Search CVE reports


Toggle filters

3591 – 3600 of 45617 results

Status is adjusted based on your filters.


CVE-2026-4174

Medium priority
Needs evaluation

A vulnerability has been found in Radare2 5.9.9. This issue affects the function walk_exports_trie of the file libr/bin/format/mach0/mach0.c of the component Mach-O File Parser. Such manipulation leads to resource consumption. The...

1 affected package

radare2

Package 18.04 LTS
radare2 Needs evaluation
Show less packages

CVE-2026-3442

Medium priority
Needs evaluation

A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker component. An attacker could exploit this by convincing a user to process a specially...

1 affected package

binutils

Package 18.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-3441

Medium priority
Needs evaluation

A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in the bfd linker, allows an attacker to gain access to sensitive information. By convincing a user to process a...

1 affected package

binutils

Package 18.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-32778

Medium priority
Needs evaluation

libexpat before 2.7.5 allows a NULL pointer dereference in the function setContext on retry after an earlier ouf-of-memory condition.

23 affected packages

apache2, apr-util, ayttm, cableswig, cadaver...

Package 18.04 LTS
apache2 Not affected
apr-util Not affected
ayttm
cableswig
cadaver Needs evaluation
cmake Not affected
coin3 Needs evaluation
expat Needs evaluation
firefox
gdcm Needs evaluation
ghostscript Not affected
insighttoolkit4 Needs evaluation
libxmltok Needs evaluation
matanza Needs evaluation
smart Needs evaluation
swish-e Needs evaluation
tdom Needs evaluation
texlive-bin Not affected
thunderbird
vnc4 Needs evaluation
vtk
wbxml2 Needs evaluation
xmlrpc-c Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32777

Medium priority
Needs evaluation

libexpat before 2.7.5 allows an infinite loop while parsing DTD content.

23 affected packages

apache2, apr-util, ayttm, cableswig, cadaver...

Package 18.04 LTS
apache2 Not affected
apr-util Not affected
ayttm
cableswig
cadaver Needs evaluation
cmake Not affected
coin3 Needs evaluation
expat Needs evaluation
firefox
gdcm Needs evaluation
ghostscript Not affected
insighttoolkit4 Needs evaluation
libxmltok Needs evaluation
matanza Needs evaluation
smart Needs evaluation
swish-e Needs evaluation
tdom Needs evaluation
texlive-bin Not affected
thunderbird
vnc4 Needs evaluation
vtk
wbxml2 Needs evaluation
xmlrpc-c Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32776

Medium priority
Needs evaluation

libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content.

23 affected packages

apache2, apr-util, ayttm, cableswig, cadaver...

Package 18.04 LTS
apache2 Not affected
apr-util Not affected
ayttm
cableswig
cadaver Needs evaluation
cmake Not affected
coin3 Needs evaluation
expat Needs evaluation
firefox
gdcm Needs evaluation
ghostscript Not affected
insighttoolkit4 Needs evaluation
libxmltok Needs evaluation
matanza Needs evaluation
smart Needs evaluation
swish-e Needs evaluation
tdom Needs evaluation
texlive-bin Not affected
thunderbird
vnc4 Needs evaluation
vtk
wbxml2 Needs evaluation
xmlrpc-c Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32775

Low priority
Needs evaluation

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

1 affected package

libexif

Package 18.04 LTS
libexif Needs evaluation
Show less packages

CVE-2026-32772

Medium priority
Fixed

telnet in GNU inetutils through 2.7 allows servers to read arbitrary environment variables from clients via NEW_ENVIRON SEND USERVAR.

1 affected package

inetutils

Package 18.04 LTS
inetutils Fixed
Show less packages

CVE-2026-32640

Medium priority
Fixed

SimpleEval is a library for adding evaluatable expressions into python projects. Prior to 1.0.5, objects (including modules) can leak dangerous modules through to direct access inside the sandbox. If the objects you've passed in...

1 affected package

simpleeval

Package 18.04 LTS
simpleeval Fixed
Show less packages

CVE-2026-32635

Medium priority
Needs evaluation

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-next.3, 21.2.4, 20.3.18, and 19.2.20, a Cross-Site Scripting (XSS) vulnerability...

1 affected package

angular.js

Package 18.04 LTS
angular.js Needs evaluation
Show less packages