cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 110 of 206
CVE-2017-11111P4HIGHCVSS 7.8v14.042017-07-08
CVE-2017-11111 [HIGH] CWE-119 CVE-2017-11111: In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
nvd
CVE-2015-8899P4HIGHCVSS 7.5v15.10v16.042016-06-30
CVE-2015-8899 [HIGH] CWE-20 CVE-2015-8899: Dnsmasq before 2.76 allows remote servers to cause a denial of service (crash) via a reply with an e Dnsmasq before 2.76 allows remote servers to cause a denial of service (crash) via a reply with an empty DNS address that has an (1) A or (2) AAAA record defined locally.
nvd
CVE-2015-0831P4MEDIUMCVSS 6.8v12.04v14.04+1 more2015-02-25
CVE-2015-0831 [MEDIUM] CVE-2015-0831: Use-after-free vulnerability in the mozilla::dom::IndexedDB::IDBObjectStore::CreateIndex function in Use-after-free vulnerability in the mozilla::dom::IndexedDB::IDBObjectStore::CreateIndex function in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via crafted content that is improperly handled during IndexedDB index
nvd
CVE-2018-7052P4HIGHCVSS 7.5v14.04v16.04+1 more2018-02-15
CVE-2018-7052 [HIGH] CWE-476 CVE-2018-7052: An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. When the number of windows exc An issue was discovered in Irssi before 1.0.7 and 1.1.x before 1.1.1. When the number of windows exceeds the available space, a crash due to a NULL pointer dereference would occur.
nvd
CVE-2018-5711P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-01-16
CVE-2018-5711 [MEDIUM] CWE-681 CVE-2018-5711: gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.33, 7.0.x before 7.0.2 gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1, has an integer signedness error that leads to an infinite loop via a crafted GIF file, as demonstrated by a call to the imagecreatefromgif or imagecreatefromstring PHP function. This is related to GetCode_
nvd
CVE-2015-1212P4HIGHCVSS 7.5v14.04v14.102015-02-06
CVE-2015-1212 [HIGH] CVE-2015-1212: Multiple unspecified vulnerabilities in Google Chrome before 40.0.2214.111 on Windows, OS X, and Lin Multiple unspecified vulnerabilities in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
nvd
CVE-2018-16543P4HIGHCVSS 7.8v14.04v16.04+1 more2018-09-05
CVE-2018-16543 [HIGH] CVE-2018-16543: In Artifex Ghostscript before 9.24, gssetresolution and gsgetresolution allow attackers to have an u In Artifex Ghostscript before 9.24, gssetresolution and gsgetresolution allow attackers to have an unspecified impact.
nvd
CVE-2020-5313P4HIGHCVSS 7.1v14.04v16.04+2 more2020-01-03
CVE-2020-5313 [HIGH] CWE-125 CVE-2020-5313: libImaging/FliDecode.c in Pillow before 6.2.2 has an FLI buffer overflow. libImaging/FliDecode.c in Pillow before 6.2.2 has an FLI buffer overflow.
nvd
CVE-2013-0894P4HIGHCVSS 7.5v12.04v12.102013-02-23
CVE-2013-0894 [HIGH] CWE-120 CVE-2013-0894: Buffer overflow in the vorbis_parse_setup_hdr_floors function in the Vorbis decoder in vorbisdec.c i Buffer overflow in the vorbis_parse_setup_hdr_floors function in the Vorbis decoder in vorbisdec.c in libavcodec in FFmpeg through 1.1.3, as used in Google Chrome before 25.0.1364.97 on Windows and Linux and before 25.0.1364.99 on Mac OS X and other products, allows remote attackers to cause a denial of service (divide-by-zero error or out-of-bounds arr
nvd
CVE-2015-1237P4HIGHCVSS 7.5v14.04v14.10+1 more2015-04-19
CVE-2015-1237 [HIGH] CVE-2015-1237: Use-after-free vulnerability in the RenderFrameImpl::OnMessageReceived function in content/renderer/ Use-after-free vulnerability in the RenderFrameImpl::OnMessageReceived function in content/renderer/render_frame_impl.cc in Google Chrome before 42.0.2311.90 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger renderer IPC messages during a detach operation.
