Search CVE reports


Toggle filters

241 – 250 of 35526 results

Status is adjusted based on your filters.


CVE-2025-68471

Medium priority
Needs evaluation

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, avahi-daemon can be crashed by sending 2 unsolicited announcements with CNAME resource records 2...

1 affected package

avahi

Package 22.04 LTS
avahi Needs evaluation
Show less packages

CVE-2025-68468

Medium priority
Needs evaluation

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, avahi-daemon can be crashed by sending unsolicited announcements containing CNAME resource...

1 affected package

avahi

Package 22.04 LTS
avahi Needs evaluation
Show less packages

CVE-2025-68276

Medium priority
Needs evaluation

Avahi is a system which facilitates service discovery on a local network via the mDNS/DNS-SD protocol suite. In 0.9-rc2 and earlier, an unprivileged local users can crash avahi-daemon (with wide-area disabled) by creating record...

1 affected package

avahi

Package 22.04 LTS
avahi Needs evaluation
Show less packages

CVE-2025-71063

Medium priority

Not in release

Errands before 46.2.10 does not verify TLS certificates for CalDAV servers.

1 affected package

errands

Package 22.04 LTS
errands Not in release
Show less packages

CVE-2025-51602

Medium priority
Needs evaluation

security update

1 affected package

vlc

Package 22.04 LTS
vlc Needs evaluation
Show less packages

CVE-2025-15506

Medium priority
Needs evaluation

A vulnerability was found in AcademySoftwareFoundation OpenColorIO up to 2.5.0. This issue affects the function ConvertToRegularExpression of the file src/OpenColorIO/FileRules.cpp. Performing a manipulation results...

1 affected package

opencolorio

Package 22.04 LTS
opencolorio Needs evaluation
Show less packages

CVE-2026-0822

Medium priority

Not in release

A vulnerability was identified in quickjs-ng quickjs up to 0.11.0. This issue affects the function js_typed_array_sort of the file quickjs.c. The manipulation leads to heap-based buffer overflow. Remote exploitation of the attack...

1 affected package

quickjs

Package 22.04 LTS
quickjs Not in release
Show less packages

CVE-2026-0821

Medium priority

Not in release

A vulnerability was determined in quickjs-ng quickjs up to 0.11.0. This vulnerability affects the function js_typed_array_constructor of the file quickjs.c. Executing a manipulation can lead to heap-based buffer overflow. The...

1 affected package

quickjs

Package 22.04 LTS
quickjs Not in release
Show less packages

CVE-2026-22703

Medium priority

Not in release

Cosign provides code signing and transparency for containers and binaries. Prior to versions 2.6.2 and 3.0.4, Cosign bundle can be crafted to successfully verify an artifact even if the embedded Rekor entry does not reference the...

1 affected package

cosign

Package 22.04 LTS
cosign Not in release
Show less packages

CVE-2026-22702

Medium priority
Needs evaluation

virtualenv is a tool for creating isolated virtual python environments. Prior to version 20.36.1, TOCTOU (Time-of-Check-Time-of-Use) vulnerabilities in virtualenv allow local attackers to perform symlink-based attacks on directory...

1 affected package

python-virtualenv

Package 22.04 LTS
python-virtualenv Needs evaluation
Show less packages