Search CVE reports


Toggle filters

571 – 580 of 48457 results

Status is adjusted based on your filters.


CVE-2026-52296

Medium priority
Needs evaluation

FFmpeg before 9.0 has an out-of-bounds read because of missing required padding in WMA extradata allocation paths in libavcodec/wmaenc.c.

2 affected packages

ffmpeg, libav

Package 20.04 LTS
ffmpeg Needs evaluation
libav
Show less packages

CVE-2026-90578

Medium priority
Needs evaluation

A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/list.c of the component MP4Box. Executing a manipulation can lead to use after free. The attack is restricted to...

1 affected package

gpac

Package 20.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-90577

Medium priority
Needs evaluation

A vulnerability was detected in GPAC up to f1219cde. Affected by this vulnerability is the function gf_node_get_field of the file scenegraph/base_scenegraph.c of the component MP4Box. Performing a manipulation results in...

1 affected package

gpac

Package 20.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-90576

Medium priority
Needs evaluation

A security vulnerability has been detected in GPAC up to f1219cde. Affected is the function gf_node_list_add_child of the file scenegraph/base_scenegraph.c of the component MP4Box. Such manipulation leads to null pointer...

1 affected package

gpac

Package 20.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-90573

Medium priority
Needs evaluation

A vulnerability was identified in GPAC up to f1219cde. The impacted element is the function gf_sg_mfurl_del of the file scenegraph/vrml_tools.c of the component MP4Box. The manipulation leads to null pointer dereference....

1 affected package

gpac

Package 20.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-90783

Medium priority
Needs evaluation

MKVToolNix through 101.0 contains a heap buffer overflow in the bundled avilib library's ODML superindex parser due to integer wraparound in 32-bit arithmetic. Attackers can craft a malicious AVI file with oversized entry counts...

1 affected package

mkvtoolnix

Package 20.04 LTS
mkvtoolnix Needs evaluation
Show less packages

CVE-2026-90781

Medium priority
Needs evaluation

alsa-lib through 1.2.16.1 contains a stack buffer overflow in the __snd_ctl_ascii_elem_id_parse() function that writes one byte past a 64-byte buffer when parsing a name= field with 64 or more characters. Attackers can supply a...

1 affected package

alsa-lib

Package 20.04 LTS
alsa-lib Needs evaluation
Show less packages

CVE-2026-90776

Medium priority
Needs evaluation

Nodemailer versions 9.1.0 through 10.0.4 contain a quadratic time complexity vulnerability in the addressparser component when parsing email addresses with RFC 5322 comments. Attackers can craft malicious email headers with...

1 affected package

node-nodemailer

Package 20.04 LTS
node-nodemailer Needs evaluation
Show less packages

CVE-2026-90678

Medium priority
Needs evaluation

An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3.5-dev5. Exploitation requires an HTTP/3 frontend: HAProxy must be built with QUIC support and configured with a QUIC bind listener, and the affected...

1 affected package

haproxy

Package 20.04 LTS
haproxy Needs evaluation
Show less packages

CVE-2026-90648

Medium priority
Needs evaluation

wasm2c in WebAssembly wabt through 1.0.41 allows sandbox escape in some situations that primarily involve 32-bit platforms, aka a "table flip" attack. It does not check the return value of calloc()...

1 affected package

wabt

Package 20.04 LTS
wabt Needs evaluation
Show less packages