{"cves":[{"id":"CVE-2025-11021","published":"2025-09-26T09:15:00","updated_at":"2025-12-11T20:19:24.613755+00:00","description":"\nA flaw was found in the cookie date handling logic of the libsoup HTTP\nlibrary, widely used by GNOME and other applications for web communication.\nWhen processing cookies with specially crafted expiration dates, the\nlibrary may perform an out-of-bounds memory read. This flaw could result in\nunintended disclosure of memory contents, potentially exposing sensitive\ninformation from the process using libsoup.","ubuntu_description":"","notes":[{"author":"hlibk","note":"This CVE has an identical fix to CVE-2025-4945"}],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-11021","https://bugzilla.redhat.com/show_bug.cgi?id=2399627","https://gitlab.gnome.org/GNOME/libsoup/-/issues/459","https://access.redhat.com/security/cve/CVE-2025-11021"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1116469"],"patches":{"libsoup3":["upstream: https://gitlab.gnome.org/GNOME/libsoup/-/merge_requests/473"],"libsoup2.4":[]},"tags":{},"packages":[{"name":"libsoup2.4","source":"https://ubuntu.com/security/cve?package=libsoup2.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libsoup2.4","debian":"https://tracker.debian.org/pkg/libsoup2.4","statuses":[{"release_codename":"resolute","status":"released","description":"2.74.3-10.1ubuntu4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"released","description":"2.74.3-6ubuntu1.6","component":null,"pocket":"security"},{"release_codename":"plucky","status":"released","description":"2.74.3-10ubuntu0.4","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"2.62.1-1ubuntu0.4+esm6","component":null,"pocket":"esm-infra"},{"release_codename":"focal","status":"released","description":"2.70.0-1ubuntu0.5+esm1","component":null,"pocket":"esm-infra"},{"release_codename":"jammy","status":"released","description":"2.74.2-3ubuntu0.6","component":null,"pocket":"security"},{"release_codename":"questing","status":"released","description":"2.74.3-10.1ubuntu4","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"2.52.2-1ubuntu0.3+esm5","component":null,"pocket":"esm-infra"}]},{"name":"libsoup3","source":"https://ubuntu.com/security/cve?package=libsoup3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libsoup3","debian":"https://tracker.debian.org/pkg/libsoup3","statuses":[{"release_codename":"resolute","status":"released","description":"3.6.5-3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"released","description":"3.0.7-0ubuntu1+esm5","component":null,"pocket":"esm-apps"},{"release_codename":"noble","status":"released","description":"3.4.4-5ubuntu0.5","component":null,"pocket":"security"},{"release_codename":"plucky","status":"released","description":"3.6.5-1ubuntu0.2","component":null,"pocket":"security"},{"release_codename":"questing","status":"released","description":"3.6.5-3","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-11000","published":"2025-09-26T04:15:00","updated_at":"2026-09-11T06:57:50.138000+00:00","description":"\nA vulnerability was determined in Open Babel up to 3.1.1. This affects the\nfunction PQSFormat::ReadMolecule of the file /src/formats/PQSformat.cpp.\nThis manipulation causes null pointer dereference. The attack is restricted\nto local execution. The exploit has been publicly disclosed and may be\nutilized.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":3.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":3.3,"baseSeverity":"LOW"}},"baseMetricV4":{"cvssV4":{"version":"4.0","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P","baseMetrics":{"exploitabilityMetrics":{"attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"LOW","userInteraction":"NONE"},"vulnerableSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW"},"subsequentSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"}},"baseScore":1.9,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-11000","https://github.com/openbabel/openbabel/issues/2826","https://github.com/user-attachments/files/22318474/poc.zip","https://vuldb.com/?ctiid.325928","https://vuldb.com/?id.325928","https://vuldb.com/?submit.654066"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1116462"],"patches":{"openbabel":[]},"tags":{},"packages":[{"name":"openbabel","source":"https://ubuntu.com/security/cve?package=openbabel","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openbabel","debian":"https://tracker.debian.org/pkg/openbabel","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-10999","published":"2025-09-26T03:15:00","updated_at":"2026-09-11T06:56:05.743295+00:00","description":"\nA vulnerability was found in Open Babel up to 3.1.1. The impacted element\nis the function CacaoFormat::SetHilderbrandt of the file\n/src/formats/cacaoformat.cpp. The manipulation results in null pointer\ndereference. The attack is only possible with local access. The exploit has\nbeen made public and could be used.