Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

11 – 13 of 13 results


CVE-2017-5662

Medium priority

Some fixes available 1 of 6

In Apache Batik before 1.9, files lying on the filesystem of the server which uses batik can be revealed to arbitrary users who send maliciously formed SVG files. The file types that can be shown depend on the user context in...

1 affected packages

batik

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
batik Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2015-0250

Medium priority

Some fixes available 3 of 4

XML external entity (XXE) vulnerability in the SVG to (1) PNG and (2) JPG conversion classes in Apache Batik 1.x before 1.8 allows remote attackers to read arbitrary files or cause a denial of service via a crafted SVG file.

1 affected packages

batik

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
batik
Show less packages

CVE-2005-0508

Unknown priority
Fixed

Unknown vulnerability in Squiggle for Batik before 1.5.1 allows attackers to bypass certain access controls via certain features of the Rhino scripting engine due to a "script security issue."

1 affected packages

batik

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
batik
Show less packages