Search CVE reports


Toggle filters

1601 – 1610 of 60314 results


CVE-2025-54352

Medium priority
Needs evaluation

WordPress 3.5 through 6.8.2 allows remote attackers to guess titles of private and draft posts via pingback.ping XML-RPC requests. NOTE: the Supplier is not changing this behavior.

1 affected package

wordpress

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wordpress Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-49087

Medium priority
Needs evaluation

In Mbed TLS 3.6.1 through 3.6.3 before 3.6.4, a timing discrepancy in block cipher padding removal allows an attacker to recover the plaintext when PKCS#7 padding mode is used.

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-47917

Medium priority
Needs evaluation

Mbed TLS before 3.6.4 allows a use-after-free in certain situations of applications that are developed in accordance with the documentation. The function mbedtls_x509_string_to_names() takes a head argument that is documented as...

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-48965

Medium priority
Needs evaluation

Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL but val.len greater than zero.

1 affected package

mbedtls

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mbedtls Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-54314

Medium priority
Needs evaluation

Thor before 1.4.0 can construct an unsafe shell command from library input. NOTE: this is disputed by the Supplier because "the method that was fixed can only be used with arguments that are controlled by Thor, and there is no way...

1 affected package

ruby-thor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ruby-thor Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-38351

Medium priority
Vulnerable

In the Linux kernel, the following vulnerability has been resolved: KVM: x86/hyper-v: Skip non-canonical addresses during PV TLB flush In KVM guests with Hyper-V hypercalls enabled, the hypercalls HVCALL_FLUSH_VIRTUAL_ADDRESS_LIST...

144 affected packages

linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11, linux-hwe-5.13...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-hwe Not in release Not in release Not in release Ignored
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.8 Not in release Not in release Ignored Not in release
linux-hwe-5.11 Not in release Not in release Ignored Not in release
linux-hwe-5.13 Not in release Not in release Ignored Not in release
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-5.19 Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Ignored Not in release Not in release
linux-hwe-6.5 Not in release Ignored Not in release Not in release
linux-hwe-6.8 Not in release Vulnerable Not in release Not in release
linux-hwe-6.11 Ignored Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-kvm Not in release Not affected Not affected Not affected
linux-allwinner-5.19 Not in release Ignored Not in release Not in release
linux-aws-5.0 Not in release Not in release Not in release Ignored
linux-aws-5.3 Not in release Not in release Not in release Ignored
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.8 Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Ignored Not in release
linux-aws-5.13 Not in release Not in release Ignored Not in release
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-aws-5.19 Not in release Ignored Not in release Not in release
linux-aws-6.2 Not in release Ignored Not in release Not in release
linux-aws-6.5 Not in release Ignored Not in release Not in release
linux-aws-6.8 Not in release Vulnerable Not in release Not in release
linux-aws-6.14 Vulnerable Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Vulnerable Not affected Not affected Ignored
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.3 Not in release Not in release Not in release Ignored
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.8 Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Ignored Not in release
linux-azure-5.13 Not in release Not in release Ignored Not in release
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-5.19 Not in release Ignored Not in release Not in release
linux-azure-6.2 Not in release Ignored Not in release Not in release
linux-azure-6.5 Not in release Ignored Not in release Not in release
linux-azure-6.8 Not in release Vulnerable Not in release Not in release
linux-azure-6.11 Ignored Not in release Not in release Not in release
linux-azure-fde Not in release Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde-5.19 Not in release Ignored Not in release Not in release
linux-azure-fde-6.2 Not in release Ignored Not in release Not in release
linux-azure-nvidia Vulnerable Not in release Not in release Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-azure-edge Not in release Not in release Not in release Ignored
linux-fips Not in release Not affected Not affected Not affected
linux-aws-fips Not in release Not affected Not affected Not affected
linux-azure-fips Not in release Not affected Not affected Not affected
linux-gcp-fips Not in release Not affected Not affected Not affected
linux-gcp Vulnerable Not affected Not affected Ignored
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.3 Not in release Not in release Not in release Ignored
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.8 Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Ignored Not in release
linux-gcp-5.13 Not in release Not in release Ignored Not in release
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gcp-5.19 Not in release Ignored Not in release Not in release
linux-gcp-6.2 Not in release Ignored Not in release Not in release
linux-gcp-6.5 Not in release Ignored Not in release Not in release
linux-gcp-6.8 Not in release Vulnerable Not in release Not in release
linux-gcp-6.11 Ignored Not in release Not in release Not in release
linux-gke Vulnerable Not affected Ignored Not in release
linux-gke-4.15 Not in release Not in release Not in release Ignored
linux-gke-5.4 Not in release Not in release Not in release Ignored
linux-gke-5.15 Not in release Not in release Ignored Not in release
linux-gkeop Vulnerable Not affected Ignored Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Ignored
linux-gkeop-5.15 Not in release Not in release Ignored Not in release
linux-ibm Vulnerable Not affected Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-ibm-6.8 Not in release Vulnerable Not in release Not in release
linux-intel-5.13 Not in release Not in release Ignored Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-lowlatency Vulnerable Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-5.19 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Vulnerable Not in release Not in release
linux-lowlatency-hwe-6.11 Ignored Not in release Not in release Not in release
linux-nvidia Vulnerable Not affected Not in release Not in release
linux-nvidia-6.2 Not in release Ignored Not in release Not in release
linux-nvidia-6.5 Not in release Ignored Not in release Not in release
linux-nvidia-6.8 Not in release Vulnerable Not in release Not in release
linux-nvidia-lowlatency Vulnerable Not in release Not in release Not in release
linux-nvidia-tegra Vulnerable Not affected Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Not affected Not in release
linux-nvidia-tegra-igx Not in release Not affected Not in release Not in release
linux-oracle-5.0 Not in release Not in release Not in release Ignored
linux-oracle-5.3 Not in release Not in release Not in release Ignored
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.8 Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Ignored Not in release
linux-oracle-5.13 Not in release Not in release Ignored Not in release
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oracle-6.5 Not in release Ignored Not in release Not in release
linux-oracle-6.8 Not in release Vulnerable Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored
linux-oem-5.6 Not in release Not in release Ignored Not in release
linux-oem-5.10 Not in release Not in release Ignored Not in release
linux-oem-5.13 Not in release Not in release Ignored Not in release
linux-oem-5.14 Not in release Not in release Ignored Not in release
linux-oem-5.17 Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Ignored Not in release Not in release
linux-oem-6.1 Not in release Ignored Not in release Not in release
linux-oem-6.5 Not in release Ignored Not in release Not in release
linux-oem-6.8 Ignored Not in release Not in release Not in release
linux-oem-6.11 Ignored Not in release Not in release Not in release
linux-oem-6.14 Vulnerable Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Ignored
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Vulnerable Not in release Not in release Not in release
linux-riscv Ignored Ignored Ignored Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release
linux-riscv-5.11 Not in release Not in release Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-5.19 Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Ignored Not in release Not in release
linux-riscv-6.8 Not in release Vulnerable Not in release Not in release
linux-riscv-6.14 Vulnerable Not in release Not in release Not in release
linux-starfive-5.19 Not in release Ignored Not in release Not in release
linux-starfive-6.2 Not in release Ignored Not in release Not in release
linux-starfive-6.5 Not in release Ignored Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux Vulnerable Not affected Not affected Not affected
linux-aws Vulnerable Not affected Not affected Not affected
linux-oracle Vulnerable Not affected Not affected Not affected
linux-raspi Vulnerable Not affected Not affected Not in release
linux-realtime Vulnerable Not affected Not in release Not in release
linux-intel Ignored Not in release Not in release Not in release
linux-gcp-6.14 Vulnerable Not in release Not in release Not in release
linux-hwe-6.14 Vulnerable Not in release Not in release Not in release
linux-oracle-6.14 Vulnerable Not in release Not in release Not in release
linux-nvidia-6.11 Vulnerable Not in release Not in release Not in release
linux-realtime-6.14 Vulnerable Not in release Not in release Not in release
linux-realtime-6.8 Not in release Vulnerable Not in release Not in release
Show all 144 packages Show less packages

CVE-2025-38350

Medium priority

Some fixes available 101 of 128

In the Linux kernel, the following vulnerability has been resolved: net/sched: Always pass notifications when child class becomes empty Certain classful qdiscs may invoke their classes' dequeue handler on an enqueue operation....

144 affected packages

linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11, linux-hwe-5.13...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-hwe Not in release Not in release Not in release Ignored
linux-hwe-5.4 Not in release Not in release Not in release Fixed
linux-hwe-5.8 Not in release Not in release Ignored Not in release
linux-hwe-5.11 Not in release Not in release Ignored Not in release
linux-hwe-5.13 Not in release Not in release Ignored Not in release
linux-hwe-5.15 Not in release Not in release Fixed Not in release
linux-hwe-5.19 Not in release Ignored Not in release Not in release
linux-hwe-6.2 Not in release Ignored Not in release Not in release
linux-hwe-6.5 Not in release Ignored Not in release Not in release
linux-hwe-6.8 Not in release Fixed Not in release Not in release
linux-hwe-6.11 Ignored Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-kvm Not in release Fixed Fixed Fixed
linux-allwinner-5.19 Not in release Ignored Not in release Not in release
linux-aws-5.0 Not in release Not in release Not in release Ignored
linux-aws-5.3 Not in release Not in release Not in release Ignored
linux-aws-5.4 Not in release Not in release Not in release Fixed
linux-aws-5.8 Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Ignored Not in release
linux-aws-5.13 Not in release Not in release Ignored Not in release
linux-aws-5.15 Not in release Not in release Fixed Not in release
linux-aws-5.19 Not in release Ignored Not in release Not in release
linux-aws-6.2 Not in release Ignored Not in release Not in release
linux-aws-6.5 Not in release Ignored Not in release Not in release
linux-aws-6.8 Not in release Fixed Not in release Not in release
linux-aws-6.14 Fixed Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Vulnerable Fixed Vulnerable Ignored
linux-azure-4.15 Not in release Not in release Not in release Fixed
linux-azure-5.3 Not in release Not in release Not in release Ignored
linux-azure-5.4 Not in release Not in release Not in release Vulnerable
linux-azure-5.8 Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Ignored Not in release
linux-azure-5.13 Not in release Not in release Ignored Not in release
linux-azure-5.15 Not in release Not in release Fixed Not in release
linux-azure-5.19 Not in release Ignored Not in release Not in release
linux-azure-6.2 Not in release Ignored Not in release Not in release
linux-azure-6.5 Not in release Ignored Not in release Not in release
linux-azure-6.8 Not in release Vulnerable Not in release Not in release
linux-azure-6.11 Ignored Not in release Not in release Not in release
linux-azure-fde Not in release Vulnerable Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde-5.19 Not in release Ignored Not in release Not in release
linux-azure-fde-6.2 Not in release Ignored Not in release Not in release
linux-azure-nvidia Vulnerable Not in release Not in release Not in release
linux-bluefield Not in release Not in release Fixed Not in release
linux-azure-edge Not in release Not in release Not in release Ignored
linux-fips Not in release Fixed Fixed Fixed
linux-aws-fips Not in release Fixed Fixed Fixed
linux-azure-fips Not in release Fixed Vulnerable Fixed
linux-gcp-fips Not in release Fixed Fixed Fixed
linux-gcp Fixed Fixed Fixed Ignored
linux-gcp-4.15 Not in release Not in release Not in release Fixed
linux-gcp-5.3 Not in release Not in release Not in release Ignored
linux-gcp-5.4 Not in release Not in release Not in release Fixed
linux-gcp-5.8 Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Ignored Not in release
linux-gcp-5.13 Not in release Not in release Ignored Not in release
linux-gcp-5.15 Not in release Not in release Fixed Not in release
linux-gcp-5.19 Not in release Ignored Not in release Not in release
linux-gcp-6.2 Not in release Ignored Not in release Not in release
linux-gcp-6.5 Not in release Ignored Not in release Not in release
linux-gcp-6.8 Not in release Fixed Not in release Not in release
linux-gcp-6.11 Ignored Not in release Not in release Not in release
linux-gke Fixed Fixed Ignored Not in release
linux-gke-4.15 Not in release Not in release Not in release Ignored
linux-gke-5.4 Not in release Not in release Not in release Ignored
linux-gke-5.15 Not in release Not in release Ignored Not in release
linux-gkeop Fixed Fixed Ignored Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Ignored
linux-gkeop-5.15 Not in release Not in release Ignored Not in release
linux-ibm Fixed Fixed Fixed Not in release
linux-ibm-5.4 Not in release Not in release Not in release Fixed
linux-ibm-5.15 Not in release Not in release Fixed Not in release
linux-ibm-6.8 Not in release Fixed Not in release Not in release
linux-intel-5.13 Not in release Not in release Ignored Not in release
linux-intel-iotg Not in release Fixed Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Fixed Not in release
linux-iot Not in release Not in release Fixed Not in release
linux-intel-iot-realtime Not in release Fixed Not in release Not in release
linux-lowlatency Fixed Fixed Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Fixed Not in release
linux-lowlatency-hwe-5.19 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Ignored Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Fixed Not in release Not in release
linux-lowlatency-hwe-6.11 Ignored Not in release Not in release Not in release
linux-nvidia Fixed Fixed Not in release Not in release
linux-nvidia-6.2 Not in release Ignored Not in release Not in release
linux-riscv-6.14 Fixed Not in release Not in release Not in release
linux-nvidia-6.5 Not in release Ignored Not in release Not in release
linux-nvidia-6.8 Not in release Fixed Not in release Not in release
linux-nvidia-lowlatency Fixed Not in release Not in release Not in release
linux-nvidia-tegra Vulnerable Fixed Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Fixed Not in release
linux-nvidia-tegra-igx Not in release Fixed Not in release Not in release
linux-oracle-5.0 Not in release Not in release Not in release Ignored
linux-oracle-5.3 Not in release Not in release Not in release Ignored
linux-oracle-5.4 Not in release Not in release Not in release Vulnerable
linux-oracle-5.8 Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Ignored Not in release
linux-oracle-5.13 Not in release Not in release Ignored Not in release
linux-oracle-5.15 Not in release Not in release Fixed Not in release
linux-oracle-6.5 Not in release Ignored Not in release Not in release
linux-oracle-6.8 Not in release Fixed Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored
linux-oem-5.6 Not in release Not in release Ignored Not in release
linux-oem-5.10 Not in release Not in release Ignored Not in release
linux-oem-5.13 Not in release Not in release Ignored Not in release
linux-oem-5.14 Not in release Not in release Ignored Not in release
linux-oem-5.17 Not in release Ignored Not in release Not in release
linux-oem-6.0 Not in release Ignored Not in release Not in release
linux-oem-6.1 Not in release Ignored Not in release Not in release
linux-oem-6.5 Not in release Ignored Not in release Not in release
linux-oem-6.8 Ignored Not in release Not in release Not in release
linux-oem-6.11 Ignored Not in release Not in release Not in release
linux-oem-6.14 Fixed Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Ignored
linux-raspi-5.4 Not in release Not in release Not in release Fixed
linux-raspi-realtime Fixed Not in release Not in release Not in release
linux-riscv Ignored Ignored Ignored Not in release
linux-riscv-5.8 Not in release Not in release Ignored Not in release
linux-riscv-5.11 Not in release Not in release Ignored Not in release
linux-riscv-5.15 Not in release Not in release Fixed Not in release
linux-riscv-5.19 Not in release Ignored Not in release Not in release
linux-riscv-6.5 Not in release Ignored Not in release Not in release
linux-riscv-6.8 Not in release Fixed Not in release Not in release
linux-starfive-5.19 Not in release Ignored Not in release Not in release
linux-starfive-6.2 Not in release Ignored Not in release Not in release
linux-starfive-6.5 Not in release Ignored Not in release Not in release
linux-xilinx-zynqmp Not in release Fixed Fixed Not in release
linux Fixed Fixed Fixed Fixed
linux-aws Fixed Fixed Fixed Fixed
linux-oracle Fixed Fixed Vulnerable Fixed
linux-raspi Fixed Fixed Fixed Not in release
linux-realtime Fixed Fixed Not in release Not in release
linux-intel Ignored Not in release Not in release Not in release
linux-gcp-6.14 Fixed Not in release Not in release Not in release
linux-hwe-6.14 Fixed Not in release Not in release Not in release
linux-oracle-6.14 Fixed Not in release Not in release Not in release
linux-nvidia-6.11 Vulnerable Not in release Not in release Not in release
linux-realtime-6.14 Fixed Not in release Not in release Not in release
linux-realtime-6.8 Not in release Fixed Not in release Not in release
Show all 144 packages Show less packages

CVE-2025-7396

Medium priority
Needs evaluation

In wolfSSL release 5.8.2 blinding support is turned on by default for Curve25519 in applicable builds. The blinding configure option is only for the base C implementation of Curve25519. It is not needed, or available with; ARM...

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-7395

Medium priority
Needs evaluation

A certificate verification error in wolfSSL when building with the WOLFSSL_SYS_CA_CERTS and WOLFSSL_APPLE_NATIVE_CERT_VALIDATION options results in the wolfSSL client failing to properly verify the server certificate's domain...

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-7394

Medium priority
Needs evaluation

In the OpenSSL compatibility layer implementation, the function RAND_poll() was not behaving as expected and leading to the potential for predictable values returned from RAND_bytes() after fork() is called. This can lead to weak...

1 affected package

wolfssl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
wolfssl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages