Search CVE reports


Toggle filters

51 – 60 of 43466 results

Status is adjusted based on your filters.


CVE-2026-46582

Medium priority
Needs evaluation

In NLnet Labs Unbound 1.6.0 up to and including 1.25.1, a replay of a wildcard rrset as another piece of data, could be briefly considered DNSSEC secure based only on the RRSIG validation and stored into cache, before later...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-44690

Medium priority
Needs evaluation

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, insufficient validation of the RRSIG.Labels field combined with premature cache writes during RFC 8198 aggressive NSEC processing leads to cache poisoning that permits a...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-44687

Medium priority
Needs evaluation

In NLnet Labs Unbound 1.13.2 up to and including 1.25.1, stub or forward zones where the name is below an intermediate labed below a DNSSEC signed zone could be shadowed by the intermediate label's secure NXDOMAIN answer from the...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-44621

Medium priority
Needs evaluation

With NLnet Labs Unbound up to and including version 1.25.1, applications using libunbound and configured with 'unwanted-reply-threshold', could eventually be abruptly terminated if the threshold is reached and libunbound needs to...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-42955

Medium priority
Needs evaluation

In NLnet Labs Unbound 1.16.2 up to and including 1.25.1, a similar vulnerability as with CVE-2026-40622 in the 'ghost domain names' family of attacks was found in Unbound that could extend the ghost domain window by up to one...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-41637

Medium priority
Needs evaluation

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, client terminated DNS-over-QUIC (DoQ) queries are not accounted properly by Unbound resulting in low-cost inflation of the waiting number of replies for already in-flight...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-40691

Medium priority
Needs evaluation

In Unbound 1.9.0 up to and including 1.25.1, when a DNSCrypt query is received over TCP, the routine that encrypts the reply in place fails to bound the reply length against the destination buffer size. The size clamp that...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-32665

Medium priority
Needs evaluation

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, when downstream DNS-over-QUIC (DoQ) is enabled, the first two bidirectional streams on a new QUIC connection (stream_id 0 and 4) bypass the per-stream 'quic-size' gate...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-14586

Medium priority
Needs evaluation

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, in DNS-over-QUIC environments, with high concurrency and under pressure, an assertion in libngtcp2 about monotonic timestamps could trigger and result in server termination...

1 affected package

unbound

Package 20.04 LTS
unbound Needs evaluation
Show less packages

CVE-2026-16473

Medium priority
Needs evaluation

A flaw was found in the sbc library (BlueZ SBC codec). An off-by-one error in the SBC frame decoder allows a crafted audio payload to trigger a one-byte heap out-of-bounds read. This could allow an adjacent attacker streaming...

1 affected package

sbc

Package 20.04 LTS
sbc Needs evaluation
Show less packages