UBUNTU-CVE-2019-15903

Source
https://ubuntu.com/security/CVE-2019-15903
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2019-15903
Upstream
Downstream
Related
Published
2019-09-04T00:00:00Z
Modified
2026-02-04T03:35:06.631151Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

In libexpat before 2.2.8, crafted XML input could fool the parser into changing from DTD parsing to document parsing too early; a consecutive call to XMLGetCurrentLineNumber (or XMLGetCurrentColumnNumber) then resulted in a heap-based buffer over-read.

References

Affected packages

Ubuntu:14.04:LTS
xmlrpc-c

Package

Name
xmlrpc-c
Purl
pkg:deb/ubuntu/xmlrpc-c@1.33.06-0ubuntu1?arch=source&distro=trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.16.33-3.2ubuntu3
1.33.06-0ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.33.06-0ubuntu1",
            "binary_name": "libxmlrpc-c++8"
        },
        {
            "binary_version": "1.33.06-0ubuntu1",
            "binary_name": "libxmlrpc-c++8-dev"
        },
        {
            "binary_version": "1.33.06-0ubuntu1",
            "binary_name": "libxmlrpc-core-c3"
        },
        {
            "binary_version": "1.33.06-0ubuntu1",
            "binary_name": "libxmlrpc-core-c3-dev"
        },
        {
            "binary_version": "1.33.06-0ubuntu1",
            "binary_name": "xmlrpc-api-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:16.04:LTS
chromium-browser

Package

Name
chromium-browser
Purl
pkg:deb/ubuntu/chromium-browser@78.0.3904.70-0ubuntu0.16.04.2?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
78.0.3904.70-0ubuntu0.16.04.2

Affected versions

45.*
45.0.2454.101-0ubuntu1.1201
47.*
47.0.2526.73-0ubuntu1.1218
47.0.2526.106-0ubuntu1.1221
48.*
48.0.2564.82-0ubuntu1.1222
48.0.2564.116-0ubuntu1.1229
49.*
49.0.2623.87-0ubuntu1.1232
49.0.2623.108-0ubuntu1.1233
50.*
50.0.2661.102-0ubuntu0.16.04.1.1237
51.*
51.0.2704.79-0ubuntu0.16.04.1.1242
52.*
52.0.2743.116-0ubuntu0.16.04.1.1250
53.*
53.0.2785.143-0ubuntu0.16.04.1.1254
53.0.2785.143-0ubuntu0.16.04.1.1257
55.*
55.0.2883.87-0ubuntu0.16.04.1263
56.*
56.0.2924.76-0ubuntu0.16.04.1268
57.*
57.0.2987.98-0ubuntu0.16.04.1276
58.*
58.0.3029.81-0ubuntu0.16.04.1277
58.0.3029.96-0ubuntu0.16.04.1279
58.0.3029.110-0ubuntu0.16.04.1281
59.*
59.0.3071.109-0ubuntu0.16.04.1289
59.0.3071.109-0ubuntu0.16.04.1291
60.*
60.0.3112.78-0ubuntu0.16.04.1293
60.0.3112.113-0ubuntu0.16.04.1298
61.*
61.0.3163.79-0ubuntu0.16.04.1300
61.0.3163.100-0ubuntu0.16.04.1306
62.*
62.0.3202.62-0ubuntu0.16.04.1308
62.0.3202.75-0ubuntu0.16.04.1313
62.0.3202.89-0ubuntu0.16.04.1315
62.0.3202.94-0ubuntu0.16.04.1317
63.*
63.0.3239.84-0ubuntu0.16.04.1
63.0.3239.132-0ubuntu0.16.04.1
64.*
64.0.3282.119-0ubuntu0.16.04.1
64.0.3282.140-0ubuntu0.16.04.1
64.0.3282.167-0ubuntu0.16.04.1
65.*
65.0.3325.181-0ubuntu0.16.04.1
66.*
66.0.3359.139-0ubuntu0.16.04.3
66.0.3359.181-0ubuntu0.16.04.1
67.*
67.0.3396.99-0ubuntu0.16.04.2
68.*
68.0.3440.75-0ubuntu0.16.04.1
68.0.3440.106-0ubuntu0.16.04.1
69.*
69.0.3497.81-0ubuntu0.16.04.1
70.*
70.0.3538.67-0ubuntu0.16.04.1
70.0.3538.77-0ubuntu0.16.04.1
70.0.3538.110-0ubuntu0.16.04.1
71.*
71.0.3578.80-0ubuntu0.16.04.1
71.0.3578.98-0ubuntu0.16.04.1
72.*
72.0.3626.119-0ubuntu0.16.04.1
72.0.3626.121-0ubuntu0.16.04.1
73.*
73.0.3683.75-0ubuntu0.16.04.1
73.0.3683.86-0ubuntu0.16.04.1
74.*
74.0.3729.169-0ubuntu0.16.04.1
76.*
76.0.3809.87-0ubuntu0.16.04.1
76.0.3809.100-0ubuntu0.16.04.1
77.*
77.0.3865.90-0ubuntu0.16.04.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "78.0.3904.70-0ubuntu0.16.04.2",
            "binary_name": "chromium-browser"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu0.16.04.2",
            "binary_name": "chromium-browser-l10n"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu0.16.04.2",
            "binary_name": "chromium-chromedriver"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu0.16.04.2",
            "binary_name": "chromium-codecs-ffmpeg"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu0.16.04.2",
            "binary_name": "chromium-codecs-ffmpeg-extra"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
expat

Package

Name
expat
Purl
pkg:deb/ubuntu/expat@2.1.0-7ubuntu0.16.04.5?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.1.0-7ubuntu0.16.04.5

Affected versions

2.*
2.1.0-7
2.1.0-7ubuntu0.16.04.1
2.1.0-7ubuntu0.16.04.2
2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.4

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.1.0-7ubuntu0.16.04.5",
            "binary_name": "expat"
        },
        {
            "binary_version": "2.1.0-7ubuntu0.16.04.5",
            "binary_name": "lib64expat1"
        },
        {
            "binary_version": "2.1.0-7ubuntu0.16.04.5",
            "binary_name": "lib64expat1-dev"
        },
        {
            "binary_version": "2.1.0-7ubuntu0.16.04.5",
            "binary_name": "libexpat1"
        },
        {
            "binary_version": "2.1.0-7ubuntu0.16.04.5",
            "binary_name": "libexpat1-dev"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
firefox

Package

Name
firefox
Purl
pkg:deb/ubuntu/firefox@70.0+build2-0ubuntu0.16.04.1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
70.0+build2-0ubuntu0.16.04.1

