Search CVE reports


Toggle filters

831 – 840 of 42759 results

Status is adjusted based on your filters.


CVE-2026-19028

Medium priority
Needs evaluation

H5Z__filter_fletcher32 in H5Zfletcher32.c in HDF5 through 2.3.0 computes the data length to checksum by subtracting the 4-byte trailing checksum size from the input buffer size without checking that the buffer is at least 4 bytes,...

1 affected package

hdf5

Package 24.04 LTS
hdf5 Needs evaluation
Show less packages

CVE-2026-19027

Medium priority
Needs evaluation

The H5Z__nbit_decompress_one_byte, H5Z__nbit_decompress_one_nooptype, and H5Z__nbit_decompress_one_atomic functions in H5Znbit.c in HDF5 through 2.3.0 advance a read index into the compressed chunk buffer without bounding it...

1 affected package

hdf5

Package 24.04 LTS
hdf5 Needs evaluation
Show less packages

CVE-2026-67863

Medium priority

Not in release

In open62541 1.5.5, a server-side use-after-free exists in the local MonitoredItem callback path. The issue occurs when UA_Subscription_localPublish continues to use the current UA_Notification after a callback invokes...

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-19026

Medium priority
Needs evaluation

H5Z__filter_nbit in H5Znbit.c in HDF5 through 2.3.0 dereferences cd_values[0] through cd_values[4] without validating that cd_values is non-NULL or that cd_nelmts is at least 5, the fixed size of the filter's header. This allows...

1 affected package

hdf5

Package 24.04 LTS
hdf5 Needs evaluation
Show less packages

CVE-2026-19025

Medium priority
Needs evaluation

H5O__layout_decode in H5Olayout.c in HDF5 through 2.3.0 does not validate that a chunked dataset's stored chunk-layout dimensionality matches its dataspace rank when an existing dataset is opened, whereas this check is performed...

1 affected package

hdf5

Package 24.04 LTS
hdf5 Needs evaluation
Show less packages

CVE-2026-19024

Medium priority
Needs evaluation

NULL pointer dereference in H5Pget_fill_value in HDF5 before 2.3.0 allows attackers to cause a denial of service via a dataset whose version 1 or 2 fill value message has the "defined" flag set together with a negative size field,...

1 affected package

hdf5

Package 24.04 LTS
hdf5 Needs evaluation
Show less packages

CVE-2026-19023

Medium priority
Needs evaluation

Untrusted pointer dereference in the render_bin_output function in the h5dump tool in HDF5 before 2.3.0 allows attackers to cause a denial of service via a variable-length string dataset with more than one element dumped in binary...

1 affected package

hdf5

Package 24.04 LTS
hdf5 Needs evaluation
Show less packages

CVE-2026-67864

Medium priority

Not in release

An issue in open62541 v.1.5.5 and before allows a remote attacker to cause a denial of service via the NodeManagement type-instantiation logic component

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-71313

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend in backend/local/local.go relies on the configurable filename encoder to...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-71312

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to v1.75.0, rclone interpolates remote SFTP paths into PowerShell hash commands in backend/sftp/sftp.go, and...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages