CVE-2026-88924Gvfs: gvfs-admin socket ownership race permits local root Exploitation status Public exploit Fix YesAffected product G gvfs Published 09/10/2026 Severity High CVE-2026-84270Gvfs: mtp: out-of-bounds read in do_read() Exploitation status Not known exploited Fix YesAffected product G gvfs Published 09/01/2026 Severity Medium CVE-2026-84269Gvfs: afp: heap-based buffer overflow in dsi read path Exploitation status Public exploit Fix YesAffected product G gvfs Published 09/01/2026 Severity Medium CVE-2026-84267Gvfs: sftp: uninitialized heap disclosure in read_string() Exploitation status Public exploit Fix YesAffected product G gvfs Published 09/01/2026 Severity Medium CVE-2026-84268Gvfs: sftp: heap-based buffer overflow in read_reply() Exploitation status Not known exploited Fix YesAffected product G gvfs Published 09/01/2026 Severity High CVE-2026-82343Gimp: heap out-of-bounds read and stack out-of-bounds access in psd loader from channel-count handling Exploitation status Not known exploited Fix Not confirmed Affected product G GIMP Published 08/28/2026 Severity Medium CVE-2026-82330Gimp: heap out-of-bounds read in pvr vq (compressed) decoder due to missing bounds check Exploitation status Public exploit Fix Not confirmed Affected product G GIMP Published 08/28/2026 Severity Medium CVE-2026-82328Gimp: heap out-of-bounds read in ico loader via unvalidated used_clrs palette count Exploitation status Public exploit Fix Not confirmed Affected product G GIMP Published 08/28/2026 Severity Medium CVE-2026-82324Gimp: heap out-of-bounds reads in iff/ilbm loader from ham row size mismatch and nplanes=0 Exploitation status Not known exploited Fix Not confirmed Affected product G GIMP Published 08/28/2026 Severity Medium CVE-2026-77652Dia: dia: heap buffer overflow in wpg colormap parser via out-of-bounds palette index Exploitation status Public exploit Fix YesAffected product D Dia Published 08/26/2026 Severity High CVE-2026-79902Gimp: stack vla size underflow denial of service in seattle Exploitation status Public exploit Fix Not confirmed Affected product G GIMP Published 08/26/2026 Severity Medium CVE-2026-77658Dia: dia: stack buffer overflow in bus object via unvalidated handle count in project files Exploitation status Public exploit Fix YesAffected product D Dia Published 08/26/2026 Severity High CVE-2026-80101Gimp: multiple heap out-of-bounds reads in xwd loader from unrelated width and bytes-per-line validation Exploitation status Public exploit Fix Not confirmed Affected product G GIMP Published 08/25/2026 Severity Medium CVE-2026-78475Gimp: unbounded stack vla and 21-byte stack over-read in pix (esm) loader Exploitation status Not known exploited Fix Not confirmed Affected product G GIMP Published 08/24/2026 Severity Medium CVE-2026-78465Gimp: integer overflow in pcx loader (planes=4) leads to heap overflow on 32-bit Exploitation status Public exploit Fix Not confirmed Affected product G GIMP Published 08/24/2026 Severity High CVE-2026-18487Epiphany: address bar / host spoofing via userinfo in ephy_uri_get_decoded_host() Exploitation status Not known exploited Fix Not confirmed Affected product E Epiphany Published 08/06/2026 Severity Medium CVE-2026-18358Gnome-remote-desktop: gnome-remote-desktop system-mode rdp server missing connection throttling allows unauthenticated denial of service Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 07/31/2026 Severity High CVE-2026-66759Gimp: out-of-bounds read in file-icns plugin causes information disclosure or crash on crafted icns images Exploitation status Public exploit Fix Not confirmed Affected product G GIMP Published 07/27/2026 Severity High CVE-2026-66757Gimp: signed integer overflow in file-sgi (sgi-lib) causes the plugin to crash on rle sgi images Exploitation status Public exploit Fix Not confirmed Affected product G GIMP Published 07/27/2026 Severity Medium CVE-2026-66758Gimp: integer overflow in file-fits plugin causes a heap-based buffer overflow on crafted fits images Exploitation status Not known exploited Fix Not confirmed Affected product G GIMP Published 07/27/2026 Severity High CVE-2026-66337Libsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_input_stream_read_until() Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 07/24/2026 Severity Medium CVE-2026-66338Libsoup: libsoup: http request smuggling via permissive chunk-size parsing in soup_body_input_stream_read_chunked() Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 07/24/2026 Severity Medium CVE-2026-66339Libsoup: libsoup: proxy credentials