Search CVE reports


Toggle filters

121 – 130 of 42152 results

Status is adjusted based on your filters.


CVE-2025-60465

Medium priority
Needs evaluation

A use-after-free in the gf_filter_pid_inst_swap function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted media file.

1 affected package

gpac

Package 20.04 LTS
gpac Needs evaluation
Show less packages

CVE-2025-60464

Medium priority
Needs evaluation

A use-after-free in the gf_sei_load_from_state_internal function (/filters/sei_load.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MPEG-2 TS file.

1 affected package

gpac

Package 20.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-46611

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, the Glances XML-RPC server (glances -s, implemented in glances/server.py) does not validate the HTTP Host header, leaving it vulnerable to DNS...

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-46608

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, the Glances XML-RPC server (glances -s) introduced a configurable CORS origin list in version 4.5.3 as a mitigation for CVE-2026-33533. However, the...

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-46607

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, glances/outdated.py uses pickle.load() to read a version-check cache file stored at a predictable, world-accessible...

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-46606

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, the Glances KVM/QEMU monitoring engine (glances/plugins/vms/engines/virsh.py) passes VM domain names, read directly from virsh list --all output,...

1 affected package

glances

Package 20.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-49839

Medium priority
Needs evaluation

jq is a command-line JSON processor. Prior to 1.8.2,` jq --rawfile` can turn a handled oversized-string error into invalid-state reuse and a real heap out-of-bounds write in assertion-disabled builds. When jv_load_file(raw=1)...

1 affected package

jq

Package 20.04 LTS
jq Needs evaluation
Show less packages

CVE-2026-47770

Medium priority
Needs evaluation

jq is a command-line JSON processor. Prior to 1.8.2, comparing two sufficiently deeply nested arrays with the == operator exhausts the C stack on jq's ordinary command-line surface, resulting in denial of service via stack...

1 affected package

jq

Package 20.04 LTS
jq Needs evaluation
Show less packages

CVE-2026-11999

Medium priority
Needs evaluation

X.509 trust-chain bypass (path-depth exhaustion) in the OpenSSL compatibility certificate verifier (wolfSSL_X509_verify_cert()). This affects only builds with --enable-opensslextra whose application calls X509_verify_cert() with...

1 affected package

wolfssl

Package 20.04 LTS
wolfssl Needs evaluation
Show less packages

CVE-2026-12844

Medium priority
Needs evaluation

List::SomeUtils::XS versions before 0.59 for Perl have a heap buffer overflow in the pairwise function. pairwise() collects the values returned by the block into a heap buffer sized to the longer input array, then grows the buffer...

1 affected package

liblist-someutils-xs-perl

Package 20.04 LTS
liblist-someutils-xs-perl Needs evaluation
Show less packages