Search CVE reports


Toggle filters

1411 – 1420 of 44409 results

Status is adjusted based on your filters.


CVE-2026-41080

Medium priority
Needs evaluation

(libexpat before 2.7.6 uses insufficient entropy, and thus hash floodin ...)

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 18.04 LTS
expat Needs evaluation
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4 Needs evaluation
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Needs evaluation
ayttm
cableswig
coin3 Needs evaluation
matanza Needs evaluation
tdom Needs evaluation
vtk
smart Needs evaluation
firefox
thunderbird
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-40505

Medium priority
Needs evaluation

(MuPDF mutool does not sanitize PDF metadata fields before writing them ...)

1 affected package

mupdf

Package 18.04 LTS
mupdf Needs evaluation
Show less packages

CVE-2026-40260

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large...

2 affected packages

pypdf, pypdf2

Package 18.04 LTS
pypdf
pypdf2 Needs evaluation
Show less packages

CVE-2026-40192

Medium priority
Not affected

Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did not limit the amount of GZIP-compressed data read when decoding a FITS image, making them vulnerable to decompression bomb attacks. A specially crafted FITS...

2 affected packages

pillow, pillow-python2

Package 18.04 LTS
pillow Not affected
pillow-python2
Show less packages

CVE-2026-40179

Medium priority
Needs evaluation

(Prometheus is an open-source monitoring system and time series databas ...)

1 affected package

prometheus

Package 18.04 LTS
prometheus Needs evaluation
Show less packages

CVE-2026-3505

Medium priority
Needs evaluation

(Allocation of resources without limits or throttling vulnerability in ...)

1 affected package

bouncycastle

Package 18.04 LTS
bouncycastle Needs evaluation
Show less packages

CVE-2026-0636

Medium priority
Needs evaluation

(Improper neutralization of special elements used in an LDAP query ('LD ...)

1 affected package

bouncycastle

Package 18.04 LTS
bouncycastle Needs evaluation
Show less packages

CVE-2023-20585

Medium priority
Needs evaluation

(Insufficient checks of the RMP on host buffer access in IOMMU may allo ...)

1 affected package

amd64-microcode

Package 18.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2026-40253

Medium priority
Needs evaluation

openCryptoki is a PKCS#11 library and provides tooling for Linux and AIX. In versions 3.26.0 and below, the BER/DER decoding functions in the shared common library (asn1.c) accept a raw pointer but no buffer length parameter, and...

1 affected package

opencryptoki

Package 18.04 LTS
opencryptoki Needs evaluation
Show less packages

CVE-2026-27820

Medium priority
Needs evaluation

zlib is a Ruby interface for the zlib compression/decompression library. Versions 3.0.0 and below, 3.1.0, 3.1.1, 3.2.0 and 3.2.1 contain a buffer overflow vulnerability in the Zlib::GzipReader. The zstream_buffer_ungets function...

7 affected packages

ruby2.3, ruby2.5, ruby2.7, ruby3.0, ruby3.2...

Package 18.04 LTS
ruby2.3
ruby2.5 Needs evaluation
ruby2.7
ruby3.0
ruby3.2
ruby3.3
jruby Needs evaluation
Show all 7 packages Show less packages