Search CVE reports


Toggle filters

11 – 20 of 58662 results

Status is adjusted based on your filters.


CVE-2026-88340

Medium priority
Needs evaluation

An invalid pointer release vulnerability exists in YARA 4.5.8 during deserialization of compiled .yrc rule files. The vulnerability is caused by insufficient validation of external-variable pointers, which may lead to invalid free...

1 affected package

yara

Package 16.04 LTS
yara Needs evaluation
Show less packages

CVE-2026-88339

Medium priority
Needs evaluation

A NULL pointer dereference vulnerability exists in the gf_sg_vrml_field_clone() function of GPAC 2d7da22e (26.08-DEV). The vulnerability occurs when cloning a PROTO default SFImage field with a NULL source pointer. An attacker can...

1 affected package

gpac

Package 16.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-75432

Medium priority
Needs evaluation

An issue in yaml-cpp 0.9.0 allows a remote attacker to obtain sensitive information via the src/scanner.cpp, Scanner::PopIndent(), and Scanner::PushIndentTo() components

1 affected package

yaml-cpp

Package 16.04 LTS
yaml-cpp Needs evaluation
Show less packages

CVE-2026-77399

Medium priority
Needs evaluation

icalendar is an RFC 5545 compatible parser and generator of iCalendar files for Python. From 6.1.0 until 7.2.2, vInt.from_ical accepts an attacker-controlled VALARM REPEAT value and applications that request alarm times can...

1 affected package

python-icalendar

Package 16.04 LTS
python-icalendar Needs evaluation
Show less packages

CVE-2026-95818

Medium priority
Needs evaluation

A stack-based buffer overflow in the dynamic loader (ld.so) of the GNU C Library (glibc) versions 2.14 through 2.44 allows a local attacker to crash or corrupt the memory of setuid/setgid (AT_SECURE) programs. When such a...

2 affected packages

glibc, eglibc

Package 16.04 LTS
glibc Needs evaluation
eglibc —
Show less packages

CVE-2026-87902

Medium priority
Needs evaluation

An unauthenticated attacker can make `get_page_template()` page-template resolution include a chosen readable local `.php` file outside the active theme directories. If relevant pre-conditions for both the server and the active...

1 affected package

wordpress

Package 16.04 LTS
wordpress Needs evaluation
Show less packages

CVE-2026-13087

Medium priority
Needs evaluation

A heap out-of-bounds write vulnerability was found in the Linux kernel's RPC-over-RDMA server reply path in net/sunrpc/xprtrdma/svc_rdma_sendto.c. When a crafted RPC-over-RDMA client sends a large NFS READ request with an empty...

168 affected packages

linux, linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11...

Package 16.04 LTS
linux Needs evaluation
linux-hwe Needs evaluation
linux-hwe-5.4 —
linux-hwe-5.8 —
linux-hwe-5.11 —
linux-hwe-5.13 —
linux-hwe-5.15 —
linux-hwe-5.19 —
linux-hwe-6.2 —
linux-hwe-6.5 —
linux-hwe-6.8 —
linux-hwe-6.11 —
linux-hwe-6.14 —
linux-hwe-6.17 —
linux-hwe-7.0 —
linux-hwe-edge Ignored
linux-lts-xenial —
linux-kvm Needs evaluation
linux-allwinner-5.19 —
linux-aws Needs evaluation
linux-aws-5.0 —
linux-aws-5.3 —
linux-aws-5.4 —
linux-aws-5.8 —
linux-aws-5.11 —
linux-aws-5.13 —
linux-aws-5.15 —
linux-aws-5.19 —
linux-aws-6.2 —
linux-aws-6.5 —
linux-aws-6.8 —
linux-aws-6.14 —
linux-aws-6.17 —
linux-aws-7.0 —
linux-aws-hwe Needs evaluation
linux-azure Needs evaluation
linux-azure-4.15 —
linux-azure-5.3 —
linux-azure-5.4 —
linux-azure-5.8 —
linux-azure-5.11 —
linux-azure-5.13 —
linux-azure-5.15 —
linux-azure-5.19 —
linux-azure-6.2 —
linux-azure-6.5 —
linux-azure-6.8 —
linux-azure-6.11 —
linux-azure-6.14 —
linux-azure-6.17 —
linux-azure-7.0 —
linux-azure-fde —
linux-azure-fde-5.15 —
linux-azure-fde-5.19 —
linux-azure-fde-6.2 —
linux-azure-fde-6.8 —
linux-azure-fde-6.14 —
linux-azure-fde-6.17 —
linux-azure-fde-7.0 —
linux-azure-nvidia —
linux-azure-nvidia-6.14 —
linux-bluefield —
linux-azure-edge —
linux-fips Needs evaluation
linux-aws-fips —
linux-azure-fips —
linux-gcp-fips —
linux-gcp Needs evaluation
linux-gcp-4.15 —
linux-gcp-5.3 —
linux-gcp-5.4 —
linux-gcp-5.8 —
linux-gcp-5.11 —
linux-gcp-5.13 —
linux-gcp-5.15 —
linux-gcp-5.19 —
linux-gcp-6.2 —
linux-gcp-6.5 —
linux-gcp-6.8 —
linux-gcp-6.11 —
linux-gcp-6.14 —
linux-gcp-6.17 —
linux-gcp-7.0 —
linux-gke —
linux-gke-4.15 —
linux-gke-5.4 —
linux-gke-5.15 —
linux-gkeop —
linux-gkeop-5.4 —
linux-gkeop-5.15 —
linux-ibm —
linux-ibm-5.4 —
linux-ibm-5.15 —
linux-ibm-6.8 —
linux-intel-5.13 —
linux-intel-iotg —
linux-intel-iotg-5.15 —
linux-iot —
linux-intel-iot-realtime —
linux-lowlatency —
linux-lowlatency-hwe-5.15 —
linux-lowlatency-hwe-5.19 —
linux-lowlatency-hwe-6.2 —
linux-lowlatency-hwe-6.5 —
linux-lowlatency-hwe-6.8 —
linux-lowlatency-hwe-6.11 —
linux-nvidia —
linux-nvidia-6.2 —
linux-nvidia-6.5 —
linux-nvidia-6.8 —
linux-nvidia-6.11 —
linux-nvidia-6.17 —
linux-nvidia-7.0 —
linux-nvidia-bos —
linux-nvidia-lowlatency —
linux-nvidia-tegra —
linux-nvidia-tegra-5.15 —
linux-nvidia-tegra-igx —
linux-oracle Needs evaluation
linux-oracle-5.0 —
linux-oracle-5.3 —
linux-oracle-5.4 —
linux-oracle-5.8 —
linux-oracle-5.11 —
linux-oracle-5.13 —
linux-oracle-5.15 —
linux-oracle-6.5 —
linux-oracle-6.8 —
linux-oracle-6.14 —
linux-oracle-6.17 —
linux-oracle-7.0 —
linux-oem —
linux-oem-5.6 —
linux-oem-5.10 —
linux-oem-5.13 —
linux-oem-5.14 —
linux-oem-5.17 —
linux-oem-6.0 —
linux-oem-6.1 —
linux-oem-6.5 —
linux-oem-6.8 —
linux-oem-6.11 —
linux-oem-6.14 —
linux-oem-6.17 —
linux-oem-7.0 —
linux-raspi —
linux-raspi2 —
linux-raspi-5.4 —
linux-raspi-realtime —
linux-realtime —
linux-realtime-6.8 —
linux-realtime-6.14 —
linux-riscv —
linux-riscv-5.8 —
linux-riscv-5.11 —
linux-riscv-5.15 —
linux-riscv-5.19 —
linux-riscv-6.5 —
linux-riscv-6.8 —
linux-riscv-6.14 —
linux-riscv-6.17 —
linux-riscv-7.0 —
linux-starfive-5.19 —
linux-starfive-6.2 —
linux-starfive-6.5 —
linux-xilinx —
linux-xilinx-zynqmp —
linux-realtime-6.17 —
Show all 168 packages Show less packages

CVE-2026-90462

Medium priority
Needs evaluation

A flaw was found in SSSD. When configured with the LDAP access provider and `ldap_access_order` including `ppolicy` or `lockout`, a fail-open condition in the LDAP ppolicy access check can occur if a user lookup returns...

1 affected package

sssd

Package 16.04 LTS
sssd Needs evaluation
Show less packages

CVE-2026-86805

Medium priority
Needs evaluation

A time-of-check to time-of-use (TOCTOU) race condition in the dynamic loader (ld.so) of the GNU C Library (glibc) versions 2.14 through 2.44 allows a local attacker to escalate privileges. When expanding $ORIGIN in DT_RPATH for...

2 affected packages

glibc, eglibc

Package 16.04 LTS
glibc Needs evaluation
eglibc —
Show less packages

CVE-2026-81886

Medium priority
Needs evaluation

radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Windows 64-bit crash-dump dmp64 parser was vulnerable because the Windows dmp64 parser used an...

1 affected package

radare2

Package 16.04 LTS
radare2 Needs evaluation
Show less packages