Search CVE reports


Toggle filters

31 – 40 of 43991 results

Status is adjusted based on your filters.


CVE-2026-76881

Medium priority
Needs evaluation

CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

1 affected package

wireshark

Package 24.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2026-76880

Medium priority
Needs evaluation

RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

1 affected package

wireshark

Package 24.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2026-76879

Medium priority
Needs evaluation

C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

1 affected package

wireshark

Package 24.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2026-76878

Medium priority
Needs evaluation

In OpenStack Aodh before 22.0.1, the alarm list API bypasses project scoping when the all_projects query parameter is set to false. The API checks for the presence of the all_projects key rather than its value; a true value...

2 affected packages

aodh, watcher

Package 24.04 LTS
aodh Needs evaluation
watcher Needs evaluation
Show less packages

CVE-2026-76641

Medium priority
Needs evaluation

(Expat through 2.8.3 contains an out-of-bounds read vulnerability that ...)

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 24.04 LTS
expat Needs evaluation
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4 Not in release
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Not in release
cadaver Needs evaluation
gdcm Not affected
ayttm Not in release
cableswig Not in release
coin3 Not affected
matanza Ignored
tdom Needs evaluation
vtk Not in release
smart Not in release
firefox Not affected
thunderbird Not affected
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-75596

Medium priority
Needs evaluation

Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Final and 4.2.17.Final, the default io.netty.handler.ssl.SniHandler constructors use the pre-handshake ClientHello aggregation path...

1 affected package

netty

Package 24.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-75595

Medium priority
Needs evaluation

Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Fina and 4.2.17.Final, io.netty.handler.ssl.SslClientHelloHandler#decode checks the wrong offset before reading the four-byte TLS handshake...

1 affected package

netty

Package 24.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-75140

Medium priority
Needs evaluation

(jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolle ...)

1 affected package

jsoup

Package 24.04 LTS
jsoup Needs evaluation
Show less packages

CVE-2026-7485

Medium priority

Not in release

(Incorrect authorization in frozen BI aggregations in Checkmk <2.5.0p2, ...)

1 affected package

check-mk

Package 24.04 LTS
check-mk Not in release
Show less packages

CVE-2026-73259

Medium priority

Not in release

(Mongoose is an embedded web server and network library. Prior to 7.22, ...)

1 affected package

mongoose

Package 24.04 LTS
mongoose Not in release
Show less packages