Affected versions

41.*
41.0.2+build2-0ubuntu1
42.*
42.0+build2-0ubuntu1
44.*
44.0+build3-0ubuntu2
44.0.1+build1-0ubuntu1
44.0.2+build1-0ubuntu1
45.*
45.0+build2-0ubuntu1
45.0.1+build1-0ubuntu1
45.0.2+build1-0ubuntu1
46.*
46.0+build5-0ubuntu0.16.04.2
46.0.1+build1-0ubuntu0.16.04.2
47.*
47.0+build3-0ubuntu0.16.04.1
48.*
48.0+build2-0ubuntu0.16.04.1
49.*
49.0+build4-0ubuntu0.16.04.1
49.0.2+build2-0ubuntu0.16.04.2
50.*
50.0+build2-0ubuntu0.16.04.2
50.0.2+build1-0ubuntu0.16.04.1
50.1.0+build2-0ubuntu0.16.04.1
51.*
51.0.1+build2-0ubuntu0.16.04.1
51.0.1+build2-0ubuntu0.16.04.2
52.*
52.0+build2-0ubuntu0.16.04.1
52.0.1+build2-0ubuntu0.16.04.1
52.0.2+build1-0ubuntu0.16.04.1
53.*
53.0+build6-0ubuntu0.16.04.1
53.0.2+build1-0ubuntu0.16.04.2
53.0.3+build1-0ubuntu0.16.04.2
54.*
54.0+build3-0ubuntu0.16.04.1
55.*
55.0.1+build2-0ubuntu0.16.04.2
55.0.2+build1-0ubuntu0.16.04.1
56.*
56.0+build6-0ubuntu0.16.04.1
56.0+build6-0ubuntu0.16.04.2
57.*
57.0+build4-0ubuntu0.16.04.5
57.0+build4-0ubuntu0.16.04.6
57.0.1+build2-0ubuntu0.16.04.1
57.0.3+build1-0ubuntu0.16.04.1
57.0.4+build1-0ubuntu0.16.04.1
58.*
58.0+build6-0ubuntu0.16.04.1
58.0.1+build1-0ubuntu0.16.04.1
58.0.2+build1-0ubuntu0.16.04.1
59.*
59.0+build5-0ubuntu0.16.04.1
59.0.1+build1-0ubuntu0.16.04.1
59.0.2+build1-0ubuntu0.16.04.1
59.0.2+build1-0ubuntu0.16.04.3
60.*
60.0+build2-0ubuntu0.16.04.1
60.0.1+build2-0ubuntu0.16.04.1
60.0.2+build1-0ubuntu0.16.04.1
61.*
61.0+build3-0ubuntu0.16.04.2
61.0.1+build1-0ubuntu0.16.04.1
62.*
62.0+build2-0ubuntu0.16.04.3
62.0+build2-0ubuntu0.16.04.4
62.0+build2-0ubuntu0.16.04.5
62.0.3+build1-0ubuntu0.16.04.2
63.*
63.0+build2-0ubuntu0.16.04.2
63.0.3+build1-0ubuntu0.16.04.1
64.*
64.0+build3-0ubuntu0.16.04.1
65.*
65.0+build2-0ubuntu0.16.04.1
65.0.1+build2-0ubuntu0.16.04.1
66.*
66.0+build3-0ubuntu0.16.04.2
66.0.1+build1-0ubuntu0.16.04.1
66.0.2+build1-0ubuntu0.16.04.1
66.0.3+build1-0ubuntu0.16.04.1
66.0.4+build3-0ubuntu0.16.04.1
66.0.5+build1-0ubuntu0.16.04.1
67.*
67.0+build2-0ubuntu0.16.04.1
67.0.1+build1-0ubuntu0.16.04.1
67.0.2+build2-0ubuntu0.16.04.1
67.0.3+build1-0ubuntu0.16.04.1
67.0.4+build1-0ubuntu0.16.04.1
68.*
68.0+build3-0ubuntu0.16.04.1
68.0.1+build1-0ubuntu0.16.04.1
68.0.2+build1-0ubuntu0.16.04.1
69.*
69.0+build2-0ubuntu0.16.04.4
69.0.1+build1-0ubuntu0.16.04.1
69.0.2+build1-0ubuntu0.16.04.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "70.0+build2-0ubuntu0.16.04.1",
            "binary_name": "firefox"
        },
        {
            "binary_version": "70.0+build2-0ubuntu0.16.04.1",
            "binary_name": "firefox-dev"
        },
        {
            "binary_version": "70.0+build2-0ubuntu0.16.04.1",
            "binary_name": "firefox-geckodriver"
        },
        {
            "binary_version": "70.0+build2-0ubuntu0.16.04.1",
            "binary_name": "firefox-mozsymbols"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
thunderbird

Package

Name
thunderbird
Purl
pkg:deb/ubuntu/thunderbird@1:68.7.0+build1-0ubuntu0.16.04.2?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:68.7.0+build1-0ubuntu0.16.04.2

Affected versions

1:38.*
1:38.3.0+build1-0ubuntu2
1:38.5.1+build2-0ubuntu1
1:38.6.0+build1-0ubuntu1
1:38.7.2+build1-0ubuntu0.16.04.1
1:38.8.0+build1-0ubuntu0.16.04.1
1:45.*
1:45.2.0+build1-0ubuntu0.16.04.1
1:45.3.0+build1-0ubuntu0.16.04.2
1:45.4.0+build1-0ubuntu0.16.04.1
1:45.5.1+build1-0ubuntu0.16.04.1
1:45.7.0+build1-0ubuntu0.16.04.1
1:45.8.0+build1-0ubuntu0.16.04.1
1:52.*
1:52.1.1+build1-0ubuntu0.16.04.1
1:52.2.1+build1-0ubuntu0.16.04.1
1:52.3.0+build1-0ubuntu0.16.04.1
1:52.4.0+build1-0ubuntu0.16.04.2
1:52.5.0+build1-0ubuntu0.16.04.1
1:52.6.0+build1-0ubuntu0.16.04.1
1:52.7.0+build1-0ubuntu0.16.04.1
1:52.8.0+build1-0ubuntu0.16.04.1
1:52.9.1+build3-0ubuntu0.16.04.1
1:60.*
1:60.2.1+build1-0ubuntu0.16.04.4
1:60.4.0+build2-0ubuntu0.16.04.1
1:60.5.1+build2-0ubuntu0.16.04.1
1:60.6.1+build2-0ubuntu0.16.04.1
1:60.7.0+build1-0ubuntu0.16.04.1
1:60.7.1+build1-0ubuntu0.16.04.1
1:60.7.2+build2-0ubuntu0.16.04.1
1:60.8.0+build1-0ubuntu0.16.04.2
1:60.9.0+build1-0ubuntu0.16.04.2
1:60.9.1+build1-0ubuntu0.16.04.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:68.7.0+build1-0ubuntu0.16.04.2",
            "binary_name": "thunderbird"
        },
        {
            "binary_version": "1:68.7.0+build1-0ubuntu0.16.04.2",
            "binary_name": "thunderbird-dev"
        },
        {
            "binary_version": "1:68.7.0+build1-0ubuntu0.16.04.2",
            "binary_name": "thunderbird-gnome-support"
        },
        {
            "binary_version": "1:68.7.0+build1-0ubuntu0.16.04.2",
            "binary_name": "thunderbird-mozsymbols"
        },
        {
            "binary_version": "1:68.7.0+build1-0ubuntu0.16.04.2",
            "binary_name": "xul-ext-calendar-timezones"
        },
        {
            "binary_version": "1:68.7.0+build1-0ubuntu0.16.04.2",
            "binary_name": "xul-ext-gdata-provider"
        },
        {
            "binary_version": "1:68.7.0+build1-0ubuntu0.16.04.2",
            "binary_name": "xul-ext-lightning"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
ayttm

Package

Name
ayttm
Purl
pkg:deb/ubuntu/ayttm@0.6.3-3build1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.6.3-3build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.6.3-3build1",
            "binary_name": "ayttm"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
cableswig

Package

Name
cableswig
Purl
pkg:deb/ubuntu/cableswig@0.1.0+git20150808-2?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.1.0+git20150808-1
0.1.0+git20150808-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.1.0+git20150808-2",
            "binary_name": "cableswig"
        },
        {
            "binary_version": "0.1.0+git20150808-2",
            "binary_name": "libcableswig-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
cadaver

Package

Name
cadaver
Purl
pkg:deb/ubuntu/cadaver@0.23.3-2ubuntu2?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.23.3-2ubuntu2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.23.3-2ubuntu2",
            "binary_name": "cadaver"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
insighttoolkit

Package

Name
insighttoolkit
Purl
pkg:deb/ubuntu/insighttoolkit@3.20.1+git20120521-6build1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.20.1+git20120521-6
3.20.1+git20120521-6build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "3.20.1+git20120521-6build1",
            "binary_name": "insighttoolkit3-examples"
        },
        {
            "binary_version": "3.20.1+git20120521-6build1",
            "binary_name": "libinsighttoolkit3-dev"
        },
        {
            "binary_version": "3.20.1+git20120521-6build1",
            "binary_name": "libinsighttoolkit3.20"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
insighttoolkit4

Package

Name
insighttoolkit4
Purl
pkg:deb/ubuntu/insighttoolkit4@4.9.0-4ubuntu1.1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.8.1-1ubuntu3
4.8.1-1ubuntu4
4.8.2-3.1ubuntu1
4.9.0-3ubuntu2
4.9.0-4ubuntu1
4.9.0-4ubuntu1.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "4.9.0-4ubuntu1.1",
            "binary_name": "insighttoolkit4-examples"
        },
        {
            "binary_version": "4.9.0-4ubuntu1.1",
            "binary_name": "insighttoolkit4-python"
        },
        {
            "binary_version": "4.9.0-4ubuntu1.1",
            "binary_name": "libinsighttoolkit4-dev"
        },
        {
            "binary_version": "4.9.0-4ubuntu1.1",
            "binary_name": "libinsighttoolkit4.9"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
matanza

Package

Name
matanza
Purl
pkg:deb/ubuntu/matanza@0.13+ds1-5?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.13+ds1-5

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.13+ds1-5",
            "binary_name": "matanza"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
sitecopy

Package

Name
sitecopy
Purl
pkg:deb/ubuntu/sitecopy@1:0.16.6-7?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:0.*
1:0.16.6-7

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:0.16.6-7",
            "binary_name": "sitecopy"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
swish-e

Package

Name
swish-e
Purl
pkg:deb/ubuntu/swish-e@2.4.7-4build1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.4.7-4
2.4.7-4build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.4.7-4build1",
            "binary_name": "swish-e"
        },
        {
            "binary_version": "2.4.7-4build1",
            "binary_name": "swish-e-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
tdom

Package

Name
tdom
Purl
pkg:deb/ubuntu/tdom@0.8.3-1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.8.3-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.8.3-1",
            "binary_name": "tdom"
        },
        {
            "binary_version": "0.8.3-1",
            "binary_name": "tdom-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
wbxml2

Package

Name
wbxml2
Purl
pkg:deb/ubuntu/wbxml2@0.10.7-1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.10.7-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.10.7-1",
            "binary_name": "libwbxml2-0"
        },
        {
            "binary_version": "0.10.7-1",
            "binary_name": "libwbxml2-dev"
        },
        {
            "binary_version": "0.10.7-1",
            "binary_name": "libwbxml2-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
xmlrpc-c

Package

Name
xmlrpc-c
Purl
pkg:deb/ubuntu/xmlrpc-c@1.33.14-1ubuntu1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.33.14-0.2ubuntu3
1.33.14-1ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.33.14-1ubuntu1",
            "binary_name": "libxmlrpc-c++8-dev"
        },
        {
            "binary_version": "1.33.14-1ubuntu1",
            "binary_name": "libxmlrpc-c++8v5"
        },
        {
            "binary_version": "1.33.14-1ubuntu1",
            "binary_name": "libxmlrpc-core-c3"
        },
        {
            "binary_version": "1.33.14-1ubuntu1",
            "binary_name": "libxmlrpc-core-c3-dev"
        },
        {
            "binary_version": "1.33.14-1ubuntu1",
            "binary_name": "xmlrpc-api-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:18.04:LTS
chromium-browser

Package

Name
chromium-browser
Purl
pkg:deb/ubuntu/chromium-browser@78.0.3904.70-0ubuntu0.18.04.2?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
78.0.3904.70-0ubuntu0.18.04.2

Affected versions

61.*
61.0.3163.100-0ubuntu1.1378
62.*
62.0.3202.62-0ubuntu0.17.10.1380
62.0.3202.89-0ubuntu1.1386
62.0.3202.94-0ubuntu1.1388
63.*
63.0.3239.84-0ubuntu1
63.0.3239.108-0ubuntu1
64.*
64.0.3282.119-0ubuntu1
64.0.3282.140-0ubuntu1
64.0.3282.167-0ubuntu1
65.*
65.0.3325.146-0ubuntu1
65.0.3325.181-0ubuntu1
66.*
66.0.3359.139-0ubuntu0.18.04.3
66.0.3359.181-0ubuntu0.18.04.1
67.*
67.0.3396.99-0ubuntu0.18.04.1
68.*
68.0.3440.75-0ubuntu0.18.04.1
68.0.3440.106-0ubuntu0.18.04.1
69.*
69.0.3497.81-0ubuntu0.18.04.1
70.*
70.0.3538.67-0ubuntu0.18.04.1
70.0.3538.77-0ubuntu0.18.04.1
70.0.3538.110-0ubuntu0.18.04.1
71.*
71.0.3578.80-0ubuntu0.18.04.1
71.0.3578.98-0ubuntu0.18.04.1
72.*
72.0.3626.119-0ubuntu0.18.04.1
72.0.3626.121-0ubuntu0.18.04.1
73.*
73.0.3683.75-0ubuntu0.18.04.1
73.0.3683.86-0ubuntu0.18.04.1
74.*
74.0.3729.169-0ubuntu0.18.04.1
75.*
75.0.3770.90-0ubuntu0.18.04.1
75.0.3770.142-0ubuntu0.18.04.1
76.*
76.0.3809.87-0ubuntu0.18.04.1
76.0.3809.100-0ubuntu0.18.04.1
77.*
77.0.3865.90-0ubuntu0.18.04.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "78.0.3904.70-0ubuntu0.18.04.2",
            "binary_name": "chromium-browser"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu0.18.04.2",
            "binary_name": "chromium-browser-l10n"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu0.18.04.2",
            "binary_name": "chromium-chromedriver"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu0.18.04.2",
            "binary_name": "chromium-codecs-ffmpeg"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu0.18.04.2",
            "binary_name": "chromium-codecs-ffmpeg-extra"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
expat

Package

Name
expat
Purl
pkg:deb/ubuntu/expat@2.2.5-3ubuntu0.2?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.2.5-3ubuntu0.2

Affected versions

2.*
2.2.3-1
2.2.3-2
2.2.5-0ubuntu2
2.2.5-3
2.2.5-3ubuntu0.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.2.5-3ubuntu0.2",
            "binary_name": "expat"
        },
        {
            "binary_version": "2.2.5-3ubuntu0.2",
            "binary_name": "libexpat1"
        },
        {
            "binary_version": "2.2.5-3ubuntu0.2",
            "binary_name": "libexpat1-dev"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
firefox

Package

Name
firefox
Purl
pkg:deb/ubuntu/firefox@70.0+build2-0ubuntu0.18.04.1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
70.0+build2-0ubuntu0.18.04.1

Affected versions

56.*
56.0+build6-0ubuntu1
57.*
57.0.1+build2-0ubuntu1
59.*
59.0.1+build1-0ubuntu1
59.0.2+build1-0ubuntu1
60.*
60.0+build2-0ubuntu1
60.0.1+build2-0ubuntu0.18.04.1
60.0.2+build1-0ubuntu0.18.04.1
61.*
61.0+build3-0ubuntu0.18.04.1
61.0.1+build1-0ubuntu0.18.04.1
62.*
62.0+build2-0ubuntu0.18.04.3
62.0+build2-0ubuntu0.18.04.4
62.0+build2-0ubuntu0.18.04.5
62.0.3+build1-0ubuntu0.18.04.1
63.*
63.0+build2-0ubuntu0.18.04.2
63.0.3+build1-0ubuntu0.18.04.1
64.*
64.0+build3-0ubuntu0.18.04.1
65.*
65.0+build2-0ubuntu0.18.04.1
65.0.1+build2-0ubuntu0.18.04.1
66.*
66.0+build3-0ubuntu0.18.04.1
66.0.1+build1-0ubuntu0.18.04.1
66.0.2+build1-0ubuntu0.18.04.1
66.0.3+build1-0ubuntu0.18.04.1
66.0.4+build3-0ubuntu0.18.04.1
66.0.5+build1-0ubuntu0.18.04.1
67.*
67.0+build2-0ubuntu0.18.04.1
67.0.1+build1-0ubuntu0.18.04.1
67.0.2+build2-0ubuntu0.18.04.1
67.0.3+build1-0ubuntu0.18.04.1
67.0.4+build1-0ubuntu0.18.04.1
68.*
68.0+build3-0ubuntu0.18.04.1
68.0.1+build1-0ubuntu0.18.04.1
68.0.2+build1-0ubuntu0.18.04.1
69.*
69.0+build2-0ubuntu0.18.04.1
69.0.1+build1-0ubuntu0.18.04.1
69.0.2+build1-0ubuntu0.18.04.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "70.0+build2-0ubuntu0.18.04.1",
            "binary_name": "firefox"
        },
        {
            "binary_version": "70.0+build2-0ubuntu0.18.04.1",
            "binary_name": "firefox-dev"
        },
        {
            "binary_version": "70.0+build2-0ubuntu0.18.04.1",
            "binary_name": "firefox-geckodriver"
        },
        {
            "binary_version": "70.0+build2-0ubuntu0.18.04.1",
            "binary_name": "firefox-mozsymbols"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
thunderbird

Package

Name
thunderbird
Purl
pkg:deb/ubuntu/thunderbird@1:68.2.1+build1-0ubuntu0.18.04.1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:68.2.1+build1-0ubuntu0.18.04.1

Affected versions

1:52.*
1:52.4.0+build1-0ubuntu2
1:52.6.0+build1-0ubuntu1
1:52.7.0+build1-0ubuntu1
1:52.8.0+build1-0ubuntu0.18.04.1
1:52.9.1+build3-0ubuntu0.18.04.1
1:60.*
1:60.2.1+build1-0ubuntu0.18.04.2
1:60.4.0+build2-0ubuntu0.18.04.1
1:60.5.1+build2-0ubuntu0.18.04.1
1:60.6.1+build2-0ubuntu0.18.04.1
1:60.7.0+build1-0ubuntu0.18.04.1
1:60.7.1+build1-0ubuntu0.18.04.1
1:60.7.2+build2-0ubuntu0.18.04.1
1:60.8.0+build1-0ubuntu0.18.04.1
1:60.9.0+build1-0ubuntu0.18.04.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:68.2.1+build1-0ubuntu0.18.04.1",
            "binary_name": "thunderbird"
        },
        {
            "binary_version": "1:68.2.1+build1-0ubuntu0.18.04.1",
            "binary_name": "thunderbird-dev"
        },
        {
            "binary_version": "1:68.2.1+build1-0ubuntu0.18.04.1",
            "binary_name": "thunderbird-gnome-support"
        },
        {
            "binary_version": "1:68.2.1+build1-0ubuntu0.18.04.1",
            "binary_name": "thunderbird-mozsymbols"
        },
        {
            "binary_version": "1:68.2.1+build1-0ubuntu0.18.04.1",
            "binary_name": "xul-ext-calendar-timezones"
        },
        {
            "binary_version": "1:68.2.1+build1-0ubuntu0.18.04.1",
            "binary_name": "xul-ext-gdata-provider"
        },
        {
            "binary_version": "1:68.2.1+build1-0ubuntu0.18.04.1",
            "binary_name": "xul-ext-lightning"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
cadaver

Package

Name
cadaver
Purl
pkg:deb/ubuntu/cadaver@0.23.3-2ubuntu3?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.23.3-2ubuntu3

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.23.3-2ubuntu3",
            "binary_name": "cadaver"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
coin3

Package

Name
coin3
Purl
pkg:deb/ubuntu/coin3@3.1.4~abc9f50+dfsg3-2?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.1.4~abc9f50+dfsg1-2
3.1.4~abc9f50+dfsg2-1
3.1.4~abc9f50+dfsg3-1
3.1.4~abc9f50+dfsg3-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "3.1.4~abc9f50+dfsg3-2",
            "binary_name": "libcoin80-dev"
        },
        {
            "binary_version": "3.1.4~abc9f50+dfsg3-2",
            "binary_name": "libcoin80-runtime"
        },
        {
            "binary_version": "3.1.4~abc9f50+dfsg3-2",
            "binary_name": "libcoin80v5"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
matanza

Package

Name
matanza
Purl
pkg:deb/ubuntu/matanza@0.13+ds1-6?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.13+ds1-5build1
0.13+ds1-6

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.13+ds1-6",
            "binary_name": "matanza"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
sitecopy

Package

Name
sitecopy
Purl
pkg:deb/ubuntu/sitecopy@1:0.16.6-7build1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:0.*
1:0.16.6-7
1:0.16.6-7build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:0.16.6-7build1",
            "binary_name": "sitecopy"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
swish-e

Package

Name
swish-e
Purl
pkg:deb/ubuntu/swish-e@2.4.7-5ubuntu1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.4.7-5ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.4.7-5ubuntu1",
            "binary_name": "swish-e"
        },
        {
            "binary_version": "2.4.7-5ubuntu1",
            "binary_name": "swish-e-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
tdom

Package

Name
tdom
Purl
pkg:deb/ubuntu/tdom@0.9.0-1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.8.3-1
0.9.0-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.9.0-1",
            "binary_name": "tdom"
        },
        {
            "binary_version": "0.9.0-1",
            "binary_name": "tdom-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
vnc4

Package

Name
vnc4
Purl
pkg:deb/ubuntu/vnc4@4.1.1+xorg4.3.0-37.3ubuntu2?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.1.1+xorg4.3.0-37.3ubuntu2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "4.1.1+xorg4.3.0-37.3ubuntu2",
            "binary_name": "vnc4server"
        },
        {
            "binary_version": "4.1.1+xorg4.3.0-37.3ubuntu2",
            "binary_name": "xvnc4viewer"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
wbxml2

Package

Name
wbxml2
Purl
pkg:deb/ubuntu/wbxml2@0.10.7-1build1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.10.7-1
0.10.7-1build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.10.7-1build1",
            "binary_name": "libwbxml2-0"
        },
        {
            "binary_version": "0.10.7-1build1",
            "binary_name": "libwbxml2-dev"
        },
        {
            "binary_version": "0.10.7-1build1",
            "binary_name": "libwbxml2-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
xmlrpc-c

Package

Name
xmlrpc-c
Purl
pkg:deb/ubuntu/xmlrpc-c@1.33.14-8build1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.33.14-7
1.33.14-8
1.33.14-8build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.33.14-8build1",
            "binary_name": "libxmlrpc-c++8-dev"
        },
        {
            "binary_version": "1.33.14-8build1",
            "binary_name": "libxmlrpc-c++8v5"
        },
        {
            "binary_version": "1.33.14-8build1",
            "binary_name": "libxmlrpc-core-c3"
        },
        {
            "binary_version": "1.33.14-8build1",
            "binary_name": "libxmlrpc-core-c3-dev"
        },
        {
            "binary_version": "1.33.14-8build1",
            "binary_name": "xmlrpc-api-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:20.04:LTS
chromium-browser

Package

Name
chromium-browser
Purl
pkg:deb/ubuntu/chromium-browser@78.0.3904.70-0ubuntu1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
78.0.3904.70-0ubuntu1

Affected versions

77.*
77.0.3865.120-0ubuntu1~snap1
77.0.3865.120-0ubuntu2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "78.0.3904.70-0ubuntu1",
            "binary_name": "chromium-browser"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu1",
            "binary_name": "chromium-browser-l10n"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu1",
            "binary_name": "chromium-chromedriver"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu1",
            "binary_name": "chromium-codecs-ffmpeg"
        },
        {
            "binary_version": "78.0.3904.70-0ubuntu1",
            "binary_name": "chromium-codecs-ffmpeg-extra"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
firefox

Package

Name
firefox
Purl
pkg:deb/ubuntu/firefox@70.0+build2-0ubuntu1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
70.0+build2-0ubuntu1

Affected versions

69.*
69.0.3+build1-0ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "70.0+build2-0ubuntu1",
            "binary_name": "firefox"
        },
        {
            "binary_version": "70.0+build2-0ubuntu1",
            "binary_name": "firefox-dev"
        },
        {
            "binary_version": "70.0+build2-0ubuntu1",
            "binary_name": "firefox-geckodriver"
        },
        {
            "binary_version": "70.0+build2-0ubuntu1",
            "binary_name": "firefox-mozsymbols"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
cadaver

Package

Name
cadaver
Purl
pkg:deb/ubuntu/cadaver@0.23.3-2.1build1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.23.3-2.1build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.23.3-2.1build1",
            "binary_name": "cadaver"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
matanza

Package

Name
matanza
Purl
pkg:deb/ubuntu/matanza@0.13+ds2-1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.13+ds1-6
0.13+ds2-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.13+ds2-1",
            "binary_name": "matanza"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
sitecopy

Package

Name
sitecopy
Purl
pkg:deb/ubuntu/sitecopy@1:0.16.6-7build1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:0.*
1:0.16.6-7build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:0.16.6-7build1",
            "binary_name": "sitecopy"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
swish-e

Package

Name
swish-e
Purl
pkg:deb/ubuntu/swish-e@2.4.7-6build2?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.4.7-6build1
2.4.7-6build2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.4.7-6build2",
            "binary_name": "swish-e"
        },
        {
            "binary_version": "2.4.7-6build2",
            "binary_name": "swish-e-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
tdom

Package

Name
tdom
Purl
pkg:deb/ubuntu/tdom@0.9.1-1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.9.1-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.9.1-1",
            "binary_name": "tdom"
        },
        {
            "binary_version": "0.9.1-1",
            "binary_name": "tdom-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
wbxml2

Package

Name
wbxml2
Purl
pkg:deb/ubuntu/wbxml2@0.10.7-1build1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.10.7-1build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.10.7-1build1",
            "binary_name": "libwbxml2-0"
        },
        {
            "binary_version": "0.10.7-1build1",
            "binary_name": "libwbxml2-dev"
        },
        {
            "binary_version": "0.10.7-1build1",
            "binary_name": "libwbxml2-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
xmlrpc-c

Package

Name
xmlrpc-c
Purl
pkg:deb/ubuntu/xmlrpc-c@1.33.14-8build2?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.33.14-8build1
1.33.14-8build2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.33.14-8build2",
            "binary_name": "libxmlrpc-c++8-dev"
        },
        {
            "binary_version": "1.33.14-8build2",
            "binary_name": "libxmlrpc-c++8v5"
        },
        {
            "binary_version": "1.33.14-8build2",
            "binary_name": "libxmlrpc-core-c3"
        },
        {
            "binary_version": "1.33.14-8build2",
            "binary_name": "libxmlrpc-core-c3-dev"
        },
        {
            "binary_version": "1.33.14-8build2",
            "binary_name": "xmlrpc-api-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:22.04:LTS
cadaver

Package

Name
cadaver
Purl
pkg:deb/ubuntu/cadaver@0.23.3-2.1build1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.23.3-2.1build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.23.3-2.1build1",
            "binary_name": "cadaver"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
matanza

Package

Name
matanza
Purl
pkg:deb/ubuntu/matanza@0.13+ds2-1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.13+ds2-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.13+ds2-1",
            "binary_name": "matanza"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
sitecopy

Package

Name
sitecopy
Purl
pkg:deb/ubuntu/sitecopy@1:0.16.6-10?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:0.*
1:0.16.6-9build1
1:0.16.6-10

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:0.16.6-10",
            "binary_name": "sitecopy"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
swish-e

Package

Name
swish-e
Purl
pkg:deb/ubuntu/swish-e@2.4.7-6.1build1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.4.7-6build3
2.4.7-6.1
2.4.7-6.1build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.4.7-6.1build1",
            "binary_name": "swish-e"
        },
        {
            "binary_version": "2.4.7-6.1build1",
            "binary_name": "swish-e-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
tdom

Package

Name
tdom
Purl
pkg:deb/ubuntu/tdom@0.9.2-1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.9.2-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.9.2-1",
            "binary_name": "tdom"
        },
        {
            "binary_version": "0.9.2-1",
            "binary_name": "tdom-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
wbxml2

Package

Name
wbxml2
Purl
pkg:deb/ubuntu/wbxml2@0.11.7+dfsg-1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.10.7-1build1
0.11.7+dfsg-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.11.7+dfsg-1",
            "binary_name": "libwbxml2-1"
        },
        {
            "binary_version": "0.11.7+dfsg-1",
            "binary_name": "libwbxml2-dev"
        },
        {
            "binary_version": "0.11.7+dfsg-1",
            "binary_name": "libwbxml2-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
xmlrpc-c

Package

Name
xmlrpc-c
Purl
pkg:deb/ubuntu/xmlrpc-c@1.33.14-10?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.33.14-9
1.33.14-10

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.33.14-10",
            "binary_name": "libxmlrpc-c++8-dev"
        },
        {
            "binary_version": "1.33.14-10",
            "binary_name": "libxmlrpc-c++8v5"
        },
        {
            "binary_version": "1.33.14-10",
            "binary_name": "libxmlrpc-core-c3"
        },
        {
            "binary_version": "1.33.14-10",
            "binary_name": "libxmlrpc-core-c3-dev"
        },
        {
            "binary_version": "1.33.14-10",
            "binary_name": "xmlrpc-api-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:24.04:LTS
cadaver

Package

Name
cadaver
Purl
pkg:deb/ubuntu/cadaver@0.24+dfsg-3build2?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.24+dfsg-2
0.24+dfsg-3
0.24+dfsg-3build1
0.24+dfsg-3build2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.24+dfsg-3build2",
            "binary_name": "cadaver"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
matanza

Package

Name
matanza
Purl
pkg:deb/ubuntu/matanza@0.13+ds2-1build2?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.13+ds2-1
0.13+ds2-1build1
0.13+ds2-1build2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.13+ds2-1build2",
            "binary_name": "matanza"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
swish-e

Package

Name
swish-e
Purl
pkg:deb/ubuntu/swish-e@2.4.7-6.2build3?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.4.7-6.2
2.4.7-6.2build1
2.4.7-6.2build2
2.4.7-6.2build3

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.4.7-6.2build3",
            "binary_name": "swish-e"
        },
        {
            "binary_version": "2.4.7-6.2build3",
            "binary_name": "swish-e-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
tdom

Package

Name
tdom
Purl
pkg:deb/ubuntu/tdom@0.9.3-1build1?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.9.3-1
0.9.3-1build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.9.3-1build1",
            "binary_name": "tdom"
        },
        {
            "binary_version": "0.9.3-1build1",
            "binary_name": "tdom-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
wbxml2

Package

Name
wbxml2
Purl
pkg:deb/ubuntu/wbxml2@0.11.8+dfsg-3build1?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.11.8+dfsg-3
0.11.8+dfsg-3build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.11.8+dfsg-3build1",
            "binary_name": "libwbxml2-1"
        },
        {
            "binary_version": "0.11.8+dfsg-3build1",
            "binary_name": "libwbxml2-dev"
        },
        {
            "binary_version": "0.11.8+dfsg-3build1",
            "binary_name": "libwbxml2-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
xmlrpc-c

Package

Name
xmlrpc-c
Purl
pkg:deb/ubuntu/xmlrpc-c@1.33.14-12build2?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.33.14-11
1.33.14-11.1
1.33.14-12
1.33.14-12build1
1.33.14-12build2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.33.14-12build2",
            "binary_name": "libxmlrpc-c++8-dev"
        },
        {
            "binary_version": "1.33.14-12build2",
            "binary_name": "libxmlrpc-c++8t64"
        },
        {
            "binary_version": "1.33.14-12build2",
            "binary_name": "libxmlrpc-core-c3-dev"
        },
        {
            "binary_version": "1.33.14-12build2",
            "binary_name": "libxmlrpc-core-c3t64"
        },
        {
            "binary_version": "1.33.14-12build2",
            "binary_name": "xmlrpc-api-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:25.10
cadaver

Package

Name
cadaver
Purl
pkg:deb/ubuntu/cadaver@0.26+dfsg-2?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.26+dfsg-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.26+dfsg-2",
            "binary_name": "cadaver"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
matanza

