Search CVE reports


Toggle filters

41 – 50 of 31282 results

Status is adjusted based on your filters.


CVE-2025-8733

Low priority
Needs evaluation

A vulnerability was found in GNU Bison up to 3.8.2. It has been rated as problematic. This issue affects the function __obstack_vprintf_internal of the file obprintf.c. The manipulation leads to reachable assertion. It is possible...

1 affected package

bison

Package 22.04 LTS
bison Needs evaluation
Show less packages

CVE-2025-8732

Medium priority
Needs evaluation

A vulnerability was found in libxml2 up to 2.14.5. It has been declared as problematic. This vulnerability affects the function xmlParseSGMLCatalog of the component xmlcatalog. The manipulation leads to uncontrolled...

1 affected package

libxml2

Package 22.04 LTS
libxml2 Needs evaluation
Show less packages

CVE-2025-47906

Medium priority
Needs evaluation

[Unknown description]

11 affected packages

golang-1.10, golang-1.13, golang-1.14, golang-1.16, golang-1.17...

Package 22.04 LTS
golang-1.10 Not in release
golang-1.13 Needs evaluation
golang-1.14 Not in release
golang-1.16 Not in release
golang-1.17 Needs evaluation
golang-1.18 Needs evaluation
golang-1.20 Needs evaluation
golang-1.21 Needs evaluation
golang-1.22 Needs evaluation
golang-1.23 Needs evaluation
golang-1.24 Not in release
Show all 11 packages Show less packages

CVE-2025-45765

Medium priority
Needs evaluation

ruby-jwt v3.0.0.beta1 was discovered to contain weak encryption. NOTE: the Supplier's perspective is "keysize is not something that is enforced by this library. Currently more recent versions of OpenSSL are enforcing some key...

1 affected package

ruby-jwt

Package 22.04 LTS
ruby-jwt Needs evaluation
Show less packages

CVE-2025-47808

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 22.04 LTS
gst-libav1.0 Needs evaluation
gst-plugins-bad1.0 Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation
gst-plugins-base1.0 Needs evaluation
gst-plugins-good1.0 Needs evaluation
gst-plugins-ugly1.0 Needs evaluation
gst-python1.0 Needs evaluation
gst-rtsp-server1.0 Needs evaluation
gstreamer-editing-services1.0 Needs evaluation
gstreamer-vaapi Needs evaluation
gstreamer1.0 Needs evaluation
qt-gstreamer Needs evaluation
rust-gst-plugin-version-helper Not in release
rust-gstreamer Not in release
rust-gstreamer-allocators Not in release
rust-gstreamer-allocators-sys Not in release
rust-gstreamer-audio Not in release
rust-gstreamer-audio-sys Needs evaluation
rust-gstreamer-base Not in release
rust-gstreamer-base-sys Needs evaluation
rust-gstreamer-gl Not in release
rust-gstreamer-gl-egl Not in release
rust-gstreamer-gl-egl-sys Not in release
rust-gstreamer-gl-sys Not in release
rust-gstreamer-gl-wayland Not in release
rust-gstreamer-gl-wayland-sys Not in release
rust-gstreamer-gl-x11 Not in release
rust-gstreamer-gl-x11-sys Not in release
rust-gstreamer-pbutils Not in release
rust-gstreamer-pbutils-sys Not in release
rust-gstreamer-play Not in release
rust-gstreamer-play-sys Not in release
rust-gstreamer-sys Needs evaluation
rust-gstreamer-video Not in release
rust-gstreamer-video-sys Needs evaluation
Show all 35 packages Show less packages

