Search CVE reports


Toggle filters

91 – 100 of 31371 results

Status is adjusted based on your filters.


CVE-2025-7396

Medium priority
Needs evaluation

In wolfSSL release 5.8.2 blinding support is turned on by default for Curve25519 in applicable builds. The blinding configure option is only for the base C implementation of Curve25519. It is not needed, or available with; ARM...

1 affected package

wolfssl

Package 22.04 LTS
wolfssl Needs evaluation
Show less packages

CVE-2025-7395

Medium priority
Needs evaluation

A certificate verification error in wolfSSL when building with the WOLFSSL_SYS_CA_CERTS and WOLFSSL_APPLE_NATIVE_CERT_VALIDATION options results in the wolfSSL client failing to properly verify the server certificate's domain...

1 affected package

wolfssl

Package 22.04 LTS
wolfssl Needs evaluation
Show less packages

CVE-2025-7394

Medium priority
Needs evaluation

In the OpenSSL compatibility layer implementation, the function RAND_poll() was not behaving as expected and leading to the potential for predictable values returned from RAND_bytes() after fork() is called. This can lead to weak...

1 affected package

wolfssl

Package 22.04 LTS
wolfssl Needs evaluation
Show less packages

CVE-2025-7370

Negligible priority
Not affected

Rejected reason: Upon investigtion upstream maintainers discovered this was not a real issue. See the references for more details. See: https://gitlab.gnome.org/GNOME/libsoup/-/issues/430#note_2494090.

1 affected package

libsoup3

Package 22.04 LTS
libsoup3 Not affected
Show less packages

CVE-2025-7345

Medium priority
Fixed

A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64_encode_step (glib/gbase64.c). When processing maliciously crafted JPEG images, a heap buffer overflow can...

1 affected package

gdk-pixbuf

Package 22.04 LTS
gdk-pixbuf Fixed
Show less packages

CVE-2025-7339

Medium priority
Needs evaluation

on-headers is a node.js middleware for listening to when a response writes headers. A bug in on-headers versions `<1.1.0` may result in response headers being inadvertently modified when an array is passed...

1 affected package

node-on-headers

Package 22.04 LTS
node-on-headers Needs evaluation
Show less packages

CVE-2025-7259

Medium priority

Not in release

An authorized user can issue queries with duplicate _id fields, that leads to unexpected behavior in MongoDB Server, which may result to crash. This issue can only be triggered by authorized users and cause Denial of Service. This...

1 affected package

mongodb

Package 22.04 LTS
mongodb Not in release
Show less packages

CVE-2025-7207

Medium priority
Needs evaluation

A vulnerability, which was classified as problematic, was found in mruby up to 3.4.0-rc2. Affected is the function scope_new of the file mrbgems/mruby-compiler/core/codegen.c of the component nregs Handler. The manipulation leads...

1 affected package

mruby

Package 22.04 LTS
mruby Needs evaluation
Show less packages

CVE-2025-7069

Medium priority
Needs evaluation

A vulnerability, which was classified as problematic, was found in HDF5 1.14.6. Affected is the function H5FS__sect_link_size of the file src/H5FSsection.c. The manipulation leads to heap-based buffer overflow. It is possible to...

1 affected package

hdf5

Package 22.04 LTS
hdf5 Needs evaluation
Show less packages

CVE-2025-7068

Medium priority
Needs evaluation

A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5FL__malloc of the file src/H5FL.c. The manipulation leads to memory leak. Attacking locally is a requirement....

1 affected package

hdf5

Package 22.04 LTS
hdf5 Needs evaluation
Show less packages