Search CVE reports


Toggle filters

121 – 130 of 49291 results

Status is adjusted based on your filters.


CVE-2026-61818

Medium priority
Needs evaluation

pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, undo_partition() reads part_config.time_encoder as unrestricted text and interpolates it without identifier quoting into...

1 affected package

pg-partman

Package 20.04 LTS
pg-partman Needs evaluation
Show less packages

CVE-2026-61817

Medium priority
Needs evaluation

pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, run_maintenance(), show_partitions(), show_partition_info(), undo_partition(), and partition_data_time() interpolate the writable...

1 affected package

pg-partman

Package 20.04 LTS
pg-partman Needs evaluation
Show less packages

CVE-2026-61781

Medium priority
Needs evaluation

pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, create_partition_time() reads the writable part_config.time_encoder text value and interpolates it without identifier quoting into...

1 affected package

pg-partman

Package 20.04 LTS
pg-partman Needs evaluation
Show less packages

CVE-2026-61723

Medium priority
Needs evaluation

FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the native DLS parser validates ptbl chunks with the unsigned expression cues * 4 + cbsize without checking whether the...

1 affected package

fluidsynth

Package 20.04 LTS
fluidsynth Needs evaluation
Show less packages

CVE-2026-61722

Medium priority
Needs evaluation

FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the native DLS parser validates articulation chunks using the unsigned expression cbsize + connblocks * 12 without first...

1 affected package

fluidsynth

Package 20.04 LTS
fluidsynth Needs evaluation
Show less packages

CVE-2026-61721

Medium priority
Needs evaluation

FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the native DLS loader assigns file-controlled wsmp.loop_start and wsmp.loop_length values to samples without calling...

1 affected package

fluidsynth

Package 20.04 LTS
fluidsynth Needs evaluation
Show less packages

CVE-2026-61720

Medium priority
Needs evaluation

FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the SF2 parser computes the DMOD modulator count as chunk.size / SF_MOD_SIZE - 1 without rejecting chunks smaller than one...

1 affected package

fluidsynth

Package 20.04 LTS
fluidsynth Needs evaluation
Show less packages

CVE-2026-61714

Medium priority
Needs evaluation

FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.2.4 until 2.5.6, configuring synth.midi-channels above 16 allows the MIDI player to index _fluid_player_t::channel_isplaying outside its...

1 affected package

fluidsynth

Package 20.04 LTS
fluidsynth Needs evaluation
Show less packages

CVE-2026-58264

Medium priority
Needs evaluation

FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 1.1.2 until 2.5.6, the FluidSynth command handler accepts a pitch_bend_range command whose channel argument is not bounds checked before the...

1 affected package

fluidsynth

Package 20.04 LTS
fluidsynth Needs evaluation
Show less packages

CVE-2026-75894

Medium priority
Needs evaluation

In osmo-iuh from 0.1.0 through 1.8.0 a reachable assertion was found in the ranap_handle_co_dt() function via a arbitrarily sized NAS-PDU that leads to process crash and remote denial of service.

1 affected package

osmo-iuh

Package 20.04 LTS
osmo-iuh Needs evaluation
Show less packages