nettle/libnettle6
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-NETTLE-1303241
Introduced through: nettle/libnettle6@3.4-1, curl@7.58.0-2ubuntu3.8, nettle/libhogweed4@3.4-1
From: nettle/libnettle6@3.4-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > rtmpdump/librtmp1@2.4+20151223.gitfa8646d.1-1 > nettle/libnettle6@3.4-1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > gnutls28/libgnutls30@3.5.18-1ubuntu1.2 > nettle/libnettle6@3.4-1
and 4 more...
Fixed in: 3.4.1-0ubuntu0.18.04.1
✗ Medium severity vulnerability found in lz4/liblz4-1
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LZ4-1278679
Introduced through: lz4/liblz4-1@0.0~r131-2ubuntu3, apt/libapt-pkg5.0@1.6.12
From: lz4/liblz4-1@0.0~r131-2ubuntu3
From: apt/libapt-pkg5.0@1.6.12 > lz4/liblz4-1@0.0~r131-2ubuntu3
From: apt/libapt-pkg5.0@1.6.12 > systemd/libsystemd0@237-3ubuntu10.33 > lz4/liblz4-1@0.0~r131-2ubuntu3
Fixed in: 0.0~r131-2ubuntu3.1
✗ Medium severity vulnerability found in libzstd/libzstd1
Description: Incorrect Default Permissions
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBZSTD-1082293
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > libzstd/libzstd1@1.3.3+dfsg-2ubuntu1.1
Fixed in: 1.3.3+dfsg-2ubuntu1.2
✗ Medium severity vulnerability found in libzstd/libzstd1
Description: Incorrect Default Permissions
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBZSTD-1082297
Introduced through: meta-common-packages@meta
From: meta-common-packages@meta > libzstd/libzstd1@1.3.3+dfsg-2ubuntu1.1
Fixed in: 1.3.3+dfsg-2ubuntu1.2
✗ Medium severity vulnerability found in libxml2
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBXML2-1278687
Introduced through: libxml2@2.9.4+dfsg1-6.1ubuntu1.2, shared-mime-info@1.9-2
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: shared-mime-info@1.9-2 > libxml2@2.9.4+dfsg1-6.1ubuntu1.2
Fixed in: 2.9.4+dfsg1-6.1ubuntu1.4
✗ Medium severity vulnerability found in libxml2
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBXML2-1278691
Introduced through: libxml2@2.9.4+dfsg1-6.1ubuntu1.2, shared-mime-info@1.9-2
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: shared-mime-info@1.9-2 > libxml2@2.9.4+dfsg1-6.1ubuntu1.2
Fixed in: 2.9.4+dfsg1-6.1ubuntu1.4
✗ Medium severity vulnerability found in libxml2
Description: Use After Free
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBXML2-1278695
Introduced through: libxml2@2.9.4+dfsg1-6.1ubuntu1.2, shared-mime-info@1.9-2
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: shared-mime-info@1.9-2 > libxml2@2.9.4+dfsg1-6.1ubuntu1.2
Fixed in: 2.9.4+dfsg1-6.1ubuntu1.4
✗ Medium severity vulnerability found in libxml2
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBXML2-1290395
Introduced through: libxml2@2.9.4+dfsg1-6.1ubuntu1.2, shared-mime-info@1.9-2
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: shared-mime-info@1.9-2 > libxml2@2.9.4+dfsg1-6.1ubuntu1.2
Fixed in: 2.9.4+dfsg1-6.1ubuntu1.4
✗ Medium severity vulnerability found in libgcrypt20
Description: Use of a Broken or Risky Cryptographic Algorithm
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBGCRYPT20-1583852
Introduced through: libgcrypt20@1.8.1-4ubuntu1.1, gnupg2/gpgv@2.2.4-1ubuntu1.2, gnupg2/gpgconf@2.2.4-1ubuntu1.2, apt/libapt-pkg5.0@1.6.12, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: libgcrypt20@1.8.1-4ubuntu1.1
From: gnupg2/gpgv@2.2.4-1ubuntu1.2 > libgcrypt20@1.8.1-4ubuntu1.1
From: gnupg2/gpgconf@2.2.4-1ubuntu1.2 > libgcrypt20@1.8.1-4ubuntu1.1
and 8 more...
