Search CVE reports


Toggle filters

441 – 450 of 34263 results

Status is adjusted based on your filters.


CVE-2026-40719

Medium priority
Needs evaluation

(Deadwood in MaraDNS 3.5.0036 allows attackers to exhaust connection sl ...)

1 affected package

maradns

Package 24.04 LTS
maradns Needs evaluation
Show less packages

CVE-2026-40499

Medium priority
Needs evaluation

(radare2 prior to version 6.1.4 contains a command injection vulnerabil ...)

1 affected package

radare2

Package 24.04 LTS
radare2 Needs evaluation
Show less packages

CVE-2026-39984

Medium priority

Not in release

(Sigstore Timestamp Authority is a service for issuing RFC 3161 timesta ...)

1 affected package

golang-github-sigstore-timestamp-authority

Package 24.04 LTS
golang-github-sigstore-timestamp-authority Not in release
Show less packages

CVE-2026-33414

Medium priority

Not in release

Podman is a tool for managing OCI containers and pods. Versions 4.8.0 through 5.8.1 contain a command injection vulnerability in the HyperV machine backend in pkg/machine/hyperv/stubber.go, where the VM image path is inserted into...

1 affected package

podman

Package 24.04 LTS
podman Not in release
Show less packages

CVE-2026-33023

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. In versions 1.8.7 and prior, when built with the --with-gdk-pixbuf2 option, a use-after-free vulnerability exists in load_with_gdkpixbuf() in loader.c....

1 affected package

libsixel

Package 24.04 LTS
libsixel Needs evaluation
Show less packages

CVE-2026-33021

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain a use-after-free vulnerability in sixel_encoder_encode_bytes() because sixel_frame_init() stores the caller-owned...

1 affected package

libsixel

Package 24.04 LTS
libsixel Needs evaluation
Show less packages

CVE-2026-33020

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain an integer overflow which leads to a heap buffer overflow via sixel_frame_convert_to_rgb888() in frame.c, where...

1 affected package

libsixel

Package 24.04 LTS
libsixel Needs evaluation
Show less packages

CVE-2026-33019

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain an integer overflow leading to an out-of-bounds heap read in the --crop option handling of img2sixel, where positive...

1 affected package

libsixel

Package 24.04 LTS
libsixel Needs evaluation
Show less packages

CVE-2026-33018

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain a Use-After-Free vulnerability via the load_gif() function in fromgif.c, where a single sixel_frame_t object is reused...

1 affected package

libsixel

Package 24.04 LTS
libsixel Needs evaluation
Show less packages

CVE-2026-40683

Medium priority
Needs evaluation

In OpenStack Keystone before 28.0.1, the LDAP identity backend does not convert the user enabled attribute to a boolean when the user_enabled_invert configuration option is False (the default). The _ldap_res_to_model method in the...

1 affected package

keystone

Package 24.04 LTS
keystone Needs evaluation
Show less packages