Search CVE reports


Toggle filters

271 – 280 of 59015 results

Status is adjusted based on your filters.


CVE-2026-91766

Medium priority
Needs evaluation

[Unknown description]

7 affected packages

php5, php7.0, php7.2, php7.4, php8.1...

Package 16.04 LTS
php5 —
php7.0 Needs evaluation
php7.2 —
php7.4 —
php8.1 —
php8.3 —
php8.5 —
Show all 7 packages Show less packages

CVE-2026-91765

Medium priority
Needs evaluation

[Unknown description]

7 affected packages

php5, php7.0, php7.2, php7.4, php8.1...

Package 16.04 LTS
php5 —
php7.0 Needs evaluation
php7.2 —
php7.4 —
php8.1 —
php8.3 —
php8.5 —
Show all 7 packages Show less packages

CVE-2026-91187

Medium priority
Needs evaluation

(Improper Verification of Cryptographic Signature vulnerability in dash ...)

1 affected package

dash

Package 16.04 LTS
dash Needs evaluation
Show less packages

CVE-2026-88840

Medium priority
Needs evaluation

BusyBox TLS get_client_hello() reads past the end of the input buffer when parsing a truncated ClientHello message.

1 affected package

busybox

Package 16.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88839

Medium priority
Needs evaluation

BusyBox passwd/group tokenize() references a stale endpoint pointer after trimming, causing an out-of-bounds write of heap pointers.

1 affected package

busybox

Package 16.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88837

Medium priority
Needs evaluation

BusyBox httpd treats yescrypt ($y$) password hashes as plaintext during Basic Authentication, inverting the authentication check.

1 affected package

busybox

Package 16.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88835

Medium priority
Needs evaluation

BusyBox dpkg read_package_field() steps past a NUL terminator on malformed .deb packages, causing an out-of-bounds heap read.

1 affected package

busybox

Package 16.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88832

Medium priority
Needs evaluation

BusyBox romfs volume ID parsing uses unbounded strlen on attacker-controlled metadata, causing a heap buffer overflow when processing crafted filesystem images.

1 affected package

busybox

Package 16.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88831

Medium priority
Needs evaluation

BusyBox httpd IP deny rules with invalid CIDR prefix lengths fail open, leaving a parsed IP with a zeroed mask so the rule matches no clients.

1 affected package

busybox

Package 16.04 LTS
busybox Needs evaluation
Show less packages

CVE-2026-88830

Medium priority
Needs evaluation

A unit confusion in BusyBox TLS Montgomery reduction buffer allocation causes a pre-authentication heap buffer overflow when processing a crafted ClientKeyExchange message.

1 affected package

busybox

Package 16.04 LTS
busybox Needs evaluation
Show less packages