Fixed in: 1.8.1-4ubuntu1.3
✗ Medium severity vulnerability found in libgcrypt20
Description: Race Condition
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-LIBGCRYPT20-467122
Introduced through: libgcrypt20@1.8.1-4ubuntu1.1, gnupg2/gpgv@2.2.4-1ubuntu1.2, gnupg2/gpgconf@2.2.4-1ubuntu1.2, apt/libapt-pkg5.0@1.6.12, gnupg2/gnupg@2.2.4-1ubuntu1.2
From: libgcrypt20@1.8.1-4ubuntu1.1
From: gnupg2/gpgv@2.2.4-1ubuntu1.2 > libgcrypt20@1.8.1-4ubuntu1.1
From: gnupg2/gpgconf@2.2.4-1ubuntu1.2 > libgcrypt20@1.8.1-4ubuntu1.1
and 8 more...
Fixed in: 1.8.1-4ubuntu1.2
✗ Medium severity vulnerability found in krb5/libkrb5support0
Description: Uncontrolled Recursion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-KRB5-1038546
Introduced through: curl@7.58.0-2ubuntu3.8, krb5/krb5-locales@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libk5crypto3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5-3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
and 5 more...
Fixed in: 1.16-2ubuntu0.2
✗ Medium severity vulnerability found in krb5/libkrb5support0
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-KRB5-1533539
Introduced through: curl@7.58.0-2ubuntu3.8, krb5/krb5-locales@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libk5crypto3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5-3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
and 5 more...
✗ Medium severity vulnerability found in krb5/libkrb5support0
Description: Reachable Assertion
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-KRB5-396230
Introduced through: curl@7.58.0-2ubuntu3.8, krb5/krb5-locales@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libk5crypto3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > krb5/libgssapi-krb5-2@1.16-2ubuntu0.1 > krb5/libkrb5-3@1.16-2ubuntu0.1 > krb5/libkrb5support0@1.16-2ubuntu0.1
and 5 more...
✗ Medium severity vulnerability found in icu/libicu60
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-ICU-560134
Introduced through: icu/libicu60@60.2-3ubuntu3, libxml2@2.9.4+dfsg1-6.1ubuntu1.2
From: icu/libicu60@60.2-3ubuntu3
From: libxml2@2.9.4+dfsg1-6.1ubuntu1.2 > icu/libicu60@60.2-3ubuntu3
Fixed in: 60.2-3ubuntu3.1
✗ Medium severity vulnerability found in glibc/libc6-dev
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-356555
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
Fixed in: 2.27-3ubuntu1.2
✗ Medium severity vulnerability found in glibc/libc6-dev
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-451227
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
Fixed in: 2.27-3ubuntu1.2
✗ Medium severity vulnerability found in glibc/libc6-dev
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-451228
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
Fixed in: 2.27-3ubuntu1.2
✗ Medium severity vulnerability found in glibc/libc6-dev
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIBC-571394
Introduced through: build-essential@12.4ubuntu1, zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2, libjpeg8-empty/libjpeg-dev@8c-2ubuntu8, python3-defaults/python3-dev@3.6.7-1~18.04, glibc/libc-bin@2.27-3ubuntu1, meta-common-packages@meta
From: build-essential@12.4ubuntu1 > glibc/libc6-dev@2.27-3ubuntu1
From: zlib/zlib1g-dev@1:1.2.11.dfsg-0ubuntu2 > glibc/libc6-dev@2.27-3ubuntu1
From: libjpeg8-empty/libjpeg-dev@8c-2ubuntu8 > libjpeg8-empty/libjpeg8-dev@8c-2ubuntu8 > libjpeg-turbo/libjpeg-turbo8-dev@1.5.2-0ubuntu5.18.04.4 > glibc/libc6-dev@2.27-3ubuntu1
and 6 more...
