Search CVE reports


Toggle filters

141 – 150 of 59781 results

Status is adjusted based on your filters.


CVE-2026-102997

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. Prior to 6.18.1, a crafted PDF containing a partially malformed /FlateDecode stream with padded data can force pypdf/filters.py to use inefficient byte-by-byte decompression...

2 affected packages

pypdf, pypdf2

Package 16.04 LTS
pypdf —
pypdf2 Needs evaluation
Show less packages

CVE-2026-102996

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. Prior to 6.18.1, a crafted PDF can provide a TrueType or Type1 simple font with an unusually large /Widths array, causing pypdf/_font.py Font._collect_tt_t1_character_widths...

2 affected packages

pypdf, pypdf2

Package 16.04 LTS
pypdf —
pypdf2 Needs evaluation
Show less packages

CVE-2026-102995

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. Prior to 6.18.1, a crafted PDF can place unusually large source-code or destination-string tokens in a font /ToUnicode mapping, causing pypdf/_cmap.py parse_bfchar to decode...

2 affected packages

pypdf, pypdf2

Package 16.04 LTS
pypdf —
pypdf2 Needs evaluation
Show less packages

CVE-2026-102994

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. Prior to 6.18.0, a crafted PDF containing indirect-object identifiers or generation-number tokens that continue for a long time without whitespace can cause pypdf/_reader.py...

2 affected packages

pypdf, pypdf2

Package 16.04 LTS
pypdf —
pypdf2 Needs evaluation
Show less packages

CVE-2026-102993

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. Prior to 6.17.0, a crafted PDF can provide unusually large Roman page-label values that cause pypdf/_page_labels.py to generate excessively large numeral strings when...

2 affected packages

pypdf, pypdf2

Package 16.04 LTS
pypdf —
pypdf2 Needs evaluation
Show less packages

CVE-2026-102991

Medium priority
Needs evaluation

Mako is a template library written in Python. Prior to 1.4.2, on Windows, TemplateLookup.get_template() in mako/lookup.py resolves template URIs with posixpath, while Template.__init__() in mako/template.py validates them with...

1 affected package

mako

Package 16.04 LTS
mako Needs evaluation
Show less packages

CVE-2026-102505

Medium priority
Needs evaluation

Imager versions before 1.037 for Perl overflow a heap buffer fetching float samples from a paletted image in i_gsampf_fp. For a paletted image, getsamples() with type "float" allocates a buffer of one sample per pixel and fetches...

1 affected package

libimager-perl

Package 16.04 LTS
libimager-perl Needs evaluation
Show less packages

CVE-2026-102504

Medium priority
Needs evaluation

Imager versions before 1.037 for Perl exit the process reading a raw image with an out-of-range raw_datachannels value in i_readraw_wiol. Nothing range-checks raw_datachannels. The line buffer is sized as the image width times the...

1 affected package

libimager-perl

Package 16.04 LTS
libimager-perl Needs evaluation
Show less packages

CVE-2026-101283

Medium priority
Needs evaluation

iperf3 3.20–3.21 (esnet/iperf) has a pre-auth heap buffer overflow in decrypt_rsa_message(): a 256-byte RSA buffer is BIO_read with the attacker-controlled ciphertext length (guard warns only), so an unauthenticated client...

1 affected package

iperf3

Package 16.04 LTS
iperf3 Needs evaluation
Show less packages

CVE-2026-101276

Medium priority
Needs evaluation

iperf3 3.21 (esnet/iperf) contains a remote, unauthenticated heap use-after-free: the server's per-test watchdog server_timer_proc() frees streams without cancelling/joining their worker threads, so a blocked worker dereferences a...

1 affected package

iperf3

Package 16.04 LTS
iperf3 Needs evaluation
Show less packages