Search CVE reports


Toggle filters

291 – 300 of 44355 results

Status is adjusted based on your filters.


CVE-2026-55995

Medium priority
Needs evaluation

A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. This issue affects open-iscsi: from ? through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.

2 affected packages

open-iscsi, open-isns

Package 20.04 LTS
open-iscsi Needs evaluation
open-isns Needs evaluation
Show less packages

CVE-2026-44944

Medium priority
Needs evaluation

An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. This issue affects open-iscsi: from ? through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.

1 affected package

open-iscsi

Package 20.04 LTS
open-iscsi Needs evaluation
Show less packages

CVE-2026-44943

Medium priority
Needs evaluation

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers  to create root-owned files outside the database and inject lines into the record. This...

1 affected package

open-iscsi

Package 20.04 LTS
open-iscsi Needs evaluation
Show less packages

CVE-2026-56390

Medium priority
Needs evaluation

GNU Bison improperly handles grammar‑defined output paths. Grammar directives such as %output and %header allow specifying file paths, which are accepted without restriction and override caller‑supplied output options. When...

1 affected package

bison

Package 20.04 LTS
bison Needs evaluation
Show less packages

CVE-2026-56389

Medium priority
Needs evaluation

GNU Bison allows for an execution of an arbitrary program during HTML report generation due to improper handling of grammar-defined configuration variables. A grammar file can override the executable used for the XML‑to‑HTML...

1 affected package

bison

Package 20.04 LTS
bison Needs evaluation
Show less packages

CVE-2026-18220

Medium priority
Needs evaluation

An out-of-bounds write vulnerability was found in the BFD library's DLX ELF backend (bfd/elf32-dlx.c) in GNU binutils. The dlx_rtype_to_howto() function maps ELF relocation types to internal howto structures but fails to perform...

1 affected package

binutils

Package 20.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-65100

Medium priority
Needs evaluation

Apache Traffic Server updates the HTTP/2 HPACK dynamic table before confirming the header block encoded successfully, so an encode failure leaves the encoder out of sync with the peer decoder and corrupts subsequent header blocks...

1 affected package

trafficserver

Package 20.04 LTS
trafficserver Needs evaluation
Show less packages

CVE-2026-58189

Medium priority
Needs evaluation

Apache Traffic Server allows redirect-limit bypass when plugins reset the retry counter, enabling SSRF amplification. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.9, from 9.0.0 through 9.2.14, from 10.0.0...

1 affected package

trafficserver

Package 20.04 LTS
trafficserver Needs evaluation
Show less packages

CVE-2026-58188

Medium priority
Needs evaluation

Several Apache Traffic Server experimental plugins have memory-safety and limit-bypass errors. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.9, from 9.0.0 through 9.2.14, from 10.0.0 through 10.1.3. Users are...

1 affected package

trafficserver

Package 20.04 LTS
trafficserver Needs evaluation
Show less packages

CVE-2026-58187

Medium priority
Needs evaluation

The Apache Traffic Server multiplexer plugin overruns its chunk-decode buffer on upstream input, enabling denial of service. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.9, from 9.0.0 through 9.2.14, from...

1 affected package

trafficserver

Package 20.04 LTS
trafficserver Needs evaluation
Show less packages