Search CVE reports


Toggle filters

481 – 490 of 36507 results

Status is adjusted based on your filters.


CVE-2025-12474

Low priority
Needs evaluation

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An...

1 affected package

graphicsmagick

Package 22.04 LTS
graphicsmagick Needs evaluation
Show less packages

CVE-2025-12073

Medium priority

Not in release

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8 before 18.8.4 that, under certain conditions, could have allowed an authenticated user to...

2 affected packages

gitlab, gitlab-agent

Package 22.04 LTS
gitlab Not in release
gitlab-agent Not in release
Show less packages

CVE-2026-26007

Medium priority
Needs evaluation

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 46.0.5, the public_key_from_numbers (or...

1 affected package

python-cryptography

Package 22.04 LTS
python-cryptography Needs evaluation
Show less packages

CVE-2025-54514

Medium priority
Needs evaluation

Improper isolation of shared resources on a system on a chip by a malicious local attacker with high privileges could potentially lead to a partial loss of integrity.

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-52536

Medium priority
Not affected

Improper Prevention of Lock Bit Modification in SEV firmware could allow a privileged attacker to downgrade firmware potentially resulting in a loss of integrity.

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Not affected
Show less packages

CVE-2025-52534

Medium priority
Needs evaluation

Improper bound check within AMD CPU microcode can allow a malicious guest to write to host memory, potentially resulting in loss of integrity.

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-48517

Medium priority
Not affected

Insufficient Granularity of Access Control in SEV firmware could allow a privileged user with a malicious hypervisor to create a SEV-ES guest with an ASID in the range meant for SEV-SNP guests potentially resulting in a partial...

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Not affected
Show less packages

CVE-2025-48514

Medium priority
Needs evaluation

Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Needs evaluation
Show less packages

CVE-2025-48509

Medium priority
Not affected

Missing Checks in certain functions related to RMP initialization can allow a local admin privileged attacker to cause misidentification of I/O memory, potentially resulting in a loss of guest memory integrity

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Not affected
Show less packages

CVE-2025-29952

Medium priority
Not affected

Improper Initialization within the AMD Secure Encrypted Virtualization (SEV) firmware can allow an admin privileged attacker to corrupt RMP covered memory, potentially resulting in loss of guest memory integrity

1 affected package

amd64-microcode

Package 22.04 LTS
amd64-microcode Not affected
Show less packages