Vulnerability index

Browse CVEs

725 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.5 CVE-2026-56288 GNU patch is vulnerable to a NULL pointer dereference when processing a specially crafted unified-diff patch file. Improper handling of consecutive e… Patch after 2.8.0 Fix from $1,6002026-07-09 MEDIUM 5.5 CVE-2026-56289 GNU patch is vulnerable to a denial of service (DoS) due to improper validation of hunk (single block of changes in diff) line offsets in unified-dif… Patch after 2.8.0 Fix from $1,6002026-07-09 HIGH 7.5 CVE-2026-58469 GNU Wget through 1.25.0, fixed in commit 37a40fc, contains a heap buffer underread vulnerability in the clean_metalink_string() function within src/m… Wget after 1.25.0 Fix from $1,9502026-07-07 HIGH 7.1 CVE-2026-58471 GNU Wget through 1.25.0, fixed in commit c2640fe, contains a heap buffer overflow vulnerability in the convert_fname() function within src/url.c that… Wget after 1.25.0 Fix from $1,9502026-07-07 HIGH 7.1 CVE-2026-58472 GNU Wget through 1.25.0, fixed in commit dd692d9, contains a heap buffer overflow vulnerability in the html_quote_string() function in src/convert.c … Wget after 1.25.0 Fix from $1,9502026-07-07 MEDIUM 5.3 CVE-2026-58470 GNU Wget through 1.25.0, fixed in commit 43d3ba9, contains an integer overflow vulnerability in the parse_content_range() function within src/http.c … Wget after 1.25.0 Fix from $1,6002026-07-07 HIGH 7.5 CVE-2026-41992 GNU gzip contains a global buffer overflow vulnerability in the LZH decompression logic caused by improper reuse of shared global state between diffe… Gzip after 1.14 Fix from $1,9502026-06-29 HIGH 8.8 CVE-2026-9155 OS Command Injection vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via t… Sed Mitigation only Fix from $1,9502026-06-25 MEDIUM 6.5 CVE-2026-9153 Arbitrary File Read vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to read arbitrary files via the express… Sed Mitigation only Fix from $1,6002026-06-25 MEDIUM 6.5 CVE-2026-9154 Arbitrary File Write vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to write attacker-controlled content t… Sed Mitigation only Fix from $1,6002026-06-25 MEDIUM 6.5 CVE-2026-6238 The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.0.1 to version 2.43 fail to validate the RDATA content … Glibc Mitigation only Fix from $1,6002026-04-28 HIGH 7.3 CVE-2026-5435 The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer … Glibc Mitigation only Fix from $1,9502026-04-28 HIGH 7.1 CVE-2026-6861 A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Grap… Emacs after 30.2 Fix from $1,9502026-04-22 CRITICAL 9.8 CVE-2026-5450 Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version 2.7 to version 2.43 with a format width spec… Glibc after 2.43 Fix from $2,3002026-04-20 HIGH 7.5 CVE-2026-5928 Calling the ungetwc function on a FILE stream with wide characters encoded in a character set that has overlaps between its single byte and multi-byt… Glibc after 2.43 Fix from $1,9502026-04-20 HIGH 7.5 CVE-2026-4046 The iconv() function in the GNU C Library versions 2.43 and earlier may crash due to an assertion failure when converting inputs from the IBM1390 or … Glibc after 2.43 Fix from $1,9502026-03-30 HIGH 7.5 CVE-2026-4437 Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C Library version 2.34 t… Glibc after 2.43 Fix from $1,9502026-03-20 MEDIUM 5.4 CVE-2026-4438 Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C library version 2.34 t… Glibc after 2.43 Fix from $1,6002026-03-20 CRITICAL 9.8 CVE-2026-32746EPSS 24% telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does … Inetutils after 2.7 Fix from $2,3002026-03-13 MEDIUM 6.5 CVE-2025-61154 Heap buffer overflow vulnerability in LibreDWG versions v0.13.3.7571 up to v0.13.3.7835 allows a crafted DWG file to cause a Denial of Service (DoS) … Libredwg after 0.13.3.7835 Fix from $1,6002026-03-12 MEDIUM 6.2 CVE-2026-3904 Calling NSS-backed functions that support caching via nscd may call the nscd client side code and in the GNU C Library version 2.36 under high load… Glibc 2.37+ Fix from $1,6002026-03-11 MEDIUM 6.2 CVE-2025-69648 GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF .debug_rnglists dat… Binutils after 2.45.1 Fix from $1,6002026-03-09 MEDIUM 6.2 CVE-2025-69647 GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF loclists data. A lo… Binutils after 2.45.1 Fix from $1,6002026-03-09 HIGH 7.5 CVE-2025-69649 GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. D… Binutils after 2.46 Fix from $1,9502026-03-06 HIGH 7.5 CVE-2025-69650 GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT r… Binutils after 2.46 Fix from $1,9502026-03-06 MEDIUM 6.2 CVE-2025-69652 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF ab… Binutils after 2.46 Fix from $1,6002026-03-06 MEDIUM 5.5 CVE-2025-69645 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in… Binutils No fix yet Fix from $1,6002026-03-06 MEDIUM 5.5 CVE-2025-69646 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error … Binutils No fix yet Fix from $1,6002026-03-06 MEDIUM 5.5 CVE-2025-69651 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed rel… Binutils after 2.46 Fix from $1,6002026-03-06 MEDIUM 5.0 CVE-2025-69644 An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malform… Binutils 2.46+ Fix from $1,6002026-03-06