← All tracked CVEs
Updated 14:01
395 in progress
| CVE | Status | Severity | Summary | Distribution |
|---|---|---|---|---|
| In progress | Critical | tarfile erroneously converts AREGTYPE to DIRTYPE during GNU longname/longlink, misinterpreting crafted archives | secure-packages-26.05 | |
| In progress | Critical | tarfile misinterprets crafted archives by normalizing AREGTYPE during GNUTYPE_LONGNAME/LONGLINK processing | secure-packages-rolling | |
| In progress | Medium | ConfigParser write() allows key/value injection via CR in attacker-controlled multiline values | secure-packages-25.11 | |
| In progress | High | GHSA-rgw5-rvv9-x895: brace-expansion 5.0.8 CVE-2026-14257: maxLength bypass causing uncatchable OOM and CPU DoS | secure-packages-25.11 | |
| In progress | High | cJSON v1.7.19 32-bit print_string_ptr integer overflow; heap overflow via cJSON_PrintBuffered, RCE. | secure-packages-25.11 | |
| In progress | High | cJSON 32-bit integer overflow in print_string_ptr causes heap overflow in cJSON_PrintBuffered | secure-packages-rolling | |
| In progress | High | cJSON 32-bit integer overflow in print_string_ptr causes heap overflow; possible RCE (v1.7.19) | secure-packages-26.05 | |
| In progress | High | GStreamer MRF parser out-of-bounds write enables remote code execution (ZDI-CAN-29510) | secure-packages-26.05 | |
| In progress | High | GStreamer MRF parsing out-of-bounds write leads to user-assisted remote code execution | secure-packages-25.11 | |
| In progress | High | GStreamer MRF parsing heap buffer overflow enables RCE via crafted file (ZDI-CAN-29608) | secure-packages-26.05 | |
| In progress | High | GStreamer MRF parsing heap buffer overflow allows RCE via malicious files (ZDI-CAN-29608) | secure-packages-25.11 | |
| In progress | High | GStreamer OGG parser stack-based buffer overflow allows remote code execution; user interaction required | secure-packages-26.05 | |
| In progress | High | GStreamer OGG parser stack-based buffer overflow allows RCE when opening malicious file or webpage | secure-packages-25.11 | |
| In progress | High | GStreamer PNG parser heap overflow allows RCE via malicious PNG; user interaction required | secure-packages-26.05 | |
| In progress | High | GStreamer PNG parsing heap buffer overflow enables remote code execution (ZDI-CAN-29581) | secure-packages-25.11 | |
| In progress | High | Use-after-free RCE in GStreamer rtpsbcdepay RTP payload handling (ZDI-CAN-29787) | secure-packages-26.05 | |
| In progress | High | GStreamer rtpsbcdepay use-after-free allows RCE via RTP payload processing (ZDI-CAN-29787) | secure-packages-25.11 | |
| In progress | Medium | Incomplete CVE-2024-47778 fix causes OOB read in gst_wavparse_adtl_chunk when lsize odd | secure-packages-26.05 | |
| In progress | High | GStreamer ASF demuxer heap-based buffer overflow allows RCE via malformed ASF stream headers | secure-packages-26.05 | |
| In progress | High | GStreamer RIFF palette integer overflow in AVI parsing enables remote code execution ZDI-CAN-28854 | secure-packages-26.05 | |
| In progress | High | GStreamer RealMedia demuxer out-of-bounds write enables RCE via malformed video packets | secure-packages-26.05 | |
| In progress | High | GStreamer DVB subtitles coordinate handling out-of-bounds write enables remote code execution (ZDI-CAN-28838) | secure-packages-26.05 | |
| In progress | High | GStreamer H.266 codec parser stack-based overflow allows RCE via unchecked decoding unit length | secure-packages-26.05 | |
| In progress | High | GStreamer JPEG parser Huffman table processing heap overflow enables remote code execution (ZDI-CAN-28840) | secure-packages-26.05 | |
| In progress | High | GStreamer rtpqdm2depay X-QDM RTP packetid OOB write allows RCE (ZDI-CAN-28850) | secure-packages-26.05 | |
