Search CVE reports


Toggle filters

151 – 160 of 47849 results

Status is adjusted based on your filters.


CVE-2026-29775

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.24.0, a client-side heap out-of-bounds read/write occurs in FreeRDP's bitmap cache subsystem due to an off-by-one boundary check in bitmap_cache_put. A...

3 affected packages

freerdp, freerdp2, freerdp3

Package 16.04 LTS
freerdp Needs evaluation
freerdp2
freerdp3
Show less packages

CVE-2026-29774

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.24.0, a client-side heap buffer overflow occurs in the FreeRDP client's AVC420/AVC444 YUV-to-RGB conversion path due to missing horizontal...

3 affected packages

freerdp, freerdp2, freerdp3

Package 16.04 LTS
freerdp Needs evaluation
freerdp2
freerdp3
Show less packages

CVE-2026-2859

Medium priority
Needs evaluation

Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0p23, 2.3.0 before 2.3.0p43, and 2.2.0 (EOL) allows unauthenticated users to enumerate existing hosts by observing different HTTP response codes in deploy_agent...

1 affected package

check-mk

Package 16.04 LTS
check-mk Needs evaluation
Show less packages

CVE-2026-2673

Low priority
Not affected

Issue summary: An OpenSSL TLS 1.3 server may fail to negotiate the expected preferred key exchange group when its key exchange group configuration includes the default by using the 'DEFAULT' keyword. Impact summary: A less...

5 affected packages

openssl, openssl-fips, openssl1.0, nodejs, edk2

Package 16.04 LTS
openssl Not affected
openssl-fips
openssl1.0
nodejs Not affected
edk2 Not affected
Show less packages

CVE-2026-24097

Medium priority
Needs evaluation

Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0p23, 2.3.0 before 2.3.0p43, and 2.2.0 (EOL) allows authenticated users to enumerate existing hosts by observing different HTTP response codes...

1 affected package

check-mk

Package 16.04 LTS
check-mk Needs evaluation
Show less packages

CVE-2026-23943

Medium priority
Needs evaluation

Improper Handling of Highly Compressed Data (Compression Bomb) vulnerability in Erlang OTP ssh (ssh_transport modules) allows Denial of Service via Resource Depletion. The SSH transport layer advertises legacy zlib compression by...

1 affected package

erlang

Package 16.04 LTS
erlang Needs evaluation
Show less packages

CVE-2026-23942

Medium priority
Needs evaluation

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP (ssh_sftpd module) allows Path Traversal. This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl and...

1 affected package

erlang

Package 16.04 LTS
erlang Needs evaluation
Show less packages

CVE-2026-23941

Medium priority
Needs evaluation

Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in Erlang OTP (inets httpd module) allows HTTP Request Smuggling. This vulnerability is associated with program...

1 affected package

erlang

Package 16.04 LTS
erlang Needs evaluation
Show less packages

CVE-2026-32597

Medium priority
Needs evaluation

PyJWT is a JSON Web Token implementation in Python. Prior to 2.12.0, PyJWT does not validate the crit (Critical) Header Parameter defined in RFC 7515 ยง4.1.11. When a JWS token contains a crit array listing extensions that PyJWT...

1 affected package

pyjwt

Package 16.04 LTS
pyjwt Needs evaluation
Show less packages

CVE-2026-32259

Medium priority
Needs evaluation

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9.13-41, when a memory allocation fails in the sixel encoder it would be possible to write past the end of a...

1 affected package

imagemagick

Package 16.04 LTS
imagemagick Needs evaluation
Show less packages