Msrc Azl3 Fltk 1.3.8-1 On Azure Linux 3.0 vulnerabilities
11 known vulnerabilities affecting msrc/azl3_fltk_1.3.8-1_on_azure_linux_3.0.
Total CVEs
11
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH6MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2023-6992MEDIUMCVSS 4.02024-01-09
CVE-2023-6992 [MEDIUM] CWE-20 Memory corruption issues is Cloudflare zlib implementation
Memory corruption issues is Cloudflare zlib implementation
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with w
msrc
CVE-2020-14152HIGHCVSS 7.12020-06-09
CVE-2020-14152 [HIGH] CWE-400 In IJG JPEG (aka libjpeg) before 9d, jpeg_mem_available() in jmemnobs.c in djpeg does not honor the max_memory_to_use setting, possibly causing excessive memory consumption.
In IJG JPEG (aka libjpeg) before 9d, jpeg_mem_available() in jmemnobs.c in djpeg does not honor the max_memory_to_use setting, possibly causing excessive memory consumption.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affect
msrc
CVE-2017-12652CRITICALCVSS 9.82019-07-09
CVE-2017-12652 [CRITICAL] CWE-20 libpng before 1.6.32 does not properly check the length of chunks against the user limit.
libpng before 1.6.32 does not properly check the length of chunks against the user limit.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most re
msrc
CVE-2019-7317MEDIUMCVSS 5.32019-02-12
CVE-2019-7317 [MEDIUM] CWE-416 png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our custome
msrc
CVE-2015-2158HIGHCVSS 7.82017-10-10
CVE-2015-2158 [HIGH] Off-by-one error in the pngcrush_measure_idat function in pngcrush.c in pngcrush before 1.7.84 allows remote attackers to cause a denial of service
Off-by-one error in the pngcrush_measure_idat function in pngcrush.c in pngcrush before 1.7.84 allows remote attackers to cause a denial of service
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our cus
msrc
CVE-2016-9843CRITICALCVSS 9.82017-05-09
CVE-2016-9843 [CRITICAL] The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.
The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerabilit
msrc
CVE-2016-9841CRITICALCVSS 9.82017-05-09
CVE-2016-9841 [CRITICAL] inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic
inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use t
msrc
CVE-2016-9842HIGHCVSS 8.82017-05-09
CVE-2016-9842 [HIGH] The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact
The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the com
msrc
CVE-2016-9840HIGHCVSS 8.82017-05-09
CVE-2016-9840 [HIGH] inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic
inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the
msrc
CVE-2016-10087HIGHCVSS 7.52017-01-10
CVE-2016-10087 [HIGH] The libpng 0.71 allows context-dependent attackers to cause a NULL pointer dereference vectors
The libpng 0.71 allows context-dependent attackers to cause a NULL pointer dereference vectors
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most rec
msrc
CVE-2015-8472HIGHCVSS 7.32016-01-12
CVE-2015-8472 [HIGH] Buffer overflow in libpng allows remote attackers to cause a denial of service
Buffer overflow in libpng allows remote attackers to cause a denial of service
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of t
msrc