Search CVE reports


Toggle filters

211 – 220 of 37963 results

Status is adjusted based on your filters.


CVE-2026-40046

Medium priority
Needs evaluation

Integer Overflow or Wraparound vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ MQTT. The fix for "CVE-2025-66168: MQTT control packet remaining length field is not properly validated" was only applied to...

1 affected package

activemq

Package 22.04 LTS
activemq Needs evaluation
Show less packages

CVE-2026-39856

Medium priority
Needs evaluation

osslsigncode is a tool that implements Authenticode signing and timestamping. Prior to 2.13, an out-of-bounds read vulnerability exists in osslsigncode version 2.12 and earlier in the PE page-hash computation...

1 affected package

osslsigncode

Package 22.04 LTS
osslsigncode Needs evaluation
Show less packages

CVE-2026-39855

Medium priority
Needs evaluation

osslsigncode is a tool that implements Authenticode signing and timestamping. Prior to 2.13, an integer underflow vulnerability exists in osslsigncode version 2.12 and earlier in the PE page-hash computation...

1 affected package

osslsigncode

Package 22.04 LTS
osslsigncode Needs evaluation
Show less packages

CVE-2026-30479

Medium priority
Needs evaluation

A Dynamic-link Library Injection vulnerability in OSGeo Project MapServer before v8.0 allows attackers to execute arbitrary code via a crafted executable.

1 affected package

mapserver

Package 22.04 LTS
mapserver Needs evaluation
Show less packages

CVE-2026-4878

Medium priority
Needs evaluation

A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect...

1 affected package

libcap2

Package 22.04 LTS
libcap2 Needs evaluation
Show less packages

CVE-2026-39853

Medium priority
Needs evaluation

osslsigncode is a tool that implements Authenticode signing and timestamping. Prior to 2.12, A stack buffer overflow vulnerability exists in osslsigncode in several signature verification paths. During verification of a PKCS#7...

1 affected package

osslsigncode

Package 22.04 LTS
osslsigncode Needs evaluation
Show less packages

CVE-2025-15480

Medium priority
Not affected

In Ubuntu, ubuntu-desktop-provision version 24.04.4 could leak sensitive user credentials during crash reporting. Upon installation failure, if a user submitted a bug report to Launchpad, ubuntu-desktop-provision could include the...

1 affected package

subiquity

Package 22.04 LTS
subiquity Not affected
Show less packages

CVE-2025-14551

Medium priority
Needs evaluation

In Ubuntu, Subiquity version 24.04.4 could leak sensitive user credentials during crash reporting. Upon installation failure, if a user submitted a bug report to Launchpad, Subiquity could include certain user credentials, such as...

1 affected package

subiquity

Package 22.04 LTS
subiquity Needs evaluation
Show less packages

CVE-2026-5445

Medium priority
Needs evaluation

An out-of-bounds read vulnerability exists in the `DecodeLookupTable` function within `DicomImageDecoder.cpp`. The lookup-table decoding logic used for `PALETTE COLOR` images does not validate pixel indices against the lookup...

1 affected package

orthanc

Package 22.04 LTS
orthanc Needs evaluation
Show less packages

CVE-2026-5444

Medium priority
Needs evaluation

A heap buffer overflow vulnerability exists in the PAM image parsing logic. When Orthanc processes a crafted PAM image embedded in a DICOM file, image dimensions are multiplied using 32-bit unsigned arithmetic. Specially chosen...

1 affected package

orthanc

Package 22.04 LTS
orthanc Needs evaluation
Show less packages