| In progress | High | GStreamer H.266 parser integer underflow enables remote code execution via picture partitions | secure-packages-26.05 | |
| In progress | High | GStreamer rtpqdm2depay heap-based buffer overflow allows RCE via malformed X-QDM RTP payloads ZDI-CAN-28851 | secure-packages-26.05 | |
| In progress | High | GStreamer H.266 APS unit parsing out-of-bounds write allows remote code execution (ZDI-CAN-28911) | secure-packages-26.05 | |
| In progress | High | Incomplete CVE-2026-0672 fix allows control characters via Morsel.update, |=, unpickling; BaseCookie.js_output lacks output validation | secure-packages-26.05 | |
| In progress | High | webbrowser.open() accepted leading-dash URLs causing potential command-line option injection | secure-packages-26.05 | |
| In progress | High | secure-packages-rolling | ||
| In progress | Low | GHSA-p688-r7jv-fm6f: Cargo sparse index URL normalization flaw may send credentials to attacker-controlled .git registry (CVE-2026-5222) | secure-packages-26.05 | |
| In progress | Low | GHSA-p688-r7jv-fm6f: Cargo sparse index URL normalization flaw may send credentials to attacker-controlled .git registry (CVE-2026-5222) | secure-packages-26.05 | |
| In progress | Low | GHSA-p688-r7jv-fm6f: Cargo sparse registry URL normalization leaks credentials to attacker-controlled .git registry (CVE-2026-5222) | secure-packages-25.11 | |
| In progress | Medium | GHSA-jq42-7mfv-hm57: Cargo tarball symlink extraction allows overwriting other crates' cache from same registry (CVE-2026-5223) | secure-packages-26.05 | |
| In progress | Medium | GHSA-jq42-7mfv-hm57: Cargo tarball symlink extraction allows overwriting other crates' cache from same registry (CVE-2026-5223) | secure-packages-26.05 | |
| In progress | Medium | GNU coreutils uniq out-of-bounds read with -w multibyte input causing crash and heap exposure | secure-packages-25.11 | |
| In progress | Medium | GNU coreutils unexpand integer overflow causes heap buffer overflow with large -t values | secure-packages-25.11 | |
| In progress | Medium | libssh OpenSSL backend AES-GCM finalization bug allows undetected MITM plaintext modification | secure-packages-25.11 | |
| In progress | High | AFS symlink get_link lacks proper locking and RCU, causing races, leaks, update conflicts | secure-packages-26.05 | |
| In progress | High | AFS symlink handling lacks locking and RCU barriers, causing races and memory leaks | secure-packages-rolling | |
| In progress | High | Linux kernel netfs_read_folio() fails to wait on writeback, misinterpreting dirty flag and folio->private | secure-packages-25.11 | |
| In progress | Medium | netfs_write_begin() request reference leak on netfs_wait_for_read() error | secure-packages-25.11 | |
| In progress | Critical | Linux kernel netfs_read_to_pagecache() doesn't pause new subrequests after subrequest failure | secure-packages-25.11 | |
| In progress | Critical | Missing barriers in lockless netfs stream->subrequests list cause stale subreq->flags access | secure-packages-26.05 | |
| In progress | Critical | Linux kernel netfs lockless subrequests list lacks barriers, risking stale subreq->flags reads | secure-packages-rolling | |
| In progress | Critical | netfs: Lockless stream->subrequests access lacks memory barriers, risking stale subreq->flags reads | secure-packages-25.11 | |
| In progress | Critical | netfs_retry_read_subrequests and netfs_retry_write_stream missing locking when adding subrequests | secure-packages-26.05 | |
| In progress | Critical | netfs: Missing lock when retrying adding subrequests to stream->subrequests causes race conditions | secure-packages-rolling | |
| In progress | Critical | Linux netfs: Missing lock when adding subrequests to stream during retry operations | secure-packages-25.11 |