Search CVE reports


Toggle filters

561 – 570 of 35777 results

Status is adjusted based on your filters.


CVE-2025-67269

Medium priority
Fixed

An integer underflow vulnerability exists in the `nextstate()` function in `gpsd/packet.c` of gpsd versions prior to commit `ffa1d6f40bca0b035fc7f5e563160ebb67199da7`. When parsing a NAVCOM packet, the payload length is calculated...

1 affected package

gpsd

Package 22.04 LTS
gpsd Fixed
Show less packages

CVE-2025-67268

Medium priority
Fixed

gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to...

1 affected package

gpsd

Package 22.04 LTS
gpsd Fixed
Show less packages

CVE-2025-15438

Medium priority
Needs evaluation

A vulnerability was determined in PluXml up to 5.8.22. Affected is the function FileCookieJar::__destruct of the file core/admin/medias.php of the component Media Management Module. Executing manipulation of the argument File can...

1 affected package

pluxml

Package 22.04 LTS
pluxml Needs evaluation
Show less packages

CVE-2025-15412

Medium priority
Needs evaluation

A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects the function wabt::Decompiler::VarName of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. Such...

1 affected package

wabt

Package 22.04 LTS
wabt Needs evaluation
Show less packages

CVE-2025-15411

Medium priority
Needs evaluation

A weakness has been identified in WebAssembly wabt up to 1.0.39. This vulnerability affects the function wabt::AST::InsertNode of the file /src/repro/wabt/bin/wasm-decompile of the component wasm-decompile. This manipulation...

1 affected package

wabt

Package 22.04 LTS
wabt Needs evaluation
Show less packages

CVE-2026-21428

Medium priority
Needs evaluation

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to version 0.30.0, the ``write_headers`` function does not check for CR & LF characters in user supplied headers, allowing untrusted header...

1 affected package

cpp-httplib

Package 22.04 LTS
cpp-httplib Needs evaluation
Show less packages

CVE-2025-69412

Medium priority
Needs evaluation

KDE messagelib before 25.11.90 ignores SSL errors for threatMatches:find in the Google Safe Browsing Lookup API (aka phishing API), which might allow spoofing of threat data. NOTE: this Lookup API is not contacted in...

2 affected packages

kf5-messagelib, messagelib

Package 22.04 LTS
kf5-messagelib Needs evaluation
messagelib Not in release
Show less packages

CVE-2025-34468

Medium priority
Needs evaluation

libcoap versions up to and including 4.3.5, prior to commit 30db3ea, contain a stack-based buffer overflow in address resolution when attacker-controlled hostname data is copied into a fixed 256-byte stack buffer without proper...

3 affected packages

libcoap, libcoap2, libcoap3

Package 22.04 LTS
libcoap Not in release
libcoap2 Needs evaluation
libcoap3 Needs evaluation
Show less packages

CVE-2025-15280

Medium priority
Vulnerable

FontForge SFD File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of FontForge. User interaction is required to exploit...

1 affected package

fontforge

Package 22.04 LTS
fontforge Vulnerable
Show less packages

CVE-2025-15279

Medium priority
Vulnerable

FontForge GUtils BMP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of FontForge. User interaction is...

1 affected package

fontforge

Package 22.04 LTS
fontforge Vulnerable
Show less packages