leak to destination server via proxy-authorization header in connect tunnels Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 07/24/2026 Severity Medium CVE-2026-16768Gdk-pixbuf: out-of-bounds read in ico parser Exploitation status Public exploit Fix Not confirmed Affected product G Gdk-Pixbuf Published 07/23/2026 Severity Medium CVE-2026-16615Librest: weak random number generation in pkce implementation Exploitation status Not known exploited Fix Not confirmed Affected product L librest Published 07/22/2026 Severity Medium CVE-2026-12548Libsoup: heap out-of-bounds read in libsoup due to integer truncation Exploitation status Public exploit Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 07/21/2026 Severity Medium CVE-2026-58016Glib: integer underflow in gio/gdbusintrospection.c via "g_dbus_node_info_new_for_xml" Exploitation status Not known exploited Fix YesAffected product G glib Published 06/30/2026 Severity High CVE-2026-58015Glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive Exploitation status Not known exploited Fix YesAffected product G glib Published 06/30/2026 Severity Medium CVE-2026-58014Glib: off-by-one error in glib/gkeyfile.c via "g_key_file_get_locale_string_list" Exploitation status Public exploit Fix YesAffected product G glib Published 06/30/2026 Severity High CVE-2026-58013Glib: buffer over-read in glib/giochannel.c via "g_io_channel_read_line_backend" Exploitation status Not known exploited Fix YesAffected product G glib Published 06/30/2026 Severity Medium CVE-2026-58012Glib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char() Exploitation status Not known exploited Fix YesAffected product G glib Published 06/30/2026 Severity Medium CVE-2026-58011Glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid gdatetime Exploitation status Public exploit Fix YesAffected product G glib Published 06/30/2026 Severity Medium CVE-2026-58010Glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal() Exploitation status Not known exploited Fix YesAffected product G glib Published 06/30/2026 Severity Medium CVE-2026-13601Yelp: yelp-xsl: overly permissive content security policy in yelp allows host file disclosure from flatpak applications Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 7 Extended Lifecycle Support Published 06/29/2026 Severity High CVE-2026-12549Libsoup: incomplete fix for cve-2026-2443: range suffix overflow in libsoup soupserver Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 06/22/2026 Severity Medium CVE-2026-6653libxml2: Use after free in xmlParseInternalSubset via improper entity resolution handling Exploitation status Not known exploited Fix YesAffected product L libxml2 Published 06/22/2026 Severity High CVE-2026-2604Evolution-data-server: evolution data server: arbitrary file deletion via inconsistent uri handling Exploitation status Public exploit Fix YesAffected product E Evolution Data Server Published 06/16/2026 Severity Medium CVE-2026-1767Localsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leading to denial of service or information disclosure via malformed mp3 id3 tags Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 06/16/2026 Severity Medium CVE-2026-1766Localsearch: tracker-miners: gnome localsearch mp3 extractor: denial of service and information disclosure via malformed mp3 files. Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 06/16/2026 Severity Medium CVE-2026-1764Localsearch: tracker-miners: gnome localsearch mp3 extractor: heap buffer overflow leads to denial of service or information disclosure when parsing mp3 files Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 06/16/2026 Severity Medium CVE-2026-44931malcontent: Disk Space Exhaustion via Globally Accessible D-Bus API Exploitation status Not known exploited Fix YesAffected product M malcontent Published 05/13/2026 Severity Medium CVE-2026-2708Libsoup: libsoup: http request smuggling via duplicate content-length headers Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 04/23/2026 Severity Low CVE-2026-5201Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 03/31/2026 Severity High CVE-2026-5119Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 03/30/2026 Severity Medium CVE-2026-2436Libsoup: libsoup: denial of service via use-after-free in soupserver during tls handshake Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 03/26/2026 Severity Medium CVE-2026-2369Libsoup: libsoup: buffer overread due to integer underflow when handling zero-length resources Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 03/19/2026 