Search CVE reports


Toggle filters

481 – 490 of 62102 results


CVE-2021-4472

Medium priority
Needs evaluation

The mistral-dashboard plugin for openstack has a local file inclusion vulnerability through the 'Create Workbook' feature that may result in disclosure of arbitrary local files content.

1 affected package

mistral-dashboard

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mistral-dashboard Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-2486

Medium priority
Fixed

The Ubuntu edk2 UEFI firmware packages accidentally allowed the UEFI Shell to be accessed in Secure Boot environments, possibly allowing bypass of Secure Boot constraints. Versions 2024.05-2ubuntu0.3 and 2024.02-2ubuntu0.3 disable...

1 affected package

edk2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 Fixed Not affected Not affected Not affected
Show less packages

CVE-2025-63938

Medium priority
Needs evaluation

Tinyproxy through 1.11.2 contains an integer overflow vulnerability in the strip_return_port() function within src/reqs.c.

1 affected package

tinyproxy

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tinyproxy Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-13601

Medium priority
Needs evaluation

A heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer size in the g_escape_uri_string() function. If the string to escape contains a very large number of unacceptable characters (which...

1 affected package

glib2.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
glib2.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-13674

Medium priority
Needs evaluation

BPv7 dissector crash in Wireshark 4.6.0 allows denial of service

1 affected package

wireshark

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wireshark Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-13735

Medium priority
Needs evaluation

Out-of-bounds Read vulnerability in ASR1903、ASR3901 in ASR Lapwing_Linux on Linux (nr_fw modules). This vulnerability is associated with program files Code/nr_fw/DLP/src/NrCgi.C. This issue affects Lapwing_Linux: before 2025/11/26.