nvd
CVE-2018-1000880P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-12-20
CVE-2018-1000880 [MEDIUM] CWE-119 CVE-2018-1000880: libarchive version commit 9693801580c0cf7c70e862d305270a16b52826a7 onwards (release v3.2.0 onwards) libarchive version commit 9693801580c0cf7c70e862d305270a16b52826a7 onwards (release v3.2.0 onwards) contains a CWE-20: Improper Input Validation vulnerability in WARC parser - libarchive/archive_read_support_format_warc.c, _warc_read() that can result in DoS - quasi-infinite run time and disk usage from tiny file. This attack appear to be exploit
nvd
CVE-2015-1216P4HIGHCVSS 7.5v14.04v14.102015-03-09
CVE-2015-1216 [HIGH] CVE-2015-1216: Use-after-free vulnerability in the V8Window::namedPropertyGetterCustom function in bindings/core/v8 Use-after-free vulnerability in the V8Window::namedPropertyGetterCustom function in bindings/core/v8/custom/V8WindowCustom.cpp in the V8 bindings in Blink, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a frame detachment.
nvd
CVE-2015-1218P4HIGHCVSS 7.5v14.04v14.102015-03-09
CVE-2015-1218 [HIGH] CVE-2015-1218: Multiple use-after-free vulnerabilities in the DOM implementation in Blink, as used in Google Chrome Multiple use-after-free vulnerabilities in the DOM implementation in Blink, as used in Google Chrome before 41.0.2272.76, allow remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger movement of a SCRIPT element to different documents, related to (1) the HTMLScriptElement::didMoveToNewDocument function i
nvd
CVE-2018-17336P4HIGHCVSS 7.8v18.042018-09-22
CVE-2018-17336 [HIGH] CWE-134 CVE-2018-17336: UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers to obtain sensitive information (stack contents), cause a denial of service (memory corruption), or possibly have unspecified other impact via a malformed filesystem label, as demonstrated by %d or %n substrings.
nvd
CVE-2016-4951P4HIGHCVSS 7.8v14.04v15.10+1 more2016-05-23
CVE-2016-4951 [HIGH] CVE-2016-4951: The tipc_nl_publ_dump function in net/tipc/socket.c in the Linux kernel through 4.6 does not verify The tipc_nl_publ_dump function in net/tipc/socket.c in the Linux kernel through 4.6 does not verify socket existence, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a dumpit operation.
nvd
CVE-2017-18075P4HIGHCVSS 7.8v14.04v16.042018-01-24
CVE-2017-18075 [HIGH] CWE-763 CVE-2017-18075: crypto/pcrypt.c in the Linux kernel before 4.14.13 mishandles freeing instances, allowing a local us crypto/pcrypt.c in the Linux kernel before 4.14.13 mishandles freeing instances, allowing a local user able to access the AF_ALG-based AEAD interface (CONFIG_CRYPTO_USER_API_AEAD) and pcrypt (CONFIG_CRYPTO_PCRYPT) to cause a denial of service (kfree of an incorrect pointer) or possibly have unspecified other impact by executing a crafted sequence of s
nvd
CVE-2019-3498P4MEDIUMCVSS 6.5v14.04v16.04+2 more2019-01-09
CVE-2019-3498 [MEDIUM] CWE-74 CVE-2019-3498: In Django 1.11.x before 1.11.18, 2.0.x before 2.0.10, and 2.1.x before 2.1.5, an Improper Neutraliza In Django 1.11.x before 1.11.18, 2.0.x before 2.0.10, and 2.1.x before 2.1.5, an Improper Neutralization of Special Elements in Output Used by a Downstream Component issue exists in django.views.defaults.page_not_found(), leading to content spoofing (in a 404 error page) if a user fails to recognize that a crafted URL has malicious content.
nvd
CVE-2008-2934P4HIGHCVSS 8.8v8.042008-07-18
CVE-2008-2934 [HIGH] CWE-908 CVE-2008-2934: Mozilla Firefox 3 before 3.0.1 on Mac OS X allows remote attackers to cause a denial of service (app Mozilla Firefox 3 before 3.0.1 on Mac OS X allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file that triggers a free of an uninitialized pointer.
nvd
CVE-2018-16851P4MEDIUMCVSS 6.5v12.04v14.04+3 more2018-11-28
CVE-2018-16851 [MEDIUM] CWE-476 CVE-2018-16851: Samba from version 4.0.0 and before versions 4.7.12, 4.8.7, 4.9.3 is vulnerable to a denial of servi Samba from version 4.0.0 and before versions 4.7.12, 4.8.7, 4.9.3 is vulnerable to a denial of service. During the processing of an LDAP search before Samba's AD DC returns the LDAP entries to the client, the entries are cached in a single memory object with a maximum size of 256MB. When this size is reached, the Samba process providing the LDAP ser
nvd
CVE-2018-12365P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-10-18
CVE-2018-12365 [MEDIUM] CWE-200 CVE-2018-12365: A compromised IPC child process can escape the content sandbox and list the names of arbitrary files A compromised IPC child process can escape the content sandbox and list the names of arbitrary files on the file system without user consent or interaction. This could result in exposure of private local files. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase