Search CVE reports


Toggle filters

471 – 480 of 42339 results

Status is adjusted based on your filters.


CVE-2026-67860

Medium priority

Not in release

open62541 1.5.5 contains a heap-based buffer overflow in the default HistoryRead path when the default history database is used with the memory backend.

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-67859

Medium priority

Not in release

Buffer Overflow vulnerability in open62541 v1.5.5 allows a remote attacker to cause a denial of service via the Discovery/LDS handling.

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-67858

Medium priority

Not in release

Buffer Overflow vulnerability exists in open62541 1.5.5 when the Local Discovery Server (LDS) is built with multicast discovery enabled through the MDNSD backend. An unauthenticated remote attacker can send a RegisterServer or...

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-67857

Medium priority

Not in release

open62541 1.5.5 contains an out-of-bounds read in the client-side function responseReadNamespacesArray() in src/client/ua_client_connect.c.

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-67856

Medium priority

Not in release

An issue in open62541 v.1.5.5 and before allows a remote attacker to cause a denial of service via crafted CreateSubscription, CreateMonitoredItems(Sampling), Publish, TransferSubscriptions, and DeleteSubscriptions requests

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-67855

Medium priority

Not in release

open62541 contains a heap use-after-free in the GDS PushManagement certificate update workflow when UA_ENABLE_GDS_PUSHMANAGEMENT is enabled. This allows a remote attacker to cause a denial of service.

1 affected package

open62541

Package 24.04 LTS
open62541 Not in release
Show less packages

CVE-2026-45103

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the TCP message framing layer parses the Content-Length header using unsigned int arithmetic with no overflow check....

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-45100

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0-beta through 3.6.5 and 4.0.0-beta contain a buffer overflow in the {s.b64encode} string transformation. The size check for {s.b64encode} only...

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-45084

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0 through 3.6.5 contain a denial of service vulnerability in the presence module. When the presence module's handle_publish() function processes a...

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-51401

Medium priority
Vulnerable

An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c

1 affected package

vim

Package 24.04 LTS
vim Vulnerable
Show less packages