149 affected packages

linux, linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Needs evaluation Needs evaluation Needs evaluation Needs evaluation
linux-hwe Not in release Not in release Not in release Ignored
linux-hwe-5.4 Not in release Not in release Not in release Needs evaluation
linux-hwe-5.8 Not in release Not in release Ignored Not in release
linux-hwe-5.11 Not in release Not in release Ignored Not in release
linux-hwe-5.13 Not in release Not in release Ignored Not in release
linux-hwe-5.15 Not in release Not in release Needs evaluation Not in release
linux-hwe-5.19 Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Ignored Not in release Not in release
linux-hwe-6.5 Not in release Ignored Not in release Not in release
linux-hwe-6.8 Not in release Needs evaluation Not in release Not in release
linux-hwe-6.11 Ignored Not in release Not in release Not in release
linux-hwe-6.14 Needs evaluation Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-kvm Not in release Needs evaluation Needs evaluation Needs evaluation
linux-allwinner-5.19 Not in release Ignored Not in release Not in release
linux-aws Needs evaluation Needs evaluation Needs evaluation Needs evaluation
linux-aws-5.0 Not in release Not in release Not in release Ignored
linux-aws-5.3 Not in release Not in release Not in release Ignored
linux-aws-5.4 Not in release Not in release Not in release Needs evaluation
linux-aws-5.8 Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Ignored Not in release
linux-aws-5.13 Not in release Not in release Ignored Not in release
linux-aws-5.15 Not in release Not in release Needs evaluation Not in release
linux-aws-5.19 Not in release Ignored Not in release Not in release
linux-aws-6.2 Not in release Ignored Not in release Not in release
linux-aws-6.5 Not in release Ignored Not in release Not in release
linux-aws-6.8 Not in release Needs evaluation Not in release Not in release
linux-aws-6.14 Needs evaluation Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Needs evaluation Needs evaluation Needs evaluation Ignored
linux-azure-4.15 Not in release Not in release Not in release Needs evaluation
linux-azure-5.3 Not in release Not in release Not in release Ignored
linux-azure-5.4 Not in release Not in release Not in release Needs evaluation
linux-azure-5.8 Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Ignored Not in release
linux-azure-5.13 Not in release Not in release Ignored Not in release
linux-azure-5.15 Not in release Not in release Needs evaluation Not in release
linux-azure-5.19 Not in release Ignored Not in release Not in release
linux-azure-6.2 Not in release Ignored Not in release Not in release
linux-azure-6.5 Not in release Ignored Not in release Not in release
linux-azure-6.8 Not in release Needs evaluation Not in release Not in release
linux-azure-6.11 Ignored Not in release Not in release Not in release
linux-azure-6.14 Needs evaluation Not in release Not in release Not in release
linux-azure-fde Needs evaluation Needs evaluation Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Needs evaluation Not in release
linux-azure-fde-5.19 Not in release Ignored Not in release Not in release
linux-azure-fde-6.2 Not in release Ignored Not in release Not in release
linux-azure-fde-6.14 Needs evaluation Not in release Not in release Not in release
linux-azure-nvidia Needs evaluation Not in release Not in release Not in release
linux-azure-nvidia-6.14 Needs evaluation Not in release Not in release Not in release
linux-bluefield Not in release Not in release Needs evaluation Not in release
linux-azure-edge Not in release Not in release Not in release Ignored
linux-fips Needs evaluation Needs evaluation Needs evaluation Needs evaluation
linux-aws-fips Needs evaluation Needs evaluation Needs evaluation Needs evaluation
linux-azure-fips Needs evaluation Needs evaluation Needs evaluation Needs evaluation
linux-gcp-fips Needs evaluation Needs evaluation Needs evaluation Needs evaluation
linux-gcp Needs evaluation Needs evaluation Needs evaluation Ignored
linux-gcp-4.15 Not in release Not in release Not in release Needs evaluation
linux-gcp-5.3 Not in release Not in release Not in release Ignored
linux-gcp-5.4 Not in release Not in release Not in release Needs evaluation
linux-gcp-5.8 Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Ignored Not in release
linux-gcp-5.13 Not in release Not in release Ignored Not in release
linux-gcp-5.15 Not in release Not in release Needs evaluation Not in release
linux-gcp-5.19 Not in release Ignored Not in release Not in release
linux-gcp-6.2 Not in release Ignored Not in release Not in release
linux-gcp-6.5 Not in release Ignored Not in release Not in release
linux-gcp-6.8 Not in release Needs evaluation Not in release Not in release
linux-gcp-6.11 Ignored Not in release Not in release Not in release
linux-gcp-6.14 Needs evaluation Not in release Not in release Not in release
linux-gke Needs evaluation Needs evaluation Ignored Not in release
linux-gke-4.15 Not in release Not in release Not in release Ignored
linux-gke-5.4 Not in release Not in release Not in release Ignored
linux-gke-5.15 Not in release Not in release Ignored Not in release
linux-gkeop Needs evaluation Needs evaluation Ignored Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Ignored
linux-gkeop-5.15 Not in release Not in release Ignored Not in release
linux-ibm Needs evaluation Needs evaluation Needs evaluation Not in release
linux-ibm-5.4 Not in release Not in release Not in release Needs evaluation
linux-ibm-5.15 Not in release Not in release Needs evaluation Not in release
linux-ibm-6.8 Not in release Needs evaluation Not in release Not in release
linux-intel-5.13 Not in release Not in release Ignored Not in release
linux-intel-iotg Not in release Needs evaluation Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Needs evaluation Not in release
