Search CVE reports


Toggle filters

111 – 120 of 32595 results

Status is adjusted based on your filters.


CVE-2025-69649

Medium priority
Needs evaluation

GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed...

1 affected package

binutils

Package 24.04 LTS
binutils Needs evaluation
Show less packages

CVE-2025-69651

Medium priority
Needs evaluation

GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors,...

1 affected package

binutils

Package 24.04 LTS
binutils Needs evaluation
Show less packages

CVE-2025-69646

Medium priority
Needs evaluation

Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to...

1 affected package

binutils

Package 24.04 LTS
binutils Needs evaluation
Show less packages

CVE-2025-69645

Medium priority
Needs evaluation

Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size...

1 affected package

binutils

Package 24.04 LTS
binutils Needs evaluation
Show less packages

CVE-2025-69644

Medium priority
Needs evaluation

An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers...

1 affected package

binutils

Package 24.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-23925

Medium priority

Not in release

An authenticated Zabbix user (User role) with template/host write permissions is able to create objects via the configuration.import API. This can lead to confidentiality loss by creating unauthorized hosts. Note that the User...

1 affected package

zabbix

Package 24.04 LTS
zabbix Not in release
Show less packages

CVE-2026-29068

Medium priority

Not in release

PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, there is a stack buffer overflow vulnerability when pjmedia-codec parses an RTP payload contain more frames than...

1 affected package

pjproject

Package 24.04 LTS
pjproject Not in release
Show less packages

CVE-2026-28799

Medium priority

Not in release

PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, a heap use-after-free vulnerability exists in PJSIP's event subscription framework (evsub.c) that is triggered during presence...

1 affected package

pjproject

Package 24.04 LTS
pjproject Not in release
Show less packages

CVE-2026-29062

Medium priority
Needs evaluation

jackson-core contains core low-level incremental ("streaming") parser and generator abstractions used by Jackson Data Processor. From version 3.0.0 to before version 3.1.0, the UTF8DataInputJsonParser, which is used when parsing...

1 affected package

jackson-core

Package 24.04 LTS
jackson-core Needs evaluation
Show less packages

CVE-2026-28804

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. Prior to version 6.7.5, an attacker who uses this vulnerability can craft a PDF which leads to long runtimes. This requires accessing a stream which uses the /ASCIIHexDecode...

1 affected package

pypdf

Package 24.04 LTS
pypdf Needs evaluation
Show less packages