Search CVE reports


Toggle filters

931 – 940 of 46632 results

Status is adjusted based on your filters.


CVE-2026-79515

Medium priority
Needs evaluation

An out-of-bounds read in the stbtt_GetGlyphShape component of nothings stb commit 31c1ad3 allows attackers to cause a Denial of Service (DoS) via sending a crafted TTF file.

1 affected package

libstb

Package 24.04 LTS
libstb Needs evaluation
Show less packages

CVE-2026-79514

Medium priority
Needs evaluation

An out-of-bounds read in the gf_dm_data_received function (downloader.c) of GPAC v26.07.0 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request. Fixed in 2fd5a06ab226767900fd86edb5a1e8bfc1010640.

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-79513

Medium priority
Needs evaluation

A divide-by-zero vulnerability in the gf_dash_get_timeline_duration function (src/media_tools/dash_client.c) of GPAC v26.07.0 allows attackers to cause a Denial of Service (DoS) via a crafted MPD SegmentTimeline. Fixed in...

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-71616

Medium priority
Needs evaluation

An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to cause a denial of service via the function gf_route_media_complete_object(). Fixed in 3c4e6c5b3e0c6fa9b16d55599701a08354538fab.

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-71614

Medium priority
Needs evaluation

An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the src/media_tools/dvb_mpe.c, descriptorTime_slice_fec_identifier() and gf_m2ts_ipdatagram_reader() components. Fixed in...

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-71613

Medium priority
Needs evaluation

Buffer Overflow vulnerability in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the j2kdec_process() function. Fixed in 9a253a07fd3f6b48022bba74302bf39388dda859.

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-71612

Medium priority
Needs evaluation

Buffer Overflow vulnerability in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the nhntdmx_process() function. Fixed in fac50e6a12ac27ffabdd5d3080b51afcc44ad8d6.

1 affected package

gpac

Package 24.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-38998

Medium priority

Not in release

A use-after-free in the SocketDescriptor::tcpReadHandler1 function (liveMedia/RTPInterface.cpp) of LIVE555 Streaming Media (version 2026.02.26) allows attackers to cause a Denial of Service (DoS) via sending a series of crafted...

1 affected package

liblivemedia

Package 24.04 LTS
liblivemedia Not in release
Show less packages

CVE-2026-39020

Medium priority
Needs evaluation

An issue in WIngs3D v.2.4.1 allows a local attacker to cause a denial of service via a crafted Wavefront OBJ file

1 affected package

wings3d

Package 24.04 LTS
wings3d Needs evaluation
Show less packages

CVE-2026-87876

Medium priority
Needs evaluation

Two case-insensitive comparisons on request-derived usernames outside the main authorization path in CUPS's scheduler (printer ACL validation and private-attribute filtering) could allow bypass of username-based access controls in...

1 affected package

cups

Package 24.04 LTS
cups Needs evaluation
Show less packages