Search CVE reports
1551 – 1560 of 38021 results
The Windows Interactive Service in OpenVPN 2.7_alpha1 through 2.7.6 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via specially crafted paths
1 affected package
openvpn
| Package | 26.04 LTS |
|---|---|
| openvpn | Not affected |
[Regression in CVE-2026-4897 fix (polkit read_cookie()) - stack buffer underflow]
1 affected package
policykit-1
| Package | 26.04 LTS |
|---|---|
| policykit-1 | Fixed |
[Unknown description]
1 affected package
bluez
| Package | 26.04 LTS |
|---|---|
| bluez | Needs evaluation |
[Unknown description]
1 affected package
gfs2-utils
| Package | 26.04 LTS |
|---|---|
| gfs2-utils | Needs evaluation |
[GHSA-jcgh-p9v3-pw6j: Heap out-of-bounds read in RemoteIo when reading block-aligned remote CRW files]
1 affected package
exiv2
| Package | 26.04 LTS |
|---|---|
| exiv2 | Needs evaluation |
[GHSA-3695-mjv8-3r52: Heap out-of-bounds write in RemoteIo when reading from a malicious remote server (WebReady/Curl builds)]
1 affected package
exiv2
| Package | 26.04 LTS |
|---|---|
| exiv2 | Needs evaluation |
[GHSA-hxph-pv7w-8649: Out of bounds read in CrwMap::decodeBasic]
1 affected package
exiv2
| Package | 26.04 LTS |
|---|---|
| exiv2 | Needs evaluation |
A weakness has been identified in valkey-io valkey up to 9.0.5/9.1.1. This affects the function kvstoreGetHashtable of the file src/kvstore.c. This manipulation of the argument didx causes out-of-bounds read. It is possible to...
1 affected package
valkey
| Package | 26.04 LTS |
|---|---|
| valkey | Needs evaluation |
Authen::SASL::Perl::DIGEST_MD5 versions before 2.2100 for Perl accept replayed authentication responses via unverified nonce in server_step. server_start generates a fresh nonce and sends it in the challenge, and nothing later...
1 affected package
libauthen-sasl-perl
| Package | 26.04 LTS |
|---|---|
| libauthen-sasl-perl | Needs evaluation |
When libpsl support is enabled, libcurl fails to enforce the Public Suffix List boundary check when processing a `Set-Cookie` header where the `Domain` attribute explicitly matches an origin host that is itself a public...
1 affected package
curl
| Package | 26.04 LTS |
|---|---|
| curl | Vulnerable |