![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.1.12.2024.6627.1 |
Category: | Ubuntu Local Security Checks |
Title: | Ubuntu: Security Advisory (USN-6627-1) |
Summary: | The remote host is missing an update for the 'libde265' package(s) announced via the USN-6627-1 advisory. |
Description: | Summary: The remote host is missing an update for the 'libde265' package(s) announced via the USN-6627-1 advisory. Vulnerability Insight: It was discovered that libde265 could be made to read out of bounds. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to cause a denial of service. (CVE-2021-35452, CVE-2021-36411, CVE-2022-43238, CVE-2022-43241, CVE-2022-43242) It was discovered that libde265 did not properly manage memory. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue only affected Ubuntu 22.04 LTS. (CVE-2021-36408) It was discovered that libde265 contained a logical error. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to cause a denial of service. (CVE-2021-36409) It was discovered that libde265 could be made to write out of bounds. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2021-36410, CVE-2022-43235, CVE-2022-43236, CVE-2022-43237, CVE-2022-43239, CVE-2022-43240, CVE-2022-43243, CVE-2022-43248, CVE-2022-43252, CVE-2022-43253) It was discovered that libde265 could be made to write out of bounds. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue only affected Ubuntu 22.04 LTS. (CVE-2022-1253) Affected Software/OS: 'libde265' package(s) on Ubuntu 16.04, Ubuntu 18.04, Ubuntu 20.04, Ubuntu 22.04. Solution: Please install the updated package(s). CVSS Score: 7.5 CVSS Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2021-35452 Debian Security Information: DSA-5346 (Google Search) https://www.debian.org/security/2023/dsa-5346 https://github.com/strukturag/libde265/issues/298 https://lists.debian.org/debian-lts-announce/2022/12/msg00027.html Common Vulnerability Exposure (CVE) ID: CVE-2021-36408 https://github.com/strukturag/libde265/issues/299 Common Vulnerability Exposure (CVE) ID: CVE-2021-36409 https://github.com/strukturag/libde265/issues/300 Common Vulnerability Exposure (CVE) ID: CVE-2021-36410 https://github.com/strukturag/libde265/issues/301 Common Vulnerability Exposure (CVE) ID: CVE-2021-36411 https://github.com/strukturag/libde265/issues/302 Common Vulnerability Exposure (CVE) ID: CVE-2022-1253 https://huntr.dev/bounties/1-other-strukturag/libde265 https://github.com/strukturag/libde265/commit/8e89fe0e175d2870c39486fdd09250b230ec10b8 Common Vulnerability Exposure (CVE) ID: CVE-2022-43235 https://github.com/strukturag/libde265/issues/337 https://lists.debian.org/debian-lts-announce/2023/01/msg00020.html Common Vulnerability Exposure (CVE) ID: CVE-2022-43236 https://github.com/strukturag/libde265/issues/343 Common Vulnerability Exposure (CVE) ID: CVE-2022-43237 https://github.com/strukturag/libde265/issues/344 Common Vulnerability Exposure (CVE) ID: CVE-2022-43238 https://github.com/strukturag/libde265/issues/336 Common Vulnerability Exposure (CVE) ID: CVE-2022-43239 https://github.com/strukturag/libde265/issues/341 Common Vulnerability Exposure (CVE) ID: CVE-2022-43240 https://github.com/strukturag/libde265/issues/335 Common Vulnerability Exposure (CVE) ID: CVE-2022-43241 https://github.com/strukturag/libde265/issues/338 Common Vulnerability Exposure (CVE) ID: CVE-2022-43242 https://github.com/strukturag/libde265/issues/340 Common Vulnerability Exposure (CVE) ID: CVE-2022-43243 https://github.com/strukturag/libde265/issues/339 Common Vulnerability Exposure (CVE) ID: CVE-2022-43248 https://github.com/strukturag/libde265/issues/349 Common Vulnerability Exposure (CVE) ID: CVE-2022-43252 https://github.com/strukturag/libde265/issues/347 Common Vulnerability Exposure (CVE) ID: CVE-2022-43253 https://github.com/strukturag/libde265/issues/348 |
Copyright | Copyright (C) 2024 Greenbone AG |
This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |