Search CVE reports


Toggle filters

281 – 290 of 48476 results

Status is adjusted based on your filters.


CVE-2026-88839

Medium priority
Needs evaluation

BusyBox passwd/group tokenize() references a stale endpoint pointer after trimming, causing an out-of-bounds write of heap pointers.

1 affected package

busybox

Package 24.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88837

Medium priority
Needs evaluation

BusyBox httpd treats yescrypt ($y$) password hashes as plaintext during Basic Authentication, inverting the authentication check.

1 affected package

busybox

Package 24.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88835

Medium priority
Needs evaluation

BusyBox dpkg read_package_field() steps past a NUL terminator on malformed .deb packages, causing an out-of-bounds heap read.

1 affected package

busybox

Package 24.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88832

Medium priority
Needs evaluation

BusyBox romfs volume ID parsing uses unbounded strlen on attacker-controlled metadata, causing a heap buffer overflow when processing crafted filesystem images.

1 affected package

busybox

Package 24.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88831

Medium priority
Needs evaluation

BusyBox httpd IP deny rules with invalid CIDR prefix lengths fail open, leaving a parsed IP with a zeroed mask so the rule matches no clients.

1 affected package

busybox

Package 24.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88830

Medium priority
Needs evaluation

A unit confusion in BusyBox TLS Montgomery reduction buffer allocation causes a pre-authentication heap buffer overflow when processing a crafted ClientKeyExchange message.

1 affected package

busybox

Package 24.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88816

Medium priority
Needs evaluation

[Fix FetchHashKeyName on IV/NV]

1 affected package

libdbi-perl

Package 24.04 LTS
libdbi-perl Needs evaluation
Show less packages

CVE-2026-88815

Medium priority
Needs evaluation

[Fix DBI::sql_type_cast on IV/NV]

1 affected package

libdbi-perl

Package 24.04 LTS
libdbi-perl Needs evaluation
Show less packages

CVE-2026-88385

Medium priority
Needs evaluation

(Mini-XML 4.0.5 contains a memory leak vulnerability in mxml_load_data( ...)

1 affected package

mxml

Package 24.04 LTS
mxml Needs evaluation
Show less packages

CVE-2026-88384

Medium priority
Needs evaluation

(OpenEXR 3.4.14 contains a NULL Pointer Dereference in the C++ attribut ...)

1 affected package

openexr

Package 24.04 LTS
openexr Needs evaluation
Show less packages