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":3.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":3.3,"baseSeverity":"LOW"}},"baseMetricV4":{"cvssV4":{"version":"4.0","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P","baseMetrics":{"exploitabilityMetrics":{"attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"LOW","userInteraction":"NONE"},"vulnerableSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW"},"subsequentSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"}},"baseScore":1.9,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-10999","https://github.com/openbabel/openbabel/issues/2827","https://github.com/user-attachments/files/22318503/poc.zip","https://vuldb.com/?ctiid.325927","https://vuldb.com/?id.325927","https://vuldb.com/?submit.654064"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1116462"],"patches":{"openbabel":[]},"tags":{},"packages":[{"name":"openbabel","source":"https://ubuntu.com/security/cve?package=openbabel","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openbabel","debian":"https://tracker.debian.org/pkg/openbabel","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-10998","published":"2025-09-26T03:15:00","updated_at":"2026-09-11T06:56:45.107906+00:00","description":"\nA vulnerability has been found in Open Babel up to 3.1.1. The affected\nelement is the function ChemKinFormat::ReadReactionQualifierLines of the\nfile /src/formats/chemkinformat.cpp. The manipulation leads to null pointer\ndereference. The attack can only be performed from a local environment. The\nexploit has been disclosed to the public and may be used.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":3.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":3.3,"baseSeverity":"LOW"}},"baseMetricV4":{"cvssV4":{"version":"4.0","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P","baseMetrics":{"exploitabilityMetrics":{"attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"LOW","userInteraction":"NONE"},"vulnerableSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW"},"subsequentSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"}},"baseScore":1.9,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-10998","https://github.com/openbabel/openbabel/issues/2829","https://github.com/user-attachments/files/22318526/poc.zip","https://vuldb.com/?ctiid.325926","https://vuldb.com/?id.325926","https://vuldb.com/?submit.654063"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1116462"],"patches":{"openbabel":[]},"tags":{},"packages":[{"name":"openbabel","source":"https://ubuntu.com/security/cve?package=openbabel","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openbabel","debian":"https://tracker.debian.org/pkg/openbabel","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-10997","published":"2025-09-26T03:15:00","updated_at":"2026-09-11T06:58:20.975525+00:00","description":"\nA flaw has been found in Open Babel up to 3.1.1. Impacted is the function\nChemKinFormat::CheckSpecies of the file /src/formats/chemkinformat.cpp.\nExecuting manipulation can lead to heap-based buffer overflow. The attack\ncan only be executed locally. The exploit has been published and may be\nused.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"LOW","baseScore":5.3,"baseSeverity":"MEDIUM"}},"baseMetricV4":{"cvssV4":{"version":"4.0","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P","baseMetrics":{"exploitabilityMetrics":{"attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"LOW","userInteraction":"NONE"},"vulnerableSystemImpactMetrics":{"confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"LOW"},"subsequentSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"}},"baseScore":1.9,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-10997","https://github.com/openbabel/openbabel/issues/2830","https://github.com/user-attachments/files/22318543/poc.zip","https://vuldb.com/?ctiid.325925","https://vuldb.com/?id.325925","https://vuldb.com/?submit.654062"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1116462"],"patches":{"openbabel":[]},"tags":{},"packages":[{"name":"openbabel","source":"https://ubuntu.com/security/cve?package=openbabel","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openbabel","debian":"https://tracker.debian.org/pkg/openbabel","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-10996","published":"2025-09-26T03:15:00","updated_at":"2026-09-11T06:57:57.581483+00:00","description":"\nA vulnerability was detected in Open Babel up to 3.1.1. This issue affects\nthe function OBSmilesParser::ParseSmiles of the file\n/src/formats/smilesformat.cpp. Performing manipulation results in\nheap-based buffer overflow. The attack needs to be approached locally. The\nexploit is now public and may be used.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"LOW","baseScore":5.3,"baseSeverity":"MEDIUM"}},"baseMetricV4":{"cvssV4":{"version":"4.0","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P","baseMetrics":{"exploitabilityMetrics":{"attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"LOW","userInteraction":"NONE"},"vulnerableSystemImpactMetrics":{"confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"LOW"},"subsequentSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"}},"baseScore":1.9,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-10996","https://github.com/openbabel/openbabel/issues/2831","https://github.com/user-attachments/files/22318556/poc.zip","https://vuldb.com/?ctiid.325924","https://vuldb.com/?id.325924","https://vuldb.com/?submit.654060"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1116462"],"patches":{"openbabel":[]},"tags":{},"packages":[{"name":"openbabel","source":"https://ubuntu.com/security/cve?package=openbabel","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openbabel","debian":"https://tracker.debian.org/pkg/openbabel","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-10995","published":"2025-09-26T02:15:00","updated_at":"2026-09-11T06:55:05.978847+00:00","description":"\nA security vulnerability has been detected in Open Babel up to 3.1.1. This\nvulnerability affects the function\nzlib_stream::basic_unzip_streambuf::underflow in the library\n/src/zipstreamimpl.h. Such manipulation leads to memory corruption. Local\naccess is required to approach this attack. The exploit has been disclosed\npublicly and may be used.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"LOW","baseScore":5.3,"baseSeverity":"MEDIUM"}},"baseMetricV4":{"cvssV4":{"version":"4.0","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P","baseMetrics":{"exploitabilityMetrics":{"attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"LOW","userInteraction":"NONE"},"vulnerableSystemImpactMetrics":{"confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"LOW"},"subsequentSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"}},"baseScore":1.9,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-10995","https://github.com/openbabel/openbabel/issues/2832","https://github.com/user-attachments/files/22318572/poc.zip","https://vuldb.com/?ctiid.325923","https://vuldb.com/?id.325923","https://vuldb.com/?submit.654059"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1116462"],"patches":{"openbabel":[]},"tags":{},"packages":[{"name":"openbabel","source":"https://ubuntu.com/security/cve?package=openbabel","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openbabel","debian":"https://tracker.debian.org/pkg/openbabel","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-10994","published":"2025-09-26T02:15:00","updated_at":"2026-09-11T06:57:57.581483+00:00","description":"\nA weakness has been identified in Open Babel up to 3.1.1. This affects the\nfunction GAMESSOutputFormat::ReadMolecule of the file gamessformat.cpp.\nThis manipulation causes use after free. It is possible to launch the\nattack on the local host. The exploit has been made available to the public\nand could be exploited.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"LOW","baseScore":5.3,"baseSeverity":"MEDIUM"}},"baseMetricV4":{"cvssV4":{"version":"4.0","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P","baseMetrics":{"exploitabilityMetrics":{"attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"LOW","userInteraction":"NONE"},"vulnerableSystemImpactMetrics":{"confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"LOW"},"subsequentSystemImpactMetrics":{"confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"NONE"}},"baseScore":1.9,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-10994","https://github.com/openbabel/openbabel/issues/2834","https://github.com/user-attachments/files/22318611/poc.zip","https://vuldb.com/?ctiid.325922","https://vuldb.com/?id.325922","https://vuldb.com/?submit.654057"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1116462"],"patches":{"openbabel":[]},"tags":{},"packages":[{"name":"openbabel","source":"https://ubuntu.com/security/cve?package=openbabel","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openbabel","debian":"https://tracker.debian.org/pkg/openbabel","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-59830","published":"2025-09-26T00:00:00","updated_at":"2026-01-15T13:40:44.080404+00:00","description":"\nRack is a modular Ruby web server interface. Prior to version 2.2.18,\nRack::QueryParser enforces its params_limit only for parameters separated\nby &, while still splitting on both & and ;. As a result, attackers could\nuse ; separators to bypass the parameter count limit and submit more\nparameters than intended. Applications or middleware that directly invoke\nRack::QueryParser with its default configuration (no explicit delimiter)\ncould be exposed to increased CPU and memory consumption. This can be\nabused as a limited denial-of-service vector. This issue has been patched\nin version 2.2.18.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"in 3.x, rack no longer splits on ; since the following commit:\nhttps://github.com/rack/rack/commit/ef1fc0c44e6a4b77c8fcf9b4f3bfa09f04ae8482"}],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-59830","https://github.com/rack/rack/security/advisories/GHSA-625h-95r8-8xpm","https://ubuntu.com/security/notices/USN-7784-1","https://ubuntu.com/security/notices/USN-7960-1"],"bugs":[""],"patches":{"ruby-rack":["upstream: https://github.com/rack/rack/commit/54e4ffdd5affebcb0c015cc6ae74635c0831ed71"]},"tags":{},"packages":[{"name":"ruby-rack","source":"https://ubuntu.com/security/cve?package=ruby-rack","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ruby-rack","debian":"https://tracker.debian.org/pkg/ruby-rack","statuses":[{"release_codename":"noble","status":"released","description":"2.2.7-1ubuntu0.4","component":null,"pocket":"security"},{"release_codename":"plucky","status":"released","description":"2.2.7-1.1ubuntu0.25.04.3","component":null,"pocket":"security"},{"release_codename":"bionic","status":"ignored","description":"changes too intrusive","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"2.0.7-2ubuntu0.1+esm8","component":null,"pocket":"esm-apps"},{"release_codename":"jammy","status":"released","description":"2.1.4-5ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"ignored","description":"changes too intrusive","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.2.18","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"3.1.16-0.1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of ESM support, was ignored [changes too intrusive]","component":null,"pocket":"security"}]}],"notices_ids":["USN-7784-1","USN-7960-1"],"notices":[{"id":"USN-7784-1","title":"Rack vulnerability","summary":"Rack could be made to crash if it received specially crafted network\ntraffic.","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2025-09-29T15:09:24.411581","description":"It was discovered that Rack incorrectly handled limiting the amount of\nparameters. An attacker could possibly use this issue to bypass the\nparams_limit value, leading to a denial of service.","is_hidden":false,"release_packages":{"noble":[{"name":"ruby-rack","version":"2.2.7-1ubuntu0.4","description":"modular Ruby webserver interface","is_source":true},{"name":"ruby-rack","version":"2.2.7-1ubuntu0.4","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby-rack","version_link":"https://launchpad.net/ubuntu/+source/ruby-rack/2.2.7-1ubuntu0.4","pocket":"security"}],"plucky":[{"name":"ruby-rack","version":"2.2.7-1.1ubuntu0.25.04.3","description":"modular Ruby webserver interface","is_source":true},{"name":"ruby-rack","version":"2.2.7-1.1ubuntu0.25.04.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby-rack","version_link":"https://launchpad.net/ubuntu/+source/ruby-rack/2.2.7-1.1ubuntu0.25.04.3","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2025-59830"]},{"id":"USN-7960-1","title":"Rack vulnerabilities","summary":"Several security issues were fixed in Rack.","instructions":"In general, a standard system update will make all the necessary changes.","references":[],"published":"2026-01-14T09:59:03.235968","description":"It was discovered that Rack incorrectly handled certain query parameters.\nAn attacker could possibly use this issue to cause a limited denial of\nservice. This issue was only addressed in Ubuntu 20.04 LTS and\nUbuntu 22.04 LTS. (CVE-2025-59830)\n\nIt was discovered that Rack did not properly handle certain multipart\nform data. An attacker could possibly use this issue to cause memory\nexhaustion, leading to a denial of service. This issue was only addressed\nin Ubuntu 22.04 LTS, Ubuntu 24.04 LTS and Ubuntu 25.10.\n(CVE-2025-61770, CVE-2025-61772)\n\nIt was discovered that Rack did not properly handle certain form fields.\nAn attacker could possibly use this issue to cause memory exhaustion,\nleading to a denial of service. This issue was only addressed in Ubuntu\n22.04 LTS, Ubuntu 24.04 LTS and Ubuntu 25.10. (CVE-2025-61771)\n\nIt was discovered that Rack did not properly handle certain headers. An\nattacker could possibly use this issue to bypass proxy access\nrestrictions and obtain sensitive information. (CVE-2025-61780)\n\nTomoya Yamashita discovered that Rack did not properly manage memory\nunder certain circumstances. An attacker could possibly use this issue to\ncause memory exhaustion, leading to a denial of service. This issue was\nonly addressed in Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS\nand Ubuntu 25.10. (CVE-2025-61919)","is_hidden":false,"release_packages":{"bionic":[{"name":"ruby-rack","version":"1.6.4-4ubuntu0.2+esm9","description":"modular Ruby webserver interface","is_source":true},{"name":"ruby-rack","version":"1.6.4-4ubuntu0.2+esm9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby-rack","version_link":null,"pocket":"esm-apps"}],"focal":[{"name":"ruby-rack","version":"2.0.7-2ubuntu0.1+esm8","description":"modular Ruby webserver interface","is_source":true},{"name":"ruby-rack","version":"2.0.7-2ubuntu0.1+esm8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby-rack","version_link":null,"pocket":"esm-apps"}],"jammy":[{"name":"ruby-rack","version":"2.1.4-5ubuntu1.2","description":"modular Ruby webserver interface","is_source":true},{"name":"ruby-rack","version":"2.1.4-5ubuntu1.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby-rack","version_link":"https://launchpad.net/ubuntu/+source/ruby-rack/2.1.4-5ubuntu1.2","pocket":"security"}],"noble":[{"name":"ruby-rack","version":"2.2.7-1ubuntu0.5","description":"modular Ruby webserver interface","is_source":true},{"name":"ruby-rack","version":"2.2.7-1ubuntu0.5","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby-rack","version_link":"https://launchpad.net/ubuntu/+source/ruby-rack/2.2.7-1ubuntu0.5","pocket":"security"}],"questing":[{"name":"ruby-rack","version":"3.1.16-0.1ubuntu0.1","description":"modular Ruby webserver interface","is_source":true},{"name":"ruby-rack","version":"3.1.16-0.1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby-rack","version_link":"https://launchpad.net/ubuntu/+source/ruby-rack/3.1.16-0.1ubuntu0.1","pocket":"security"}],"xenial":[{"name":"ruby-rack","version":"1.6.4-3ubuntu0.2+esm9","description":"modular Ruby webserver interface","is_source":true},{"name":"ruby-rack","version":"1.6.4-3ubuntu0.2+esm9","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ruby-rack","version_link":null,"pocket":"esm-apps"}]},"type":"USN","cves_ids":["CVE-2025-61771","CVE-2025-59830","CVE-2025-61772","CVE-2025-61770","CVE-2025-61919","CVE-2025-61780"]}]},{"id":"CVE-2025-57632","published":"2025-09-25T20:15:00","updated_at":"2025-10-01T15:19:43.676352+00:00","description":"\nlibsmb2 6.2+ is vulnerable to Buffer Overflow. When processing SMB2 chained\nPDUs (NextCommand), libsmb2 repeatedly calls smb2_add_iovector() to append\nto a fixed-size iovec array without checking the upper bound of v->niov\n(SMB2_MAX_VECTORS=256). An attacker can craft responses with many chained\nPDUs to overflow v->niov and perform heap out-of-bounds writes, causing\nmemory corruption, crashes, and potentially arbitrary code execution. The\nSMB2_OPLOCK_BREAK path bypasses message ID validation.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-57632","https://gist.github.com/ZjW1nd/0b95b63307ceee7890e88e4abc6f041e","https://github.com/sahlberg/libsmb2","https://github.com/sahlberg/libsmb2/blob/master/lib/compat.c#L569"],"bugs":[""],"patches":{"libsmb2":[]},"tags":{},"packages":[{"name":"libsmb2","source":"https://ubuntu.com/security/cve?package=libsmb2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libsmb2","debian":"https://tracker.debian.org/pkg/libsmb2","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-60019","published":"2025-09-25T16:15:00","updated_at":"2025-10-01T15:21:03.939321+00:00","description":"\nglib-networking's OpenSSL backend fails to properly check the return value\nof memory allocation routines. An out of memory condition could potentially\nresult in writing to an invalid memory location.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"In Ubuntu, glib-networking is built with GnuTLS, and not\nOpenSSL, so the vulnerable OpenSSL backend is not used."}],"codename":null,"priority":"medium","cvss3":3.7,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":3.7,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-60019","https://access.redhat.com/security/cve/CVE-2025-60019"],"bugs":["https://gitlab.gnome.org/GNOME/glib-networking/-/issues/227","https://bugzilla.redhat.com/show_bug.cgi?id=2398140"],"patches":{"glib-networking":["upstream: https://gitlab.gnome.org/GNOME/glib-networking/-/merge_requests/263"]},"tags":{},"packages":[{"name":"glib-networking","source":"https://ubuntu.com/security/cve?package=glib-networking","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=glib-networking","debian":"https://tracker.debian.org/pkg/glib-networking","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-60018","published":"2025-09-25T16:15:00","updated_at":"2025-10-01T15:21:41.308988+00:00","description":"\nglib-networking's OpenSSL backend fails to properly check the return value\nof a call to BIO_write(), resulting in an out of bounds read.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"In Ubuntu, glib-networking is built with GnuTLS, and not\nOpenSSL, so the vulnerable OpenSSL backend is not used."}],"codename":null,"priority":"medium","cvss3":4.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":4.8,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-60018","https://access.redhat.com/security/cve/CVE-2025-60018"],"bugs":["https://gitlab.gnome.org/GNOME/glib-networking/-/issues/226","https://bugzilla.redhat.com/show_bug.cgi?id=2398135"],"patches":{"glib-networking":["upstream: https://gitlab.gnome.org/GNOME/glib-networking/-/merge_requests/262"]},"tags":{},"packages":[{"name":"glib-networking","source":"https://ubuntu.com/security/cve?package=glib-networking","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=glib-networking","debian":"https://tracker.debian.org/pkg/glib-networking","statuses":[{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not compiled","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-55560","published":"2025-09-25T16:15:00","updated_at":"2025-10-01T15:21:21.014817+00:00","description":"\nAn issue in pytorch v2.7.0 can lead to a Denial of Service (DoS) when a\nPyTorch model consists of torch.Tensor.to_sparse() and\ntorch.Tensor.to_dense() and is compiled by Inductor.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-55560","https://gist.github.com/shaoyuyoung/0e7d2a586297ae9c8ed14d8706749efc","https://github.com/pytorch/pytorch/issues/151522","https://github.com/pytorch/pytorch/pull/151897"],"bugs":[""],"patches":{"pytorch":[]},"tags":{},"packages":[{"name":"pytorch","source":"https://ubuntu.com/security/cve?package=pytorch","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pytorch","debian":"https://tracker.debian.org/pkg/pytorch","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-55559","published":"2025-09-25T16:15:00","updated_at":"2025-10-08T18:57:05.212977+00:00","description":"\nAn issue was discovered TensorFlow v2.18.0. A Denial of Service (DoS)\noccurs when padding is set to 'valid' in tf.keras.layers.Conv2D.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-55559","https://github.com/tensorflow/tensorflow/issues/84205"],"bugs":[""],"patches":{"tensorflow":[]},"tags":{},"packages":[{"name":"tensorflow","source":"https://ubuntu.com/security/cve?package=tensorflow","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tensorflow","debian":"https://tracker.debian.org/pkg/tensorflow","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-55558","published":"2025-09-25T16:15:00","updated_at":"2025-10-01T15:21:16.108912+00:00","description":"\nA buffer overflow occurs in pytorch v2.7.0 when a PyTorch model consists of\ntorch.nn.Conv2d, torch.nn.functional.hardshrink, and\ntorch.Tensor.view-torch.mv() and is compiled by Inductor, leading to a\nDenial of Service (DoS).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-55558","https://gist.github.com/shaoyuyoung/0e7d2a586297ae9c8ed14d8706749efc","https://github.com/pytorch/pytorch/issues/151523","https://github.com/pytorch/pytorch/pull/151887"],"bugs":[""],"patches":{"pytorch":[]},"tags":{},"packages":[{"name":"pytorch","source":"https://ubuntu.com/security/cve?package=pytorch","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pytorch","debian":"https://tracker.debian.org/pkg/pytorch","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-55557","published":"2025-09-25T16:15:00","updated_at":"2025-10-01T15:17:44.223787+00:00","description":"\nA Name Error occurs in pytorch v2.7.0 when a PyTorch model consists of\ntorch.cummin and is compiled by Inductor, leading to a Denial of Service\n(DoS).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-55557","https://gist.github.com/shaoyuyoung/0e7d2a586297ae9c8ed14d8706749efc","https://github.com/pytorch/pytorch/issues/151738","https://github.com/pytorch/pytorch/pull/151931"],"bugs":[""],"patches":{"pytorch":[]},"tags":{},"packages":[{"name":"pytorch","source":"https://ubuntu.com/security/cve?package=pytorch","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pytorch","debian":"https://tracker.debian.org/pkg/pytorch","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-55556","published":"2025-09-25T16:15:00","updated_at":"2025-10-08T18:53:33.744569+00:00","description":"\nTensorFlow v2.18.0 was discovered to output random results when compiling\nEmbedding, leading to unexpected behavior in the application.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"LOW","availabilityImpact":"LOW","baseScore":6.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-55556","https://github.com/tensorflow/tensorflow/issues/82317"],"bugs":[""],"patches":{"tensorflow":[]},"tags":{},"packages":[{"name":"tensorflow","source":"https://ubuntu.com/security/cve?package=tensorflow","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tensorflow","debian":"https://tracker.debian.org/pkg/tensorflow","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-55554","published":"2025-09-25T16:15:00","updated_at":"2025-10-01T15:19:46.850487+00:00","description":"\npytorch v2.8.0 was discovered to contain an integer overflow in the\ncomponent torch.nan_to_num-.long().","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":5.3,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-55554","https://gist.github.com/shaoyuyoung/0e7d2a586297ae9c8ed14d8706749efc","https://github.com/pytorch/pytorch/issues/151510"],"bugs":[""],"patches":{"pytorch":[]},"tags":{},"packages":[{"name":"pytorch","source":"https://ubuntu.com/security/cve?package=pytorch","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pytorch","debian":"https://tracker.debian.org/pkg/pytorch","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-55553","published":"2025-09-25T16:15:00","updated_at":"2025-10-01T15:21:53.175997+00:00","description":"\nA syntax error in the component proxy_tensor.py of pytorch v2.7.0 allows\nattackers to cause a Denial of Service (DoS).","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-55553","https://gist.github.com/shaoyuyoung/0e7d2a586297ae9c8ed14d8706749efc","https://github.com/pytorch/pytorch/issues/151432","https://github.com/pytorch/pytorch/pull/154645"],"bugs":[""],"patches":{"pytorch":[]},"tags":{},"packages":[{"name":"pytorch","source":"https://ubuntu.com/security/cve?package=pytorch","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pytorch","debian":"https://tracker.debian.org/pkg/pytorch","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2025-55552","published":"2025-09-25T16:15:00","updated_at":"2025-10-01T15:17:53.798415+00:00","description":"\npytorch v2.8.0 was discovered to display unexpected behavior when the\ncomponents torch.rot90 and torch.randn_like are used together.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.3,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW","baseScore":5.3,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2025-55552","https://gist.github.com/shaoyuyoung/0e7d2a586297ae9c8ed14d8706749efc","https://github.com/pytorch/pytorch/issues/147847"],"bugs":[""],"patches":{"pytorch":[]},"tags":{},"packages":[{"name":"pytorch","source":"https://ubuntu.com/security/cve?package=pytorch","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=pytorch","debian":"https://tracker.debian.org/pkg/pytorch","statuses":[{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":19040,"limit":20,"total_results":79316}