<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Memory Corruption</title>
  <link>https://cvedaily.com/pages/tags/mem-corruption.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/mem-corruption.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Memory Corruption</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:35 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-25277 – Memory corruption while using Strongbox due to buffer overflow.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25277</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25277</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25277</strong></p>
  <p>Memory corruption while using Strongbox due to buffer overflow.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25277">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25276 – Memory corruption while using Strongbox due to missing bounds check.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25276</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25276</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25276</strong></p>
  <p>Memory corruption while using Strongbox due to missing bounds check.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-129</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25276">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25260 – Memory Corruption when accessing shared buffers without validation of concurrent...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25260</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25260</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25260</strong></p>
  <p>Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-367</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25260">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25259 – Memory corruption while processing multiple IOCTL command for escape operations.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25259</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25259</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25259</strong></p>
  <p>Memory corruption while processing multiple IOCTL command for escape operations.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25259">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25258 – Memory corruption while processing IOCTL calls for escape operations.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25258</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25258</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25258</strong></p>
  <p>Memory corruption while processing IOCTL calls for escape operations.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25258">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24092 – Memory Corruption when processing fastboot commands to set display mode.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24092</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24092</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24092</strong></p>
  <p>Memory Corruption when processing fastboot commands to set display mode.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-1286</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24092">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24091 – Memory corruption while processing fastboot commands with improperly formatted i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24091</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24091</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24091</strong></p>
  <p>Memory corruption while processing fastboot commands with improperly formatted input.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-1286</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24091">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24089 – Memory corruption while processing fastboot commands with invalid input.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24089</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24089</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24089</strong></p>
  <p>Memory corruption while processing fastboot commands with invalid input.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-1286</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24089">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24087 – Memory corruption while processing fastboot OEM commands.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24087</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24087</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24087</strong></p>
  <p>Memory corruption while processing fastboot OEM commands.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-1286</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24087">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24085 – Memory Corruption when processing display command line information due to improp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24085</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24085</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24085</strong></p>
  <p>Memory Corruption when processing display command line information due to improper initialization of a variable.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24085">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-59614 – Memory Corruption when sending random number generator command with insufficient...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59614</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59614</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-59614</strong></p>
  <p>Memory Corruption when sending random number generator command with insufficient output buffer size.</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59614">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-59613 – Memory Corruption when output buffer size is smaller than input buffer size duri...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59613</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59613</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-59613</strong></p>
  <p>Memory Corruption when output buffer size is smaller than input buffer size during data copying operation.</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59613">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-59612 – Memory corruption in windows drivers while sending incorrect trusted application...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59612</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59612</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-59612</strong></p>
  <p>Memory corruption in windows drivers while sending incorrect trusted application request</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59612">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-59611 – Memory corruption in diagnostic services due to absence of input validation</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59611</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59611</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-59611</strong></p>
  <p>Memory corruption in diagnostic services due to absence of input validation</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59611">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-59610 – Memory Corruption when processing IOCTL requests with mismatched API versions du...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59610</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59610</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-59610</strong></p>
  <p>Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent modification of user-space buffer.</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-367</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59610">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59606 – Memory Corruption when writing to invalid memory locations occurs due to heap me...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59606</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59606</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59606</strong></p>
  <p>Memory Corruption when writing to invalid memory locations occurs due to heap memory exhaustion during secure data initialization.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59606">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59605 – Memory Corruption when processing device identifier strings that exceed the expe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59605</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59605</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59605</strong></p>
  <p>Memory Corruption when processing device identifier strings that exceed the expected maximum length.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59605">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59604 – Memory Corruption when running a memory copy operation due to invalid writes cau...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59604</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59604</guid>
    <pubDate>Mon, 01 Jun 2026 23:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59604</strong></p>
  <p>Memory Corruption when running a memory copy operation due to invalid writes caused by a null pointer.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59604">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-20452 – In wlan AP driver, there is a possible memory corruption due to a heap buffer ov...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20452</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20452</guid>
    <pubDate>Mon, 01 Jun 2026 04:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-20452</strong></p>
  <p>In wlan AP driver, there is a possible memory corruption due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00480138; Issue ID: MSV-6295.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20452">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2026-40510 – OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40510</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40510</guid>
    <pubDate>Fri, 29 May 2026 14:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-40510</strong></p>
  <p>OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overflow vulnerability in piv_process_history() in src/libopensc/card-piv.c that allows physically present attackers to trigger memory corruption by presenting a crafted PIV smart card or USB device returning a URL field longer than 118 bytes in the Key History Object ASN.1 response.</p>
  <p><strong>CVSS:</strong> 3.8 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40510">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-9038 – A stack-based buffer overflow vulnerability in the charging controller’s signal-...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9038</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9038</guid>
    <pubDate>Thu, 28 May 2026 20:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-9038</strong></p>
  <p>A stack-based buffer overflow vulnerability in the charging controller’s signal-processing logic allows an attacker with physical access to the charging interface to supply message fields that exceed expected bounds. Because the input is not sufficiently validated, memory corruption may occur, which can lead to execution of unauthorized code with elevated privileges.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9038">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-42250 – bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42250</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42250</guid>
    <pubDate>Thu, 28 May 2026 14:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-42250</strong></p>
  <p>bzip2 contains an off‑by‑one error in the bzip2recover utility. When processing a specially crafted file, the application performs an out‑of‑bounds write to a global buffer, resulting in memory corruption and a crash (denial of service).  This issue was fixed in bzip2 patch 35d122a3df8b0cc4082a4d89fdc6ee99f375fe67</p>
  <p><strong>CVSS:</strong> 5.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42250">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46173 – In the Linux kernel, the following vulnerability has been resolved:

exit: preve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46173</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46173</guid>
    <pubDate>Thu, 28 May 2026 10:16:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46173</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  exit: prevent preemption of oopsing TASK_DEAD task  When an already-exiting task oopses, make_task_dead() currently calls do_task_dead() with preemption enabled.  That is forbidden: do_task_dead() calls __schedule(), which has a comment saying "WARNING: must be called with preemption disabled!".  If an oopsing task is preempted…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46173">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46081 – In the Linux kernel, the following vulnerability has been resolved:

crypto: aco...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46081</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46081</guid>
    <pubDate>Wed, 27 May 2026 14:17:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46081</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  crypto: acomp - fix wrong pointer stored by acomp_save_req()  acomp_save_req() stores &req->chain in req->base.data. When acomp_reqchain_done() is invoked on asynchronous completion, it receives &req->chain as the data argument but casts it directly to struct acomp_req. Since data points to the chain member, all subsequent field…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46081">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-45853 – In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45853</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45853</guid>
    <pubDate>Wed, 27 May 2026 14:16:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-45853</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/amdgpu: Use kvfree instead of kfree in amdgpu_gmc_get_nps_memranges()  amdgpu_discovery_get_nps_info() internally allocates memory for ranges using kvcalloc(), which may use vmalloc() for large allocation. Using kfree() to release vmalloc memory will lead to a memory corruption.  Use kvfree() to safely handle both kmalloc an…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45853">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5260 – A flaw was found in libgnutls. A remote attacker, by sending an extremely short ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5260</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5260</guid>
    <pubDate>Tue, 26 May 2026 22:16:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5260</strong></p>
  <p>A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread. This memory corruption vulnerability could lead to information disclosure.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-1284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5260">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44983 – smallbitvec is a growable bit-vector for Rust, optimized for size. From 1.0.1 to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44983</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44983</guid>
    <pubDate>Tue, 26 May 2026 22:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44983</strong></p>
  <p>smallbitvec is a growable bit-vector for Rust, optimized for size. From 1.0.1 to 2.6.0, an integer overflow in the internal capacity calculation of smallbitvec can lead to an undersized heap allocation, resulting in a heap buffer overflow through safe APIs only. This allows memory corruption without requiring unsafe code from the caller. This vulnerability is fixed in 2.6.1.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44983">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-42015 – A flaw was found in gnutls. An off-by-one error exists in the PKCS#12 bag elemen...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42015</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42015</guid>
    <pubDate>Tue, 26 May 2026 22:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-42015</strong></p>
  <p>A flaw was found in gnutls. An off-by-one error exists in the PKCS#12 bag element bounds check. This vulnerability allows an remote attacker to write past the internal array of a PKCS#12 bag when appending to a bag that already contains 32 elements. This memory corruption could lead to a denial of service (DoS) or potentially other unspecified impacts.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-193</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42015">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7454 – A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7454</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7454</guid>
    <pubDate>Tue, 26 May 2026 18:16:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7454</strong></p>
  <p>A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7454">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7452 – A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7452</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7452</guid>
    <pubDate>Tue, 26 May 2026 18:16:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7452</strong></p>
  <p>A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7452">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-7310 – A heap-based buffer overflow vulnerability exists in XML
parser functionality in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7310</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7310</guid>
    <pubDate>Tue, 26 May 2026 14:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-7310</strong></p>
  <p>A heap-based buffer overflow vulnerability exists in XML parser functionality in the HiDraw. An authenticated malicious user with local access can exploit this vulnerability using a specially crafted XML file which may lead to memory corruption and potential arbitrary code execution. Successful exploitation could result in application crashes (denial of service) and compromise the confidentiality…</p>
  <p><strong>CVSS:</strong> 4.4 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7310">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-9301 – A vulnerability was found in omec-project amf up to 2.1.1. This vulnerability af...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9301</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9301</guid>
    <pubDate>Sat, 23 May 2026 14:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-9301</strong></p>
  <p>A vulnerability was found in omec-project amf up to 2.1.1. This vulnerability affects unknown code of the component NGReset Message Handler. Performing a manipulation results in memory corruption. The attack is possible to be carried out remotely. The exploit has been made public and could be used. It is recommended to apply a patch to fix this issue.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9301">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-9300 – A vulnerability has been found in omec-project amf up to 2.1.1. This affects an ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9300</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9300</guid>
    <pubDate>Sat, 23 May 2026 12:17:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-9300</strong></p>
  <p>A vulnerability has been found in omec-project amf up to 2.1.1. This affects an unknown part of the component NGSetupRequest Handler. Such manipulation leads to memory corruption. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. It is best practice to apply a patch to resolve this issue.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9300">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-9299 – A flaw has been found in omec-project amf up to 2.1.1. Affected by this issue is...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9299</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9299</guid>
    <pubDate>Sat, 23 May 2026 11:16:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-9299</strong></p>
  <p>A flaw has been found in omec-project amf up to 2.1.1. Affected by this issue is the function PDUSessionResourceModifyIndication of the file /go/src/amf/ngap/handler.go. This manipulation causes memory corruption. Remote exploitation of the attack is possible. The exploit has been published and may be used. Applying a patch is the recommended action to fix this issue.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9299">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-9298 – A vulnerability was detected in omec-project amf up to 2.1.1. Affected by this v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9298</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9298</guid>
    <pubDate>Sat, 23 May 2026 11:16:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-9298</strong></p>
  <p>A vulnerability was detected in omec-project amf up to 2.1.1. Affected by this vulnerability is an unknown functionality of the component PathSwitchRequest Handler. The manipulation results in memory corruption. The attack may be launched remotely. The exploit is now public and may be used. It is advisable to implement a patch to correct this issue.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9298">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-8997 – vifm is vulnerable to a heap buffer overflow during the history merge process wh...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8997</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8997</guid>
    <pubDate>Fri, 22 May 2026 14:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-8997</strong></p>
  <p>vifm is vulnerable to a heap buffer overflow during the history merge process when saving the state file (vifminfo.json). This flaw occurs because the application lacks a runtime check on the length of history entries in release builds, potentially allowing a crafted long path or command in the history to cause memory corruption or application crashes. Releases from 0.12.1 to 0.14.3 (including) a…</p>
  <p><strong>CVSS:</strong> 4.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8997">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-9150 – A flaw was found in libsolv. This stack-based buffer overflow vulnerability occu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9150</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9150</guid>
    <pubDate>Wed, 20 May 2026 23:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-9150</strong></p>
  <p>A flaw was found in libsolv. This stack-based buffer overflow vulnerability occurs in libsolv's Debian metadata parser when processing specially crafted Debian repository metadata. An attacker could exploit this by providing malicious SHA384 or SHA512 checksum tags, leading to memory corruption and a denial of service (DoS) in the affected system.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9150">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8975 – Memory safety bugs present in Firefox ESR 115.35, Firefox ESR 140.10 and Firefox...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8975</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8975</guid>
    <pubDate>Tue, 19 May 2026 14:16:54 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8975</strong></p>
  <p>Memory safety bugs present in Firefox ESR 115.35, Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8975">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8974 – Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8974</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8974</guid>
    <pubDate>Tue, 19 May 2026 14:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8974</strong></p>
  <p>Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8974">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8973 – Memory safety bugs present in Firefox 150. Some of these bugs showed evidence of...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8973</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8973</guid>
    <pubDate>Tue, 19 May 2026 14:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8973</strong></p>
  <p>Memory safety bugs present in Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 151 and Thunderbird 151.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8973">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-8780 – A vulnerability was identified in omec-project amf up to 2.1.3-dev. The affected...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8780</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8780</guid>
    <pubDate>Mon, 18 May 2026 02:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-8780</strong></p>
  <p>A vulnerability was identified in omec-project amf up to 2.1.3-dev. The affected element is an unknown function of the file ngap/dispatcher.go of the component NGAP Message Handler. The manipulation leads to memory corruption. The attack may be initiated remotely. The exploit is publicly available and might be used. Upgrading to version 2.2.0 is sufficient to fix this issue. It is suggested to up…</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8780">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-8779 – A vulnerability was determined in omec-project amf up to 2.1.3-dev. Impacted is ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8779</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8779</guid>
