Search CVE reports


Toggle filters

1361 – 1370 of 60314 results


CVE-2025-48073

Medium priority
Needs evaluation

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In version 3.3.2, when reading a deep scanline image with a large sample count in...

1 affected package

openexr

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openexr Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-48072

Medium priority
Needs evaluation

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. Version 3.3.2 is vulnerable to a heap-based buffer overflow during a read operation...

1 affected package

openexr

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openexr Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-48071

Medium priority
Needs evaluation

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.3.2 through 3.3.0, there is a heap-based buffer overflow during a write...

1 affected package

openexr

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openexr Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-45768

Medium priority
Vulnerable

pyjwt v2.10.1 was discovered to contain weak encryption. NOTE: this is disputed by the Supplier because the key length is chosen by the application that uses the library (admittedly, library users may benefit from a minimum value...

1 affected package

pyjwt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pyjwt Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2023-32251

Medium priority

Some fixes available 32 of 92

A vulnerability has been identified in the Linux kernel's ksmbd component (kernel SMB/CIFS server). A security control designed to prevent dictionary attacks, which introduces a 5-second delay during session setup, can be bypassed...

144 affected packages

linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11, linux-hwe-5.13...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-hwe Not in release Not in release Not in release Ignored
linux-hwe-5.4 Not in release Not in release Not in release Ignored
linux-hwe-5.8 Not in release Not in release Ignored Not in release
linux-hwe-5.11 Not in release Not in release Ignored Not in release
linux-hwe-5.13 Not in release Not in release Ignored Not in release
linux-hwe-5.15 Not in release Not in release Fixed Not in release
linux-hwe-5.19 Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Ignored Not in release Not in release
linux-hwe-6.5 Not in release Ignored Not in release Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-hwe-6.11 Ignored Not in release Not in release Not in release
linux-hwe-6.14 Not affected Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-kvm Not in release Fixed Ignored Ignored
linux-allwinner-5.19 Not in release Ignored Not in release Not in release
linux-aws-5.0 Not in release Not in release Not in release Ignored
linux-aws-5.3 Not in release Not in release Not in release Ignored
linux-aws-5.4 Not in release Not in release Not in release Ignored
linux-aws-5.8 Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Ignored Not in release
linux-aws-5.13 Not in release Not in release Ignored Not in release
linux-aws-5.15 Not in release Not in release Fixed Not in release
linux-aws-5.19 Not in release Ignored Not in release Not in release
linux-aws-6.2 Not in release Ignored Not in release Not in release
linux-aws-6.5 Not in release Ignored Not in release Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-aws-6.14 Not affected Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Not affected Fixed Ignored Ignored
linux-azure-4.15 Not in release Not in release Not in release Ignored
linux-azure-5.3 Not in release Not in release Not in release Ignored
linux-azure-5.4 Not in release Not in release Not in release Ignored
linux-azure-5.8 Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Ignored Not in release
linux-azure-5.13 Not in release Not in release Ignored Not in release
linux-azure-5.15 Not in release Not in release Fixed Not in release
linux-azure-5.19 Not in release Ignored Not in release Not in release
linux-azure-6.2 Not in release Ignored Not in release Not in release
linux-azure-6.5 Not in release Ignored Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-azure-6.11 Ignored Not in release Not in release Not in release
linux-azure-fde Not in release Needs evaluation Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Ignored Not in release
linux-azure-fde-5.19 Not in release Ignored Not in release Not in release
linux-azure-fde-6.2 Not in release Ignored Not in release Not in release
linux-azure-nvidia Not affected Not in release Not in release Not in release
linux-bluefield Not in release Not in release Ignored Not in release
linux-azure-edge Not in release Not in release Not in release Ignored
linux-fips Not in release Fixed Vulnerable Vulnerable
linux-aws-fips Not in release Fixed Vulnerable Vulnerable
linux-azure-fips Not in release Fixed Vulnerable Vulnerable
linux-gcp-fips Not in release Fixed Vulnerable Vulnerable
linux-gcp Not affected Fixed Ignored Ignored
linux-gcp-4.15 Not in release Not in release Not in release Ignored
