Search CVE reports
1 – 10 of 28238 results
CVE-2025-24965
Medium prioritycrun is an open source OCI Container Runtime fully written in C. In affected versions A malicious container image could trick the krun handler into escaping the root filesystem, allowing file creation or modification on the host....
1 affected package
crun
Package | 20.04 LTS |
---|---|
crun | Needs evaluation |
CVE-2025-1492
Medium priorityBundle Protocol and CBOR dissector crashes in Wireshark 4.4.0 to 4.4.3 and 4.2.0 to 4.2.10 allows denial of service via packet injection or crafted capture file
1 affected package
wireshark
Package | 20.04 LTS |
---|---|
wireshark | Needs evaluation |
CVE-2025-1426
Medium priorityHeap buffer overflow in GPU in Google Chrome on Android prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
1 affected package
chromium-browser
Package | 20.04 LTS |
---|---|
chromium-browser | Not affected |
CVE-2025-1390
Medium priorityThe PAM module pam_cap.so of libcap configuration supports group names starting with “@”, during actual parsing, configurations not starting with “@” are incorrectly recognized as group names. This may result in nonintended users...
1 affected package
libcap2
Package | 20.04 LTS |
---|---|
libcap2 | Vulnerable |
CVE-2025-1006
Medium priorityUse after free in Network in Google Chrome prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted web app. (Chromium security severity: Medium)
1 affected package
chromium-browser
Package | 20.04 LTS |
---|---|
chromium-browser | Not affected |
CVE-2025-0999
Medium priorityHeap buffer overflow in V8 in Google Chrome prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
1 affected package
chromium-browser
Package | 20.04 LTS |
---|---|
chromium-browser | Not affected |
CVE-2025-0633
Medium priorityHeap-based Buffer Overflow vulnerability in iniparser_dumpsection_ini() in iniparser allows attacker to read out of bound memory
1 affected package
iniparser
Package | 20.04 LTS |
---|---|
iniparser | Needs evaluation |
CVE-2025-27113
Medium prioritylibxml2 before 2.12.10 and 2.13.x before 2.13.6 has a NULL pointer dereference in xmlPatMatch in pattern.c.
1 affected package
libxml2
Package | 20.04 LTS |
---|---|
libxml2 | Vulnerable |
CVE-2025-25475
Medium priorityA NULL pointer dereference in the component /libsrc/dcrleccd.cc of DCMTK v3.6.9+ DEV allows attackers to cause a Denial of Service (DoS) via a crafted DICOM file.
1 affected package
dcmtk
Package | 20.04 LTS |
---|---|
dcmtk | Needs evaluation |
CVE-2025-25474
Medium priorityDCMTK v3.6.9+ DEV was discovered to contain a buffer overflow via the component /dcmimgle/diinpxt.h.
1 affected package
dcmtk
Package | 20.04 LTS |
---|---|
dcmtk | Needs evaluation |