Search CVE reports


Toggle filters

31 – 40 of 49291 results

Status is adjusted based on your filters.


CVE-2026-95818

Medium priority
Needs evaluation

A stack-based buffer overflow in the dynamic loader (ld.so) of the GNU C Library (glibc) versions 2.14 through 2.44 allows a local attacker to crash or corrupt the memory of setuid/setgid (AT_SECURE) programs. When such a...

2 affected packages

glibc, eglibc

Package 20.04 LTS
glibc Needs evaluation
eglibc —
Show less packages

CVE-2026-87902

Medium priority
Needs evaluation

An unauthenticated attacker can make `get_page_template()` page-template resolution include a chosen readable local `.php` file outside the active theme directories. If relevant pre-conditions for both the server and the active...

1 affected package

wordpress

Package 20.04 LTS
wordpress Needs evaluation
Show less packages

CVE-2026-83603

Medium priority
Needs evaluation

Netdata is an open source observability tool. Prior to 2.10.4, the setuid-root ndsudo helper command fail2ban-client-status-socket in src/collectors/utils/ndsudo.c accepts a caller-controlled --socket_path from the low-privileged...

1 affected package

netdata

Package 20.04 LTS
netdata Needs evaluation
Show less packages

CVE-2026-83602

Medium priority
Needs evaluation

Netdata is an open source observability tool. From 2.0.0 until 2.11.0, Netdata registers /api/v3/settings in src/web/api/v3/web_api_v3.c with HTTP_ACL_NOCHECK and HTTP_ACCESS_ANONYMOUS_DATA, causing unauthenticated PUT requests...

1 affected package

netdata

Package 20.04 LTS
netdata Needs evaluation
Show less packages

CVE-2026-83601

Medium priority
Needs evaluation

Netdata is an open source observability tool. Prior to 2.10.4, an authenticated child agent can send an oversized DIMENSION SLOT value that str2ull_encoded passes to pluginsd_rrddim_put_to_slot...

1 affected package

netdata

Package 20.04 LTS
netdata Needs evaluation
Show less packages

CVE-2026-83600

Medium priority
Needs evaluation

Netdata is an open source observability tool. Prior to 2.10.4, an authenticated child agent can send an oversized CHART SLOT value that str2ull_encoded passes to pluginsd_rrdset_cache_put_to_slot...

1 affected package

netdata

Package 20.04 LTS
netdata Needs evaluation
Show less packages

CVE-2026-83599

Medium priority
Needs evaluation

Netdata is an open source observability tool. Prior to 2.11.0, Netdata's unauthenticated WebSocket server negotiates permessage-deflate before authentication, and src/web/websocket/websocket-compression.c...

1 affected package

netdata

Package 20.04 LTS
netdata Needs evaluation
Show less packages

CVE-2026-83598

Medium priority
Needs evaluation

Netdata is an open source observability tool. From rom 2.0.0 until 2.10.4, during Netdata Windows Agent MSI repair, powershell.exe runs as SYSTEM without -NoProfile and...

1 affected package

netdata

Package 20.04 LTS
netdata Needs evaluation
Show less packages

CVE-2026-13087

Medium priority
Needs evaluation

A heap out-of-bounds write vulnerability was found in the Linux kernel's RPC-over-RDMA server reply path in net/sunrpc/xprtrdma/svc_rdma_sendto.c. When a crafted RPC-over-RDMA client sends a large NFS READ request with an empty...

168 affected packages

linux, linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11...

