Automatically generated suggestions

Create Draft to queue a suggestion for refinement.

Dismiss to remove a suggestion from the queue.

CVE-2023-4256
5.5 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): LOCAL
  • Attack complexity (AC): LOW
  • Privileges required (PR): NONE
  • User interaction (UI): REQUIRED
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): NONE
  • Integrity impact (I): NONE
  • Availability impact (A): HIGH
created 2 months, 3 weeks ago
Tcpreplay: tcprewrite: double free in tcpedit_dlt_cleanup() in plugins/dlt_plugins.c

Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function within plugins/dlt_plugins.c. This vulnerability can be exploited by supplying a specifically crafted file to the tcprewrite binary. This flaw enables a local attacker to initiate a Denial of Service (DoS) attack.

tcpreplay

pkgs.tcpreplay

Suite of utilities for editing and replaying network traffic
Package maintainers: 1
CVE-2023-5764
7.1 HIGH
  • CVSS version: 3.1
  • Attack vector (AV): LOCAL
  • Attack complexity (AC): LOW
  • Privileges required (PR): LOW
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): HIGH
  • Availability impact (A): NONE
created 2 months, 3 weeks ago
Ansible: template injection

A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the unsafe designation from template data. This issue could allow an attacker to use a specially crafted file to introduce code injection when supplying templating data.

ansible
ansible-core
*

pkgs.ansible-cmdb

Generate host overview from ansible fact gathering output

pkgs.ansible-lint

Best practices checker for Ansible

pkgs.ansible_2_16

Radically simple IT automation

pkgs.ansible_2_17

Radically simple IT automation

pkgs.ansible_2_18

Radically simple IT automation

pkgs.ansible_2_19

Radically simple IT automation

pkgs.ansible-doctor

Annotation based documentation for your Ansible roles

pkgs.ansible-builder

Ansible execution environment builder

pkgs.ansible-navigator

Text-based user interface (TUI) for Ansible

pkgs.ansible-language-server

Ansible Language Server

pkgs.python312Packages.ansible

Radically simple IT automation

pkgs.python313Packages.ansible

Radically simple IT automation

pkgs.terraform-providers.ansible

pkgs.python312Packages.ansible-core

Radically simple IT automation

pkgs.python313Packages.ansible-core

Radically simple IT automation

pkgs.python312Packages.ansible-compat

Function collection that help interacting with various versions of Ansible

pkgs.python312Packages.ansible-kernel

Ansible kernel for Jupyter

pkgs.python312Packages.ansible-runner

Helps when interfacing with Ansible

pkgs.python312Packages.pytest-ansible

Plugin for pytest to simplify calling ansible modules from tests or fixtures

pkgs.python313Packages.ansible-compat

Function collection that help interacting with various versions of Ansible

pkgs.python313Packages.ansible-kernel

Ansible kernel for Jupyter

pkgs.python313Packages.ansible-runner

Helps when interfacing with Ansible

pkgs.python313Packages.pytest-ansible

Plugin for pytest to simplify calling ansible modules from tests or fixtures

pkgs.vscode-extensions.redhat.ansible

Ansible language support

pkgs.python312Packages.ansible-builder

Ansible execution environment builder

pkgs.python313Packages.ansible-builder

Ansible execution environment builder

pkgs.python312Packages.ansible-pylibssh

Python bindings to client functionality of libssh specific to Ansible use case

pkgs.python312Packages.ansible-vault-rw

This project aim to R/W an ansible-vault yaml file

pkgs.python313Packages.ansible-pylibssh

Python bindings to client functionality of libssh specific to Ansible use case

pkgs.python313Packages.ansible-vault-rw

This project aim to R/W an ansible-vault yaml file
Package maintainers: 13
CVE-2023-4255
5.5 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): LOCAL
  • Attack complexity (AC): LOW
  • Privileges required (PR): NONE
  • User interaction (UI): REQUIRED
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): NONE
  • Integrity impact (I): NONE
  • Availability impact (A): HIGH
created 2 months, 3 weeks ago
W3m: out-of-bounds write in function checktype() in etc.c (incomplete fix for cve-2022-38223)

An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within the W3M application. This vulnerability is triggered by supplying a specially crafted HTML file to the w3m binary. Exploitation of this flaw could lead to application crashes, resulting in a denial of service condition.

w3m

pkgs.w3m-nox

Text-mode web browser

pkgs.w3m-full

Text-mode web browser

pkgs.w3m-batch

Text-mode web browser

pkgs.w3m-nographics

Text-mode web browser
Package maintainers: 2