Search CVE reports


Toggle filters

4011 – 4020 of 44995 results

Status is adjusted based on your filters.


CVE-2025-2761

Medium priority
Needs evaluation

GIMP FLI File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this...

1 affected package

gimp

Package 16.04 LTS
gimp Needs evaluation
Show less packages

CVE-2025-2760

Medium priority
Needs evaluation

GIMP XWD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this...

1 affected package

gimp

Package 16.04 LTS
gimp Needs evaluation
Show less packages

CVE-2025-46394

Medium priority
Vulnerable

In tar in BusyBox through 1.37.0, a TAR archive can have filenames hidden from a listing through the use of terminal escape sequences.

1 affected package

busybox

Package 16.04 LTS
busybox Vulnerable
Show less packages

CVE-2025-21605

Medium priority
Needs evaluation

Redis is an open source, in-memory database that persists on disk. In versions starting at 2.6 and prior to 7.4.3, An unauthenticated client can cause unlimited growth of output buffers, until the server runs out of memory or is...

3 affected packages

redict, redis, valkey

Package 16.04 LTS
redict
redis Needs evaluation
valkey
Show less packages

CVE-2025-46393

Medium priority
Needs evaluation

In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order).

1 affected package

imagemagick

Package 16.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2025-43965

Medium priority
Needs evaluation

In MIFF image processing in ImageMagick before 7.1.1-44, image depth is mishandled after SetQuantumFormat is used.

1 affected package

imagemagick

Package 16.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2023-43378

Medium priority
Needs evaluation

A cross-site scripting (XSS) vulnerability in Hoteldruid v3.0.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the commento1_1 parameter.

1 affected package

hoteldruid

Package 16.04 LTS
hoteldruid Needs evaluation
Show less packages

CVE-2024-33452

Medium priority
Needs evaluation

An issue in OpenResty lua-nginx-module v.0.10.26 and before allows a remote attacker to conduct HTTP request smuggling via a crafted HEAD request.

3 affected packages

lua-nginx-memcached, lua-nginx-redis, lua-nginx-websocket

Package 16.04 LTS
lua-nginx-memcached Needs evaluation
lua-nginx-redis Needs evaluation
lua-nginx-websocket Needs evaluation
Show less packages

CVE-2025-2092

Medium priority
Needs evaluation

Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p29, <2.2.0p41 and <=2.1.0p49 (EOL) causes remote site authentication secrets to be written to log files accessible to administrators.

1 affected package

check-mk

Package 16.04 LTS
check-mk Needs evaluation
Show less packages

CVE-2025-3839

Medium priority
Needs evaluation

[Require user interaction before opening URL in external application]

1 affected package

epiphany-browser

Package 16.04 LTS
epiphany-browser Needs evaluation
Show less packages