← All tracked CVEs
Updated 09:01
241 fixed in the last 7 days
| CVE | Status | Severity | Summary | Distribution | Fixed |
|---|---|---|---|---|---|
| Fixed | High | Valkey clusterbus ping extension parsing out-of-bounds read causes crash | secure-packages-rolling | Sep 17, 2026 | |
| Fixed | High | Valkey Lua null-byte error handling bug allows response stream injection and cross-user data tampering | secure-packages-rolling | Sep 17, 2026 | |
| Fixed | Critical | Redis Lua GC use-after-free allows authenticated RCE in versions <=8.2.1; fixed 8.2.2 | secure-packages-rolling | Sep 17, 2026 | |
| Fixed | Medium | PYSEC-2026-1999: urllib3 PoolManager retries ignored; cannot disable redirects globally, posing SSRF risk | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | PYSEC-2026-1998: urllib3 ≤2.5.0 unbounded decompression chain enables resource exhaustion via chained Content-Encoding | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | PYSEC-2026-1996: urllib3 ≤2.6.2 decompresses redirect bodies during streaming, enabling decompression bombs and resource exhaustion | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | Medium | PYSEC-2026-1995: urllib3 fails to strip Proxy-Authorization on cross-origin redirects without ProxyManager, potential credential leak | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | PYSEC-2026-1994: Resource exhaustion via over-decompression in urllib3 streaming compressed responses (<=2.5.0) | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | Medium | PYSEC-2026-141: urllib3 1.23 to <2.7.0 leaks sensitive headers on cross-origin redirects via ProxyManager | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | GHSA-qccp-gfcp-xxvc: urllib3 pre-2.7.0 ProxyManager.connection_from_url urlopen forwards sensitive headers on cross-origin redirects | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | Medium | GHSA-pq67-6m6q-mj2v: urllib3 PoolManager retries ignored; redirects not disabled, causing potential SSRF exposure | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | GHSA-gm62-xv2j-4w53: urllib3 ≤2.5.0 unbounded content-encoding chain allows CPU and memory exhaustion DoS | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | GHSA-38jv-5279-wg99: urllib3 decompresses redirect bodies with preload_content=False, ignoring read limits; decompression bomb risk | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | Medium | GHSA-34jh-p97f-mpxf: Proxy-Authorization header may leak on cross-origin redirects when not using urllib3 proxy support | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | GHSA-2xpw-w6gg-jr37: urllib3 <=2.5.0 streaming decompression over-decodes compressed responses, causing excessive CPU/memory usage | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | PYSEC-2026-3457: pyasn1 <0.6.4 REAL float conversion CPU/memory exhaustion via huge exponents in encoded data | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | PYSEC-2026-3456: pyasn1 <0.6.4 BER/CER/DER OID quadratic-time decode/encode enables DoS with many arcs | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | PYSEC-2026-3455: pyasn1 <0.6.4 BER/CER/DER decoder unbounded long-form tag parsing causes DoS and ValueError | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | PYSEC-2026-2263: Decoding ASN.1 deeply nested indefinite-length SEQUENCE/SET triggers DoS in pyasn1 <0.6.3 | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | GHSA-m4p7-r5rc-7g4j: pyasn1 BER/CER/DER decoder unbounded tag IDs cause quadratic CPU and unhandled ValueError | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | GHSA-jr27-m4p2-rc6r: pyasn1 BER decoder DoS via uncontrolled recursion on deeply nested indefinite SEQUENCE/SET causing RecursionError/OOM | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | GHSA-hm4w-wwcw-mr6r: pyasn1 Real float conversion DoS from untrusted ASN.1 REAL with huge exponent | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | GHSA-8ppf-4f7h-5ppj: pyasn1 OID/Relative-OID BER/CER/DER encode/decode quadratic by arcs, causing DoS | secure-packages-25.11 | Sep 16, 2026 | |
| Fixed | High | secure-packages-25.11 | Sep 16, 2026 | ||
| Fixed | High | RISC-V: Uninitialized cregs overwrite pt_regs after copyin failure, corrupting registers/leaking stack | secure-packages-25.11 | Sep 15, 2026 | |
| Fixed | High | ebtables lacked two-stage removal, exposing partially initialized table via racy ops assignment | secure-packages-25.11 | Sep 15, 2026 | |
| Fixed | High | Core ebtables init race: sockopts exposed globally before initialization completes | secure-packages-25.11 | Sep 15, 2026 | |
| Fixed | High | Linux kernel netfs_read_folio() fails to wait on writeback, misinterpreting dirty flag and folio->private | secure-packages-25.11 | Sep 15, 2026 | |
| Fixed | Critical | EVP_Cipher() skips AEAD tag verification on empty ciphertext for ChaCha20-Poly1305 and AES-OCB | secure-packages-26.05 | Sep 15, 2026 | |
| Fixed | High | OpenSSL CMP fails to type-check protectionAlg; invalid cast triggers NULL deref DoS | secure-packages-26.05 | Sep 15, 2026 | |
| Fixed | High | OpenSSL QUIC retains ACK-only packet metadata, causing unbounded memory growth and DoS risk. | secure-packages-26.05 | Sep 15, 2026 | |
| Fixed | Medium | OpenSSL CMP extraCerts cached indefinitely causing unbounded memory growth/DoS with reused OSSL_CMP_CTX | secure-packages-26.05 | Sep 15, 2026 | |
| Fixed | Critical | OpenSSL CMP response validation uses attacker-controlled DN as format string, causing client DoS | secure-packages-26.05 | Sep 15, 2026 | |
| Fixed | High | OpenSSL CMS_decrypt AES-WRAP-PAD unwrap mis-sized buffer causes 8-byte out-of-bounds heap write | secure-packages-26.05 | Sep 15, 2026 | |
| Fixed | High | OpenSSL DTLS buffers entire read buffers for future-epoch handshake records, causing memory amplification DoS | secure-packages-26.05 | Sep 15, 2026 | |
| Fixed | High | NULL-pointer dereference in RPK-only TLS configs upon signature_algorithms_cert extension, causing DoS | secure-packages-26.05 | Sep 15, 2026 | |
| Fixed | Medium | GStreamer gst-plugins-good avidemux vprp parser OOB read via crafted AVI causes DoS | secure-packages-25.11 | Sep 15, 2026 | |
| Fixed | High | PYSEC-2026-3072: ReDoS via catastrophic backtracking in soupsieve attribute value regex on unterminated quotes | secure-packages-25.11 | Sep 15, 2026 | |
| Fixed | High | PYSEC-2026-3071: Soupsieve unbounded memory allocation parsing large comma-separated selectors enables DoS via amplification | secure-packages-25.11 | Sep 15, 2026 | |
| Fixed | High | GHSA-836r-79rf-4m37: soupsieve CSS selector parser ReDoS: catastrophic backtracking on unterminated quoted attribute value | secure-packages-25.11 | Sep 15, 2026 | |
| Fixed | High | GHSA-2wc2-fm75-p42x: Soupsieve CSS parser allocates unbounded memory for large comma-separated selector lists, causing DoS | secure-packages-25.11 | Sep 15, 2026 |