Search CVE reports


Toggle filters

61 – 70 of 34477 results

Status is adjusted based on your filters.


CVE-2025-29769

Medium priority
Needs evaluation

libvips is a demand-driven, horizontally threaded image processing library. The heifsave operation could incorrectly determine the presence of an alpha channel in an input when it was not possible to determine the...

1 affected package

vips

Package 18.04 LTS
vips Needs evaluation
Show less packages

CVE-2025-29482

Medium priority
Vulnerable

Buffer Overflow vulnerability in libheif 1.19.7 allows a local attacker to execute arbitrary code via the SAO (Sample Adaptive Offset) processing of libde265.

1 affected package

libheif

Package 18.04 LTS
libheif Vulnerable
Show less packages

CVE-2025-29481

Medium priority
Needs evaluation

Buffer Overflow vulnerability in libbpf 1.5.0 allows a local attacker to execute arbitrary code via the bpf_object__init_prog` function of libbpf.

2 affected packages

dwarves-dfsg, libbpf

Package 18.04 LTS
dwarves-dfsg Needs evaluation
libbpf
Show less packages

CVE-2025-29480

Medium priority
Needs evaluation

Buffer Overflow vulnerability in gdal 3.10.2 allows a local attacker to cause a denial of service via the OGRSpatialReference::Release function.

1 affected package

gdal

Package 18.04 LTS
gdal Needs evaluation
Show less packages

CVE-2025-29479

Medium priority
Needs evaluation

Buffer Overflow in hiredis 1.2.0 allows a local attacker to cause a denial of service via the sdscatlen function.

1 affected package

hiredis

Package 18.04 LTS
hiredis Needs evaluation
Show less packages

CVE-2025-29087

Medium priority
Not affected

In SQLite 3.44.0 through 3.49.0 before 3.49.1, the concat_ws() SQL function can cause memory to be written beyond the end of a malloc-allocated buffer. If the separator argument is attacker-controlled and has a large string (e.g.,...

2 affected packages

sqlite, sqlite3

Package 18.04 LTS
sqlite Not affected
sqlite3 Not affected
Show less packages

CVE-2024-38797

Medium priority
Needs evaluation

EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data pointer and length are sent via an adjecent network. A successful exploit of this vulnerability may lead to a...

1 affected package

edk2

Package 18.04 LTS
edk2 Needs evaluation
Show less packages

CVE-2025-30195

Medium priority
Needs evaluation

An attacker can publish a zone containing specific Resource Record Sets. Processing and caching results for these sets can lead to an illegal memory accesses and crash of the Recursor, causing a denial of service. The remedy is:...

1 affected package

pdns-recursor

Package 18.04 LTS
pdns-recursor Needs evaluation
Show less packages

CVE-2025-3360

Low priority
Needs evaluation

A flaw was found in GLib. An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp with the g_date_time_new_from_iso8601() function.

1 affected package

glib2.0

Package 18.04 LTS
glib2.0 Needs evaluation
Show less packages

CVE-2025-3359

Medium priority
Needs evaluation

A flaw was found in GNUPlot. A segmentation fault via IO_str_init_static_internal may jeopardize the environment.

1 affected package

gnuplot

Package 18.04 LTS
gnuplot Needs evaluation
Show less packages