Search CVE reports


Toggle filters

431 – 440 of 48900 results

Status is adjusted based on your filters.


CVE-2026-39855

Medium priority
Needs evaluation

osslsigncode is a tool that implements Authenticode signing and timestamping. Prior to 2.13, an integer underflow vulnerability exists in osslsigncode version 2.12 and earlier in the PE page-hash computation...

1 affected package

osslsigncode

Package 16.04 LTS
osslsigncode Needs evaluation
Show less packages

CVE-2026-30479

Medium priority
Needs evaluation

A Dynamic-link Library Injection vulnerability in OSGeo Project MapServer before v8.0 allows attackers to execute arbitrary code via a crafted executable.

1 affected package

mapserver

Package 16.04 LTS
mapserver Needs evaluation
Show less packages

CVE-2026-4878

Medium priority
Needs evaluation

A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect...

1 affected package

libcap2

Package 16.04 LTS
libcap2 Needs evaluation
Show less packages

CVE-2026-39853

Medium priority
Needs evaluation

osslsigncode is a tool that implements Authenticode signing and timestamping. Prior to 2.12, A stack buffer overflow vulnerability exists in osslsigncode in several signature verification paths. During verification of a PKCS#7...

1 affected package

osslsigncode

Package 16.04 LTS
osslsigncode Needs evaluation
Show less packages

CVE-2026-5445

Medium priority
Needs evaluation

An out-of-bounds read vulnerability exists in the `DecodeLookupTable` function within `DicomImageDecoder.cpp`. The lookup-table decoding logic used for `PALETTE COLOR` images does not validate pixel indices against the lookup...

1 affected package

orthanc

Package 16.04 LTS
orthanc Needs evaluation
Show less packages

CVE-2026-5444

Medium priority
Needs evaluation

A heap buffer overflow vulnerability exists in the PAM image parsing logic. When Orthanc processes a crafted PAM image embedded in a DICOM file, image dimensions are multiplied using 32-bit unsigned arithmetic. Specially chosen...

1 affected package

orthanc

Package 16.04 LTS
orthanc Needs evaluation
Show less packages

CVE-2026-5443

Medium priority
Needs evaluation

A heap buffer overflow vulnerability exists during the decoding of `PALETTE COLOR` DICOM images. Pixel length validation uses 32-bit multiplication for width and height calculations. If these values overflow, the validation check...

1 affected package

orthanc

Package 16.04 LTS
orthanc Needs evaluation
Show less packages

CVE-2026-5442

Medium priority
Needs evaluation

A heap buffer overflow vulnerability exists in the DICOM image decoder. Dimension fields are encoded using Value Representation (VR) Unsigned Long (UL), instead of the expected VR Unsigned Short (US), which allows extremely large...

1 affected package

orthanc

Package 16.04 LTS
orthanc Needs evaluation
Show less packages

CVE-2026-5441

Medium priority
Needs evaluation

An out-of-bounds read vulnerability exists in the `DecodePsmctRle1` function of `DicomImageDecoder.cpp`. The `PMSCT_RLE1` decompression routine, which decodes the proprietary Philips Compression format, does not properly validate...

1 affected package

orthanc

Package 16.04 LTS
orthanc Needs evaluation
Show less packages

CVE-2026-5440

Medium priority
Needs evaluation

A memory exhaustion vulnerability exists in the HTTP server due to unbounded use of the `Content-Length` header. The server allocates memory directly based on the attacker supplied header value without enforcing an upper limit. A...

1 affected package

orthanc

Package 16.04 LTS
orthanc Needs evaluation
Show less packages