Fixed in: 2.27-3ubuntu1.2
✗ Medium severity vulnerability found in glib2.0/libglib2.0-0
Description: Incorrect Conversion between Numeric Types
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIB20-1075539
Introduced through: glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4, dbus-python/python3-dbus@1.2.6-1, pygobject/python3-gi@3.26.1-2ubuntu1, shared-mime-info@1.9-2, glib2.0/libglib2.0-data@2.56.4-0ubuntu0.18.04.4
From: glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
From: dbus-python/python3-dbus@1.2.6-1 > glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
From: pygobject/python3-gi@3.26.1-2ubuntu1 > glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
and 4 more...
Fixed in: 2.56.4-0ubuntu0.18.04.7
✗ Medium severity vulnerability found in glib2.0/libglib2.0-0
Description: Incorrect Conversion between Numeric Types
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIB20-1075542
Introduced through: glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4, dbus-python/python3-dbus@1.2.6-1, pygobject/python3-gi@3.26.1-2ubuntu1, shared-mime-info@1.9-2, glib2.0/libglib2.0-data@2.56.4-0ubuntu0.18.04.4
From: glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
From: dbus-python/python3-dbus@1.2.6-1 > glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
From: pygobject/python3-gi@3.26.1-2ubuntu1 > glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
and 4 more...
Fixed in: 2.56.4-0ubuntu0.18.04.7
✗ Medium severity vulnerability found in glib2.0/libglib2.0-0
Description: Link Following
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GLIB20-1085496
Introduced through: glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4, dbus-python/python3-dbus@1.2.6-1, pygobject/python3-gi@3.26.1-2ubuntu1, shared-mime-info@1.9-2, glib2.0/libglib2.0-data@2.56.4-0ubuntu0.18.04.4
From: glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
From: dbus-python/python3-dbus@1.2.6-1 > glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
From: pygobject/python3-gi@3.26.1-2ubuntu1 > glib2.0/libglib2.0-0@2.56.4-0ubuntu0.18.04.4
and 4 more...
Fixed in: 2.56.4-0ubuntu0.18.04.8
✗ Medium severity vulnerability found in gcc-defaults/cpp
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GCCDEFAULTS-572168
Introduced through: gcc-defaults/cpp@4:7.4.0-1ubuntu2.3, build-essential@12.4ubuntu1, gcc-defaults/gcc@4:7.4.0-1ubuntu2.3, gcc-defaults/g++@4:7.4.0-1ubuntu2.3
From: gcc-defaults/cpp@4:7.4.0-1ubuntu2.3
From: build-essential@12.4ubuntu1 > gcc-defaults/gcc@4:7.4.0-1ubuntu2.3 > gcc-defaults/cpp@4:7.4.0-1ubuntu2.3
From: build-essential@12.4ubuntu1 > gcc-defaults/g++@4:7.4.0-1ubuntu2.3 > gcc-defaults/cpp@4:7.4.0-1ubuntu2.3
and 5 more...
