Search CVE reports


Toggle filters

1001 – 1010 of 48912 results

Status is adjusted based on your filters.


CVE-2026-3591

Medium priority
Not affected

A use-after-return vulnerability exists in the `named` server when handling DNS queries signed with SIG(0). Using a specially-crafted DNS request, an attacker may be able to cause an ACL to improperly (mis)match an IP address. In...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 16.04 LTS
bind9 Not affected
isc-dhcp Not affected
bind9-libs
Show less packages

CVE-2026-3119

Medium priority
Not affected

Under certain conditions, `named` may crash when processing a correctly signed query containing a TKEY record. The affected code can only be reached if an incoming request has a valid transaction signature (TSIG) from a key...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 16.04 LTS
bind9 Not affected
isc-dhcp Not affected
bind9-libs
Show less packages

CVE-2026-3104

Medium priority
Not affected

A specially crafted domain can be used to cause a memory leak in a BIND resolver simply by querying this domain. This issue affects BIND 9 versions 9.20.0 through 9.20.20, 9.21.0 through 9.21.19, and 9.20.9-S1 through...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 16.04 LTS
bind9 Not affected
isc-dhcp Not affected
bind9-libs
Show less packages

CVE-2026-1519

Medium priority
Needs evaluation

If a BIND resolver is performing DNSSEC validation and encounters a maliciously crafted zone, the resolver may consume excessive CPU. Authoritative-only servers are generally unaffected, although there are circumstances where...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 16.04 LTS
bind9 Needs evaluation
isc-dhcp Not affected
bind9-libs
Show less packages

CVE-2026-33412

Medium priority
Fixed

Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to...

1 affected package

vim

Package 16.04 LTS
vim Fixed
Show less packages

CVE-2026-23924

Medium priority
Needs evaluation

Zabbix Agent 2 Docker plugin does not properly sanitize the 'docker.container_info' parameters when forwarding them to the Docker daemon. An attacker capable of invoking Agent 2 can read arbitrary files from running Docker...

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23921

Medium priority
Needs evaluation

A low privilege Zabbix user with API access can exploit a blind SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL selects via the sortfield parameter. Although query results are not...

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23920

Medium priority
Needs evaluation

Host and event action script input is validated with a regex (set by the administrator), but the validation runs in multiline mode. If ^ and $ anchors are used in user input validation, an injected newline lets authenticated users...

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23919

Medium priority
Needs evaluation

For performance reasons Zabbix Server/Proxy reuses JavaScript (Duktape) contexts (used in script items, JavaScript reprocessing, Webhooks). This can lead to confidentiality loss where a regular (non-super) Zabbix administrator...

1 affected package

zabbix

Package 16.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-32854

Medium priority
Needs evaluation

LibVNCServer versions 0.9.15 and prior (fixed in commit dc78dee) contain null pointer dereference vulnerabilities in the HTTP proxy handlers within httpProcessInput() in httpd.c that allow remote attackers to cause a denial of...

6 affected packages

libvncserver, vino, x11vnc, veyon, italc, tightvnc

Package 16.04 LTS
libvncserver Needs evaluation
vino Needs evaluation
x11vnc Needs evaluation
veyon
italc Needs evaluation
tightvnc Needs evaluation
Show less packages