Search CVE reports


Toggle filters

1181 – 1190 of 39983 results

Status is adjusted based on your filters.


CVE-2026-5761

Medium priority
Needs evaluation

[virtio-blk: zone report buffer out-of-memory]

1 affected package

qemu

Package 20.04 LTS
qemu Needs evaluation
Show less packages

CVE-2026-5744

Medium priority
Needs evaluation

[hw/uefi: heap overflow]

1 affected package

qemu

Package 20.04 LTS
qemu Needs evaluation
Show less packages

CVE-2026-41990

Medium priority
Not affected

Libgcrypt before 1.12.2 mishandles Dilithium signing. Writes to a static array lack a bounds check but do not use attacker-controlled data.

1 affected package

libgcrypt20

Package 20.04 LTS
libgcrypt20 Not affected
Show less packages

CVE-2026-41989

Medium priority
Needs evaluation

Libgcrypt before 1.12.2 sometimes allows a heap-based buffer overflow and denial of service via crafted ECDH ciphertext to gcry_pk_decrypt.

1 affected package

libgcrypt20

Package 20.04 LTS
libgcrypt20 Needs evaluation
Show less packages

CVE-2026-41988

Medium priority
Needs evaluation

uuid before 14.0.0 can make unexpected writes when external output buffers are used, and the UUID version is 3, 5, or 6. In particular, UUID version 4, which is very commonly used, is unaffected by this issue.

1 affected package

node-uuid

Package 20.04 LTS
node-uuid Needs evaluation
Show less packages

CVE-2026-41651

High priority
Fixed

PackageKit is a a D-Bus abstraction layer that allows the user to manage packages in a secure way using a cross-distro, cross-architecture API. PackageKit between and including versions 1.0.2 and 1.3.4 is vulnerable to a...

1 affected package

packagekit

Package 20.04 LTS
packagekit Fixed
Show less packages

CVE-2026-41564

Medium priority
Needs evaluation

CryptX versions before 0.088 for Perl do not reseed the Crypt::PK PRNG state after forking. The Crypt::PK::RSA, Crypt::PK::DSA, Crypt::PK::DH, Crypt::PK::ECC, Crypt::PK::Ed25519 and Crypt::PK::X25519 modules seed a per-object...

1 affected package

libcryptx-perl

Package 20.04 LTS
libcryptx-perl Needs evaluation
Show less packages

CVE-2026-41196

Medium priority
Needs evaluation

Luanti (formerly Minetest) is an open source voxel game-creation platform. Starting in version 5.0.0 and prior to version 5.15.2, a malicious mod can trivially escape the sandboxed Lua environment to execute arbitrary code and...

2 affected packages

luanti, minetest

Package 20.04 LTS
luanti
minetest Needs evaluation
Show less packages

CVE-2026-41179

Medium priority
Needs evaluation

Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Starting in version 1.48.0 and prior to version 1.73.5, the RC endpoint `operations/fsinfo` is exposed...

1 affected package

rclone

Package 20.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-41176

Medium priority
Needs evaluation

Rclone is a command-line program to sync files and directories to and from different cloud storage providers. The RC endpoint `options/set` is exposed without `AuthRequired: true`, but it can mutate global runtime configuration,...

1 affected package

rclone

Package 20.04 LTS
rclone Needs evaluation
Show less packages