✗ Medium severity vulnerability found in gcc-8/libstdc++6
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GCC8-572149
Introduced through: gcc-8/libstdc++6@8.3.0-6ubuntu1~18.04.1, apt/libapt-pkg5.0@1.6.12, apt@1.6.12, gcc-7@7.4.0-1ubuntu1~18.04.1, gcc-8/libcc1-0@8.3.0-6ubuntu1~18.04.1, icu/libicu60@60.2-3ubuntu3, build-essential@12.4ubuntu1, gcc-8/libatomic1@8.3.0-6ubuntu1~18.04.1, gcc-8/libgomp1@8.3.0-6ubuntu1~18.04.1, gcc-8/libitm1@8.3.0-6ubuntu1~18.04.1, gcc-8/liblsan0@8.3.0-6ubuntu1~18.04.1, gcc-8/libmpx2@8.3.0-6ubuntu1~18.04.1, gcc-8/libquadmath0@8.3.0-6ubuntu1~18.04.1, gcc-8/libtsan0@8.3.0-6ubuntu1~18.04.1, meta-common-packages@meta
From: gcc-8/libstdc++6@8.3.0-6ubuntu1~18.04.1
From: apt/libapt-pkg5.0@1.6.12 > gcc-8/libstdc++6@8.3.0-6ubuntu1~18.04.1
From: apt@1.6.12 > gcc-8/libstdc++6@8.3.0-6ubuntu1~18.04.1
and 24 more...
✗ Medium severity vulnerability found in gcc-7
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-GCC7-572147
Introduced through: gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, gcc-7/gcc-7-base@7.4.0-1ubuntu1~18.04.1, gcc-7/libasan4@7.4.0-1ubuntu1~18.04.1, gcc-defaults/cpp@4:7.4.0-1ubuntu2.3, gcc-7/libgcc-7-dev@7.4.0-1ubuntu1~18.04.1, gcc-7/libstdc++-7-dev@7.4.0-1ubuntu1~18.04.1, gcc-7/g++-7@7.4.0-1ubuntu1~18.04.1, gcc-7/cpp-7@7.4.0-1ubuntu1~18.04.1, gcc-7/libcilkrts5@7.4.0-1ubuntu1~18.04.1, gcc-7/libubsan0@7.4.0-1ubuntu1~18.04.1
From: gcc-7@7.4.0-1ubuntu1~18.04.1
From: build-essential@12.4ubuntu1 > gcc-defaults/gcc@4:7.4.0-1ubuntu2.3 > gcc-7@7.4.0-1ubuntu1~18.04.1
From: build-essential@12.4ubuntu1 > gcc-defaults/g++@4:7.4.0-1ubuntu2.3 > gcc-7@7.4.0-1ubuntu1~18.04.1
and 26 more...
✗ Medium severity vulnerability found in e2fsprogs/libext2fs2
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-E2FSPROGS-541250
Introduced through: e2fsprogs/libext2fs2@1.44.1-1ubuntu1.2, e2fsprogs@1.44.1-1ubuntu1.2, e2fsprogs/libss2@1.44.1-1ubuntu1.2, meta-common-packages@meta
From: e2fsprogs/libext2fs2@1.44.1-1ubuntu1.2
From: e2fsprogs@1.44.1-1ubuntu1.2 > e2fsprogs/libext2fs2@1.44.1-1ubuntu1.2
From: e2fsprogs/libss2@1.44.1-1ubuntu1.2
and 3 more...
Fixed in: 1.44.1-1ubuntu1.3
✗ Medium severity vulnerability found in dbus
Description: Improper Resource Shutdown or Release
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-DBUS-571314
Introduced through: dbus@1.12.2-1ubuntu1.1, python-keyring/python3-keyring@10.6.0-1, dbus/libdbus-1-3@1.12.2-1ubuntu1.1, dbus-python/python3-dbus@1.2.6-1
From: dbus@1.12.2-1ubuntu1.1
From: python-keyring/python3-keyring@10.6.0-1 > python-secretstorage/python3-secretstorage@2.3.1-2 > dbus@1.12.2-1ubuntu1.1
From: dbus/libdbus-1-3@1.12.2-1ubuntu1.1
and 2 more...