linux-gcp-5.3 Not in release Not in release Not in release Ignored
linux-gcp-5.4 Not in release Not in release Not in release Ignored
linux-gcp-5.8 Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Ignored Not in release
linux-gcp-5.13 Not in release Not in release Ignored Not in release
linux-gcp-5.15 Not in release Not in release Fixed Not in release
linux-gcp-5.19 Not in release Ignored Not in release Not in release
linux-gcp-6.2 Not in release Ignored Not in release Not in release
linux-gcp-6.5 Not in release Ignored Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-gcp-6.11 Ignored Not in release Not in release Not in release
linux-gcp-6.14 Not affected Not in release Not in release Not in release
linux-gke Not affected Fixed Ignored Not in release
linux-gke-4.15 Not in release Not in release Not in release Ignored
linux-gke-5.4 Not in release Not in release Not in release Ignored
linux-gke-5.15 Not in release Not in release Ignored Not in release
linux-gkeop Not affected Fixed Ignored Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Ignored
linux-gkeop-5.15 Not in release Not in release Ignored Not in release
linux-ibm Not affected Fixed Ignored Not in release
linux-ibm-5.4 Not in release Not in release Not in release Ignored
linux-ibm-5.15 Not in release Not in release Fixed Not in release
linux-ibm-6.8 Not in release Not affected Not in release Not in release
linux-intel-5.13 Not in release Not in release Ignored Not in release
linux-intel-iotg Not in release Fixed Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Fixed Not in release
linux-iot Not in release Not in release Ignored Not in release
linux-intel-iot-realtime Not in release Fixed Not in release Not in release
linux-lowlatency Not affected Fixed Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Fixed Not in release
linux-lowlatency-hwe-5.19 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-lowlatency-hwe-6.11 Ignored Not in release Not in release Not in release
linux-nvidia Not affected Fixed Not in release Not in release
linux-nvidia-6.2 Not in release Ignored Not in release Not in release
linux-nvidia-6.5 Not in release Ignored Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-nvidia-tegra Not affected Fixed Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Fixed Not in release
linux-nvidia-tegra-igx Not in release Fixed Not in release Not in release
linux-oracle-5.0 Not in release Not in release Not in release Ignored
linux-oracle-5.3 Not in release Not in release Not in release Ignored
linux-oracle-5.4 Not in release Not in release Not in release Ignored
linux-oracle-5.8 Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Ignored Not in release
linux-riscv-5.19 Not in release Ignored Not in release Not in release
linux-oracle-5.13 Not in release Not in release Ignored Not in release
linux-oracle-5.15 Not in release Not in release Fixed Not in release
linux-oracle-6.5 Not in release Ignored Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-oracle-6.14 Not affected Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored
linux-oem-5.6 Not in release Not in release Ignored Not in release
linux-oem-5.10 Not in release Not in release Ignored Not in release
linux-oem-5.13 Not in release Not in release Ignored Not in release
linux-oem-5.14 Not in release Not in release Ignored Not in release
linux-oem-5.17 Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Ignored Not in release Not in release
linux-oem-6.1 Not in release Ignored Not in release Not in release
linux-oem-6.5 Not in release Ignored Not in release Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release
linux-oem-6.14 Not affected Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Ignored
linux-raspi-5.4 Not in release Not in release Not in release Ignored
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-riscv Ignored Ignored Ignored Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release
linux-riscv-5.11 Not in release Not in release Ignored Not in release
linux-riscv-5.15 Not in release Not in release Fixed Not in release
linux-riscv-6.5 Not in release Ignored Not in release Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-riscv-6.14 Not affected Not in release Not in release Not in release
linux-starfive-5.19 Not in release Ignored Not in release Not in release
linux-starfive-6.2 Not in release Ignored Not in release Not in release
linux-starfive-6.5 Not in release Ignored Not in release Not in release
linux-xilinx-zynqmp Not in release Fixed Ignored Not in release
linux Not affected Fixed Ignored Ignored
linux-aws Not affected Fixed Ignored Ignored
linux-oracle Not affected Fixed Ignored Ignored
linux-raspi Not affected Fixed Ignored Not in release
linux-realtime Not affected Fixed Not in release Not in release
linux-intel Ignored Not in release Not in release Not in release
linux-nvidia-6.11 Not affected Not in release Not in release Not in release
linux-realtime-6.14 Not affected Not in release Not in release Not in release
linux-realtime-6.8 Not in release Not affected Not in release Not in release
Show all 144 packages Show less packages

