Search CVE reports


Toggle filters

51 – 60 of 35813 results

Status is adjusted based on your filters.


CVE-2026-33278

High priority
Fixed

NLnet Labs Unbound 1.19.1 up to and including version 1.25.0 has a vulnerability in the DNSSEC validator that enables denial of service and possible remote code execution as a result of deep copying a data structure and...

1 affected package

unbound

Package 24.04 LTS
unbound Fixed
Show less packages

CVE-2026-32792

Medium priority
Fixed

NLnet Labs Unbound 1.6.2 up to and including version 1.25.0 has a denial of service vulnerability when compiled with DNSCrypt support ('--enable-dnscrypt'). A bad DNSCrypt query could underflow Unbound's DNSCrypt packet reading...

1 affected package

unbound

Package 24.04 LTS
unbound Fixed
Show less packages

CVE-2026-3039

Medium priority

Some fixes available 1 of 2

BIND 9 server memory exhaustion during GSS-API TKEY negotiation

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 24.04 LTS
bind9 Fixed
isc-dhcp Needs evaluation
bind9-libs Not in release
Show less packages

CVE-2026-29518

High priority
Fixed

An rsync daemon configured with "use chroot = no" is exposed to a time-of-check / time-of-use race on parent path components. A local attacker with write access to a module can replace a parent directory component with a symlink...

1 affected package

rsync

Package 24.04 LTS
rsync Fixed
Show less packages

CVE-2026-32882

Medium priority
Needs evaluation

libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.21.2 and prior contain a heap buffer over-read in HeifPixelImage::overlay() in libheif/pixelimage.cc. When compositing an overlay image (iovl) whose...

1 affected package

libheif

Package 24.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-32814

Medium priority
Needs evaluation

libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, when decoding a HEIF grid image with strict_decoding=false (the default), a corrupted tile silently fails to decode and the library returns...

1 affected package

libheif

Package 24.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-32741

Medium priority
Needs evaluation

libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.21.2 and below contain a heap buffer overflow in MaskImageCodec::decode_mask_image(). When decoding a HEIF file containing a mask image (mski), the function...

1 affected package

libheif

Package 24.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-32740

Medium priority
Needs evaluation

libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.21.2 and prior contain a heap-buffer-overflow (write) vulnerability in the grid tile compositing, allowing an attacker to write 64 bytes of...

1 affected package

libheif

Package 24.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-32739

Medium priority
Needs evaluation

libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and below, a crafted 800-byte HEIF sequence file causes an infinite loop in Box_stts::get_sample_duration(), consuming 100% CPU indefinitely with zero...

1 affected package

libheif

Package 24.04 LTS
libheif Needs evaluation
Show less packages

CVE-2026-33642

Medium priority
Needs evaluation

Kitty is a cross-platform GPU based terminal. In versions 0.46.2 and below, the handle_compose_command() function in kitty/graphics.c performs bounds validation on composition offsets using unsigned 32-bit arithmetic that...

1 affected package

kitty

Package 24.04 LTS
kitty Needs evaluation
Show less packages