Search CVE reports


Toggle filters

131 – 140 of 42198 results

Status is adjusted based on your filters.


CVE-2026-68081

Medium priority
Needs evaluation

In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Put vmcs12 pages if nested VM-Enter fails due to invalid guest state Put all vmcs12 pages if KVM synthesizes a nested VM-Exit due to invalid guest...

162 affected packages

linux, linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11...

Package 24.04 LTS
linux Needs evaluation
linux-hwe Not in release
linux-hwe-5.4 Not in release
linux-hwe-5.8 Not in release
linux-hwe-5.11 Not in release
linux-hwe-5.13 Not in release
linux-hwe-5.15 Not in release
linux-hwe-5.19 Not in release
linux-hwe-6.2 Not in release
linux-hwe-6.5 Not in release
linux-hwe-6.8 Not in release
linux-hwe-6.11 Ignored
linux-hwe-6.14 Needs evaluation
linux-hwe-6.17 Needs evaluation
linux-hwe-7.0 Needs evaluation
linux-hwe-edge Not in release
linux-lts-xenial Not in release
linux-kvm Not in release
linux-allwinner-5.19 Not in release
linux-aws Needs evaluation
linux-aws-5.0 Not in release
linux-aws-5.3 Not in release
linux-aws-5.4 Not in release
linux-aws-5.8 Not in release
linux-aws-5.11 Not in release
linux-aws-5.13 Not in release
linux-aws-5.15 Not in release
linux-aws-5.19 Not in release
linux-aws-6.2 Not in release
linux-aws-6.5 Not in release
linux-aws-6.8 Not in release
linux-aws-6.14 Needs evaluation
linux-aws-6.17 Needs evaluation
linux-aws-hwe Not in release
linux-azure Needs evaluation
linux-azure-4.15 Not in release
linux-azure-5.3 Not in release
linux-azure-5.4 Not in release
linux-azure-5.8 Not in release
linux-azure-5.11 Not in release
linux-azure-5.13 Not in release
linux-azure-5.15 Not in release
linux-azure-5.19 Not in release
linux-azure-6.2 Not in release
linux-azure-6.5 Not in release
linux-azure-6.8 Not in release
linux-azure-6.11 Ignored
linux-azure-6.14 Needs evaluation
linux-azure-6.17 Needs evaluation
linux-azure-fde Needs evaluation
linux-azure-fde-5.15 Not in release
linux-azure-fde-5.19 Not in release
linux-azure-fde-6.2 Not in release
linux-azure-fde-6.8 Not in release
linux-azure-fde-6.14 Needs evaluation
linux-azure-fde-6.17 Needs evaluation
linux-azure-nvidia Needs evaluation
linux-azure-nvidia-6.14 Needs evaluation
linux-bluefield Not in release
linux-azure-edge Not in release
linux-fips Not in release
linux-aws-fips Not in release
linux-azure-fips Not in release
linux-gcp-fips Not in release
linux-gcp Needs evaluation
linux-gcp-4.15 Not in release
linux-gcp-5.3 Not in release
linux-gcp-5.4 Not in release
linux-gcp-5.8 Not in release
linux-gcp-5.11 Not in release
linux-gcp-5.13 Not in release
linux-gcp-5.15 Not in release
linux-gcp-5.19 Not in release
linux-gcp-6.2 Not in release
linux-gcp-6.5 Not in release
linux-gcp-6.8 Not in release
linux-gcp-6.11 Ignored
linux-gcp-6.14 Needs evaluation
linux-gcp-6.17 Needs evaluation
linux-gke Needs evaluation
linux-gke-4.15 Not in release
linux-gke-5.4 Not in release
linux-gke-5.15 Not in release
linux-gkeop Needs evaluation
linux-gkeop-5.4 Not in release
linux-gkeop-5.15 Not in release
linux-ibm Needs evaluation
linux-ibm-5.4 Not in release
linux-ibm-5.15 Not in release
linux-ibm-6.8 Not in release
linux-intel-5.13 Not in release
linux-intel-iotg Not in release
linux-intel-iotg-5.15 Not in release
linux-iot Not in release
linux-intel-iot-realtime Not in release
linux-lowlatency Needs evaluation
linux-lowlatency-hwe-5.15 Not in release
linux-lowlatency-hwe-5.19 Not in release
linux-lowlatency-hwe-6.2 Not in release
linux-lowlatency-hwe-6.5 Not in release
linux-lowlatency-hwe-6.8 Not in release
linux-lowlatency-hwe-6.11 Ignored
linux-nvidia Needs evaluation
linux-nvidia-6.2 Not in release
linux-nvidia-6.5 Not in release
linux-nvidia-6.8 Not in release
linux-nvidia-6.11 Ignored
linux-nvidia-6.17 Needs evaluation
linux-nvidia-7.0 Needs evaluation
linux-nvidia-bos Not in release
linux-nvidia-lowlatency Needs evaluation
linux-nvidia-tegra Needs evaluation
linux-nvidia-tegra-5.15 Not in release
linux-nvidia-tegra-igx Not in release
linux-oracle Needs evaluation
linux-oracle-5.0 Not in release
linux-oracle-5.3 Not in release
linux-oracle-5.4 Not in release
linux-oracle-5.8 Not in release
linux-oracle-5.11 Not in release
linux-oracle-5.13 Not in release
linux-oracle-5.15 Not in release
linux-oracle-6.5 Not in release
linux-oracle-6.8 Not in release
linux-oracle-6.14 Needs evaluation
linux-oracle-6.17 Needs evaluation
linux-oem Not in release
linux-oem-5.6 Not in release
linux-oem-5.10 Not in release
linux-oem-5.13 Not in release
linux-oem-5.14 Not in release
linux-oem-5.17 Not in release
linux-oem-6.0 Not in release
linux-oem-6.1 Not in release
linux-oem-6.5 Not in release
linux-oem-6.8 Ignored
linux-oem-6.11 Ignored
linux-oem-6.14 Needs evaluation
linux-oem-6.17 Needs evaluation
linux-oem-7.0 Not in release
linux-raspi Needs evaluation
linux-raspi2 Not in release
linux-raspi-5.4 Not in release
linux-raspi-realtime Needs evaluation
linux-realtime Needs evaluation
linux-realtime-6.8 Not in release
linux-realtime-6.14 Not in release
linux-riscv Ignored
linux-riscv-5.8 Not in release
linux-riscv-5.11 Not in release
linux-riscv-5.15 Not in release
linux-riscv-5.19 Not in release
linux-riscv-6.5 Not in release
linux-riscv-6.8 Not in release
linux-riscv-6.14 Ignored
linux-riscv-6.17 Needs evaluation
linux-starfive-5.19 Not in release
linux-starfive-6.2 Not in release
linux-starfive-6.5 Not in release
linux-xilinx Needs evaluation
linux-xilinx-zynqmp Not in release
linux-realtime-6.17 Not in release
Show all 162 packages Show less packages