CVE-2025-45770

Medium priority
Needs evaluation

jwt v5.4.3 was discovered to contain weak encryption. NOTE: this issue has been disputed on the basis that key lengths are expected to be set by an application, not by this library. This dispute is subject to review under CNA...

1 affected package

php-lcobucci-jwt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
php-lcobucci-jwt Needs evaluation Not in release
Show less packages

CVE-2025-24854

Medium priority

A carefully crafted request using the Image plugin could trigger an XSS vulnerability on Apache JSPWiki, which could allow the attacker to execute javascript in the victim's browser and get some sensitive information about the...

0 affected package


CVE-2025-24853

Medium priority

A carefully crafted request when creating a header link using the wiki markup syntax, which could allow the attacker to execute javascript in the victim's browser and get some sensitive information about the victim. Further...

0 affected package


CVE-2025-53022

Medium priority
Needs evaluation

TrustedFirmware-M (aka Trusted Firmware for M profile Arm CPUs) before 2.1.3 and 2.2.x before 2.2.1 lacks length validation during a firmware upgrade. While processing a new image, the Firmware Upgrade (FWU) module does not...

1 affected package

arm-trusted-firmware

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
arm-trusted-firmware Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2023-2593

Medium priority

Some fixes available 24 of 38

A flaw exists within the Linux kernel's handling of new TCP connections. The issue results from the lack of memory release after its effective lifetime. This vulnerability allows an unauthenticated attacker to create a denial of...

