Search CVE reports


Toggle filters

5441 – 5450 of 48169 results

Status is adjusted based on your filters.


CVE-2025-8058

Medium priority
Fixed

The regcomp function in the GNU C library version from 2.4 to 2.41 is subject to a double free if some previous allocation fails. It can be accomplished either by a malloc failure or by using an interposed malloc that injects...

2 affected packages

eglibc, glibc

Package 16.04 LTS
eglibc
glibc Fixed
Show less packages

CVE-2025-46686

Medium priority
Vulnerable

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the...

1 affected package

redis

Package 16.04 LTS
redis Vulnerable
Show less packages

CVE-2025-4700

Medium priority
Ignored

An issue has been discovered in GitLab CE/EE affecting all versions from 15.10 before 18.0.5, 18.1 before 18.1.3, and 18.2 before 18.2.1 that, under specific circumstances, could have potentially allowed a successful attacker to...

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages

CVE-2025-4439

Medium priority
Ignored

An issue has been discovered in GitLab CE/EE affecting all versions from 15.10 before 18.0.5, 18.1 before 18.1.3, and 18.2 before 18.2.1 that could have allowed an authenticated user to perform cross-site scripting attacks when...

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages

CVE-2025-54090

Medium priority
Not affected

A bug in Apache HTTP Server 2.4.64 results in all "RewriteCond expr ..." tests evaluating as "true". Users are recommended to upgrade to version 2.4.65, which fixes the issue.

1 affected package

apache2

Package 16.04 LTS
apache2 Not affected
Show less packages

CVE-2015-10141

Medium priority
Needs evaluation

An unauthenticated OS command injection vulnerability exists within Xdebug versions 2.5.5 and earlier, a PHP debugging extension developed by Derick Rethans. When remote debugging is enabled, Xdebug listens on port 9000...

1 affected package

xdebug

Package 16.04 LTS
xdebug Needs evaluation
Show less packages

CVE-2024-6107

Medium priority
Needs evaluation

Due to insufficient verification, an attacker could use a malicious client to bypass authentication checks and run RPC commands in a region. This has been addressed in MAAS and updated in the corresponding snaps.

1 affected package

maas

Package 16.04 LTS
maas Needs evaluation
Show less packages

CVE-2025-54141

Medium priority
Needs evaluation

ViewVC is a browser interface for CVS and Subversion version control repositories. In versions 1.1.0 through 1.1.31 and 1.2.0 through 1.2.3, the standalone.py script provided in the ViewVC distribution can expose the contents of...

1 affected package

viewvc

Package 16.04 LTS
viewvc Needs evaluation
Show less packages

CVE-2025-53538

Medium priority
Needs evaluation

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions 7.0.10 and below and 8.0.0-beta1 through 8.0.0-rc1, mishandling of data on HTTP2...

1 affected package

suricata

Package 16.04 LTS
suricata Needs evaluation
Show less packages

CVE-2025-48964

Low priority
Needs evaluation

ping in iputils before 20250602 allows a denial of service (application error in adaptive ping mode or incorrect data collection) via a crafted ICMP Echo Reply packet, because a zero timestamp can lead to large intermediate values...

1 affected package

iputils

Package 16.04 LTS
iputils Needs evaluation
Show less packages