Search CVE reports


Toggle filters

381 – 390 of 42336 results

Status is adjusted based on your filters.


CVE-2026-43622

Medium priority

Not in release

llama.cpp builds b1886 through b7445 contain a double free vulnerability in the LLaMA-Android JNI wrapper where new_1batch() allocates memory using malloc() while free_1batch() deallocates it using the C++ delete operator, causing...

1 affected package

llama.cpp

Package 24.04 LTS
llama.cpp Not in release
Show less packages

CVE-2026-34502

Medium priority
Needs evaluation

Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: from 1.3.0 through 1.6.3.

1 affected package

apr-util

Package 24.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2026-34501

Medium priority
Needs evaluation

Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility redis client. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3. Users are recommended to upgrade to version 1.6.4, which fixes...

1 affected package

apr-util

Package 24.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2026-34191

Medium priority
Needs evaluation

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Portable Runtime Utility via apr_dbd_oracle provider. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3

1 affected package

apr-util

Package 24.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2026-32327

Medium priority
Needs evaluation

A bug in APR-util version 1.6.3 (and earlier) allows a stack recursion attack against any library consumer which parses XML from untrusted sources and uses theĀ apr_xml_quote_elem() function. Users are recommended to upgrade to...

1 affected package

apr-util

Package 24.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2025-49506

Medium priority
Needs evaluation

APR-util versions 1.6.3 (and earlier) function apr_password_validate() was not constant-time with regards to hashes or passwords comparisons, potentially leaking their content via a side channel timing attack particularly on...

1 affected package

apr-util

Package 24.04 LTS
apr-util Needs evaluation
Show less packages

CVE-2026-18649

Medium priority
Needs evaluation

A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A...

1 affected package

gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good1.0 Needs evaluation
Show less packages

CVE-2026-7867

Medium priority
Needs evaluation

security update

1 affected package

udisks2

Package 24.04 LTS
udisks2 Needs evaluation
Show less packages

CVE-2026-71313

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend in backend/local/local.go relies on the configurable filename encoder to...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages

CVE-2026-71312

Medium priority
Needs evaluation

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to v1.75.0, rclone interpolates remote SFTP paths into PowerShell hash commands in backend/sftp/sftp.go, and...

1 affected package

rclone

Package 24.04 LTS
rclone Needs evaluation
Show less packages