Canonical Ubuntu Linux vulnerabilities
4,117 known vulnerabilities affecting canonical/ubuntu_linux.
Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222
Vulnerabilities
Page 103 of 206
CVE-2014-7145P4HIGHCVSS 7.8v12.042014-09-28
CVE-2014-7145 [HIGH] CWE-399 CVE-2014-7145: The SMB2_tcon function in fs/cifs/smb2pdu.c in the Linux kernel before 3.16.3 allows remote CIFS ser
The SMB2_tcon function in fs/cifs/smb2pdu.c in the Linux kernel before 3.16.3 allows remote CIFS servers to cause a denial of service (NULL pointer dereference and client system crash) or possibly have unspecified other impact by deleting the IPC$ share during resolution of DFS referrals.
nvd
CVE-2016-1695P4HIGHCVSS 8.8v14.04v15.10+1 more2016-06-05
CVE-2016-1695 [HIGH] CVE-2016-1695: Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.63 allow attackers to cause a
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.63 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
nvd
CVE-2016-1703P4HIGHCVSS 8.8v14.04v15.10+1 more2016-06-05
CVE-2016-1703 [HIGH] CVE-2016-1703: Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.79 allow attackers to cause a
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.79 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
nvd
CVE-2018-12370P4HIGHCVSS 8.8v14.04v16.04+2 more2018-10-18
CVE-2018-12370 [HIGH] CWE-352 CVE-2018-12370: In Reader View SameSite cookie protections are not checked on exiting. This allows for a payload to
In Reader View SameSite cookie protections are not checked on exiting. This allows for a payload to be triggered when Reader View is exited if loaded by a malicious site while Reader mode is active, bypassing CSRF protections. This vulnerability affects Firefox < 61.
nvd
CVE-2019-13377P4MEDIUMCVSS 5.9v18.04v19.042019-08-15
CVE-2019-13377 [MEDIUM] CWE-203 CVE-2019-13377: The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable
The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable to side-channel attacks as a result of observable timing differences and cache access patterns when Brainpool curves are used. An attacker may be able to gain leaked information from a side-channel attack that can be used for full password recovery.
nvd
CVE-2008-5018P4CRITICALCVSS 10.0v6.06v7.10+2 more2008-11-13
CVE-2008-5018 [CRITICAL] CWE-399 CVE-2008-5018: The JavaScript engine in Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird
The JavaScript engine in Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to cause a denial of service (crash) via vectors related to "insufficient class checking" in the Date class.
nvd
CVE-2013-4668P4MEDIUMCVSS 5.0v12.10v13.042013-07-18
CVE-2013-4668 [MEDIUM] CWE-22 CVE-2013-4668: Directory traversal vulnerability in File Roller 3.6.x before 3.6.4, 3.8.x before 3.8.3, and 3.9.x b
Directory traversal vulnerability in File Roller 3.6.x before 3.6.4, 3.8.x before 3.8.3, and 3.9.x before 3.9.3, when libarchive is used, allows remote attackers to create arbitrary files via a crafted archive that is not properly handled in a "Keep directory structure" action, related to fr-archive-libarchive.c and fr-window.c.
nvd
CVE-2013-6391P4MEDIUMCVSS 5.8v13.102013-12-14
CVE-2013-6391 [MEDIUM] CWE-269 CVE-2013-6391: The ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1 and Icehouse before icehou
The ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1 and Icehouse before icehouse-2 does not return a trust-scoped token when one is received, which allows remote trust users to gain privileges by generating EC2 credentials from a trust-scoped token and using them in an ec2tokens API request.
nvd
CVE-2015-3308P4HIGHCVSS 7.5v15.042015-09-02
CVE-2015-3308 [HIGH] CVE-2015-3308: Double free vulnerability in lib/x509/x509_ext.c in GnuTLS before 3.3.14 allows remote attackers to
Double free vulnerability in lib/x509/x509_ext.c in GnuTLS before 3.3.14 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted CRL distribution point.
nvd
CVE-2010-2527P4MEDIUMCVSS 6.8v6.06v8.04+3 more2010-08-19
CVE-2010-2527 [MEDIUM] CWE-120 CVE-2010-2527: Multiple buffer overflows in demo programs in FreeType before 2.4.0 allow remote attackers to cause
Multiple buffer overflows in demo programs in FreeType before 2.4.0 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
nvd
CVE-2010-2498P4MEDIUMCVSS 6.8v6.06v8.04+3 more2010-08-19
CVE-2010-2498 [MEDIUM] CWE-787 CVE-2010-2498: The psh_glyph_find_strong_points function in pshinter/pshalgo.c in FreeType before 2.4.0 does not pr
The psh_glyph_find_strong_points function in pshinter/pshalgo.c in FreeType before 2.4.0 does not properly implement hinting masks, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted font file that triggers an invalid free operation.
nvd
CVE-2011-4566P3MEDIUMCVSS 6.4v8.04v10.04+3 more2011-11-29
CVE-2011-4566 [MEDIUM] CVE-2011-4566: Integer overflow in the exif_process_IFD_TAG function in exif.c in the exif extension in PHP 5.4.0be
Integer overflow in the exif_process_IFD_TAG function in exif.c in the exif extension in PHP 5.4.0beta2 on 32-bit platforms allows remote attackers to read the contents of arbitrary memory locations or cause a denial of service via a crafted offset_val value in an EXIF header in a JPEG file, a different vulnerability than CVE-2011-0708.
nvd
CVE-2015-3451P4MEDIUMCVSS 5.0v12.04v14.04+2 more2015-05-12
CVE-2015-3451 [MEDIUM] CWE-611 CVE-2015-3451: The _clone function in XML::LibXML before 2.0119 does not properly set the expand_entities option, w
The _clone function in XML::LibXML before 2.0119 does not properly set the expand_entities option, which allows remote attackers to conduct XML external entity (XXE) attacks via crafted XML data to the (1) new or (2) load_xml function.
nvd
CVE-2019-18677P4MEDIUMCVSS 6.1v16.04v18.04+2 more2019-11-26
CVE-2019-18677 [MEDIUM] CWE-352 CVE-2019-18677: An issue was discovered in Squid 3.x and 4.x through 4.8 when the append_domain setting is used (bec
An issue was discovered in Squid 3.x and 4.x through 4.8 when the append_domain setting is used (because the appended characters do not properly interact with hostname length restrictions). Due to incorrect message processing, it can inappropriately redirect traffic to origins it should not be delivered to.
nvd
CVE-2018-20191P4HIGHCVSS 7.5v14.04v16.04+2 more2018-12-20
CVE-2018-20191 [HIGH] CWE-476 CVE-2018-20191: hw/rdma/vmw/pvrdma_main.c in QEMU does not implement a read operation (such as uar_read by analogy t
hw/rdma/vmw/pvrdma_main.c in QEMU does not implement a read operation (such as uar_read by analogy to uar_write), which allows attackers to cause a denial of service (NULL pointer dereference).
nvd
CVE-2019-7398P4HIGHCVSS 7.5v16.04v18.04+2 more2019-02-05
CVE-2019-7398 [HIGH] CWE-401 CVE-2019-7398: In ImageMagick before 7.0.8-25, a memory leak exists in WriteDIBImage in coders/dib.c.
In ImageMagick before 7.0.8-25, a memory leak exists in WriteDIBImage in coders/dib.c.
nvd
CVE-2014-9842P4HIGHCVSS 7.5v12.04v14.04+2 more2017-03-20
CVE-2014-9842 [HIGH] CWE-400 CVE-2014-9842: Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attac
Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
nvd
CVE-2014-9850P4HIGHCVSS 7.5v12.04v14.04+2 more2017-03-20
CVE-2014-9850 [HIGH] CWE-399 CVE-2014-9850: Logic error in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (resource co
Logic error in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (resource consumption).
nvd
CVE-2019-14870P3MEDIUMCVSS 5.4v14.04v16.04+3 more2019-12-10
CVE-2019-14870 [MEDIUM] CWE-285 CVE-2019-14870: All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue
All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue, where the S4U (MS-SFU) Kerberos delegation model includes a feature allowing for a subset of clients to be opted out of constrained delegation in any way, either S4U2Self or regular Kerberos authentication, by forcing all tickets for these clients t
nvd
CVE-2016-0795P4HIGHCVSS 7.8v12.04v14.04+1 more2016-02-18
CVE-2016-0795 [HIGH] CWE-119 CVE-2016-0795: LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or
LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (lwp) document.
nvd