Severity Medium CVE-2026-4271Libsoup: libsoup: denial of service via use-after-free in http/2 server Exploitation status Public exploit Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 03/17/2026 Severity Medium CVE-2026-3633Libsoup: libsoup: header and http request injection via crlf injection Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 03/17/2026 Severity Low CVE-2026-3632Libsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 03/17/2026 Severity Low CVE-2026-3634Libsoup: libsoup: http header injection and response splitting via crlf injection in content-type header Exploitation status Public exploit Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 03/17/2026 Severity Low CVE-2026-3099Libsoup: libsoup: authentication bypass via digest authentication replay attack Exploitation status Not known exploited Fix Not confirmed Affected product Not confirmed Published 03/12/2026 Severity Medium CVE-2026-2443Libsoup: out-of-bounds read in libsoup handle_partial_get() leading to heap information disclosure Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 02/13/2026 Severity Medium CVE-2026-1801Libsoup: libsoup: http request smuggling via malformed chunk headers Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 02/03/2026 Severity Medium CVE-2020-37011Gnome Fonts Viewer 3.34.0 Heap Corruption Exploitation status Public exploit Fix Not confirmed Affected product F Fonts Viewer Published 01/29/2026 Severity High CVE-2026-1539Libsoup: libsoup: credential leakage via http redirects Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 01/28/2026 Severity Medium CVE-2026-1536Libsoup: libsoup: http header injection or response splitting via crlf injection in content-disposition header Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 01/28/2026 Severity Medium CVE-2026-1467Libsoup: libsoup: http header injection via specially crafted urls when an http proxy is configured Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 01/27/2026 Severity Medium CVE-2025-14512Glib: integer overflow in glib gio attribute escaping causes heap buffer overflow Exploitation status Not known exploited Fix YesAffected product G glib Published 12/11/2025 Severity Medium CVE-2025-14087Glib: glib: buffer underflow in gvariant parser leads to heap corruption Exploitation status Not known exploited Fix YesAffected product G glib Published 12/10/2025 Severity Medium CVE-2025-13601Glib: integer overflow in in g_escape_uri_string() Exploitation status Not known exploited Fix YesAffected product R Red Hat Enterprise Linux 10 Published 11/26/2025 Severity High CVE-2025-12105Libsoup: heap use-after-free in libsoup message queue handling during http/2 read completion Exploitation status Not known exploited Fix YesAffected product L libsoup Published 10/23/2025 Severity High CVE-2025-4056Glib: glib crash after long command line Exploitation status Public exploit Fix YesAffected product G glib Published 07/28/2025 Severity High CVE-2025-7424Libxslt: type confusion in xmlnode.psvi between stylesheet and source nodes Exploitation status Not known exploited Fix YesAffected product L libxslt Published 07/10/2025 Severity High CVE-2025-7425Libxslt: libxml2: heap use-after-free in libxslt caused by atype corruption in xmlattrptr Exploitation status Public exploit Fix YesAffected product L libxml2 Published 07/10/2025 Severity High CVE-2025-6199Gdk-pixbuf: uninitialized memory disclosure in gdkpixbuf gif lzw decoder Exploitation status Not known exploited Fix YesAffected product R Red Hat Enterprise Linux 10 Published 06/17/2025 Severity Low CVE-2025-6196Libgepub: integer overflow in libgepub's epub archive handling Exploitation status Not known exploited Fix YesAffected product R Red Hat Enterprise Linux 7 Published 06/17/2025 Severity Medium CVE-2025-49795Libxml: null pointer dereference leads to denial of service (dos) Exploitation status Not known exploited Fix YesAffected product L libxml2 Published 06/16/2025 Severity High CVE-2025-6052Glib: integer overflow in g_string_maybe_expand() leading to potential buffer overflow in glib gstring Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 10 Published 06/13/2025 Severity Low CVE-2023-5616Exploitation status Not known exploited Fix YesAffected product U Ubuntu's gnome-control-center Published 04/15/2025 Severity Medium CVE-2025-3155Yelp: arbitrary file read Exploitation status Public exploit Fix YesAffected product R Red Hat Enterprise Linux 8 Published 04/03/2025 Severity High CVE-2025-2784Libsoup: heap buffer over-read in `skip_insignificant_space` when