Search CVE reports


Toggle filters

1931 – 1940 of 43788 results

Status is adjusted based on your filters.


CVE-2026-67856

Medium priority

Not in release

An issue in open62541 v.1.5.5 and before allows a remote attacker to cause a denial of service via crafted CreateSubscription, CreateMonitoredItems(Sampling), Publish, TransferSubscriptions, and DeleteSubscriptions requests

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-67855

Medium priority

Not in release

open62541 contains a heap use-after-free in the GDS PushManagement certificate update workflow when UA_ENABLE_GDS_PUSHMANAGEMENT is enabled. This allows a remote attacker to cause a denial of service.

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-45103

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the TCP message framing layer parses the Content-Length header using unsigned int arithmetic with no overflow check....

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-45100

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0-beta through 3.6.5 and 4.0.0-beta contain a buffer overflow in the {s.b64encode} string transformation. The size check for {s.b64encode} only...

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-45084

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0 through 3.6.5 contain a denial of service vulnerability in the presence module. When the presence module's handle_publish() function processes a...

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-51401

Medium priority
Vulnerable

An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c

1 affected package

vim

Package 24.04 LTS
vim Vulnerable
Show less packages

CVE-2026-51400

Medium priority
Vulnerable

An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c

1 affected package

vim

Package 24.04 LTS
vim Vulnerable
Show less packages

CVE-2026-45538

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP message with a header name longer than 255 bytes causes a stack buffer overflow when sip_to_json() is called in...

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-68743

Medium priority
Needs evaluation

A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer size before processing. A local attacker can exploit this via a crafted...

1 affected package

sssd

Package 24.04 LTS
sssd Needs evaluation
Show less packages

CVE-2026-47781

Medium priority

Not in release

PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during initialization, allowing an attacker-controlled file in an...

1 affected package

pdm

Package 24.04 LTS
pdm Not in release
Show less packages