Search CVE reports


Toggle filters

1 – 10 of 34511 results

Status is adjusted based on your filters.


CVE-2025-68114

Medium priority
Needs evaluation

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.vsnprintf drive SStream’s index negative or past the end, leading to a stack...

1 affected package

capstone

Package 22.04 LTS
capstone Needs evaluation
Show less packages

CVE-2025-67873

Medium priority
Needs evaluation

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes,...

1 affected package

capstone

Package 22.04 LTS
capstone Needs evaluation
Show less packages

CVE-2025-53000

Medium priority
Needs evaluation

The nbconvert tool, jupyter nbconvert, converts Jupyter notebooks to various other formats via Jinja templates. Versions of nbconvert up to and including 7.16.6 on Windows have a vulnerability in which converting a notebook...

1 affected package

nbconvert

Package 22.04 LTS
nbconvert Needs evaluation
Show less packages

CVE-2025-43541

Medium priority
Needs evaluation

A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2. Processing maliciously crafted web...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 22.04 LTS
webkitgtk Not in release
webkit2gtk Needs evaluation
qtwebkit-source Not in release
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2025-43536

Medium priority
Needs evaluation

A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Tahoe 26.2, iOS 26.2 and iPadOS 26.2, Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3. Processing maliciously crafted web content may...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 22.04 LTS
webkitgtk Not in release
webkit2gtk Needs evaluation
qtwebkit-source Not in release
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2025-43535

Medium priority
Needs evaluation

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2. Processing maliciously crafted web content may...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 22.04 LTS
webkitgtk Not in release
webkit2gtk Needs evaluation
qtwebkit-source Not in release
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2025-43531

Medium priority
Needs evaluation

A race condition was addressed with improved state handling. This issue is fixed in watchOS 26.2, Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2, tvOS 26.2....

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 22.04 LTS
webkitgtk Not in release
webkit2gtk Needs evaluation
qtwebkit-source Not in release
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2025-43529

Medium priority
Needs evaluation

A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 26.2, Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2, tvOS 26.2. Processing...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 22.04 LTS
webkitgtk Not in release
webkit2gtk Needs evaluation
qtwebkit-source Not in release
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2025-43501

Medium priority
Needs evaluation

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2. Processing maliciously crafted web...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 22.04 LTS
webkitgtk Not in release
webkit2gtk Needs evaluation
qtwebkit-source Not in release
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2025-14762

Medium priority
Needs evaluation

Missing cryptographic key commitment in the AWS SDK for Ruby may allow a user with write access to the S3 bucket to introduce a new EDK that decrypts to different plaintext when the encrypted data key is stored in an "instruction...

1 affected package

ruby-aws-sdk

Package 22.04 LTS
ruby-aws-sdk Needs evaluation
Show less packages