Search CVE reports


Toggle filters

211 – 220 of 56787 results

Status is adjusted based on your filters.


CVE-2026-85396

Medium priority
Needs evaluation

rubyzip versions before 3.4.0 contain a path traversal vulnerability in Zip::Entry#extract that fails to properly validate extraction paths using prefix comparison without trailing separators. Attackers can craft archive entries...

1 affected package

ruby-zip

Package 16.04 LTS
ruby-zip Needs evaluation
Show less packages

CVE-2026-85150

Medium priority
Needs evaluation

A NULL pointer dereference flaw was found in GStreamer's RTSP support library. The vulnerability occurs while parsing an Authorization or WWW-Authenticate header that uses Digest authentication. Specially crafted whitespace...

1 affected package

gst-plugins-base1.0

Package 16.04 LTS
gst-plugins-base1.0 Needs evaluation
Show less packages

CVE-2026-85091

Medium priority
Vulnerable

zlib versions 1.3.1.2 through 1.3.2 contain a heap buffer overflow vulnerability in the gz_vacate() function when processing non-blocking gzwrite() operations with stale external buffer pointers. Attackers can trigger the overflow...

4 affected packages

zlib, rsync, klibc, zsync

Package 16.04 LTS
zlib Needs evaluation
rsync Vulnerable
klibc Needs evaluation
zsync Needs evaluation
Show less packages

CVE-2026-85090

Medium priority
Needs evaluation

FreeRDP before 3.31.0 contains a heap out-of-bounds read vulnerability in the general_ChromaV1ToYUV444 function during AVC444 chroma plane reconstruction. A malicious RDP server can craft a RFX_AVC444_BITMAP_STREAM with specific...

3 affected packages

freerdp, freerdp2, freerdp3

Package 16.04 LTS
freerdp Needs evaluation
freerdp2
freerdp3
Show less packages

CVE-2026-85089

Medium priority
Needs evaluation

FreeRDP versions 3.0.0 through 3.30.0 (before 3.31.0) transmit uninitialized heap memory in Save Session Info PDU reserved padding fields. Three PDU writers in libfreerdp/core/info.c...

3 affected packages

freerdp, freerdp2, freerdp3

Package 16.04 LTS
freerdp Needs evaluation
freerdp2
freerdp3
Show less packages

CVE-2026-84989

Medium priority
Needs evaluation

ntopng is a web-based network traffic monitoring application. In versions 6.7.0 through 6.7.260717, two REST v2 endpoints that manage ntopng's tag/badge feature — `POST /lua/rest/v2/delete/tag/tag.lua` and...

1 affected package

ntopng

Package 16.04 LTS
ntopng Needs evaluation
Show less packages

CVE-2026-84968

Medium priority
Needs evaluation

An out-of-bounds read in the BSON decoding component of the MongoDB PHP driver may allow an unauthenticated party who supplies specially formed input to have a small amount of adjacent process memory copied into an error message...

1 affected package

php-mongodb

Package 16.04 LTS
php-mongodb Needs evaluation
Show less packages

CVE-2026-84732

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 16.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-84471

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 16.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-84256

Medium priority
Needs evaluation

[Unknown description]

1 affected package

openvpn

Package 16.04 LTS
openvpn Needs evaluation
Show less packages