Search CVE reports


Toggle filters

691 – 700 of 26181 results

Status is adjusted based on your filters.


CVE-2018-25306

Medium priority
Not affected

PDFunite 0.41.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by processing malformed PDF files during merge operations. Attackers can trigger a segmentation fault in...

1 affected package

poppler

Package 26.04 LTS
poppler Not affected
Show less packages

CVE-2018-25305

Medium priority
Not affected

librsvg2-bin 2.40.13 contains a buffer overflow vulnerability that allows local attackers to cause a denial of service by processing malformed SVG files. Attackers can supply crafted SVG input to the rsvg conversion tool to...

1 affected package

librsvg

Package 26.04 LTS
librsvg Not affected
Show less packages

CVE-2026-6429

Medium priority
Fixed

When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances. Similar to CVE-2024-11053.

1 affected package

curl

Package 26.04 LTS
curl Fixed
Show less packages

CVE-2026-6276

Low priority
Fixed

Using libcurl, when a custom `Host:` header is first set for a HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use...

1 affected package

curl

Package 26.04 LTS
curl Fixed
Show less packages

CVE-2026-6253

Medium priority
Fixed

curl might erroneously pass on credentials for a first proxy to a second proxy.

1 affected package

curl

Package 26.04 LTS
curl Fixed
Show less packages

CVE-2026-5773

Low priority
Fixed

libcurl might in some circumstances reuse the wrong connection for SMB(S) transfers.

1 affected package

curl

Package 26.04 LTS
curl Fixed
Show less packages

CVE-2026-5545

Medium priority
Fixed

libcurl might in some circumstances reuse the wrong connection when asked to do an authenticated HTTP(S) request after a Negotiate-authenticated one, when both use the same host.

1 affected package

curl

Package 26.04 LTS
curl Fixed
Show less packages

CVE-2026-4873

Low priority
Fixed

A vulnerability exists where a connection requiring TLS incorrectly reuses an existing unencrypted connection from the same connection pool. If an initial transfer is made in clear-text (via IMAP, SMTP, or POP3), a subsequent...

1 affected package

curl

Package 26.04 LTS
curl Fixed
Show less packages

CVE-2026-40687

Medium priority
Fixed

Possible OOB read/write with SPA authenticator

1 affected package

exim4

Package 26.04 LTS
exim4 Fixed
Show less packages

CVE-2026-40686

Medium priority
Fixed

Possible OOB read with large UTF8 trailing characters

1 affected package

exim4

Package 26.04 LTS
exim4 Fixed
Show less packages