Search CVE reports


Toggle filters

161 – 170 of 45320 results

Status is adjusted based on your filters.


CVE-2025-54771

Medium priority
Needs evaluation

A use-after-free vulnerability has been identified in the GNU GRUB (Grand Unified Bootloader). The flaw occurs because the file-closing process incorrectly retains a memory pointer, leaving an invalid reference to a file system...

3 affected packages

grub2, grub2-unsigned, grub2-signed

Package 16.04 LTS
grub2 Not affected
grub2-unsigned Needs evaluation
grub2-signed Needs evaluation
Show less packages

CVE-2025-54770

Medium priority
Needs evaluation

A vulnerability has been identified in the GRUB2 bootloader's network module that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the net_set_vlan command is not properly...

3 affected packages

grub2, grub2-unsigned, grub2-signed

Package 16.04 LTS
grub2 Not affected
grub2-unsigned Needs evaluation
grub2-signed Needs evaluation
Show less packages

CVE-2025-64996

Medium priority
Needs evaluation

In Checkmk versions prior to 2.4.0p16, 2.3.0p41, and all versions of 2.2.0 and older, the mk_inotify plugin creates world-readable and writable files, allowing any local user on the system to read the plugin's output...

1 affected package

check-mk

Package 16.04 LTS
check-mk Needs evaluation
Show less packages

CVE-2025-58122

Medium priority
Needs evaluation

Insufficient permission validation in Checkmk 2.4.0 before version 2.4.0p16 allows low-privileged users to modify notification parameters via the REST API, which could lead to unauthorized actions or information disclosure.

1 affected package

check-mk

Package 16.04 LTS
check-mk Needs evaluation
Show less packages

CVE-2025-58121

Medium priority
Needs evaluation

Insufficient permission validation on multiple REST API endpoints in Checkmk 2.2.0, 2.3.0, and 2.4.0 before version 2.4.0p16 allows low-privileged users to perform unauthorized actions or obtain sensitive information

1 affected package

check-mk

Package 16.04 LTS
check-mk Needs evaluation
Show less packages

CVE-2025-10158

Medium priority
Needs evaluation

A malicious client acting as the receiver of an rsync file transfer can trigger an out of bounds read of a heap based buffer, via a negative array index. The malicious rsync client requires at least read access to the remote rsync...

1 affected package

rsync

Package 16.04 LTS
rsync Needs evaluation
Show less packages

CVE-2025-64756

Medium priority
Not affected

Glob matches files using patterns the shell uses. Starting in version 10.2.0 and prior to versions 10.5.0 and 11.1.0, the glob CLI contains a command injection vulnerability in its -c/--cmd option that allows arbitrary command...

1 affected package

node-glob

Package 16.04 LTS
node-glob Not affected
Show less packages

CVE-2025-13193

Medium priority
Needs evaluation

A flaw was found in libvirt. External inactive snapshots for shut-down VMs are incorrectly created as world-readable, making it possible for unprivileged users to inspect the guest OS contents. This results in an information...

1 affected package

libvirt

Package 16.04 LTS
libvirt Needs evaluation
Show less packages

CVE-2025-11224

Medium priority
Ignored

[Unknown description]

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages

CVE-2025-12983

Medium priority
Ignored

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.9 before 18.3.6, 18.4 before 18.4.4, and 18.5 before 18.5.2 that could have allowed an authenticated attacker to cause a denial of service condition by...

1 affected package

gitlab

Package 16.04 LTS
gitlab Ignored
Show less packages