Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
11702
Total
781
Critical
3315
High
3732
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-42512 | HIGH | 7.3 | As dhclient is building an environment to pass to dhclient-script, it may need to resize the array of string pointers. The code which expands the … | Apr 30, 2026 |
| CVE-2026-39457 | HIGH | 7.8 | When exchanging data over a socket, libnv uses select(2) to wait for data to arrive. However, it does not verify whether the provided socket descriptor … | Apr 30, 2026 |
| CVE-2026-35547 | CRITICAL | 9.1 | When processing the header of an incoming message, libnv failed to properly validate the message size. The lack of validation allows a malicious program to … | Apr 30, 2026 |
| CVE-2026-22070 | HIGH | 7.1 | ColorOS Assistant has an unauthenticated start-download channel, leading to file path traversal. | Apr 30, 2026 |
| CVE-2026-7164 | HIGH | 7.5 | Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic. Remote attackers can craft packets … | Apr 30, 2026 |
| CVE-2026-7270 | HIGH | 7.8 | An operator precedence bug in the kernel results in a scenario where a buffer overflow causes attacker-controlled data to overwrite adjacent execve(2) argument buffers. The … | Apr 30, 2026 |
| CVE-2026-6870 | MEDIUM | 5.5 | GSM RP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6869 | MEDIUM | 5.5 | WebSocket protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6867 | MEDIUM | 5.5 | SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6538 | MEDIUM | 5.5 | BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6537 | MEDIUM | 5.5 | ZigBee protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6536 | MEDIUM | 5.5 | DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 | Apr 30, 2026 |
| CVE-2026-6535 | MEDIUM | 5.5 | Dissection engine zlib decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6534 | MEDIUM | 5.5 | USB HID protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6533 | MEDIUM | 5.5 | Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6532 | MEDIUM | 5.5 | Kismet protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6531 | MEDIUM | 5.5 | SANE protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6530 | MEDIUM | 5.5 | DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6529 | MEDIUM | 5.5 | iLBC audio codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6528 | MEDIUM | 5.5 | TLS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 allows denial of service | Apr 30, 2026 |
| CVE-2026-6527 | MEDIUM | 5.5 | ASN.1 PER protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6526 | MEDIUM | 5.5 | RTSP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 | Apr 30, 2026 |
| CVE-2026-6524 | MEDIUM | 5.5 | MySQL protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6523 | MEDIUM | 5.5 | GNW protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |
| CVE-2026-6522 | MEDIUM | 5.5 | RPKI-Router protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service | Apr 30, 2026 |