Search CVE reports


Toggle filters

511 – 520 of 62102 results


CVE-2025-65495

Medium priority
Needs evaluation

Integer signedness error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted TLS certificate that causes i2d_X509() to return -1 and be misused...

2 affected packages

libcoap2, libcoap3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcoap2 Not in release Needs evaluation Needs evaluation
libcoap3 Needs evaluation Needs evaluation
Show less packages

CVE-2025-65494

Medium priority
Needs evaluation

NULL pointer dereference in get_san_or_cn_from_cert() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted X.509 certificate that causes sk_GENERAL_NAME_value() to return NULL.

2 affected packages

libcoap2, libcoap3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcoap2 Not in release Needs evaluation Needs evaluation
libcoap3 Needs evaluation Needs evaluation
Show less packages

CVE-2025-65493

Medium priority
Needs evaluation

NULL pointer dereference in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted DTLS/TLS connection that triggers BIO_get_data() to return NULL.

2 affected packages

libcoap2, libcoap3

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libcoap2 Not in release Needs evaluation Needs evaluation
libcoap3 Needs evaluation Needs evaluation
Show less packages

CVE-2025-40212

Medium priority
Vulnerable

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix refcount leak in nfsd_set_fh_dentry() nfsd exports a "pseudo root filesystem" which is used by NFSv4 to find the various exported filesystems using...

149 affected packages

linux, linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected Not affected Not affected Not affected
linux-hwe Not in release Not in release Not in release Ignored
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.8 Not in release Not in release Ignored Not in release
linux-hwe-5.11 Not in release Not in release Ignored Not in release
linux-hwe-5.13 Not in release Not in release Ignored Not in release
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-5.19 Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Ignored Not in release Not in release
linux-hwe-6.5 Not in release Ignored Not in release Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-hwe-6.11 Ignored Not in release Not in release Not in release
linux-hwe-6.14 Vulnerable Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-kvm Not in release Not affected Not affected Not affected
linux-allwinner-5.19 Not in release Ignored Not in release Not in release
linux-aws-5.0 Not in release Not in release Not in release Ignored
linux-aws-5.3 Not in release Not in release Not in release Ignored
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.8 Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Ignored Not in release
linux-aws-5.13 Not in release Not in release Ignored Not in release
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-aws-5.19 Not in release Ignored Not in release Not in release
linux-aws-6.2 Not in release Ignored Not in release Not in release
linux-aws-6.5 Not in release Ignored Not in release Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-aws-6.14 Vulnerable Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Not affected Not affected Not affected Ignored
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.3 Not in release Not in release Not in release Ignored
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.8 Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Ignored Not in release
linux-azure-5.13 Not in release Not in release Ignored Not in release
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-5.19 Not in release Ignored Not in release Not in release
linux-azure-6.2 Not in release Ignored Not in release Not in release
linux-azure-6.5 Not in release Ignored Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-azure-6.11 Ignored Not in release Not in release Not in release
linux-azure-6.14 Vulnerable Not in release Not in release Not in release
linux-azure-fde Not affected Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde-5.19 Not in release Ignored Not in release Not in release
linux-azure-fde-6.2 Not in release Ignored Not in release Not in release
linux-azure-fde-6.14 Vulnerable Not in release Not in release Not in release
linux-azure-nvidia Not affected Not in release Not in release Not in release
linux-azure-nvidia-6.14 Vulnerable Not in release Not in release Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-azure-edge Not in release Not in release Not in release Ignored
linux-fips Not affected Not affected Not affected Not affected
linux-aws-fips Not affected Not affected Not affected Not affected
linux-azure-fips Not affected Not affected Not affected Not affected
linux-gcp-fips Not affected Not affected Not affected Not affected
linux-gcp Not affected Not affected Not affected Ignored
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.3 Not in release Not in release Not in release Ignored
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.8 Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Ignored Not in release
linux-gcp-5.13 Not in release Not in release Ignored Not in release
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gcp-5.19 Not in release Ignored Not in release Not in release
linux-gcp-6.2 Not in release Ignored Not in release Not in release
linux-gcp-6.5 Not in release Ignored Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-gcp-6.11 Ignored Not in release Not in release Not in release
linux-gcp-6.14 Vulnerable Not in release Not in release Not in release
linux-gke Not affected Not affected Ignored Not in release
linux-gke-4.15 Not in release Not in release Not in release Ignored
linux-gke-5.4 Not in release Not in release Not in release Ignored
linux-gke-5.15 Not in release Not in release Ignored Not in release
linux-gkeop Not affected Not affected Ignored Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Ignored
linux-gkeop-5.15 Not in release Not in release Ignored Not in release
linux-ibm Not affected Not affected Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-ibm-6.8 Not in release Not affected Not in release Not in release
linux-intel-5.13 Not in release Not in release Ignored Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-5.19 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-lowlatency-hwe-6.11 Ignored Not in release Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release
linux-nvidia-6.2 Not in release Ignored Not in release Not in release
linux-nvidia-6.5 Not in release Ignored Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-6.11 Not affected Not in release Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-nvidia-tegra Not affected Not affected Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Not affected Not in release
linux-nvidia-tegra-igx Not in release Not affected Not in release Not in release
linux-oracle-5.0 Not in release Not in release Not in release Ignored
linux-oracle-5.3 Not in release Not in release Not in release Ignored
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.8 Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Ignored Not in release
linux-oracle-5.13 Not in release Not in release Ignored Not in release
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oracle-6.5 Not in release Ignored Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-oracle-6.14 Vulnerable Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored
linux-oem-5.6 Not in release Not in release Ignored Not in release
linux-oem-5.10 Not in release Not in release Ignored Not in release
linux-oem-5.13 Not in release Not in release Ignored Not in release
linux-oem-5.14 Not in release Not in release Ignored Not in release
linux-oem-5.17 Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Ignored Not in release Not in release
linux-oem-6.1 Not in release Ignored Not in release Not in release
linux-oem-6.5 Not in release Ignored Not in release Not in release
linux-oem-6.8 Ignored Not in release Not in release Not in release
linux-oem-6.11 Ignored Not in release Not in release Not in release
linux-oem-6.14 Vulnerable Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Ignored
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-realtime-6.8 Not in release Not affected Not in release Not in release
linux-realtime-6.14 Vulnerable Not in release Not in release Not in release
linux-riscv Ignored Ignored Ignored Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release
linux-riscv-5.11 Not in release Not in release Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-5.19 Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Ignored Not in release Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-riscv-6.14 Ignored Not in release Not in release Not in release
linux-starfive-5.19 Not in release Ignored Not in release Not in release
linux-starfive-6.2 Not in release Ignored Not in release Not in release
linux-starfive-6.5 Not in release Ignored Not in release Not in release
linux-xilinx Not affected Not in release Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux-aws Not affected Not affected Not affected Not affected
linux-oracle Not affected Not affected Not affected Not affected
linux-raspi Not affected Not affected Not affected Not in release
linux-realtime Not affected Not affected Not in release Not in release
linux-oem-6.17 Vulnerable Not in release Not in release Not in release
linux-azure-fde-6.8 Not in release Not affected Not in release Not in release
Show all 149 packages Show less packages