sniffing content Exploitation status Public exploit Fix YesAffected product R Red Hat Enterprise Linux 10 Published 04/03/2025 Severity High CVE-2022-1736Exploitation status Not known exploited Fix YesAffected product U Ubuntu's gnome-control-center Published 01/31/2025 Severity Critical CVE-2023-43091Gnome-maps: gnome maps is vulnerable to a code injection attack (similar to xss) via its service.json Exploitation status Public exploit Fix YesAffected product G gnome-maps Published 11/17/2024 Severity Critical CVE-2024-52531Exploitation status Public exploit Fix YesAffected product L libsoup Published 11/11/2024 Severity High CVE-2024-52530Exploitation status Not known exploited Fix Not confirmed Affected product Not confirmed Published 11/11/2024 Severity High CVE-2024-52533Exploitation status Not known exploited Fix Not confirmed Affected product Not confirmed Published 11/11/2024 Severity Critical CVE-2024-52532Exploitation status Not known exploited Fix Not confirmed Affected product Not confirmed Published 11/11/2024 Severity High CVE-2024-42415Exploitation status Public exploit Fix Not confirmed Affected product G G Structured File Library (libgsf) Published 10/03/2024 Severity High CVE-2024-36474Exploitation status Public exploit Fix Not confirmed Affected product G G Structured File Library (libgsf) Published 10/03/2024 Severity High CVE-2024-34397Exploitation status Not known exploited Fix Not confirmed Affected product Not confirmed Published 05/07/2024 Severity Medium CVE-2020-36774Exploitation status Public exploit Fix Not confirmed Affected product Not confirmed Published 02/19/2024 Severity Medium CVE-2022-48622Exploitation status Public exploit Fix Not confirmed Affected product Not confirmed Published 01/26/2024 Severity High CVE-2023-5557Tracker-miners: sandbox escape Exploitation status Not confirmed Fix Not confirmed Affected product R Red Hat Enterprise Linux 8 Published 10/13/2023 Severity High CVE-2023-43090Gnome-shell: screenshot tool allows viewing open windows when session is locked Exploitation status Not known exploited Fix YesAffected product G gnome-shell Published 09/22/2023 Severity Medium CVE-2023-32636Exploitation status Not known exploited Fix Not confirmed Affected product G glib Published 09/14/2023 Severity Medium CVE-2023-32643Exploitation status Not known exploited Fix Not confirmed Affected product Not confirmed Published 09/14/2023 Severity Medium CVE-2023-32611G_variant_byteswap() can take a long time with some non-normal inputs Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 8 Published 09/14/2023 Severity Medium CVE-2023-29499Gvariant offset table entry size is not checked in is_normal() Exploitation status Not known exploited Fix Not confirmed Affected product R Red Hat Enterprise Linux 8 Published 09/14/2023 Severity Medium CVE-2023-32665Gvariant deserialisation does not match spec for non-normal data Exploitation status Public exploit Fix Not confirmed Affected product R Red Hat Enterprise Linux 8 Published 09/14/2023 Severity Medium CVE-2023-36250Exploitation status Public exploit Fix Not confirmed Affected product Not confirmed Published 09/14/2023 Severity High CVE-2023-38633Exploitation status Not confirmed Fix Not confirmed Affected product Not confirmed Published 07/22/2023 Severity Unknown CVE-2023-26081Exploitation status Public exploit Fix Not confirmed Affected product Not confirmed Published 02/20/2023 Severity High CVE-2019-25085GNOME gvdb gvdb-builder.c gvdb_table_write_contents_async use after free Exploitation status Not confirmed Fix YesAffected product G gvdb Published 12/26/2022 Severity Medium CVE-2022-37290Exploitation status Public exploit Fix Not confirmed Affected product Not confirmed Published 11/14/2022 Severity Medium CVE-2021-42522Exploitation status Not confirmed Fix Not confirmed Affected product G GNOME anjuta Published 08/25/2022 Severity Unknown CVE-2021-3800Exploitation status Not confirmed Fix Not confirmed Affected product G Glib Published 08/23/2022 Severity Unknown CVE-2021-46829Exploitation status Not confirmed Fix Not confirmed Affected product Not confirmed Published 07/24/2022 Severity Unknown CVE-2021-3982Exploitation status Not confirmed Fix Not confirmed Affected product G gnome-shell Published 04/29/2022 Severity Unknown CVE-2022-29536Exploitation status Not confirmed Fix Not confirmed Affected product Not confirmed Published 04/20/2022 Severity Unknown CVE-2021-3567Exploitation status Not confirmed Fix Not confirmed Affected product C caribou Published 03/25/2022 Severity Unknown