Search CVE reports


Toggle filters

31 – 40 of 34325 results

Status is adjusted based on your filters.


CVE-2025-66043

Medium priority
Needs evaluation

Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.1. A specially crafted MFER file can lead to arbitrary code execution. An attacker can provide a...

1 affected package

biosig

Package 22.04 LTS
biosig Needs evaluation
Show less packages

CVE-2025-64702

Medium priority
Needs evaluation

quic-go is an implementation of the QUIC protocol in Go. Versions 0.56.0 and below are vulnerable to excessive memory allocation through quic-go's HTTP/3 client and server implementations by sending a QPACK-encoded HEADERS frame...

1 affected package

golang-github-lucas-clemente-quic-go

Package 22.04 LTS
golang-github-lucas-clemente-quic-go Needs evaluation
Show less packages

CVE-2025-14523

Medium priority
Needs evaluation

A flaw in libsoup’s HTTP header handling allows multiple Host: headers in a request and returns the last occurrence for server-side processing. Common front proxies often honor the first Host: header, so this mismatch can cause...

2 affected packages

libsoup2.4, libsoup3

Package 22.04 LTS
libsoup2.4 Needs evaluation
libsoup3 Needs evaluation
Show less packages

CVE-2025-14512

Medium priority
Needs evaluation

A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib's GIO (GLib Input/Output) escape_byte_string() function when processing malicious file or...

1 affected package

glib2.0

Package 22.04 LTS
glib2.0 Needs evaluation
Show less packages

CVE-2025-13912

Medium priority
Needs evaluation

Multiple constant-time implementations in wolfSSL before version 5.8.4 may be transformed into non-constant-time binary by LLVM optimizations, which can potentially result in observable timing discrepancies and lead to information...

1 affected package

wolfssl

Package 22.04 LTS
wolfssl Needs evaluation
Show less packages

CVE-2025-66628

Medium priority
Needs evaluation

ImageMagick is a software suite to create, edit, compose, or convert bitmap images. In versions 7.1.2-9 and prior, the TIM (PSX TIM) image parser contains a critical integer overflow vulnerability in its ReadTIMImage function...

1 affected package

imagemagick

Package 22.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2025-66004

Medium priority
Fixed

A Path Traversal vulnerability in usbmuxd allows local users to escalate to the service user.This issue affects usbmuxd: before 3ded00c9985a5108cfc7591a309f9a23d57a8cba.

1 affected package

usbmuxd

Package 22.04 LTS
usbmuxd Fixed
Show less packages

CVE-2025-66003

Medium priority
Needs evaluation

[Unknown description]

1 affected package

smb4k

Package 22.04 LTS
smb4k Needs evaluation
Show less packages

CVE-2025-66002

Medium priority
Needs evaluation

[Unknown description]

1 affected package

smb4k

Package 22.04 LTS
smb4k Needs evaluation
Show less packages

CVE-2025-65807

Medium priority

Not in release

An issue in sd command v1.0.0 and before allows attackers to escalate privileges to root via a crafted command.

1 affected package

rust-sd

Package 22.04 LTS
rust-sd Not in release
Show less packages