Search CVE reports


Toggle filters

1821 – 1830 of 44090 results

Status is adjusted based on your filters.


CVE-2026-3591

Medium priority
Needs evaluation

A use-after-return vulnerability exists in the `named` server when handling DNS queries signed with SIG(0). Using a specially-crafted DNS request, an attacker may be able to cause an ACL to improperly (mis)match an IP address. In...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 18.04 LTS
bind9 Not affected
isc-dhcp Needs evaluation
bind9-libs
Show less packages

CVE-2026-3119

Medium priority
Needs evaluation

Under certain conditions, `named` may crash when processing a correctly signed query containing a TKEY record. The affected code can only be reached if an incoming request has a valid transaction signature (TSIG) from a key...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 18.04 LTS
bind9 Not affected
isc-dhcp Needs evaluation
bind9-libs
Show less packages

CVE-2026-3104

Medium priority
Needs evaluation

A specially crafted domain can be used to cause a memory leak in a BIND resolver simply by querying this domain. This issue affects BIND 9 versions 9.20.0 through 9.20.20, 9.21.0 through 9.21.19, and 9.20.9-S1 through...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 18.04 LTS
bind9 Not affected
isc-dhcp Needs evaluation
bind9-libs
Show less packages

CVE-2026-1519

Medium priority
Needs evaluation

If a BIND resolver is performing DNSSEC validation and encounters a maliciously crafted zone, the resolver may consume excessive CPU. Authoritative-only servers are generally unaffected, although there are circumstances where...

3 affected packages

bind9, isc-dhcp, bind9-libs

Package 18.04 LTS
bind9 Needs evaluation
isc-dhcp Needs evaluation
bind9-libs
Show less packages

CVE-2026-4371

Medium priority
Needs evaluation

A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside the buffer. If a mail server or connection to a mail server were compromised, an attacker could cause the parser...

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 18.04 LTS
firefox
thunderbird
mozjs38 Needs evaluation
mozjs52 Ignored
mozjs68
mozjs78
mozjs91
mozjs102
mozjs115
Show all 9 packages Show less packages

CVE-2026-3889

Medium priority
Needs evaluation

Spoofing issue in Thunderbird. This vulnerability was fixed in Thunderbird 149 and Thunderbird 140.9.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 18.04 LTS
firefox
thunderbird
mozjs38 Needs evaluation
mozjs52 Ignored
mozjs68
mozjs78
mozjs91
mozjs102
mozjs115
Show all 9 packages Show less packages

CVE-2026-33412

Medium priority
Fixed

Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to...

1 affected package

vim

Package 18.04 LTS
vim Fixed
Show less packages

CVE-2026-23924

Medium priority
Needs evaluation

Zabbix Agent 2 Docker plugin does not properly sanitize the 'docker.container_info' parameters when forwarding them to the Docker daemon. An attacker capable of invoking Agent 2 can read arbitrary files from running Docker...

1 affected package

zabbix

Package 18.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23921

Medium priority
Needs evaluation

A low privilege Zabbix user with API access can exploit a blind SQL injection vulnerability in include/classes/api/CApiService.php to execute arbitrary SQL selects via the sortfield parameter. Although query results are not...

1 affected package

zabbix

Package 18.04 LTS
zabbix Needs evaluation
Show less packages

CVE-2026-23920

Medium priority
Needs evaluation

Host and event action script input is validated with a regex (set by the administrator), but the validation runs in multiline mode. If ^ and $ anchors are used in user input validation, an injected newline lets authenticated users...

1 affected package

zabbix

Package 18.04 LTS
zabbix Needs evaluation
Show less packages