Search CVE reports


Toggle filters

31 – 40 of 40160 results

Status is adjusted based on your filters.


CVE-2026-17588

Medium priority
Needs evaluation

[hw/usb/hcd-xhci: Set reentrancy guard in timer functions]

2 affected packages

qemu, qemu-hwe

Package 26.04 LTS
qemu Needs evaluation
qemu-hwe Needs evaluation
Show less packages

CVE-2026-16271

Medium priority
Needs evaluation

[hw/display/qxl: validate primary surface stride against width]

2 affected packages

qemu, qemu-hwe

Package 26.04 LTS
qemu Needs evaluation
qemu-hwe Needs evaluation
Show less packages

CVE-2026-103045

Medium priority
Needs evaluation

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Foundation Mediawiki - Refreshed skin allows Stored XSS. This issue affects Mediawiki - Refreshed skin: before...

1 affected package

mediawiki

Package 26.04 LTS
mediawiki Needs evaluation
Show less packages

CVE-2026-103044

Medium priority
Needs evaluation

XML injection (aka blind XPath injection) vulnerability in The Wikimedia Foundation Mediawiki - EasyTimeline extension allows XML Injection. This issue affects Mediawiki - EasyTimeline extension: before 1.46.1, 1.45.5, 1.43.10.

1 affected package

mediawiki

Package 26.04 LTS
mediawiki Needs evaluation
Show less packages

CVE-2026-74225

Medium priority
Needs evaluation

U-Boot before 2026.10-rc5 contains out-of-bounds memory access in dhcp6_parse_options() that fails to validate SERVERID and CLIENTID option lengths from DHCPv6 packets. Attackers on the local network can send crafted DHCPv6...

2 affected packages

u-boot, u-boot-nezha

Package 26.04 LTS
u-boot Needs evaluation
u-boot-nezha Not in release
Show less packages

CVE-2026-74222

Medium priority
Needs evaluation

U-Boot before 2026.10-rc5 contains a use-after-free vulnerability in the httpc_recv_cb() function within the lwIP wget implementation. When HTTP data storage fails, the callback frees the connection PCB but returns ERR_BUF instead...

2 affected packages

u-boot, u-boot-nezha

Package 26.04 LTS
u-boot Needs evaluation
u-boot-nezha Not in release
Show less packages

CVE-2026-74221

Medium priority
Needs evaluation

U-Boot before 2026.10-rc5 contains a buffer overflow in nfs_readlink_reply() function in net/nfs-common.c when processing NFS server responses. A malicious NFS server can send crafted READLINK replies with negative or oversized...

2 affected packages

u-boot, u-boot-nezha

Package 26.04 LTS
u-boot Needs evaluation
u-boot-nezha Not in release
Show less packages

CVE-2026-74220

Medium priority
Needs evaluation

U-Boot before 2026.10-rc5 contains a buffer overflow in nfs_read_reply() function in net/nfs-common.c that allows attackers to corrupt memory by supplying crafted NFS READ reply lengths. A malicious NFS server can exploit signed...

2 affected packages

u-boot, u-boot-nezha

Package 26.04 LTS
u-boot Needs evaluation
u-boot-nezha Not in release
Show less packages

CVE-2026-71974

Medium priority
Needs evaluation

U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with...

2 affected packages

u-boot, u-boot-nezha

Package 26.04 LTS
u-boot Needs evaluation
u-boot-nezha Not in release
Show less packages

CVE-2026-71973

Medium priority
Needs evaluation

U-Boot before 2026.10-rc4 contains an integer overflow vulnerability in sqfs_read_directory_table() function when allocating the directory table buffer. Attackers can supply a crafted SquashFS image with an attacker-controlled...

2 affected packages

u-boot, u-boot-nezha

Package 26.04 LTS
u-boot Needs evaluation
u-boot-nezha Not in release
Show less packages