Search CVE reports


Toggle filters

561 – 570 of 27411 results

Status is adjusted based on your filters.


CVE-2026-44608

Medium priority
Fixed

NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a locking inconsistency vulnerability that when certain conditions are met (multi-threaded, RPZ XFR reload, RPZ zone with 'rpz-nsip'/'rpz-nsdname' triggers) it could...

1 affected package

unbound

Package 26.04 LTS
unbound Fixed
Show less packages

CVE-2026-44390

Medium priority
Fixed

NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability when handling replies with very large RRsets that Unbound needs to perform name compression for. Malicious upstream responses with very large RRsets with...

1 affected package

unbound

Package 26.04 LTS
unbound Fixed
Show less packages

CVE-2026-43961

Medium priority
Needs evaluation

[Unknown description]

1 affected package

vim

Package 26.04 LTS
vim Needs evaluation
Show less packages

CVE-2026-43620

Medium priority
Fixed

Rsync version 3.4.2 and prior contain a receiver-side out-of-bounds array read vulnerability in recv_files() in receiver.c that allows a malicious rsync server to crash the rsync client process. Attackers can exploit...

1 affected package

rsync

Package 26.04 LTS
rsync Fixed
Show less packages

CVE-2026-43619

Medium priority
Fixed

Rsync version 3.4.2 and prior contain symlink race condition vulnerabilities in path-based system calls including chmod, lchown, utimes, rename, unlink, mkdir, symlink, mknod, link, rmdir, and lstat that allow local attackers to...

1 affected package

rsync

Package 26.04 LTS
rsync Fixed
Show less packages

CVE-2026-43618

High priority
Fixed

Rsync version 3.4.2 and prior contain an integer overflow vulnerability in the compressed-token decoder where a 32-bit signed counter is not checked for overflow, allowing a malicious sender to trigger an overflow that causes the...

1 affected package

rsync

Package 26.04 LTS
rsync Fixed
Show less packages

CVE-2026-43617

Medium priority
Fixed

Rsync version 3.4.2 and prior contain an authorization bypass vulnerability in the rsync daemon's hostname-based access control list enforcement when configured with chroot. Attackers can bypass hostname-based deny rules...

1 affected package

rsync

Package 26.04 LTS
rsync Fixed
Show less packages

CVE-2026-42960

Medium priority
Fixed

NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to poisoning via promiscuous records for the authority section. Promiscuous RRSets that complement DNS replies in the authority section can be used to trick...

1 affected package

unbound

Package 26.04 LTS
unbound Fixed
Show less packages

CVE-2026-42959

Medium priority
Fixed

NLnet Labs Unbound up to and including version 1.25.0 has a denial of service vulnerability in the DNSSEC validator that can lead to a crash given malicious upstream replies. When Unbound constructs chase-reply messages for...

1 affected package

unbound

Package 26.04 LTS
unbound Fixed
Show less packages

CVE-2026-42944

Medium priority
Fixed

NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a vulnerability that results in heap overflow when encoding multiple NSID and/or DNS Cookie EDNS and/or EDNS Padding options in the reply packet. The relevant...

1 affected package

unbound

Package 26.04 LTS
unbound Fixed
Show less packages