Package

Name
matanza
Purl
pkg:deb/ubuntu/matanza@0.13+ds2-2?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.13+ds2-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.13+ds2-2",
            "binary_name": "matanza"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
sitecopy

Package

Name
sitecopy
Purl
pkg:deb/ubuntu/sitecopy@1:0.16.6-16build1?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1:0.*
1:0.16.6-16
1:0.16.6-16build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1:0.16.6-16build1",
            "binary_name": "sitecopy"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
swish-e

Package

Name
swish-e
Purl
pkg:deb/ubuntu/swish-e@2.4.7-7?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.4.7-6.3
2.4.7-6.3build1
2.4.7-7

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.4.7-7",
            "binary_name": "swish-e"
        },
        {
            "binary_version": "2.4.7-7",
            "binary_name": "swish-e-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
tdom

Package

Name
tdom
Purl
pkg:deb/ubuntu/tdom@0.9.5.1-3?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.9.5.1-2
0.9.5.1-3

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.9.5.1-3",
            "binary_name": "tdom"
        },
        {
            "binary_version": "0.9.5.1-3",
            "binary_name": "tdom-dev"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
wbxml2

Package

Name
wbxml2
Purl
pkg:deb/ubuntu/wbxml2@0.11.10+dfsg-2?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*
0.11.10+dfsg-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.11.10+dfsg-2",
            "binary_name": "libwbxml2-1"
        },
        {
            "binary_version": "0.11.10+dfsg-2",
            "binary_name": "libwbxml2-dev"
        },
        {
            "binary_version": "0.11.10+dfsg-2",
            "binary_name": "libwbxml2-private-dev"
        },
        {
            "binary_version": "0.11.10+dfsg-2",
            "binary_name": "libwbxml2-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
xmlrpc-c

Package

Name
xmlrpc-c
Purl
pkg:deb/ubuntu/xmlrpc-c@1.59.03-10.1?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.59.03-7
1.59.03-9
1.59.03-10
1.59.03-10.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.59.03-10.1",
            "binary_name": "libxmlrpc-c++9"
        },
        {
            "binary_version": "1.59.03-10.1",
            "binary_name": "libxmlrpc-c++9-dev"
        },
        {
            "binary_version": "1.59.03-10.1",
            "binary_name": "libxmlrpc-core-c3-dev"
        },
        {
            "binary_version": "1.59.03-10.1",
            "binary_name": "libxmlrpc-core-c3t64"
        },
        {
            "binary_version": "1.59.03-10.1",
            "binary_name": "libxmlrpc-util-dev"
        },
        {
            "binary_version": "1.59.03-10.1",
            "binary_name": "libxmlrpc-util4"
        },
        {
            "binary_version": "1.59.03-10.1",
            "binary_name": "xmlrpc-api-utils"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:Pro:14.04:LTS
expat

Package

Name
expat
Purl
pkg:deb/ubuntu/expat@2.1.0-4ubuntu1.4+esm2?arch=source&distro=trusty/esm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.1.0-4ubuntu1.4+esm2

Affected versions

2.*
2.1.0-4
2.1.0-4ubuntu1
2.1.0-4ubuntu1.1
2.1.0-4ubuntu1.2
2.1.0-4ubuntu1.3
2.1.0-4ubuntu1.4
2.1.0-4ubuntu1.4+esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.1.0-4ubuntu1.4+esm2",
            "binary_name": "expat"
        },
        {
            "binary_version": "2.1.0-4ubuntu1.4+esm2",
            "binary_name": "lib64expat1"
        },
        {
            "binary_version": "2.1.0-4ubuntu1.4+esm2",
            "binary_name": "lib64expat1-dev"
        },
        {
            "binary_version": "2.1.0-4ubuntu1.4+esm2",
            "binary_name": "libexpat1"
        },
        {
            "binary_version": "2.1.0-4ubuntu1.4+esm2",
            "binary_name": "libexpat1-dev"
        }
    ],
    "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
vtk

Package

Name
vtk
Purl
pkg:deb/ubuntu/vtk@5.8.0-14.1ubuntu3+esm1?arch=source&distro=trusty/esm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.8.0-14.1ubuntu3+esm1

Affected versions

5.*
5.8.0-14ubuntu1
5.8.0-14ubuntu3
5.8.0-14.1ubuntu2
5.8.0-14.1ubuntu3

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.8.0-14.1ubuntu3+esm1",
            "binary_name": "libvtk-java"
        },
        {
            "binary_version": "5.8.0-14.1ubuntu3+esm1",
            "binary_name": "libvtk5-dev"
        },
        {
            "binary_version": "5.8.0-14.1ubuntu3+esm1",
            "binary_name": "libvtk5-qt4-dev"
        },
        {
            "binary_version": "5.8.0-14.1ubuntu3+esm1",
            "binary_name": "libvtk5.8"
        },
        {
            "binary_version": "5.8.0-14.1ubuntu3+esm1",
            "binary_name": "libvtk5.8-qt4"
        },
        {
            "binary_version": "5.8.0-14.1ubuntu3+esm1",
            "binary_name": "python-vtk"
        },
        {
            "binary_version": "5.8.0-14.1ubuntu3+esm1",
            "binary_name": "tcl-vtk"
        },
        {
            "binary_version": "5.8.0-14.1ubuntu3+esm1",
            "binary_name": "vtk-examples"
        }
    ],
    "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
coin3

Package

Name
coin3
Purl
pkg:deb/ubuntu/coin3@3.1.4~abc9f50-4ubuntu2+esm1?arch=source&distro=esm-infra-legacy/trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.1.4~abc9f50-3
3.1.4~abc9f50-4
3.1.4~abc9f50-4ubuntu2
3.1.4~abc9f50-4ubuntu2+esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "3.1.4~abc9f50-4ubuntu2+esm1",
            "binary_name": "libcoin80"
        },
        {
            "binary_version": "3.1.4~abc9f50-4ubuntu2+esm1",
            "binary_name": "libcoin80-dev"
        },
        {
            "binary_version": "3.1.4~abc9f50-4ubuntu2+esm1",
            "binary_name": "libcoin80-runtime"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
vnc4

Package

Name
vnc4
Purl
pkg:deb/ubuntu/vnc4@4.1.1+xorg4.3.0-37ubuntu5.0.2+esm1?arch=source&distro=esm-infra-legacy/trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.1.1+xorg4.3.0-37ubuntu5
4.1.1+xorg4.3.0-37ubuntu5.0.1
4.1.1+xorg4.3.0-37ubuntu5.0.2
4.1.1+xorg4.3.0-37ubuntu5.0.2+esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "4.1.1+xorg4.3.0-37ubuntu5.0.2+esm1",
            "binary_name": "vnc4server"
        },
        {
            "binary_version": "4.1.1+xorg4.3.0-37ubuntu5.0.2+esm1",
            "binary_name": "xvnc4viewer"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:Pro:16.04:LTS
coin3