CVE-2026-65819

Medium priority
Needs evaluation

gopacket provides packet processing capabilities for Go. Through version 1.7.0, multiple layer decoders use attacker-controlled lengths, counts, or offsets before validating them against packet buffers, allowing a crafted packet...

1 affected package

golang-github-gopacket-gopacket

Package 24.04 LTS
golang-github-gopacket-gopacket Needs evaluation
Show less packages

CVE-2026-62996

Medium priority
Needs evaluation

Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. From 5.0.0 until 5.8.4, Smarty's stream: resource-name handling does not adequately restrict which PHP stream...

2 affected packages

smarty3, smarty4

Package 24.04 LTS
smarty3 Needs evaluation
smarty4 Needs evaluation
Show less packages

CVE-2026-62992

Medium priority
Needs evaluation

Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prior to 5.8.2 (and 4.5.7 on the 4.x line), Security::_checkDir() does not fully resolve symbolic links before...

2 affected packages

smarty3, smarty4

Package 24.04 LTS
smarty3 Needs evaluation
smarty4 Needs evaluation
Show less packages

CVE-2026-54338

Medium priority
Needs evaluation

JupyterHub is software that allows users to create a multi-user server for Jupyter notebooks. Prior to 5.5.0, invalid input to form-based login authenticators can place an unbounded attacker-controlled username in failed-login...

1 affected package

jupyterhub

Package 24.04 LTS
jupyterhub Needs evaluation
Show less packages

CVE-2026-48122

Medium priority

Not in release

Ruby LSP is an implementation of the language server protocol for Ruby. Several workspace-level settings in the Ruby LSP VS Code extension prior to version 0.10.4 could override the path to the Ruby executable, the version manager...

1 affected package

ruby-ruby-lsp

Package 24.04 LTS
ruby-ruby-lsp Not in release
Show less packages

CVE-2026-48120

Medium priority
Needs evaluation

Kakoune is a code editor. Prior to version 2026.05.21, the bundled, enabled by default, `autorestore.kak` script can be exploited by malicious backup files leading to arbitrary kakoune and shell commands being executed by simply...

1 affected package

kakoune

Package 24.04 LTS
kakoune Needs evaluation
Show less packages

CVE-2026-20348

Medium priority
Needs evaluation

A vulnerability in the XAR file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This...

1 affected package

clamav

Package 24.04 LTS
clamav Needs evaluation
Show less packages

CVE-2026-20347

Medium priority
Needs evaluation

A vulnerability in the Mach-O file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an...

1 affected package

clamav

Package 24.04 LTS
clamav Needs evaluation
Show less packages

CVE-2026-20346

Medium priority
Needs evaluation

A vulnerability in the PDF file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. This...

1 affected package

clamav

Package 24.04 LTS
clamav Needs evaluation
Show less packages