    <pubDate>Mon, 18 May 2026 02:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-8779</strong></p>
  <p>A vulnerability was determined in omec-project amf up to 2.1.3-dev. Impacted is the function NGSetupRequest of the file ngap/handler.go. Executing a manipulation of the argument InformationElement can lead to memory corruption. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.2.0 is recommended to address this issue. The affe…</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8779">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-37239 – libbabl 0.1.62 contains a broken double free detection vulnerability that allows...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-37239</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-37239</guid>
    <pubDate>Sat, 16 May 2026 16:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-37239</strong></p>
  <p>libbabl 0.1.62 contains a broken double free detection vulnerability that allows attackers to bypass memory safety checks by exploiting signature overwriting in freed chunks. Attackers can call babl_free() twice on the same pointer without triggering detection, as libc's malloc metadata overwrites babl's signature field upon freeing, enabling potential memory corruption and code execution.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-37239">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8696 – radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_pids_list() fu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8696</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8696</guid>
    <pubDate>Fri, 15 May 2026 21:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8696</strong></p>
  <p>radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_pids_list() function within the GDB client core that allows remote attackers to cause a denial of service or potentially execute arbitrary code by sending malformed thread information responses. Attackers can trigger the vulnerability by causing qsThreadInfo to fail after qfThreadInfo successfully allocates RDebugPid structures, re…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8696">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8695 – radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_threads_list()...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8695</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8695</guid>
    <pubDate>Fri, 15 May 2026 17:16:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8695</strong></p>
  <p>radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_threads_list() function that allows remote attackers to trigger memory corruption by sending a valid qfThreadInfo response followed by a malformed qsThreadInfo response. Attackers can exploit this vulnerability through GDB remote debugging to cause a denial of service or potentially achieve code execution by manipulating thread lis…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8695">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-43906 – OpenImageIO is a toolset for reading, writing, and manipulating image files of a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-43906</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-43906</guid>
    <pubDate>Thu, 14 May 2026 20:17:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-43906</strong></p>
  <p>OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a heap-based buffer overflow in the HEIF decoder of OpenImageIO allows out-of-bounds writes via crafted images due to a subimage metadata mismatch, leading to memory corruption and potential code execution. This vulnerability is fixed in…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-43906">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-8295 – An integer overflow vulnerability in the simdjson document-builder API allows in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8295</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8295</guid>
    <pubDate>Thu, 14 May 2026 11:16:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-8295</strong></p>
  <p>An integer overflow vulnerability in the simdjson document-builder API allows incorrect buffer size calculations in "string_builder::escape_and_append()" when processing very large input strings on platforms with limited "size_t" width (e.g., 32-bit builds). The overflow can cause insufficient buffer allocation, leading to out-of-bounds memory reads in SIMD routines and potentially resulting in i…</p>
  <p><strong>CVSS:</strong> 6.9 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8295">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8449 – Linux ksmbd contains a remote memory corruption vulnerability in the ACL inherit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8449</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8449</guid>
    <pubDate>Tue, 12 May 2026 22:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8449</strong></p>
  <p>Linux ksmbd contains a remote memory corruption vulnerability in the ACL inheritance path that allows remote clients with directory creation permissions to trigger a heap out-of-bounds read and subsequent heap corruption by setting a crafted DACL with a malformed SID containing an inflated num_subauth field. Attackers can exploit this vulnerability by creating a directory, setting the malicious D…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8449">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-12659 – The affected applications contains a memory corruption vulnerability while parsi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-12659</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-12659</guid>
    <pubDate>Tue, 12 May 2026 14:16:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-12659</strong></p>
  <p>The affected applications contains a memory corruption vulnerability while parsing specially crafted IPT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-27349, ZDI-CAN-27389)</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-12659">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-8349 – A flaw has been found in omec-project amf up to 2.1.1. This vulnerability affect...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8349</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8349</guid>
    <pubDate>Tue, 12 May 2026 00:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-8349</strong></p>
  <p>A flaw has been found in omec-project amf up to 2.1.1. This vulnerability affects unknown code of the component NGAP Message Handler. Executing a manipulation can lead to memory corruption. The attack can be launched remotely. The exploit has been published and may be used. This patch is called 8a4c33cdda866094f1989bdeff6d8642fce8de8435f89defd66831c97715f5aa. It is best practice to apply a patch…</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8349">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42046 – libcaca is a colour ASCII art library. In 0.99.beta20 and earlier, an integer ov...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42046</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42046</guid>
    <pubDate>Mon, 11 May 2026 22:22:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42046</strong></p>
  <p>libcaca is a colour ASCII art library. In 0.99.beta20 and earlier, an integer overflow vulnerability in libcaca's canvas import functionality allows an attacker to cause a controlled heap out-of-bounds write (heap overflow) by supplying a crafted file in the "caca" format. Depending on the build configuration and memory allocator, this may lead to memory corruption or remote code execution. This…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42046">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-28992 – A memory corruption vulnerability was addressed with improved locking. This issu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28992</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28992</guid>
    <pubDate>Mon, 11 May 2026 21:18:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-28992</strong></p>
  <p>A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. An attacker may be able to cause unexpected app termination.</p>
  <p><strong>CVSS:</strong> 4.7 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28992">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-28956 – A memory corruption issue was addressed with improved input validation. This iss...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28956</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28956</guid>
    <pubDate>Mon, 11 May 2026 21:18:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-28956</strong></p>
  <p>A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28956">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-7261 – In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7261</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7261</guid>
    <pubDate>Sun, 10 May 2026 05:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-7261</strong></p>
  <p>In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when SoapServer is configured with SOAP_PERSISTENCE_SESSION, the handler object is persisted across requests via session storage. However, in the case SOAP requests results in an error, the persistance is handled incorrectly, resulting in freeing the object while keeping a pointer to it, which m…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7261">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42311 – Pillow is a Python imaging library. From version 10.3.0 to before version 12.2.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42311</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42311</guid>
    <pubDate>Sat, 09 May 2026 06:16:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42311</strong></p>
  <p>Pillow is a Python imaging library. From version 10.3.0 to before version 12.2.0, processing a malicious PSD file could lead to memory corruption, potentially resulting in a crash or arbitrary code execution. This issue has been patched in version 12.2.0.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42311">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-26523 – The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-26523</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-26523</guid>
    <pubDate>Fri, 08 May 2026 05:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-26523</strong></p>
  <p>The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) due to a double fetch vulnerability at aswArPot+0xbb94.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-26523">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-26522 – The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-26522</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-26522</guid>
    <pubDate>Fri, 08 May 2026 05:16:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-26522</strong></p>
  <p>The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) due to a double fetch vulnerability at aswArPot+0xc4a3.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-367</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-26522">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8093 – Memory safety bugs present in Firefox 150.0.1. Some of these bugs showed evidenc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8093</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8093</guid>
    <pubDate>Thu, 07 May 2026 13:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8093</strong></p>
  <p>Memory safety bugs present in Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.0.2 and Thunderbird 150.0.2.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8093">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-8092 – Memory safety bugs present in Firefox ESR 115.35.1, Firefox ESR 140.10.1 and Fir...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-8092</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-8092</guid>
    <pubDate>Thu, 07 May 2026 13:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-8092</strong></p>
  <p>Memory safety bugs present in Firefox ESR 115.35.1, Firefox ESR 140.10.1 and Firefox 150.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.0.2, Firefox ESR 140.10.2, Firefox ESR 115.35.2, Thunderbird 150.0.2, and Thunderbird 140.10.2.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-8092">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-44407 – A remote denial-of-service vulnerability exists in the ZTE Cloud PC client uSmar...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44407</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44407</guid>
    <pubDate>Thu, 07 May 2026 09:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-44407</strong></p>
  <p>A remote denial-of-service vulnerability exists in the ZTE Cloud PC client uSmartview, which may lead to memory corruption and remote denial of service.</p>
  <p><strong>CVSS:</strong> 4.7 · <strong>CWE:</strong> CWE-134</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44407">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-44406 – ZTE Cloud PC client uSmartView contains a DLL hijacking vulnerability; since uSm...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44406</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44406</guid>
    <pubDate>Thu, 07 May 2026 08:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-44406</strong></p>
  <p>ZTE Cloud PC client uSmartView contains a DLL hijacking vulnerability; since uSmartViewServiceAgent.exe runs with SYSTEM privileges, successful hijacking enables local arbitrary code execution, privilege escalation, and memory corruption.contains a DLL hijacking vulnerability; since uSmartViewServiceAgent.exe runs with SYSTEM privileges, successful hijacking enables local arbitrary code execution…</p>
  <p><strong>CVSS:</strong> 5.7 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44406">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-43250 – In the Linux kernel, the following vulnerability has been resolved:

usb: chipid...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-43250</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-43250</guid>
    <pubDate>Wed, 06 May 2026 12:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-43250</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  usb: chipidea: udc: fix DMA and SG cleanup in _ep_nuke()  The ChipIdea UDC driver can encounter "not page aligned sg buffer" errors when a USB device is reconnected after being disconnected during an active transfer. This occurs because _ep_nuke() returns requests to the gadget layer without properly unmapping DMA buffers or cle…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-43250">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-43150 – In the Linux kernel, the following vulnerability has been resolved:

perf/arm-cm...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-43150</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-43150</guid>
    <pubDate>Wed, 06 May 2026 12:16:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-43150</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  perf/arm-cmn: Reject unsupported hardware configurations  So far we've been fairly lax about accepting both unknown CMN models (at least with a warning), and unknown revisions of those which we do know, as although things do frequently change between releases, typically enough remains the same to be somewhat useful for at least…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-43150">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-29004 – BusyBox before commit 42202bf contains a heap buffer overflow vulnerability in t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-29004</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-29004</guid>
    <pubDate>Mon, 04 May 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-29004</strong></p>
  <p>BusyBox before commit 42202bf contains a heap buffer overflow vulnerability in the DHCPv6 client (udhcpc6) DNS_SERVERS option handler in networking/udhcp/d6_dhcpc.c that allows network-adjacent attackers to trigger memory corruption by sending a crafted DHCPv6 response with a malformed D6_OPT_DNS_SERVERS option. Attackers can exploit incorrect heap buffer allocation calculations in the option_to_…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-29004">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-25266 – Memory corruption while processing IOCTL command when device is in power-save st...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25266</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25266</guid>
    <pubDate>Mon, 04 May 2026 17:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-25266</strong></p>
  <p>Memory corruption while processing IOCTL command when device is in power-save state.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-749</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25266">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24082 – Memory Corruption when copying data from a freed source while executing performa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24082</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24082</guid>
    <pubDate>Mon, 04 May 2026 17:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24082</strong></p>
  <p>Memory Corruption when copying data from a freed source while executing performance counter deselect operation.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24082">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47408 – Memory corruption when another driver calls an IOCTL with invalid input/output b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47408</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47408</guid>
    <pubDate>Mon, 04 May 2026 17:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47408</strong></p>
  <p>Memory corruption when another driver calls an IOCTL with invalid input/output buffer.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-822</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47408">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47407 – Memory corruption while creating a process on the digital signal processor due t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47407</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47407</guid>
    <pubDate>Mon, 04 May 2026 17:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47407</strong></p>
  <p>Memory corruption while creating a process on the digital signal processor due to allocation failure at the kernel level.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-367</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47407">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47405 – Memory corruption when processing camera sensor input/output control codes with ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47405</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47405</guid>
    <pubDate>Mon, 04 May 2026 17:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47405</strong></p>
  <p>Memory corruption when processing camera sensor input/output control codes with invalid output buffers.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-822</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47405">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-47404 – Memory corruption when dynamically changing the size of a previously allocated b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47404</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47404</guid>
    <pubDate>Mon, 04 May 2026 17:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-47404</strong></p>
  <p>Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modified.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47404">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33846 – A heap buffer overflow vulnerability exists in the DTLS handshake fragment reass...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33846</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33846</guid>
    <pubDate>Mon, 04 May 2026 10:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33846</strong></p>
  <p>A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of GnuTLS. The issue arises in merge_handshake_packet() where incoming handshake fragments are matched and merged based solely on handshake type, without validating that the message_length field remains consistent across all fragments of the same logical message. An attacker can exploit this by sending cra…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-130</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33846">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-43045 – In the Linux kernel, the following vulnerability has been resolved:

mshv: Fix e...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-43045</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-43045</guid>
    <pubDate>Fri, 01 May 2026 15:16:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-43045</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  mshv: Fix error handling in mshv_region_pin  The current error handling has two issues:  First, pin_user_pages_fast() can return a short pin count (less than requested but greater than zero) when it cannot pin all requested pages. This is treated as success, leading to partially pinned regions being used, which causes memory cor…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-43045">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31743 – In the Linux kernel, the following vulnerability has been resolved:

nvmem: zynq...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31743</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31743</guid>
    <pubDate>Fri, 01 May 2026 15:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31743</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  nvmem: zynqmp_nvmem: Fix buffer size in DMA and memcpy  Buffer size used in dma allocation and memcpy is wrong. It can lead to undersized DMA buffer access and possible memory corruption. use correct buffer size in dma_alloc_coherent and memcpy.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31743">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-40951 – CVE-2026-40951 is a memory corruption vulnerability on Secure Access 
Windows cl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40951</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40951</guid>
    <pubDate>Thu, 30 Apr 2026 21:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-40951</strong></p>
  <p>CVE-2026-40951 is a memory corruption vulnerability on Secure Access  Windows clients prior to 14.50. Attackers with local control of the  Windows client can send malformed data to an API and trigger a denial of  service.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40951">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-33447 – CVE-2026-33447 is a buffer overflow in a message parsing function of the
 Secure...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33447</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33447</guid>
    <pubDate>Thu, 30 Apr 2026 20:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-33447</strong></p>
  <p>CVE-2026-33447 is a buffer overflow in a message parsing function of the  Secure Access client prior to 14.50. Attackers with control of a  modified server can send a special packet that can overwrite a small  portion of memory conceivably leading to memory corruption or denial of  service.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33447">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-33446 – CVE-2026-33446 is a buffer overflow in the authentication sub-system of 
the Sec...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33446</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33446</guid>
    <pubDate>Thu, 30 Apr 2026 20:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-33446</strong></p>
  <p>CVE-2026-33446 is a buffer overflow in the authentication sub-system of  the Secure Access client prior to 14.50. Attackers with control of a  modified server can send a special packet that can overwrite a small  portion of memory conceivably leading to memory corruption or a denial  of service.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33446">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7426 – Insufficient validation of the prefix length field in IPv6 Router Advertisement ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7426</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7426</guid>
    <pubDate>Wed, 29 Apr 2026 20:16:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7426</strong></p>
  <p>Insufficient validation of the prefix length field in IPv6 Router Advertisement processing in FreeRTOS-Plus-TCP before V4.2.6 and V4.4.1 allows an adjacent network actor to cause memory corruption by sending a crafted Router Advertisement with a prefix length value exceeding the maximum valid length, resulting in a heap buffer overflow. Users processing IPv4 RA only are not impacted.    To mitiga…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7426">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7111 – Text::CSV_XS versions before 1.62 for Perl have a use-after-free when registered...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7111</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7111</guid>
    <pubDate>Wed, 29 Apr 2026 15:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7111</strong></p>
  <p>Text::CSV_XS versions before 1.62 for Perl have a use-after-free when registered callbacks extend the Perl argument stack, which may enable type confusion or memory corruption.  The Parse, print, getline, and getline_all methods invoke registered callbacks (for example after_parse, before_print, or on_error) and cache the Perl argument stack pointer across the call. If a callback extends the argu…</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7111">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7324 – Memory safety bugs present in Thunderbird 150.0.0. Some of these bugs showed evi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7324</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7324</guid>
    <pubDate>Tue, 28 Apr 2026 15:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7324</strong></p>
  <p>Memory safety bugs present in Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.0.1 and Thunderbird 150.0.1.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7324">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7323 – Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7323</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7323</guid>
    <pubDate>Tue, 28 Apr 2026 15:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7323</strong></p>
  <p>Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.0.1, Firefox ESR 140.10.1, Thunderbird 150.0.1, and Thunderbird 140.10.1.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7323">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7322 – Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7322</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7322</guid>
    <pubDate>Tue, 28 Apr 2026 15:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7322</strong></p>
  <p>Memory safety bugs present in Thunderbird ESR 140.10.0 and Thunderbird 150.0.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150.0.1, Firefox ESR 140.10.1, Firefox ESR 115.35.1, Thunderbird 150.0.1, and Thunderbird 140.10.1.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7322">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6786 – Memory safety bugs present in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6786</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6786</guid>
    <pubDate>Sun, 26 Apr 2026 19:53:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6786</strong></p>
  <p>Memory safety bugs present in Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6786">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6785 – Memory safety bugs present in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6785</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6785</guid>
    <pubDate>Sun, 26 Apr 2026 19:53:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6785</strong></p>
  <p>Memory safety bugs present in Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird ESR 140.9, Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbir…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6785">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41429 – arduino-esp32 is an Arduino core for the ESP32, ESP32-S2, ESP32-S3, ESP32-C3, ES...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41429</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41429</guid>
    <pubDate>Fri, 24 Apr 2026 20:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41429</strong></p>
  <p>arduino-esp32 is an Arduino core for the ESP32, ESP32-S2, ESP32-S3, ESP32-C3, ESP32-C6 and ESP32-H2 microcontrollers. Prior to 3.3.8, there is a remotely reachable memory corruption issue in the NBNS packet handling path. When NetBIOS is enabled by calling NBNS.begin(...), the device listens on UDP port 137 and processes untrusted NBNS requests from the local network. The request parser trusts th…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41429">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41416 – PJSIP is a free and open source multimedia communication library written in C. I...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41416</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41416</guid>
    <pubDate>Fri, 24 Apr 2026 19:17:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41416</strong></p>
  <p>PJSIP is a free and open source multimedia communication library written in C. In 2.16 and earlier, there is an integer overflow in media stream buffer size calculation when processing SDP with asymmetric ptime configuration. The overflow may result in an undersized buffer allocation, which can lead to unexpected application termination or memory corruption This vulnerability is fixed in 2.17.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41416">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-31649 – In the Linux kernel, the following vulnerability has been resolved:

net: stmmac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31649</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31649</guid>
    <pubDate>Fri, 24 Apr 2026 15:16:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-31649</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  net: stmmac: fix integer underflow in chain mode  The jumbo_frm() chain-mode implementation unconditionally computes      len = nopaged_len - bmax;  where nopaged_len = skb_headlen(skb) (linear bytes only) and bmax is BUF_SIZE_8KiB or BUF_SIZE_2KiB.  However, the caller stmmac_xmit() decides to invoke jumbo_frm() based on skb->l…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31649">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34001 – A flaw was found in the X.Org X server. This use-after-free vulnerability occurs...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34001</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34001</guid>
    <pubDate>Thu, 23 Apr 2026 16:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34001</strong></p>
  <p>A flaw was found in the X.Org X server. This use-after-free vulnerability occurs in the XSYNC fence triggering logic, specifically within the miSyncTriggerFence() function. An attacker with access to the X11 server can exploit this without user interaction, leading to a server crash and potentially enabling memory corruption. This could result in a denial of service or further compromise of the s…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-825</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34001">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-6861 – A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, oc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6861</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6861</guid>
    <pubDate>Wed, 22 Apr 2026 14:17:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-6861</strong></p>
  <p>A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure.</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-193</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6861">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31530 – In the Linux kernel, the following vulnerability has been resolved:

cxl/port: F...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31530</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31530</guid>
    <pubDate>Wed, 22 Apr 2026 14:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31530</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  cxl/port: Fix use after free of parent_port in cxl_detach_ep()  cxl_detach_ep() is called during bottom-up removal when all CXL memory devices beneath a switch port have been removed. For each port in the hierarchy it locks both the port and its parent, removes the endpoint, and if the port is now empty, marks it dead and unregi…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31530">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-31433 – In the Linux kernel, the following vulnerability has been resolved:

ksmbd: fix ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31433</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31433</guid>
    <pubDate>Wed, 22 Apr 2026 09:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-31433</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  ksmbd: fix potencial OOB in get_file_all_info() for compound requests  When a compound request consists of QUERY_DIRECTORY + QUERY_INFO (FILE_ALL_INFORMATION) and the first command consumes nearly the entire max_trans_size, get_file_all_info() would blindly call smbConvertToUTF16() with PATH_MAX, causing out-of-bounds write beyo…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31433">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-40450 – Integer overflow in output tensor copy size calculation in Samsung Open Source O...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40450</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40450</guid>
    <pubDate>Wed, 22 Apr 2026 07:16:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-40450</strong></p>
  <p>Integer overflow in output tensor copy size calculation in Samsung Open Source ONE could cause incorrect copy length and memory corruption for oversized tensors. Affected version is prior to commit  1.30.0.</p>
  <p><strong>CVSS:</strong> 6.6 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40450">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6784 – Memory safety bugs present in Firefox 149 and Thunderbird 149. Some of these bug...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6784</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6784</guid>
    <pubDate>Tue, 21 Apr 2026 13:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6784</strong></p>
  <p>Memory safety bugs present in Firefox 149 and Thunderbird 149. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 150 and Thunderbird 150.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6784">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-26399 – A stack-use-after-return issue exists in the Arduino_Core_STM32 library prior to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26399</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26399</guid>
    <pubDate>Mon, 20 Apr 2026 18:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-26399</strong></p>
  <p>A stack-use-after-return issue exists in the Arduino_Core_STM32 library prior to version 1.7.0. The pwm_start() function allocates a TIM_HandleTypeDef structure on the stack and passes its address to HAL initialization routines, where it is stored in a global timer handle registry. After the function returns, interrupt service routines may dereference this dangling pointer, resulting in memory co…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-562</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26399">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32623 – xrdp is an open source RDP server. Versions through 0.10.5 contain a heap-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32623</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32623</guid>
    <pubDate>Fri, 17 Apr 2026 20:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32623</strong></p>
  <p>xrdp is an open source RDP server. Versions through 0.10.5 contain a heap-based buffer overflow vulnerability in the NeutrinoRDP module. When proxying RDP sessions from xrdp to another server, the module fails to properly validate the size of reassembled fragmented virtual channel data against its allocated memory buffer. A malicious downstream RDP server (or an attacker capable of performing a M…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32623">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-6507 – A flaw was found in dnsmasq. A remote attacker could exploit an out-of-bounds wr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6507</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6507</guid>
    <pubDate>Fri, 17 Apr 2026 13:16:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-6507</strong></p>
  <p>A flaw was found in dnsmasq. A remote attacker could exploit an out-of-bounds write vulnerability by sending a specially crafted BOOTREPLY (Bootstrap Protocol Reply) packet to a dnsmasq server configured with the `--dhcp-split-relay` option. This can lead to memory corruption, causing the dnsmasq daemon to crash and resulting in a denial of service (DoS).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6507">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27820 – zlib is a Ruby interface for the zlib compression/decompression library. Version...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27820</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27820</guid>
    <pubDate>Thu, 16 Apr 2026 18:16:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27820</strong></p>
  <p>zlib is a Ruby interface for the zlib compression/decompression library. Versions 3.0.0 and below, 3.1.0, 3.1.1, 3.2.0 and 3.2.1 contain a buffer overflow vulnerability in the Zlib::GzipReader. The zstream_buffer_ungets function prepends caller-provided bytes ahead of previously produced output but fails to guarantee the backing Ruby string has enough capacity before the memmove shifts the existi…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27820">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33023 – libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. I...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33023</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33023</guid>
    <pubDate>Tue, 14 Apr 2026 23:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33023</strong></p>
  <p>libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. In versions 1.8.7 and prior, when built with the --with-gdk-pixbuf2 option, a use-after-free vulnerability exists in load_with_gdkpixbuf() in loader.c. The cleanup path manually frees the sixel_frame_t object and its internal buffers without consulting the reference count, even though the object was created via the ref…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33023">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40200 – An issue was discovered in musl libc 0.7.10 through 1.2.6. Stack-based memory co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40200</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40200</guid>
    <pubDate>Fri, 10 Apr 2026 17:17:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40200</strong></p>
  <p>An issue was discovered in musl libc 0.7.10 through 1.2.6. Stack-based memory corruption can occur during qsort of very large arrays, due to incorrectly implemented double-word primitives. The number of elements must exceed about seven million, i.e., the 32nd Leonardo number on 32-bit platforms (or the 64th Leonardo number on 64-bit platforms, which is not practical).</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-670</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40200">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-6067 – A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-6067</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-6067</guid>
    <pubDate>Fri, 10 Apr 2026 14:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-6067</strong></p>
  <p>A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds checking in the obj_directive() function. This vulnerability can be exploited by a user assembling a malicious .asm file, potentially leading to heap memory corruption, denial of service (crash), and arbitrary code execution.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-6067">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-31412 – In the Linux kernel, the following vulnerability has been resolved:

usb: gadget...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-31412</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-31412</guid>
    <pubDate>Fri, 10 Apr 2026 11:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-31412</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  usb: gadget: f_mass_storage: Fix potential integer overflow in check_command_size_in_blocks()  The `check_command_size_in_blocks()` function calculates the data size in bytes by left shifting `common->data_size_from_cmnd` by the block size (`common->curlun->blkbits`). However, it does not validate whether this shift operation wi…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-31412">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
