Search CVE reports


Toggle filters

1 – 10 of 476 results


CVE-2026-35414

Medium priority
Needs evaluation

(OpenSSH before 10.3 mishandles the authorized_keys principals option i ...)

2 affected packages

openssh, openssh-ssh1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openssh Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openssh-ssh1 Ignored Ignored Ignored Ignored
Show less packages

CVE-2026-35388

Medium priority
Needs evaluation

(OpenSSH before 10.3 omits connection multiplexing confirmation for pro ...)

2 affected packages

openssh, openssh-ssh1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openssh Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openssh-ssh1 Ignored Ignored Ignored Ignored
Show less packages

CVE-2026-35387

Medium priority
Needs evaluation

(OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of an ...)

2 affected packages

openssh, openssh-ssh1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openssh Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openssh-ssh1 Ignored Ignored Ignored Ignored
Show less packages

CVE-2026-35386

Medium priority
Needs evaluation

(In OpenSSH before 10.3, command execution can occur via shell metachar ...)

2 affected packages

openssh, openssh-ssh1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openssh Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openssh-ssh1 Ignored Ignored Ignored Ignored
Show less packages

CVE-2026-35385

Medium priority
Needs evaluation

(In OpenSSH before 10.3, a file downloaded by scp may be installed setu ...)

2 affected packages

openssh, openssh-ssh1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openssh Needs evaluation Needs evaluation Needs evaluation Needs evaluation
openssh-ssh1 Ignored Ignored Ignored Ignored
Show less packages

CVE-2019-25591

Medium priority
Needs evaluation

DNSS Domain Name Search Software 2.1.8 contains a buffer overflow vulnerability in the registration code input field that allows local attackers to crash the application by submitting an excessively long string. Attackers can...

1 affected package

dnss

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dnss Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-27459

Medium priority
Fixed

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 22.0.0 and prior to version 26.0.0, if a user provided callback to `set_cookie_generate_callback` returned a cookie value greater than 256 bytes,...

1 affected package

pyopenssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pyopenssl Fixed Not affected Not affected Not affected
Show less packages

CVE-2026-27448

Low priority

Some fixes available 3 of 7

pyOpenSSL is a Python wrapper around the OpenSSL library. Starting in version 0.14.0 and prior to version 26.0.0, if a user provided callback to `set_tlsext_servername_callback` raised an unhandled exception, this would result in...

1 affected package

pyopenssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pyopenssl Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-2673

Low priority
Vulnerable

Issue summary: An OpenSSL TLS 1.3 server may fail to negotiate the expected preferred key exchange group when its key exchange group configuration includes the default by using the 'DEFAULT' keyword. Impact summary: A less...

5 affected packages

openssl, openssl-fips, openssl1.0, nodejs, edk2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openssl Not affected Not affected Not affected Not affected
openssl-fips Not affected Not affected
openssl1.0 Not in release Not in release Not affected
nodejs Not affected Vulnerable Not affected Not affected
edk2 Not affected Not affected Not affected Not affected
Show less packages

CVE-2026-3497

Medium priority

Some fixes available 4 of 9

Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Linux distributions and does not affect the OpenSSH upstream project itself. The...

2 affected packages

openssh, openssh-ssh1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openssh Fixed Fixed Fixed Not affected
openssh-ssh1 Ignored Ignored Ignored Ignored
Show less packages