Search CVE reports


Toggle filters

1 – 10 of 28238 results

Status is adjusted based on your filters.


CVE-2025-24965

Medium priority
Needs evaluation

crun is an open source OCI Container Runtime fully written in C. In affected versions A malicious container image could trick the krun handler into escaping the root filesystem, allowing file creation or modification on the host....

1 affected package

crun

Package 20.04 LTS
crun Needs evaluation
Show less packages

CVE-2025-1492

Medium priority
Needs evaluation

Bundle Protocol and CBOR dissector crashes in Wireshark 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10 allows denial of service via packet injection or crafted capture file

1 affected package

wireshark

Package 20.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2025-1426

Medium priority
Not affected

Heap buffer overflow in GPU in Google Chrome on Android prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 20.04 LTS
chromium-browser Not affected
Show less packages

CVE-2025-1390

Medium priority
Vulnerable

The PAM module pam_cap.so of libcap configuration supports group names starting with “@”, during actual parsing, configurations not starting with “@” are incorrectly recognized as group names. This may result in nonintended users...

1 affected package

libcap2

Package 20.04 LTS
libcap2 Vulnerable
Show less packages

CVE-2025-1006

Medium priority
Not affected

Use after free in Network in Google Chrome prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted web app. (Chromium security severity: Medium)

1 affected package

chromium-browser

Package 20.04 LTS
chromium-browser Not affected
Show less packages

CVE-2025-0999

Medium priority
Not affected

Heap buffer overflow in V8 in Google Chrome prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 20.04 LTS
chromium-browser Not affected
Show less packages

CVE-2025-0633

Medium priority
Needs evaluation

Heap-based Buffer Overflow vulnerability in iniparser_dumpsection_ini() in iniparser allows attacker to read out of bound memory

1 affected package

iniparser

Package 20.04 LTS
iniparser Needs evaluation
Show less packages

CVE-2025-27113

Medium priority
Vulnerable

libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a NULL pointer dereference in xmlPatMatch in pattern.c.

1 affected package

libxml2

Package 20.04 LTS
libxml2 Vulnerable
Show less packages

CVE-2025-25475

Medium priority
Needs evaluation

A NULL pointer dereference in the component /libsrc/dcrleccd.cc of DCMTK v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DICOM file.

1 affected package

dcmtk

Package 20.04 LTS
dcmtk Needs evaluation
Show less packages

CVE-2025-25474

Medium priority
Needs evaluation

DCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h.

1 affected package

dcmtk

Package 20.04 LTS
dcmtk Needs evaluation
Show less packages