A vulnerability classified as critical has been found in Ardour 5.12. This affects the function xmlFreeDoc/xmlXPathFreeContext
in the library ardour/libs/pbd/xml++.cc. Applying a patch is able to eliminate this problem. The bugfix is ready for download at github.com.
Ardour 5.12 ardour/libs/pbd/xml++.cc xmlFreeDoc/xmlXPathFreeContext use after free
- Virtual Patching
- October 9, 2021
- 4:06 pm
CVE-2024-52587 : STEP-SECURITY HARDEN-RUNNER UP TO 2.10.1 ENVIRONMENT VARIABLE OS COMMAND INJECTION
Description StepSecurity’s Harden-Runner provides network egress filtering and runtime security for GitHub-hosted and self-hosted runners. Versions of step-security/harden-runner prior to
CVE-2024-50282 : LINUX KERNEL UP TO 6.11.7 AMD GPU AMDGPU_DEBUGFS_GPRWAVE_READ BUFFER OVERFLOW
Description In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read() Avoid a
CVE-2024-50919 : JPRESS 5.1.1 ON WINDOWS JSP FILE UNRESTRICTED UPLOAD
Description Jpress until v5.1.1 has arbitrary file uploads on the windows platform, and the construction of non-standard file formats such