Fixed in: 1.12.2-1ubuntu1.2
✗ Medium severity vulnerability found in cyrus-sasl2/libsasl2-modules-db
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CYRUSSASL2-543484
Introduced through: curl@7.58.0-2ubuntu3.8, cyrus-sasl2/libsasl2-modules@2.1.27~101-g0780600+dfsg-3ubuntu2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > cyrus-sasl2/libsasl2-2@2.1.27~101-g0780600+dfsg-3ubuntu2 > cyrus-sasl2/libsasl2-modules-db@2.1.27~101-g0780600+dfsg-3ubuntu2
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8 > openldap/libldap-2.4-2@2.4.45+dfsg-1ubuntu1.4 > cyrus-sasl2/libsasl2-2@2.1.27~101-g0780600+dfsg-3ubuntu2
From: cyrus-sasl2/libsasl2-modules@2.1.27~101-g0780600+dfsg-3ubuntu2
Fixed in: 2.1.27~101-g0780600+dfsg-3ubuntu2.1
✗ Medium severity vulnerability found in curl/libcurl4
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1049517
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.12
✗ Medium severity vulnerability found in curl/libcurl4
Description: Improper Certificate Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1049523
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.12
✗ Medium severity vulnerability found in curl/libcurl4
Description: Information Exposure
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1090019
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.13
✗ Medium severity vulnerability found in curl/libcurl4
Description: Use of Incorrectly-Resolved Name or Reference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1321093
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.14
✗ Medium severity vulnerability found in curl/libcurl4
Description: Use of Uninitialized Resource
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1321098
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.14
✗ Medium severity vulnerability found in curl/libcurl4
Description: Insufficient Verification of Data Authenticity
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1585507
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.15
✗ Medium severity vulnerability found in curl/libcurl4
Description: Cleartext Transmission of Sensitive Information
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-1585513
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.15
✗ Medium severity vulnerability found in curl/libcurl4
Description: Arbitrary Code Injection
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-CURL-573154
Introduced through: curl@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8 > curl/libcurl4@7.58.0-2ubuntu3.8
From: curl@7.58.0-2ubuntu3.8
Fixed in: 7.58.0-2ubuntu3.9
✗ Medium severity vulnerability found in binutils
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-456359
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Medium severity vulnerability found in binutils
Description: Out-of-bounds Write
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561072
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Medium severity vulnerability found in binutils
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-BINUTILS-561074
Introduced through: binutils@2.30-21ubuntu1~18.04.2, gcc-7@7.4.0-1ubuntu1~18.04.1, build-essential@12.4ubuntu1, binutils/binutils-common@2.30-21ubuntu1~18.04.2, binutils/binutils-x86-64-linux-gnu@2.30-21ubuntu1~18.04.2, binutils/libbinutils@2.30-21ubuntu1~18.04.2
From: binutils@2.30-21ubuntu1~18.04.2
From: gcc-7@7.4.0-1ubuntu1~18.04.1 > binutils@2.30-21ubuntu1~18.04.2
From: build-essential@12.4ubuntu1 > dpkg/dpkg-dev@1.19.0.5ubuntu2.3 > binutils@2.30-21ubuntu1~18.04.2
and 9 more...
Fixed in: 2.30-21ubuntu1~18.04.3
✗ Medium severity vulnerability found in apt/libapt-pkg5.0
Description: Integer Overflow or Wraparound
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-APT-1050039
Introduced through: apt/libapt-pkg5.0@1.6.12, apt@1.6.12
From: apt/libapt-pkg5.0@1.6.12
From: apt@1.6.12 > apt/libapt-pkg5.0@1.6.12
From: apt@1.6.12
Fixed in: 1.6.12ubuntu0.2
✗ Medium severity vulnerability found in apt/libapt-pkg5.0
Description: Improper Input Validation
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-APT-569464
Introduced through: apt/libapt-pkg5.0@1.6.12, apt@1.6.12
From: apt/libapt-pkg5.0@1.6.12
From: apt@1.6.12 > apt/libapt-pkg5.0@1.6.12
From: apt@1.6.12
Fixed in: 1.6.12ubuntu0.1
✗ Medium severity vulnerability found in apparmor/libapparmor1
Description: Security Features
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-APPARMOR-277330
Introduced through: apparmor/libapparmor1@2.12-4ubuntu5.1, python-keyring/python3-keyring@10.6.0-1
From: apparmor/libapparmor1@2.12-4ubuntu5.1
From: python-keyring/python3-keyring@10.6.0-1 > python-secretstorage/python3-secretstorage@2.3.1-2 > dbus@1.12.2-1ubuntu1.1 > apparmor/libapparmor1@2.12-4ubuntu5.1
✗ High severity vulnerability found in systemd/libsystemd0
Description: Allocation of Resources Without Limits or Throttling
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-SYSTEMD-1320128
Introduced through: systemd/libsystemd0@237-3ubuntu10.33, apt/libapt-pkg5.0@1.6.12, procps/libprocps6@2:3.3.12-3ubuntu1.2, util-linux/bsdutils@1:2.31.1-0.4ubuntu3.4, dbus-python/python3-dbus@1.2.6-1, util-linux/mount@2.31.1-0.4ubuntu3.4, python-keyring/python3-keyring@10.6.0-1, systemd/libudev1@237-3ubuntu10.33
From: systemd/libsystemd0@237-3ubuntu10.33
From: apt/libapt-pkg5.0@1.6.12 > systemd/libsystemd0@237-3ubuntu10.33
From: procps/libprocps6@2:3.3.12-3ubuntu1.2 > systemd/libsystemd0@237-3ubuntu10.33
and 7 more...
Fixed in: 237-3ubuntu10.49
✗ High severity vulnerability found in openssl/libssl1.1
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-1049135
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.7
✗ High severity vulnerability found in openssl/libssl1.1
Description: NULL Pointer Dereference
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-1089073
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.9
✗ High severity vulnerability found in openssl/libssl1.1
Description: Buffer Overflow
Info: https://snyk.io/vuln/SNYK-UBUNTU1804-OPENSSL-1569474
Introduced through: meta-common-packages@meta, python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1
From: meta-common-packages@meta > openssl/libssl1.1@1.1.1-1ubuntu2.1~18.04.5
From: python-pip/python3-pip@9.0.1-2.3~ubuntu1.18.04.1 > ca-certificates@20180409 > openssl@1.1.1-1ubuntu2.1~18.04.5
Fixed in: 1.1.1-1ubuntu2.1~18.04.13
Package manager: deb
Project name: docker-image|platerecognizer/alpr
Docker image: platerecognizer/alpr
Platform: linux/amd64
Base image: tensorflow/tensorflow:1.15.2
Tested 244 dependencies for known vulnerabilities, found 209 vulnerabilities.
Base Image Vulnerabilities Severity
tensorflow/tensorflow:1.15.2 189 0 critical, 4 high, 74 medium, 111 low
Recommendations for base image upgrade:
Minor upgrades
Base Image Vulnerabilities Severity
tensorflow/tensorflow:1.15.5 85 0 critical, 3 high, 36 medium, 46 low
Major upgrades
Base Image Vulnerabilities Severity
tensorflow/tensorflow:2.7.0rc1 29 0 critical, 0 high, 4 medium, 25 low
Alternative image types
Base Image Vulnerabilities Severity
tensorflow/tensorflow:2.7.0rc0-jupyter 31 0 critical, 0 high, 5 medium, 26 low
tensorflow/tensorflow:2.7.0rc0-gpu 51 0 critical, 0 high, 21 medium, 30 low
tensorflow/tensorflow:2.7.0rc0-gpu-jupyter 53 0 critical, 0 high, 22 medium, 31 low
tensorflow/tensorflow:2.5.0-custom-op-ubuntu16 319 0 critical, 1 high, 52 medium, 266 low
For more free scans that keep your images secure, sign up to Snyk at https://dockr.ly/3ePqVcp
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment