Search CVE reports


Toggle filters

71 – 80 of 42133 results

Status is adjusted based on your filters.


CVE-2026-8461

Medium priority
Needs evaluation

An out-of-bounds write vulnerability in FFmpeg's libavcodec library, specifically in the MagicYUV decoder, allows denial-of-service and, in some cases, can be exploited for remote code execution. This vulnerability is associated...

2 affected packages

ffmpeg, libav

Package 22.04 LTS
ffmpeg Needs evaluation
libav Not in release
Show less packages

CVE-2026-44942

Medium priority
Needs evaluation

A path traversal in handling the "path" component of .repo files processed by libzypp before 17.38.13 in the 17.x series, or before 16.22.19 could be used by attackers to fill directories on the system outside of the zypp cache...

1 affected package

libzypp

Package 22.04 LTS
libzypp Needs evaluation
Show less packages

CVE-2026-42490

Medium priority
Needs evaluation

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] To create and manage guests, domctl operations are used by the control domain, a possible Xenstore...

1 affected package

xen

Package 22.04 LTS
xen Needs evaluation
Show less packages

CVE-2026-42489

Medium priority
Needs evaluation

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] To create and manage guests, domctl operations are used by the control domain, a possible Xenstore...

1 affected package

xen

Package 22.04 LTS
xen Needs evaluation
Show less packages

CVE-2026-42488

Medium priority
Needs evaluation

Some shadow paging errors paths will switch the page-tables without updating the currently running vCPU reference. This causes a mismatch between the loaded page-tables and the mapcache metadata which can lead to corruption of...

1 affected package

xen

Package 22.04 LTS
xen Needs evaluation
Show less packages

CVE-2026-42487

Medium priority
Needs evaluation

HVM guest I/O port accesses are subject to either emulation or at least translation. Translations are managed by the device model (via XEN_DOMCTL_ioport_mapping), and hence the linked list used may changed at any time. Traversal...

1 affected package

xen

Package 22.04 LTS
xen Needs evaluation
Show less packages

CVE-2026-12505

Medium priority
Needs evaluation

A flaw was found in the cifs-utils package where the cifs.upcall helper fails to securely drop its root privileges before looking up user information inside a user-controlled environment. A local, low privileged attacker can...

1 affected package

cifs-utils

Package 22.04 LTS
cifs-utils Needs evaluation
Show less packages

CVE-2026-53615

Medium priority
Needs evaluation

[Integer Overflow or Wraparound in libblkid/src/partitions/dos.c]

1 affected package

util-linux

Package 22.04 LTS
util-linux Needs evaluation
Show less packages

CVE-2026-53614

Medium priority
Needs evaluation

[Local Privilege Escalation via LIBMOUNT_FORCE_MOUNT2 Environment Variable - nosuid/noexec Bypass in SUID mount(8)]

1 affected package

util-linux

Package 22.04 LTS
util-linux Needs evaluation
Show less packages

CVE-2026-53613

Medium priority
Needs evaluation

[Local Privilege Escalation via TOCTOU in mount(8) - Target Path Redirection]

1 affected package

util-linux

Package 22.04 LTS
util-linux Needs evaluation
Show less packages