Search CVE reports


Toggle filters

1911 – 1920 of 47976 results

Status is adjusted based on your filters.


CVE-2026-63117

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, an authenticated RDP client can advertise DVI ADPCM with nBlockAlign equal to 8 and nChannels equal to 2 to make the `bs` calculation in...

3 affected packages

freerdp, freerdp2, freerdp3

Package 20.04 LTS
freerdp
freerdp2 Needs evaluation
freerdp3
Show less packages

CVE-2026-75147

Medium priority
Needs evaluation

FFmpeg before commit 983dae9 contains an out-of-bounds read in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The keyframe detection loop that searches for a sequence header OBU advanced its pointer and remaining-size counter...

2 affected packages

ffmpeg, libav

Package 20.04 LTS
ffmpeg Needs evaluation
libav
Show less packages

CVE-2026-75146

Medium priority
Fixed

FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number...

2 affected packages

ffmpeg, libav

Package 20.04 LTS
ffmpeg Fixed
libav
Show less packages

CVE-2026-75145

Medium priority
Needs evaluation

FFmpeg before commit b4c199c contains an incorrect integer narrowing conversion in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The OBU size is cast to long before comparison against the remaining frame size. On targets...

2 affected packages

ffmpeg, libav

Package 20.04 LTS
ffmpeg Needs evaluation
libav
Show less packages

CVE-2026-75144

Medium priority
Fixed

FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows attackers to trigger memory corruption by supplying a crafted Dirac data unit....

2 affected packages

ffmpeg, libav

Package 20.04 LTS
ffmpeg Fixed
libav
Show less packages

CVE-2026-75143

Medium priority
Not affected

FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided...

2 affected packages

ffmpeg, libav

Package 20.04 LTS
ffmpeg Not affected
libav
Show less packages

CVE-2026-75142

Medium priority
Fixed

FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A...

2 affected packages

ffmpeg, libav

Package 20.04 LTS
ffmpeg Fixed
libav
Show less packages

CVE-2026-75141

Medium priority
Fixed

FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows,...

2 affected packages

ffmpeg, libav

Package 20.04 LTS
ffmpeg Fixed
libav
Show less packages

CVE-2026-19672

Medium priority
Needs evaluation

The tarfile module's tar and data extraction filters created directories outside the destination for members whose name leaves the destination and returns to it, such as ../evil/../dest/sub/file. The containment check used the...

11 affected packages

python2.7, python3.4, python3.5, python3.6, python3.7...

Package 20.04 LTS
python2.7 Needs evaluation
python3.4
python3.5
python3.6
python3.7
python3.8 Needs evaluation
python3.9 Needs evaluation
python3.10
python3.11
python3.12
python3.14
Show all 11 packages Show less packages

CVE-2026-49289

Medium priority
Needs evaluation

The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. In 4.19.2 and 4.20.2, the library permits attacker-controlled XPath transforms while processing XML signatures in specially crafted SAML messages....

1 affected package

simplesamlphp

Package 20.04 LTS
simplesamlphp Needs evaluation
Show less packages