CVE-2026-24061
- EPSS 29.55%
- Veröffentlicht 21.01.2026 06:42:17
- Zuletzt bearbeitet 30.01.2026 13:28:59
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.
CVE-2025-6966
- EPSS 0.02%
- Veröffentlicht 05.12.2025 13:16:05
- Zuletzt bearbeitet 07.01.2026 22:20:56
NULL pointer dereference in TagSection.keys() in python-apt on APT-based Linux systems allows a local attacker to cause a denial of service (process crash) via a crafted deb822 file with a malformed non-UTF-8 key.
CVE-2025-63498
- EPSS 0.07%
- Veröffentlicht 24.11.2025 00:00:00
- Zuletzt bearbeitet 30.12.2025 17:32:50
alinto SOGo 5.12.3 is vulnerable to Cross Site Scripting (XSS) via the "userName" parameter.
CVE-2025-64512
- EPSS 0.04%
- Veröffentlicht 10.11.2025 21:58:37
- Zuletzt bearbeitet 08.01.2026 22:16:02
Pdfminer.six is a community maintained fork of the original PDFMiner, a tool for extracting information from PDF documents. Prior to version 20251107, pdfminer.six will execute arbitrary code from a malicious pickle file if provided with a malicious ...
CVE-2025-10934
- EPSS 0.09%
- Veröffentlicht 29.10.2025 20:15:35
- Zuletzt bearbeitet 04.11.2025 13:12:43
GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability i...
CVE-2025-10922
- EPSS 0.12%
- Veröffentlicht 29.10.2025 19:29:42
- Zuletzt bearbeitet 04.11.2025 13:15:06
GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability i...
CVE-2025-10921
- EPSS 0.09%
- Veröffentlicht 29.10.2025 19:29:39
- Zuletzt bearbeitet 04.11.2025 17:08:46
GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability i...
CVE-2025-39923
- EPSS 0.04%
- Veröffentlicht 01.10.2025 08:15:35
- Zuletzt bearbeitet 20.01.2026 15:45:52
In the Linux kernel, the following vulnerability has been resolved: dmaengine: qcom: bam_dma: Fix DT error handling for num-channels/ees When we don't have a clock specified in the device tree, we have no way to ensure the BAM is on. This is often ...
CVE-2025-39920
- EPSS 0.02%
- Veröffentlicht 01.10.2025 08:15:35
- Zuletzt bearbeitet 16.01.2026 19:51:49
In the Linux kernel, the following vulnerability has been resolved: pcmcia: Add error handling for add_interval() in do_validate_mem() In the do_validate_mem(), the call to add_interval() does not handle errors. If kmalloc() fails in add_interval()...
CVE-2025-39916
- EPSS 0.02%
- Veröffentlicht 01.10.2025 08:15:34
- Zuletzt bearbeitet 16.01.2026 19:51:18
In the Linux kernel, the following vulnerability has been resolved: mm/damon/reclaim: avoid divide-by-zero in damon_reclaim_apply_parameters() When creating a new scheme of DAMON_RECLAIM, the calculation of 'min_age_region' uses 'aggr_interval' as ...