linux-iot Not in release Not in release Needs evaluation Not in release
linux-intel-iot-realtime Not in release Needs evaluation Not in release Not in release
linux-lowlatency Needs evaluation Needs evaluation Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Needs evaluation Not in release
linux-lowlatency-hwe-5.19 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Needs evaluation Not in release Not in release
linux-lowlatency-hwe-6.11 Ignored Not in release Not in release Not in release
linux-nvidia Needs evaluation Needs evaluation Not in release Not in release
linux-nvidia-6.2 Not in release Ignored Not in release Not in release
linux-nvidia-6.5 Not in release Ignored Not in release Not in release
linux-nvidia-6.8 Not in release Needs evaluation Not in release Not in release
linux-nvidia-6.11 Ignored Not in release Not in release Not in release
linux-nvidia-lowlatency Needs evaluation Not in release Not in release Not in release
linux-nvidia-tegra Needs evaluation Needs evaluation Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Needs evaluation Not in release
linux-nvidia-tegra-igx Not in release Needs evaluation Not in release Not in release
linux-oracle Needs evaluation Needs evaluation Needs evaluation Needs evaluation
linux-oracle-5.0 Not in release Not in release Not in release Ignored
linux-oracle-5.3 Not in release Not in release Not in release Ignored
linux-oracle-5.4 Not in release Not in release Not in release Needs evaluation
linux-oracle-5.8 Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Ignored Not in release
linux-oracle-5.13 Not in release Not in release Ignored Not in release
linux-oracle-5.15 Not in release Not in release Needs evaluation Not in release
linux-oracle-6.5 Not in release Ignored Not in release Not in release
linux-oracle-6.8 Not in release Needs evaluation Not in release Not in release
linux-oracle-6.14 Needs evaluation Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored
linux-oem-5.6 Not in release Not in release Ignored Not in release
linux-oem-5.10 Not in release Not in release Ignored Not in release
linux-oem-5.13 Not in release Not in release Ignored Not in release
linux-oem-5.14 Not in release Not in release Ignored Not in release
linux-oem-5.17 Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Ignored Not in release Not in release
linux-oem-6.1 Not in release Ignored Not in release Not in release
linux-oem-6.5 Not in release Ignored Not in release Not in release
linux-oem-6.8 Ignored Not in release Not in release Not in release
linux-oem-6.11 Ignored Not in release Not in release Not in release
linux-oem-6.14 Needs evaluation Not in release Not in release Not in release
linux-raspi Needs evaluation Needs evaluation Needs evaluation Not in release
linux-raspi2 Not in release Not in release Ignored Ignored
linux-raspi-5.4 Not in release Not in release Not in release Needs evaluation
linux-raspi-realtime Needs evaluation Not in release Not in release Not in release
linux-realtime Needs evaluation Needs evaluation Not in release Not in release
linux-realtime-6.8 Not in release Needs evaluation Not in release Not in release
linux-realtime-6.14 Needs evaluation Not in release Not in release Not in release
linux-riscv Ignored Ignored Ignored Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release
linux-riscv-5.11 Not in release Not in release Ignored Not in release
linux-riscv-5.15 Not in release Not in release Needs evaluation Not in release
linux-riscv-5.19 Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Ignored Not in release Not in release
linux-riscv-6.8 Not in release Needs evaluation Not in release Not in release
linux-riscv-6.14 Ignored Not in release Not in release Not in release
linux-starfive-5.19 Not in release Ignored Not in release Not in release
linux-starfive-6.2 Not in release Ignored Not in release Not in release
linux-starfive-6.5 Not in release Ignored Not in release Not in release
linux-xilinx Needs evaluation Not in release Not in release Not in release
linux-xilinx-zynqmp Not in release Needs evaluation Needs evaluation Not in release
linux-oem-6.17 Needs evaluation Not in release Not in release Not in release
linux-azure-fde-6.8 Not in release Needs evaluation Not in release Not in release
Show all 149 packages Show less packages

CVE-2025-59820

Medium priority
Needs evaluation

In KDE Krita before 5.2.13, loading a manipulated TGA file could result in a heap-based buffer overflow in plugins/impex/tga/kis_tga_import.cpp (aka KisTgaImport). Control flow proceeds even when a number of pixels becomes negative.

1 affected package

krita

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
krita Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-55174

Medium priority
Needs evaluation

In KDE Skanpage before 25.08.0, an attempt at file overwrite can result in the contents of the new file at the beginning followed by the partial contents of the old file at the end, because of use of QIODevice::ReadWrite instead...

1 affected package

skanpage

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
skanpage Needs evaluation Not in release
Show less packages

CVE-2025-66019

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. Prior to version 6.4.0, an attacker who uses this vulnerability can craft a PDF which leads to a memory usage of up to 1 GB per stream. This requires parsing the content...

1 affected package

pypdf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pypdf Needs evaluation Not in release
Show less packages

CVE-2025-9624

Medium priority
Needs evaluation

A vulnerability in OpenSearch allows attackers to cause Denial of Service (DoS) by submitting complex query_string inputs. This issue affects all OpenSearch versions below 3.2.0.

1 affected package

opensearch

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensearch Needs evaluation Not in release
Show less packages