Search CVE reports


Toggle filters

101 – 110 of 36841 results

Status is adjusted based on your filters.


CVE-2026-4185

Medium priority
Needs evaluation

A vulnerability was found in GPAC up to 2.5-DEV-rev2167-gcc9d617c0-master. This vulnerability affects the function swf_def_bits_jpeg of the file src/scene_manager/swf_parse.c of the component MP4Box. The manipulation of the...

1 affected package

gpac

Package 22.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-4174

Medium priority

Not in release

A vulnerability has been found in Radare2 5.9.9. This issue affects the function walk_exports_trie of the file libr/bin/format/mach0/mach0.c of the component Mach-O File Parser. Such manipulation leads to resource consumption. The...

1 affected package

radare2

Package 22.04 LTS
radare2 Not in release
Show less packages

CVE-2026-3442

Medium priority
Needs evaluation

A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker component. An attacker could exploit this by convincing a user to process a specially...

1 affected package

binutils

Package 22.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-3441

Medium priority
Needs evaluation

A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in the bfd linker, allows an attacker to gain access to sensitive information. By convincing a user to process a...

1 affected package

binutils

Package 22.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-32778

Medium priority
Needs evaluation

libexpat before 2.7.5 allows a NULL pointer dereference in the function setContext on retry after an earlier ouf-of-memory condition.

23 affected packages

expat, coin3, apache2, apr-util, cmake...

Package 22.04 LTS
expat Needs evaluation
coin3 Not affected
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4 Not in release
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm Not in release
cableswig Not in release
matanza Ignored
tdom Needs evaluation
vtk Not in release
smart Not in release
firefox Not affected
thunderbird Not affected
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32777

Medium priority
Needs evaluation

libexpat before 2.7.5 allows an infinite loop while parsing DTD content.

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 22.04 LTS
expat Needs evaluation
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4 Not in release
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm Not in release
cableswig Not in release
coin3 Not affected
matanza Ignored
tdom Needs evaluation
vtk Not in release
smart Not in release
firefox Not affected
thunderbird Not affected
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32776

Medium priority
Needs evaluation

libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content.

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 22.04 LTS
expat Needs evaluation
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4 Not in release
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm Not in release
cableswig Not in release
coin3 Not affected
matanza Ignored
tdom Needs evaluation
vtk Not in release
smart Not in release
firefox Not affected
thunderbird Not affected
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32775

Medium priority
Needs evaluation

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

1 affected package

libexif

Package 22.04 LTS
libexif Needs evaluation
Show less packages

CVE-2026-32772

Medium priority
Needs evaluation

telnet in GNU inetutils through 2.7 allows servers to read arbitrary environment variables from clients via NEW_ENVIRON SEND USERVAR.

1 affected package

inetutils

Package 22.04 LTS
inetutils Needs evaluation
Show less packages

CVE-2026-32640

Medium priority
Needs evaluation

SimpleEval is a library for adding evaluatable expressions into python projects. Prior to 1.0.5, objects (including modules) can leak dangerous modules through to direct access inside the sandbox. If the objects you've passed in...

1 affected package

simpleeval

Package 22.04 LTS
simpleeval Needs evaluation
Show less packages