Search CVE reports


Toggle filters

41 – 50 of 58662 results

Status is adjusted based on your filters.


CVE-2026-87081

Medium priority
Needs evaluation

Net::IDN::UTS46 versions before 2.590 for Perl allow CPU exhaustion via quadratic punycode encoding of an overlong label before the length check in to_ascii. to_ascii punycode encodes each label and only then applies the 63-byte...

1 affected package

libnet-idn-encode-perl

Package 16.04 LTS
libnet-idn-encode-perl Needs evaluation
Show less packages

CVE-2026-87080

Medium priority
Needs evaluation

Net::IDN::Punycode::PP versions before 2.590 for Perl decode a truncated label to a name containing a character it never encoded in decode_punycode. The pure-Perl decoder reads one digit at a time with four-argument substr and...

1 affected package

libnet-idn-encode-perl

Package 16.04 LTS
libnet-idn-encode-perl Needs evaluation
Show less packages

CVE-2026-87079

Medium priority
Needs evaluation

Net::IDN::Punycode versions before 2.590 for Perl allow CPU exhaustion via quadratic insertion cost when decoding a long label in decode_punycode. The XS backend inserts each decoded code point into a UTF-8 buffer and finds the...

1 affected package

libnet-idn-encode-perl

Package 16.04 LTS
libnet-idn-encode-perl Needs evaluation
Show less packages

CVE-2026-87078

Medium priority
Needs evaluation

Net::IDN::Punycode versions from 2.302 before 2.590 for Perl leak the output buffer on every rejected label in decode_punycode. The XS backend allocates the scalar it returns before it validates the input, sizing the buffer at...

1 affected package

libnet-idn-encode-perl

Package 16.04 LTS
libnet-idn-encode-perl Needs evaluation
Show less packages

CVE-2026-74766

Medium priority
Needs evaluation

Net::IDN::Punycode versions from 2.301 before 2.590 for Perl allow a heap use-after-free via a decoded code point that reallocates the output buffer in decode_punycode. The XS backend inserts each decoded code point into the...

1 affected package

libnet-idn-encode-perl

Package 16.04 LTS
libnet-idn-encode-perl Needs evaluation
Show less packages

CVE-2026-74765

Medium priority
Needs evaluation

Net::IDN::Punycode versions before 2.590 for Perl allow an out-of-bounds read via integer overflow of the delta accumulator in encode_punycode. The XS backend keeps the punycode delta, and the digit index derived from it, in a...

1 affected package

libnet-idn-encode-perl

Package 16.04 LTS
libnet-idn-encode-perl Needs evaluation
Show less packages

CVE-2026-68956

Medium priority
Needs evaluation

Allocation of Resources Without Limits or Throttling vulnerability in Erlang/OTP ssh allows an authenticated remote attacker to exhaust node memory by repeatedly opening session channels that are never assigned a handler. The...

1 affected package

erlang

Package 16.04 LTS
erlang Needs evaluation
Show less packages

CVE-2026-65634

Medium priority
Needs evaluation

Inefficient algorithmic complexity in the Erlang/OTP asn1 OBJECT IDENTIFIER decoder allows a remote unauthenticated attacker to cause denial of service by sending a crafted OID during the TLS handshake. The BER OID decoder...

1 affected package

erlang

Package 16.04 LTS
erlang Needs evaluation
Show less packages

CVE-2016-15059

Medium priority
Needs evaluation

Net::IDN::Punycode versions before 2.301 for Perl allow a heap buffer overflow via unchecked writes past the output buffer in encode_punycode. The XS backend builds the encoded label in the string buffer of the scalar it returns,...

1 affected package

libnet-idn-encode-perl

Package 16.04 LTS
libnet-idn-encode-perl Needs evaluation
Show less packages

CVE-2026-79079

Medium priority
Needs evaluation

An issue in CrossWire Xiphos <= 4.3.2 allows a local attacker to execute arbitrary code via the src/main/url.cc and src/gtk/menu_popup.c components

1 affected package

xiphos

Package 16.04 LTS
xiphos Needs evaluation
Show less packages