144 affected packages

linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11, linux-hwe-5.13...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-hwe Not in release Not in release Not in release Ignored
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.8 Not in release Not in release Ignored Not in release
linux-hwe-5.11 Not in release Not in release Ignored Not in release
linux-hwe-5.13 Not in release Not in release Ignored Not in release
linux-hwe-5.15 Not in release Not in release Fixed Not in release
linux-hwe-5.19 Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Ignored Not in release Not in release
linux-hwe-6.5 Not in release Ignored Not in release Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-hwe-6.11 Ignored Not in release Not in release Not in release
linux-hwe-6.14 Not affected Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-kvm Not in release Fixed Not affected Not affected
linux-allwinner-5.19 Not in release Ignored Not in release Not in release
linux-aws-5.0 Not in release Not in release Not in release Ignored
linux-aws-5.3 Not in release Not in release Not in release Ignored
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.8 Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Ignored Not in release
linux-aws-5.13 Not in release Not in release Ignored Not in release
linux-aws-5.15 Not in release Not in release Fixed Not in release
linux-aws-5.19 Not in release Ignored Not in release Not in release
linux-aws-6.2 Not in release Ignored Not in release Not in release
linux-aws-6.5 Not in release Ignored Not in release Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-aws-6.14 Not affected Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Not affected Fixed Not affected Ignored
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.3 Not in release Not in release Not in release Ignored
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.8 Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Ignored Not in release
linux-azure-5.13 Not in release Not in release Ignored Not in release
linux-azure-5.15 Not in release Not in release Fixed Not in release
linux-azure-5.19 Not in release Ignored Not in release Not in release
linux-azure-6.2 Not in release Ignored Not in release Not in release
linux-azure-6.5 Not in release Ignored Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-azure-6.11 Ignored Not in release Not in release Not in release
linux-azure-fde Not in release Needs evaluation Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde-5.19 Not in release Ignored Not in release Not in release
linux-azure-fde-6.2 Not in release Ignored Not in release Not in release
linux-azure-nvidia Not affected Not in release Not in release Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-azure-edge Not in release Not in release Not in release Ignored
linux-fips Not in release Not affected Not affected Not affected
linux-aws-fips Not in release Not affected Not affected Not affected
linux-azure-fips Not in release Not affected Not affected Not affected
linux-gcp-fips Not in release Not affected Not affected Not affected
linux-gcp Not affected Fixed Not affected Ignored
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.3 Not in release Not in release Not in release Ignored
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.8 Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Ignored Not in release
linux-gcp-5.13 Not in release Not in release Ignored Not in release
linux-gcp-5.15 Not in release Not in release Fixed Not in release
linux-gcp-5.19 Not in release Ignored Not in release Not in release
linux-gcp-6.2 Not in release Ignored Not in release Not in release
linux-gcp-6.5 Not in release Ignored Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-gcp-6.11 Ignored Not in release Not in release Not in release
linux-gcp-6.14 Not affected Not in release Not in release Not in release
linux-gke Not affected Fixed Ignored Not in release
linux-gke-4.15 Not in release Not in release Not in release Ignored
linux-gke-5.4 Not in release Not in release Not in release Ignored
linux-gke-5.15 Not in release Not in release Ignored Not in release
linux-gkeop Not affected Fixed Ignored Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Ignored
linux-gkeop-5.15 Not in release Not in release Ignored Not in release
linux-ibm Not affected Fixed Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-ibm-6.8 Not in release Not affected Not in release Not in release
linux-intel-5.13 Not in release Not in release Ignored Not in release
linux-intel-iotg Not in release Fixed Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Fixed Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-intel-iot-realtime Not in release Fixed Not in release Not in release
linux-lowlatency Not affected Fixed Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Fixed Not in release
linux-lowlatency-hwe-5.19 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-lowlatency-hwe-6.11 Ignored Not in release Not in release Not in release
linux-nvidia Not affected Fixed Not in release Not in release
linux-nvidia-6.2 Not in release Ignored Not in release Not in release
linux-nvidia-6.5 Not in release Ignored Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-nvidia-tegra Not affected Not affected Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Fixed Not in release
linux-nvidia-tegra-igx Not in release Not affected Not in release Not in release
linux-oracle-5.0 Not in release Not in release Not in release Ignored
linux-oracle-5.3 Not in release Not in release Not in release Ignored
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.8 Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Ignored Not in release
linux-oracle-5.13 Not in release Not in release Ignored Not in release
linux-oracle-5.15 Not in release Not in release Fixed Not in release
linux-oracle-6.5 Not in release Ignored Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-oracle-6.14 Not affected Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored
linux-oem-5.6 Not in release Not in release Ignored Not in release
linux-oem-5.10 Not in release Not in release Ignored Not in release
linux-oem-5.13 Not in release Not in release Ignored Not in release
linux-oem-5.14 Not in release Not in release Ignored Not in release
linux-oem-5.17 Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Ignored Not in release Not in release
linux-oem-6.1 Not in release Ignored Not in release Not in release
linux-oem-6.5 Not in release Ignored Not in release Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release
linux-oem-6.14 Not affected Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Ignored
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-riscv Ignored Ignored Ignored Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release
linux-riscv-5.11 Not in release Not in release Ignored Not in release
linux-riscv-5.15 Not in release Not in release Fixed Not in release
linux-riscv-5.19 Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Ignored Not in release Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-riscv-6.14 Not affected Not in release Not in release Not in release
linux-starfive-5.19 Not in release Ignored Not in release Not in release
linux-starfive-6.2 Not in release Ignored Not in release Not in release
linux-starfive-6.5 Not in release Ignored Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux Not affected Fixed Not affected Not affected
linux-aws Not affected Fixed Not affected Not affected
linux-oracle Not affected Fixed Not affected Not affected
linux-raspi Not affected Fixed Not affected Not in release
linux-realtime Not affected Fixed Not in release Not in release
linux-intel Ignored Not in release Not in release Not in release
linux-nvidia-6.11 Not affected Not in release Not in release Not in release
linux-realtime-6.14 Not affected Not in release Not in release Not in release
linux-realtime-6.8 Not in release Not affected Not in release Not in release
Show all 144 packages Show less packages