Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestions search

With package: netsurf.libnsbmp

Found 4 matching suggestions

View:
Compact
Detailed
created 2 months ago Activity log
  • Created suggestion
Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in …

Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the last row of RLE data in a crafted BMP file.

Affected products

Libnsbmp
  • ==0.1.2

Matching in nixpkgs

Package maintainers

created 2 months ago Activity log
  • Created suggestion
libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a …

libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read) via a crafted color table to the (1) bmp_decode_rgb or (2) bmp_decode_rle function.

Affected products

Libnsbmp
  • ==0.1.2

Matching in nixpkgs

Package maintainers

created 2 months ago Activity log
  • Created suggestion
surf: cookie jar has read access from other local user

surf: cookie jar has read access from other local user

Affected products

surf
  • ==Fixed in 0.6

Matching in nixpkgs

pkgs.surf

Simple web browser based on WebKitGTK

pkgs.glsurf

Program to draw implicit surfaces and curves

pkgs.surfer

Extensible and Snappy Waveform Viewer

pkgs.surfraw

Provides a fast unix command line interface to a variety of popular WWW search engines and other artifacts of power

pkgs.surf-display

Kiosk browser session manager based on the surf browser

pkgs.netsurf.libcss

Cascading Style Sheets library for netsurf browser

pkgs.netsurf.libdom

Document Object Model library for netsurf browser

Package maintainers

created 2 months ago Activity log
  • Created suggestion
Information-disclosure vulnerability in Netsurf through 2.8 due to a world-readable …

Information-disclosure vulnerability in Netsurf through 2.8 due to a world-readable cookie jar.

References

Affected products

netsurf
  • ==through 2.8

Matching in nixpkgs

pkgs.netsurf.libcss

Cascading Style Sheets library for netsurf browser

pkgs.netsurf.libdom

Document Object Model library for netsurf browser

Package maintainers