Package

Name
coin3
Purl
pkg:deb/ubuntu/coin3@3.1.4~abc9f50+dfsg1-1ubuntu0.1~esm1?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

3.*
3.1.4~abc9f50+dfsg1-1
3.1.4~abc9f50+dfsg1-1ubuntu0.1~esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "3.1.4~abc9f50+dfsg1-1ubuntu0.1~esm1",
            "binary_name": "libcoin80-dev"
        },
        {
            "binary_version": "3.1.4~abc9f50+dfsg1-1ubuntu0.1~esm1",
            "binary_name": "libcoin80-runtime"
        },
        {
            "binary_version": "3.1.4~abc9f50+dfsg1-1ubuntu0.1~esm1",
            "binary_name": "libcoin80v5"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
libxmltok

Package

Name
libxmltok
Purl
pkg:deb/ubuntu/libxmltok@1.2-3ubuntu0.16.04.1~esm2?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2-3ubuntu0.16.04.1~esm2

Affected versions

1.*
1.2-3build3
1.2-3ubuntu0.16.04.1~esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.2-3ubuntu0.16.04.1~esm2",
            "binary_name": "libxmltok1"
        },
        {
            "binary_version": "1.2-3ubuntu0.16.04.1~esm2",
            "binary_name": "libxmltok1-dev"
        }
    ],
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
vnc4

Package

Name
vnc4
Purl
pkg:deb/ubuntu/vnc4@4.1.1+xorg4.3.0-37.3ubuntu2.1+esm1?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.1.1+xorg4.3.0-37.3ubuntu2
4.1.1+xorg4.3.0-37.3ubuntu2.1+esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "4.1.1+xorg4.3.0-37.3ubuntu2.1+esm1",
            "binary_name": "vnc4server"
        },
        {
            "binary_version": "4.1.1+xorg4.3.0-37.3ubuntu2.1+esm1",
            "binary_name": "xvnc4viewer"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
vtk

Package

Name
vtk
Purl
pkg:deb/ubuntu/vtk@5.10.1+dfsg-2.1ubuntu0.1~esm1?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.10.1+dfsg-2.1ubuntu0.1~esm1

Affected versions

5.*
5.10.1+dfsg-2
5.10.1+dfsg-2build3
5.10.1+dfsg-2.1build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.10.1+dfsg-2.1ubuntu0.1~esm1",
            "binary_name": "libvtk-java"
        },
        {
            "binary_version": "5.10.1+dfsg-2.1ubuntu0.1~esm1",
            "binary_name": "libvtk5-dev"
        },
        {
            "binary_version": "5.10.1+dfsg-2.1ubuntu0.1~esm1",
            "binary_name": "libvtk5-qt4-dev"
        },
        {
            "binary_version": "5.10.1+dfsg-2.1ubuntu0.1~esm1",
            "binary_name": "libvtk5.10"
        },
        {
            "binary_version": "5.10.1+dfsg-2.1ubuntu0.1~esm1",
            "binary_name": "libvtk5.10-qt4"
        },
        {
            "binary_version": "5.10.1+dfsg-2.1ubuntu0.1~esm1",
            "binary_name": "python-vtk"
        },
        {
            "binary_version": "5.10.1+dfsg-2.1ubuntu0.1~esm1",
            "binary_name": "tcl-vtk"
        },
        {
            "binary_version": "5.10.1+dfsg-2.1ubuntu0.1~esm1",
            "binary_name": "vtk-examples"
        }
    ],
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:Pro:18.04:LTS
libxmltok

Package

Name
libxmltok
Purl
pkg:deb/ubuntu/libxmltok@1.2-4ubuntu0.18.04.1~esm4?arch=source&distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2-4ubuntu0.18.04.1~esm4

Affected versions

1.*
1.2-4
1.2-4ubuntu0.18.04.1~esm1
1.2-4ubuntu0.18.04.1~esm2
1.2-4ubuntu0.18.04.1~esm3

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.2-4ubuntu0.18.04.1~esm4",
            "binary_name": "libxmltok1"
        },
        {
            "binary_version": "1.2-4ubuntu0.18.04.1~esm4",
            "binary_name": "libxmltok1-dev"
        }
    ],
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:Pro:20.04:LTS
libxmltok

Package

Name
libxmltok
Purl
pkg:deb/ubuntu/libxmltok@1.2-4ubuntu0.20.04.1~esm4?arch=source&distro=esm-apps/focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2-4ubuntu0.20.04.1~esm4

Affected versions

1.*
1.2-4
1.2-4ubuntu0.20.04.1~esm1
1.2-4ubuntu0.20.04.1~esm2
1.2-4ubuntu0.20.04.1~esm3

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.2-4ubuntu0.20.04.1~esm4",
            "binary_name": "libxmltok1"
        },
        {
            "binary_version": "1.2-4ubuntu0.20.04.1~esm4",
            "binary_name": "libxmltok1-dev"
        }
    ],
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:Pro:22.04:LTS
libxmltok

Package

Name
libxmltok
Purl
pkg:deb/ubuntu/libxmltok@1.2-4ubuntu0.22.04.1~esm4?arch=source&distro=esm-apps/jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2-4ubuntu0.22.04.1~esm4

Affected versions

1.*
1.2-4
1.2-4ubuntu0.22.04.1~esm1
1.2-4ubuntu0.22.04.1~esm2
1.2-4ubuntu0.22.04.1~esm3

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.2-4ubuntu0.22.04.1~esm4",
            "binary_name": "libxmltok1"
        },
        {
            "binary_version": "1.2-4ubuntu0.22.04.1~esm4",
            "binary_name": "libxmltok1-dev"
        }
    ],
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"
Ubuntu:Pro:24.04:LTS
libxmltok

Package

Name
libxmltok
Purl
pkg:deb/ubuntu/libxmltok@1.2-4.1ubuntu2.24.0.4.1+esm2?arch=source&distro=esm-apps/noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2-4.1ubuntu2.24.0.4.1+esm2

Affected versions

1.*
1.2-4ubuntu1
1.2-4.1ubuntu1
1.2-4.1ubuntu2
1.2-4.1ubuntu2.24.0.4.1+esm1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.2-4.1ubuntu2.24.0.4.1+esm2",
            "binary_name": "libxmltok1-dev"
        },
        {
            "binary_version": "1.2-4.1ubuntu2.24.0.4.1+esm2",
            "binary_name": "libxmltok1t64"
        }
    ],
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-15903.json"