Search CVE reports


Toggle filters

1 – 10 of 40395 results

Status is adjusted based on your filters.


CVE-2025-32433

High priority
Needs evaluation

Unauthenticated Remote Code Execution in Erlang/OTP SSH

1 affected package

erlang

Package 16.04 LTS
erlang Needs evaluation
Show less packages

CVE-2025-30725

Medium priority
Needs evaluation

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the...

1 affected package

virtualbox

Package 16.04 LTS
virtualbox Needs evaluation
Show less packages

CVE-2025-30719

Medium priority
Needs evaluation

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the...

1 affected package

virtualbox

Package 16.04 LTS
virtualbox Needs evaluation
Show less packages

CVE-2025-30712

Medium priority
Needs evaluation

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the...

1 affected package

virtualbox

Package 16.04 LTS
virtualbox Needs evaluation
Show less packages

CVE-2025-3576

Medium priority
Needs evaluation

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker...

1 affected package

krb5

Package 16.04 LTS
krb5 Needs evaluation
Show less packages

CVE-2025-32911

Medium priority
Needs evaluation

A flaw was found in libsoup, which is vulnerable to a use-after-free memory issue not on the heap in the soup_message_headers_get_content_disposition() function. This flaw allows a malicious HTTP client to cause memory corruption...

2 affected packages

libsoup2.4, libsoup3

Package 16.04 LTS
libsoup2.4 Needs evaluation
libsoup3
Show less packages

CVE-2025-3277

Medium priority
Needs evaluation

An integer overflow can be triggered in SQLite’s `concat_ws()` function. The resulting, truncated integer is then used to allocate a buffer. When SQLite then writes the resulting string to the buffer, it uses the original,...

2 affected packages

sqlite, sqlite3

Package 16.04 LTS
sqlite Needs evaluation
sqlite3 Needs evaluation
Show less packages

CVE-2025-32914

Medium priority
Needs evaluation

A flaw was found in libsoup, where the soup_multipart_new_from_message() function is vulnerable to an out-of-bounds read. This flaw allows a malicious HTTP client to induce the libsoup server to read out of bounds.

2 affected packages

libsoup2.4, libsoup3

Package 16.04 LTS
libsoup2.4 Needs evaluation
libsoup3
Show less packages

CVE-2025-32912

Medium priority
Needs evaluation

A flaw was found in libsoup, where SoupAuthDigest is vulnerable to a NULL pointer dereference. The HTTP server may cause the libsoup client to crash.

2 affected packages

libsoup2.4, libsoup3

Package 16.04 LTS
libsoup2.4 Needs evaluation
libsoup3
Show less packages

CVE-2025-32910

Medium priority
Needs evaluation

A flaw was found in libsoup, where soup_auth_digest_authenticate() is vulnerable to a NULL pointer dereference. This issue may cause the libsoup client to crash.

2 affected packages

libsoup2.4, libsoup3

Package 16.04 LTS
libsoup2.4 Needs evaluation
libsoup3
Show less packages