CVE-2025-47807

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the subparse plugin's subrip_unescape_formatting function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 22.04 LTS
gst-libav1.0 Needs evaluation
gst-plugins-bad1.0 Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation
gst-plugins-base1.0 Needs evaluation
gst-plugins-good1.0 Needs evaluation
gst-plugins-ugly1.0 Needs evaluation
gst-python1.0 Needs evaluation
gst-rtsp-server1.0 Needs evaluation
gstreamer-editing-services1.0 Needs evaluation
gstreamer-vaapi Needs evaluation
gstreamer1.0 Needs evaluation
qt-gstreamer Needs evaluation
rust-gst-plugin-version-helper Not in release
rust-gstreamer Not in release
rust-gstreamer-allocators Not in release
rust-gstreamer-allocators-sys Not in release
rust-gstreamer-audio Not in release
rust-gstreamer-audio-sys Needs evaluation
rust-gstreamer-base Not in release
rust-gstreamer-base-sys Needs evaluation
rust-gstreamer-gl Not in release
rust-gstreamer-gl-egl Not in release
rust-gstreamer-gl-egl-sys Not in release
rust-gstreamer-gl-sys Not in release
rust-gstreamer-gl-wayland Not in release
rust-gstreamer-gl-wayland-sys Not in release
rust-gstreamer-gl-x11 Not in release
rust-gstreamer-gl-x11-sys Not in release
rust-gstreamer-pbutils Not in release
rust-gstreamer-pbutils-sys Not in release
rust-gstreamer-play Not in release
rust-gstreamer-play-sys Not in release
rust-gstreamer-sys Needs evaluation
rust-gstreamer-video Not in release
rust-gstreamer-video-sys Needs evaluation
Show all 35 packages Show less packages

CVE-2025-47806

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the subparse plugin's parse_subrip_time function may write data past the bounds of a stack buffer, leading to a crash.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 22.04 LTS
gst-libav1.0 Needs evaluation
gst-plugins-bad1.0 Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation
gst-plugins-base1.0 Needs evaluation
gst-plugins-good1.0 Needs evaluation
gst-plugins-ugly1.0 Needs evaluation
gst-python1.0 Needs evaluation
gst-rtsp-server1.0 Needs evaluation
gstreamer-editing-services1.0 Needs evaluation
gstreamer-vaapi Needs evaluation
gstreamer1.0 Needs evaluation
qt-gstreamer Needs evaluation
rust-gst-plugin-version-helper Not in release
rust-gstreamer Not in release
rust-gstreamer-allocators Not in release
rust-gstreamer-allocators-sys Not in release
rust-gstreamer-audio Not in release
rust-gstreamer-audio-sys Needs evaluation
rust-gstreamer-base Not in release
rust-gstreamer-base-sys Needs evaluation
rust-gstreamer-gl Not in release
rust-gstreamer-gl-egl Not in release
rust-gstreamer-gl-egl-sys Not in release
rust-gstreamer-gl-sys Not in release
rust-gstreamer-gl-wayland Not in release
rust-gstreamer-gl-wayland-sys Not in release
rust-gstreamer-gl-x11 Not in release
rust-gstreamer-gl-x11-sys Not in release
rust-gstreamer-pbutils Not in release
rust-gstreamer-pbutils-sys Not in release
rust-gstreamer-play Not in release
rust-gstreamer-play-sys Not in release
rust-gstreamer-sys Needs evaluation
rust-gstreamer-video Not in release
rust-gstreamer-video-sys Needs evaluation
Show all 35 packages Show less packages

CVE-2025-47219

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_trak function may read past the end of a heap buffer while parsing an MP4 file, possibly leading to information disclosure.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 22.04 LTS
gst-libav1.0 Needs evaluation
gst-plugins-bad1.0 Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation
gst-plugins-base1.0 Needs evaluation
gst-plugins-good1.0 Needs evaluation
gst-plugins-ugly1.0 Needs evaluation
gst-python1.0 Needs evaluation
gst-rtsp-server1.0 Needs evaluation
gstreamer-editing-services1.0 Needs evaluation
gstreamer-vaapi Needs evaluation
gstreamer1.0 Needs evaluation
qt-gstreamer Needs evaluation
rust-gst-plugin-version-helper Not in release
rust-gstreamer Not in release
rust-gstreamer-allocators Not in release
rust-gstreamer-allocators-sys Not in release
rust-gstreamer-audio Not in release
rust-gstreamer-audio-sys Needs evaluation
rust-gstreamer-base Not in release
rust-gstreamer-base-sys Needs evaluation
rust-gstreamer-gl Not in release
rust-gstreamer-gl-egl Not in release
rust-gstreamer-gl-egl-sys Not in release
rust-gstreamer-gl-sys Not in release
rust-gstreamer-gl-wayland Not in release
rust-gstreamer-gl-wayland-sys Not in release
rust-gstreamer-gl-x11 Not in release
rust-gstreamer-gl-x11-sys Not in release
rust-gstreamer-pbutils Not in release
rust-gstreamer-pbutils-sys Not in release
rust-gstreamer-play Not in release
rust-gstreamer-play-sys Not in release
rust-gstreamer-sys Needs evaluation
rust-gstreamer-video Not in release
rust-gstreamer-video-sys Needs evaluation
Show all 35 packages Show less packages

CVE-2025-47183

Medium priority
Needs evaluation

In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_tree function may read past the end of a heap buffer while parsing an MP4 file, leading to information disclosure.

35 affected packages

gst-libav1.0, gst-plugins-bad1.0, gst-plugins-bad1.0-contrib, gst-plugins-base1.0, gst-plugins-good1.0...

Package 22.04 LTS
gst-libav1.0 Needs evaluation
gst-plugins-bad1.0 Needs evaluation
gst-plugins-bad1.0-contrib Needs evaluation
gst-plugins-base1.0 Needs evaluation
gst-plugins-good1.0 Needs evaluation
gst-plugins-ugly1.0 Needs evaluation
gst-python1.0 Needs evaluation
gst-rtsp-server1.0 Needs evaluation
gstreamer-editing-services1.0 Needs evaluation
gstreamer-vaapi Needs evaluation
gstreamer1.0 Needs evaluation
qt-gstreamer Needs evaluation
rust-gst-plugin-version-helper Not in release
rust-gstreamer Not in release
rust-gstreamer-allocators Not in release
rust-gstreamer-allocators-sys Not in release
rust-gstreamer-audio Not in release
rust-gstreamer-audio-sys Needs evaluation
rust-gstreamer-base Not in release
rust-gstreamer-base-sys Needs evaluation
rust-gstreamer-gl Not in release
rust-gstreamer-gl-egl Not in release
rust-gstreamer-gl-egl-sys Not in release
rust-gstreamer-gl-sys Not in release
rust-gstreamer-gl-wayland Not in release
rust-gstreamer-gl-wayland-sys Not in release
rust-gstreamer-gl-x11 Not in release
rust-gstreamer-gl-x11-sys Not in release
rust-gstreamer-pbutils Not in release
rust-gstreamer-pbutils-sys Not in release
rust-gstreamer-play Not in release
rust-gstreamer-play-sys Not in release
rust-gstreamer-sys Needs evaluation
rust-gstreamer-video Not in release
rust-gstreamer-video-sys Needs evaluation
Show all 35 packages Show less packages

CVE-2025-47907

Medium priority
Needs evaluation

Cancelling a query (e.g. by cancelling the context passed to one of the query methods) during a call to the Scan method of the returned Rows can result in unexpected results if other queries are being made in parallel. This can...

11 affected packages

golang-1.10, golang-1.13, golang-1.14, golang-1.16, golang-1.17...

Package 22.04 LTS
golang-1.10 Not in release
golang-1.13 Needs evaluation
golang-1.14 Not in release
golang-1.16 Not in release
golang-1.17 Needs evaluation
golang-1.18 Needs evaluation
golang-1.20 Needs evaluation
golang-1.21 Needs evaluation
golang-1.22 Needs evaluation
golang-1.23 Needs evaluation
golang-1.24 Not in release
Show all 11 packages Show less packages