CVE-2026-6843
- EPSS 0.11%
- Veröffentlicht 22.04.2026 08:30:04
- Zuletzt bearbeitet 20.05.2026 14:10:44
A flaw was found in nano. A local user could exploit a format string vulnerability in the `statusline()` function. By creating a directory with a name containing `printf` specifiers, the application attempts to display this name, leading to a segment...
- EPSS 99.91%
- Veröffentlicht 22.04.2026 08:15:10
- Zuletzt bearbeitet 28.07.2026 14:54:01
In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-pl...
- EPSS 0.15%
- Veröffentlicht 22.04.2026 07:54:19
- Zuletzt bearbeitet 13.07.2026 22:16:52
A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by tricking a user into processing a specially crafted Executable and Linkable Format (ELF) file. T...
CVE-2026-6245
- EPSS 0.14%
- Veröffentlicht 15.04.2026 18:35:19
- Zuletzt bearbeitet 21.08.2026 21:17:04
A flaw was found in the System Security Services Daemon (SSSD). The pam_passkey_child_read_data() function within the PAM passkey responder fails to properly handle raw bytes received from a pipe. Because the data is treated as a NUL-terminated C str...
- EPSS 0.21%
- Veröffentlicht 09.04.2026 14:49:02
- Zuletzt bearbeitet 24.08.2026 13:19:09
A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability upd...
CVE-2026-5745
- EPSS 0.16%
- Veröffentlicht 07.04.2026 14:57:31
- Zuletzt bearbeitet 21.08.2026 22:16:41
A flaw was found in libarchive. A NULL pointer dereference vulnerability exists in the ACL parsing logic, specifically within the archive_acl_from_text_nl() function. When processing a malformed ACL string (such as a bare "d" or "default" tag without...
CVE-2026-5121
- EPSS 1.07%
- Veröffentlicht 30.03.2026 08:16:18
- Zuletzt bearbeitet 14.07.2026 13:19:00
A flaw was found in libarchive. On 32-bit systems, an integer overflow vulnerability exists in the zisofs block pointer allocation logic. A remote attacker can exploit this by providing a specially crafted ISO9660 image, which can lead to a heap buff...
CVE-2026-0964
- EPSS 0.41%
- Veröffentlicht 26.03.2026 20:06:28
- Zuletzt bearbeitet 21.08.2026 12:16:20
A malicious SCP server can send unexpected paths that could make the client application override local files outside of working directory. This could be misused to create malicious executable or configuration files and make the user execute them unde...
CVE-2026-0966
- EPSS 0.58%
- Veröffentlicht 26.03.2026 20:06:28
- Zuletzt bearbeitet 21.08.2026 12:16:20
A flaw was found in libssh. The API function `ssh_get_hexa()` is vulnerable to a denial of service when processing zero-length input. This can be exploited remotely by an attacker during GSSAPI (Generic Security Service Application Program Interface)...
CVE-2026-4897
- EPSS 0.13%
- Veröffentlicht 26.03.2026 15:16:43
- Zuletzt bearbeitet 21.08.2026 13:18:16
A flaw was found in polkit. A local user can exploit this by providing a specially crafted, excessively long input to the `polkit-agent-helper-1` setuid binary via standard input (stdin). This unbounded input can lead to an out-of-memory (OOM) condit...