Search CVE reports


Toggle filters

1 – 10 of 33763 results

Status is adjusted based on your filters.


CVE-2026-6069

Medium priority
Needs evaluation

NASM’s disasm() function contains a stack based buffer overflow when formatting disassembly output, allowing an attacker triggered out-of-bounds write when `slen` exceeds the buffer capacity.

1 affected package

nasm

Package 24.04 LTS
nasm Needs evaluation
Show less packages

CVE-2026-6068

Medium priority
Needs evaluation

NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling pointer to freed memory is stored in the global depend_file and later dereferenced, as the response-file buffer is freed before...

1 affected package

nasm

Package 24.04 LTS
nasm Needs evaluation
Show less packages

CVE-2026-6067

Medium priority
Needs evaluation

A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds checking in the obj_directive() function. This vulnerability can be exploited by a user assembling a malicious .asm...

1 affected package

nasm

Package 24.04 LTS
nasm Needs evaluation
Show less packages

CVE-2026-5774

Medium priority

Not in release

Improper synchronization of the userTokens map in the API server in Canonical Juju 4.0.5, 3.6.20, and 2.9.56 may allow an authenticated user to possibly cause a denial of service on the server or possibly reuse a single-use...

1 affected package

juju

Package 24.04 LTS
juju Not in release
Show less packages

CVE-2026-5412

Medium priority

Not in release

In Juju versions prior to 2.9.57 and 3.6.21, an authorization issue exists in the Controller facade. An authenticated user can call the CloudSpec API method to extract the cloud credentials used to bootstrap the controller. This...

1 affected package

juju

Package 24.04 LTS
juju Not in release
Show less packages

CVE-2026-4158

Medium priority
Needs evaluation

KeePassXC OpenSSL Configuration Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of KeePassXC. An attacker must...

1 affected package

keepassxc

Package 24.04 LTS
keepassxc Needs evaluation
Show less packages

CVE-2026-4154

Medium priority
Needs evaluation

GIMP XPM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this...

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-4153

Medium priority
Needs evaluation

GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit...

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-4152

Medium priority
Needs evaluation

GIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit...

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-4151

Medium priority
Needs evaluation

GIMP ANI File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this...

1 affected package

gimp

Package 24.04 LTS
gimp Needs evaluation
Show less packages