Search CVE reports


Toggle filters

4011 – 4020 of 60275 results


CVE-2025-2915

Medium priority
Needs evaluation

A vulnerability classified as problematic was found in HDF5 up to 1.14.6. This vulnerability affects the function H5F__accum_free of the file src/H5Faccum.c. The manipulation of the argument overlap_size leads to heap-based buffer...

1 affected package

hdf5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hdf5 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-2914

Medium priority
Needs evaluation

A vulnerability classified as problematic has been found in HDF5 up to 1.14.6. This affects the function H5FS__sinfo_Srialize_Sct_cb of the file src/H5FScache.c. The manipulation of the argument sect leads to heap-based buffer...

1 affected package

hdf5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hdf5 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-2913

Medium priority
Needs evaluation

A vulnerability was found in HDF5 up to 1.14.6. It has been rated as critical. Affected by this issue is the function H5FL__blk_gc_list of the file src/H5FL.c. The manipulation of the argument H5FL_blk_head_t leads to use after...

1 affected package

hdf5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hdf5 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-2912

Medium priority
Needs evaluation

A vulnerability was found in HDF5 up to 1.14.6. It has been declared as problematic. Affected by this vulnerability is the function H5O_msg_flush of the file src/H5Omessage.c. The manipulation of the argument oh leads...

1 affected package

hdf5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
hdf5 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-2713

Medium priority
Needs evaluation

Google gVisor's runsc component exhibited a local privilege escalation vulnerability due to incorrect handling of file access permissions, which allowed unprivileged users to access restricted files. This occurred because the...

1 affected package

golang-gvisor-gvisor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
golang-gvisor-gvisor Needs evaluation Not in release Not in release
Show less packages

CVE-2025-30211

Medium priority

Some fixes available 5 of 8

Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.1, 26.2.5.10, and 25.3.2.19, a maliciously formed KEX init message can result with high memory usage. Implementation does not verify...

1 affected package

erlang

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
erlang Fixed Fixed Fixed Needs evaluation
Show less packages

CVE-2024-48615

Medium priority
Not affected

Null Pointer Dereference vulnerability in libarchive 3.7.6 and earlier when running program bsdtar in function header_pax_extension at rchive_read_support_format_tar.c:1844:8.

1 affected package

libarchive

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libarchive Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-31335

Medium priority

Some fixes available 7 of 8

The OpenSAML C++ library before 3.3.1 allows forging of signed SAML messages via parameter manipulation (when using SAML bindings that rely on non-XML signatures).

2 affected packages

opensaml, opensaml2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
opensaml Fixed Fixed Fixed
opensaml2 Fixed
Show less packages

CVE-2025-1860

Medium priority
Needs evaluation

Data::Entropy for Perl 0.007 and earlier use the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions.

1 affected package

libdata-entropy-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libdata-entropy-perl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-13939

Medium priority
Needs evaluation

String::Compare::ConstantTime for Perl through 0.321 is vulnerable to timing attacks that allow an attacker to guess the length of a secret string. As stated in the documentation: "If the lengths of the strings are different,...

1 affected package

libstring-compare-constanttime-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libstring-compare-constanttime-perl Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages