Bugs with TODO items

Hide "check" TODOs

BugDescriptionNote
CVE-2021-26383Insufficient bounds checking in AMD TEE (Trusted Execution Environment ...check
CVE-2021-46750Failure to validate the address and size in TEE (Trusted Execution Env ...check
CVE-2022-23538github.com/sylabs/scs-library-client is the Go client for the Singular ...check details, might as well affect golang-github-apptainer-container-library-client
CVE-2023-26044react/http is an event-driven, streaming HTTP client and server implem ...check, is embedded inicinga-php-thirdparty, icingaweb2-module-reactbundle possibly affected
CVE-2023-31306Improper validation of an array index in the AMD graphics driver softw ...check
CVE-2023-31326Use of an uninitialized variable in the ASP could allow an attacker to ...check
CVE-2023-49316In Math/BinaryField.php in phpseclib 3 before 3.0.34, excessively larg ...check if affecting ldap-account-manager or unused path
CVE-2023-50251php-svg-lib is an SVG file parsing / rendering library. Prior to versi ...check, other packages are embedding the library: civicrm, icinga-php-thirdparty and icingaweb2 to be checked
CVE-2023-50252php-svg-lib is an SVG file parsing / rendering library. Prior to versi ...check, other packages are embedding the library: civicrm, icinga-php-thirdparty and icingaweb2 to be checked
CVE-2023-50262Dompdf is an HTML to PDF converter for PHP. When parsing SVG images Do ...check sources embedding php-dompdf if affected
CVE-2024-22420JupyterLab is an extensible environment for interactive and reproducib ...check completeness, src:jupyter-notebook?
CVE-2024-22421JupyterLab is an extensible environment for interactive and reproducib ...check completeness, src:jupyter-notebook?
CVE-2024-28180Package jose aims to provide an implementation of the Javascript Objec ...check completeness
CVE-2024-36342Improper input validation in the GPU driver could allow an attacker to ...check
CVE-2024-36352Improper input validation in the AMD Graphics Driver could allow an at ...check
CVE-2025-0010An out of bounds write in the Linux graphics driver could allow an att ...check
CVE-2025-0032Improper cleanup in AMD CPU microcode patch loading could allow an att ...check
CVE-2025-4382A flaw was found in systems utilizing LUKS-encrypted disks with GRUB c ...double check if vulnerability only considered present after grub_is_cli_disabled is introduced
CVE-2025-4690A regular expression used by AngularJS' linky https://docs.angularjs.o ...check
CVE-2025-6499A vulnerability classified as problematic was found in vstakhov libucl ...check if impacts security wise rspamd, which embeds libucl and uses it a compile time
CVE-2025-8671A mismatch caused by client-triggered server-sent stream resets betwee ...check, some projects will assign own CVEs and should then be covered under that specific CVE instead
CVE-2025-8941A flaw was found in linux-pam. The pam_namespace module may improperly ...check if RedHat specific incomplete fix for CVE-2025-6020
CVE-2025-43960Adminer 4.8.1, when using Monolog for logging, allows a Denial of Serv ...check, does not seem to be fixed in 4.8.2 and later versions
CVE-2025-58064CKEditor 5 is a modern JavaScript rich-text editor with an MVC archite ...check

Search for package or bug name: Reporting problems