Search CVE reports


Toggle filters

371 – 380 of 53339 results

Status is adjusted based on your filters.


CVE-2026-85526

Medium priority

Not in release

Path traversal in the Btrfs storage driver (unpackVolume) in Canonical LXD on Linux allows an authenticated user with instance creation privileges to delete or replace arbitrary files and directories on the host filesystem as root...

2 affected packages

incus, lxd

Package 22.04 LTS
incus Not in release
lxd Not in release
Show less packages

CVE-2026-85185

Medium priority

Not in release

Path traversal in the btrfs storage driver in Canonical LXD versions 4.0.2 and later (fixed in 4.0.14, 5.0.10, 5.21.8 and 6.10) on Linux allows an authenticated client with permission to create instances in a project to delete...

2 affected packages

incus, lxd

Package 22.04 LTS
incus Not in release
lxd Not in release
Show less packages

CVE-2026-94287

Medium priority

Some fixes available 1 of 2

A denial of service via unsigned underflow in libXpm's write path in libXpm before 3.5.19 could be used by local attackers to cause unbounded CPU usage and memory exhaustion.

2 affected packages

libxpm, motif

Package 22.04 LTS
libxpm Fixed
motif Needs evaluation
Show less packages

CVE-2026-94286

Medium priority
Needs evaluation

An out-of-bounds read in libXtst's RECORD reply parser in libXtst before 1.2.6 could be used by malicious X servers to crash attached X clients.

1 affected package

libxtst

Package 22.04 LTS
libxtst Needs evaluation
Show less packages

CVE-2026-94285

Medium priority
Needs evaluation

An out-of-bounds read in libX11's byte-oriented codeset parser in libX11 before 1.8.14 could be used by malicious X servers to crash attached X clients.

1 affected package

libx11

Package 22.04 LTS
libx11 Needs evaluation
Show less packages

CVE-2026-94284

Medium priority
Needs evaluation

An out-of-bounds read vulnerability in libX11's XIM trigger-key registration parser in libX11 before 1.8.14 could be used by malicious X servers to crash attached X clients.

1 affected package

libx11

Package 22.04 LTS
libx11 Needs evaluation
Show less packages

CVE-2026-94283

Medium priority
Needs evaluation

An out-of-bounds read vulnerability in libX11's XIM (X Input Method) attribute parser in libX11 before 1.8.14 could be used by malicious X servers to crash attached X clients.

1 affected package

libx11

Package 22.04 LTS
libx11 Needs evaluation
Show less packages

CVE-2026-94282

Medium priority
Needs evaluation

An out-of-bounds read in libXi's XI2 enter/leave/focus cookie conversion in libXi before 1.8.4 could be used by malicious X server to crash an attached X client.

1 affected package

libxi

Package 22.04 LTS
libxi Needs evaluation
Show less packages

CVE-2026-101017

Medium priority
Needs evaluation

A vulnerability was found in Trusted Domain Project OpenDMARC up to 1.4.2. This vulnerability affects the function strcasecmp in the library libopendmarc/opendmarc_policy.c. The manipulation results in handling of exceptional...

1 affected package

opendmarc

Package 22.04 LTS
opendmarc Needs evaluation
Show less packages

CVE-2026-101016

Medium priority
Needs evaluation

A vulnerability has been found in Trusted Domain Project OpenDMARC up to 1.4.2. This affects the function opendmarc_policy_parse_dmarc in the library libopendmarc/opendmarc_policy.c. The manipulation of the...

1 affected package

opendmarc

Package 22.04 LTS
opendmarc Needs evaluation
Show less packages