Package 20.04 LTS
linux Needs evaluation
linux-hwe —
linux-hwe-5.4 —
linux-hwe-5.8 Ignored
linux-hwe-5.11 Ignored
linux-hwe-5.13 Ignored
linux-hwe-5.15 Needs evaluation
linux-hwe-5.19 —
linux-hwe-6.2 —
linux-hwe-6.5 —
linux-hwe-6.8 —
linux-hwe-6.11 —
linux-hwe-6.14 —
linux-hwe-6.17 —
linux-hwe-7.0 —
linux-hwe-edge —
linux-lts-xenial —
linux-kvm Needs evaluation
linux-allwinner-5.19 —
linux-aws Needs evaluation
linux-aws-5.0 —
linux-aws-5.3 —
linux-aws-5.4 —
linux-aws-5.8 Ignored
linux-aws-5.11 Ignored
linux-aws-5.13 Ignored
linux-aws-5.15 Needs evaluation
linux-aws-5.19 —
linux-aws-6.2 —
linux-aws-6.5 —
linux-aws-6.8 —
linux-aws-6.14 —
linux-aws-6.17 —
linux-aws-7.0 —
linux-aws-hwe —
linux-azure Needs evaluation
linux-azure-4.15 —
linux-azure-5.3 —
linux-azure-5.4 —
linux-azure-5.8 Ignored
linux-azure-5.11 Ignored
linux-azure-5.13 Ignored
linux-azure-5.15 Needs evaluation
linux-azure-5.19 —
linux-azure-6.2 —
linux-azure-6.5 —
linux-azure-6.8 —
linux-azure-6.11 —
linux-azure-6.14 —
linux-azure-6.17 —
linux-azure-7.0 —
linux-azure-fde Ignored
linux-azure-fde-5.15 Needs evaluation
linux-azure-fde-5.19 —
linux-azure-fde-6.2 —
linux-azure-fde-6.8 —
linux-azure-fde-6.14 —
linux-azure-fde-6.17 —
linux-azure-fde-7.0 —
linux-azure-nvidia —
linux-azure-nvidia-6.14 —
linux-bluefield Needs evaluation
linux-azure-edge —
linux-fips Needs evaluation
linux-aws-fips Needs evaluation
linux-azure-fips Needs evaluation
linux-gcp-fips Needs evaluation
linux-gcp Needs evaluation
linux-gcp-4.15 —
linux-gcp-5.3 —
linux-gcp-5.4 —
linux-gcp-5.8 Ignored
linux-gcp-5.11 Ignored
linux-gcp-5.13 Ignored
linux-gcp-5.15 Needs evaluation
linux-gcp-5.19 —
linux-gcp-6.2 —
linux-gcp-6.5 —
linux-gcp-6.8 —
linux-gcp-6.11 —
linux-gcp-6.14 —
linux-gcp-6.17 —
linux-gcp-7.0 —
linux-gke Ignored
linux-gke-4.15 —
linux-gke-5.4 —
linux-gke-5.15 Ignored
linux-gkeop Ignored
linux-gkeop-5.4 —
linux-gkeop-5.15 Ignored
linux-ibm Needs evaluation
linux-ibm-5.4 —
linux-ibm-5.15 Needs evaluation
linux-ibm-6.8 —
linux-intel-5.13 Ignored
linux-intel-iotg —
linux-intel-iotg-5.15 Needs evaluation
linux-iot Needs evaluation
linux-intel-iot-realtime —
linux-lowlatency —
linux-lowlatency-hwe-5.15 Needs evaluation
linux-lowlatency-hwe-5.19 —
linux-lowlatency-hwe-6.2 —
linux-lowlatency-hwe-6.5 —
linux-lowlatency-hwe-6.8 —
linux-lowlatency-hwe-6.11 —
linux-nvidia —
linux-nvidia-6.2 —
linux-nvidia-6.5 —
linux-nvidia-6.8 —
linux-nvidia-6.11 —
linux-nvidia-6.17 —
linux-nvidia-7.0 —
linux-nvidia-bos —
linux-nvidia-lowlatency —
linux-nvidia-tegra —
linux-nvidia-tegra-5.15 Needs evaluation
linux-nvidia-tegra-igx —
linux-oracle Needs evaluation
linux-oracle-5.0 —
linux-oracle-5.3 —
linux-oracle-5.4 —
linux-oracle-5.8 Ignored
linux-oracle-5.11 Ignored
linux-oracle-5.13 Ignored
linux-oracle-5.15 Needs evaluation
linux-oracle-6.5 —
linux-oracle-6.8 —
linux-oracle-6.14 —
linux-oracle-6.17 —
linux-oracle-7.0 —
linux-oem —
linux-oem-5.6 Ignored
linux-oem-5.10 Ignored
linux-oem-5.13 Ignored
linux-oem-5.14 Ignored
linux-oem-5.17 —
linux-oem-6.0 —
linux-oem-6.1 —
linux-oem-6.5 —
linux-oem-6.8 —
linux-oem-6.11 —
linux-oem-6.14 —
linux-oem-6.17 —
linux-oem-7.0 —
linux-raspi Needs evaluation
linux-raspi2 Ignored
linux-raspi-5.4 —
linux-raspi-realtime —
linux-realtime —
linux-realtime-6.8 —
linux-realtime-6.14 —
linux-riscv Ignored
linux-riscv-5.8 Ignored
linux-riscv-5.11 Ignored
linux-riscv-5.15 Needs evaluation
linux-riscv-5.19 —
linux-riscv-6.5 —
linux-riscv-6.8 —
linux-riscv-6.14 —
linux-riscv-6.17 —
linux-riscv-7.0 —
linux-starfive-5.19 —
linux-starfive-6.2 —
linux-starfive-6.5 —
linux-xilinx —
linux-xilinx-zynqmp Needs evaluation
linux-realtime-6.17 —
Show all 168 packages Show less packages

CVE-2026-90462

Medium priority
Needs evaluation

A flaw was found in SSSD. When configured with the LDAP access provider and `ldap_access_order` including `ppolicy` or `lockout`, a fail-open condition in the LDAP ppolicy access check can occur if a user lookup returns...

1 affected package

sssd

Package 20.04 LTS
sssd Needs evaluation
Show less packages