CVE-2025-12889

Medium priority
Needs evaluation

With TLS 1.2 connections a client can use any digest, specifically a weaker digest that is supported, rather than those in the CertificateRequest.

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-12888

Medium priority
Needs evaluation

Vulnerability in X25519 constant-time cryptographic implementations due to timing side channels introduced by compiler optimizations and CPU architecture limitations, specifically with the Xtensa-based ESP32 chips. If targeting...

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-11936

Medium priority
Needs evaluation

Improper input validation in the TLS 1.3 KeyShareEntry parsing in wolfSSL v5.8.2 on multiple platforms allows a remote unauthenticated attacker to cause a denial-of-service by sending a crafted ClientHello message containing...

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-11934

Medium priority
Needs evaluation

Improper input validation in the TLS 1.3 CertificateVerify signature algorithm negotiation in wolfSSL 5.8.2 and earlier on multiple platforms allows for downgrading the signature algorithm used. For example when a client sends...

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-11933

Medium priority
Needs evaluation

Improper Input Validation in the TLS 1.3 CKS extension parsing in wolfSSL 5.8.2 and earlier on multiple platforms allows a remote unauthenticated attacker to potentially cause a denial-of-service via a crafted ClientHello message...

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-11932

Medium priority
Needs evaluation

The server previously verified the TLS 1.3 PSK binder using a non-constant time method which could potentially leak information about the PSK binder

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages