Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'ubuntu-pro-14-04-lts'

View all threats tagged with 'ubuntu-pro-14-04-lts'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: ubuntu-pro-14-04-lts

Threats Tagged 'ubuntu-pro-14-04-lts'

Click on any threat for detailed analysis and mitigation recommendations

Openssl: Excessive Memory Use Buffering DTLS Records for a Future Epoch (CVE-2026-54874)CVE-2026-54874
0

Excessive Memory Use Buffering DTLS Records for a Future Epoch

Join the discussion
Openssl: Heap Buffer Overflow in CMS Key Unwrapping (CVE-2026-63072)CVE-2026-63072
0

Heap Buffer Overflow in CMS Key Unwrapping

Join the discussion
The URLS regular expression in nltk/tokenize/casual.py, compiled into TweetTokenizer.WORD_RE and applied by TweetTokenizer.tokenize, contains a… (CVE-2026-72818)CVE-2026-72818
0

The URLS regular expression in nltk/tokenize/casual.py, compiled into TweetTokenizer.WORD_RE and applied by TweetTokenizer.tokenize, contains a naked-domain branch whose domain-label prefix [a-z0-9]+(?:[.\-][a-z0-9]+)* is unbounded. Input consisting of many alternating label separators can be partitioned in exponentially many ways, and because the branch also requires a trailing top-level domain that such input never supplies, the engine explores those partitions before failing at each offset. A few kilobytes of input therefore consumes seconds to minutes of single-threaded CPU, and the HANG_RE substitution performed before matching does not collapse the pattern. TweetTokenizer is intended for tokenizing untrusted social-media text, so any service that applies it, or the module-level casual_tokenize, to submitted text can be stalled per request without authentication. Version 3.10.1 bounds the label repetition.

Join the discussion
(lxml is a library for processing XML and HTML in the Python language. (CVE-2026-49825)CVE-2026-49825
0

CVE-2026-49825 is a vulnerability in the lxml library, a Python library used for processing XML and HTML. It has a CVSS 3.1 base score of 8.2, indicating a high severity with network attack vector, low attack complexity, no privileges required, user interaction required, scope changed, high confidentiality impact, low integrity impact, and no availability impact. Multiple specific versions of lxml are affected, including many Ubuntu package versions. There is no explicit patch or remediation information provided in the available data.

Join the discussion
Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement updateCVE-2026-53583
0

This update includes the following RPMs: libgit2: * libgit2-1.9.7-1.hum1 (aarch64, x86_64) * libgit2-devel-1.9.7-1.hum1 (aarch64, x86_64) * libgit2-1.9.7-1.hum1.src (src)

Join the discussion
Libgit2: [Unknown description] (CVE-2026-53584)CVE-2026-53584
0

CVE-2026-53584 is a medium severity vulnerability in libgit2, a portable C implementation of Git core methods. The flaw involves incorrect handling of submodule paths, which could allow a remote attacker to write files outside the working tree. This vulnerability affects multiple specific versions of libgit2 distributed with various Ubuntu LTS releases. A patch is available from Ubuntu, and users are advised to update to fixed package versions. There are no known exploits in the wild at this time.

Join the discussion
Libgit2: [Unknown description] (CVE-2026-53585)CVE-2026-53585
0

Multiple security vulnerabilities were identified and fixed in libgit2, a portable C implementation of Git core methods. These issues include improper handling of Git Smart Protocol packets, HTTP transport error reporting, repository index files, submodule paths, delta object headers, and HTTP redirects. The vulnerabilities could allow remote attackers to cause denial of service, execute arbitrary code, spoof servers, write files outside the working tree, or leak credentials. The issues affect various Ubuntu LTS releases from 14.04 through 26.04. Fixes are available through Ubuntu security updates and Ubuntu Pro Extended Security Maintenance (ESM).

Join the discussion
Coin3: (Expat through 2.8.3 contains an out-of-bounds read vulnerability that ...) (CVE-2026-76641)CVE-2026-76641
0

(Expat through 2.8.3 contains an out-of-bounds read vulnerability that ...)

Join the discussion
nltk versions before 3.10.2 contain a symlink-based arbitrary file read vulnerability in IPIPANCorpusReader methods that bypass nltk.pathsec… (CVE-2026-62383)CVE-2026-62383
0

nltk versions before 3.10.2 contain a symlink-based arbitrary file read vulnerability in IPIPANCorpusReader methods that bypass nltk.pathsec validation entirely. Attackers can place a symlink in the corpus root directory and read arbitrary files accessible to the process by calling channels(), domains(), categories(), or fileids() methods with the symlink filename.

Join the discussion
NLTK before 3.10.3 contains a remote code execution vulnerability in AllowlistUnpickler that validates only the pickle module string and not the… (CVE-2026-71513)CVE-2026-71513
0

NLTK before 3.10.3 contains a remote code execution vulnerability in AllowlistUnpickler that validates only the pickle module string and not the global name, allowing attackers to resolve dotted names by attribute traversal to callables outside the allowlisted namespace. Attackers can craft untrusted transition-parser models that execute arbitrary commands when TransitionParser.parse loads the model through allowlisted_pickle_load.

Join the discussion

Showing 1 to 10 of 631 results

Filters:Tag: ubuntu-pro-14-04-lts
Page 1 of 64
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses