Canonical Ubuntu Linux vulnerabilities
4,117 known vulnerabilities affecting canonical/ubuntu_linux.
Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222
Vulnerabilities
Page 132 of 206
CVE-2014-3710P4MEDIUMCVSS 5.0v10.04v12.04+2 more2014-11-05
CVE-2014-3710 [MEDIUM] CWE-20 CVE-2014-3710: The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.
The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file.
nvd
CVE-2014-0473P4MEDIUMCVSS 5.0v10.04v12.04+3 more2014-04-23
CVE-2014-0473 [MEDIUM] CWE-264 CVE-2014-0473: The caching framework in Django before 1.4.11, 1.5.x before 1.5.6, 1.6.x before 1.6.3, and 1.7.x bef
The caching framework in Django before 1.4.11, 1.5.x before 1.5.6, 1.6.x before 1.6.3, and 1.7.x before 1.7 beta 2 reuses a cached CSRF token for all anonymous users, which allows remote attackers to bypass CSRF protections by reading the CSRF cookie for anonymous users.
nvd
CVE-2014-8104P4MEDIUMCVSS 6.8v12.04v14.04+1 more2014-12-03
CVE-2014-8104 [MEDIUM] CWE-399 CVE-2014-8104: OpenVPN 2.x before 2.0.11, 2.1.x, 2.2.x before 2.2.3, and 2.3.x before 2.3.6 allows remote authentic
OpenVPN 2.x before 2.0.11, 2.1.x, 2.2.x before 2.2.3, and 2.3.x before 2.3.6 allows remote authenticated users to cause a denial of service (server crash) via a small control channel packet.
nvd
CVE-2013-4248P4MEDIUMCVSS 4.3v10.04v12.04+2 more2013-08-18
CVE-2013-4248 [MEDIUM] CVE-2013-4248: The openssl_x509_parse function in openssl.c in the OpenSSL module in PHP before 5.4.18 and 5.5.x be
The openssl_x509_parse function in openssl.c in the OpenSSL module in PHP before 5.4.18 and 5.5.x before 5.5.2 does not properly handle a '\0' character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certifi
nvd
CVE-2020-10761P4MEDIUMCVSS 5.0v16.04v18.04+1 more2020-06-09
CVE-2020-10761 [MEDIUM] CWE-617 CVE-2020-10761: An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions be
An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A remote nbd-client could use this flaw to crash the qemu-nbd server resulting in a denial of service.
nvd
CVE-2010-4180P4MEDIUMCVSS 4.3v6.06v8.04+3 more2010-12-06
CVE-2010-4180 [MEDIUM] CVE-2010-4180: OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enab
OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not properly prevent modification of the ciphersuite in the session cache, which allows remote attackers to force the downgrade to an unintended cipher via vectors involving sniffing network traffic to discover a session identifier.
nvd
CVE-2013-0386P4MEDIUMCVSS 6.8v10.04v11.10+2 more2013-01-17
CVE-2013-0386 [MEDIUM] CVE-2013-0386: Unspecified vulnerability in the Server component in Oracle MySQL 5.5.28 and earlier allows remote a
Unspecified vulnerability in the Server component in Oracle MySQL 5.5.28 and earlier allows remote authenticated users to affect availability via unknown vectors related to Stored Procedure.
nvd
CVE-2018-5246P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-01-05
CVE-2018-5246 [MEDIUM] CWE-772 CVE-2018-5246: In ImageMagick 7.0.7-17 Q16, there are memory leaks in ReadPATTERNImage in coders/pattern.c.
In ImageMagick 7.0.7-17 Q16, there are memory leaks in ReadPATTERNImage in coders/pattern.c.
nvd
CVE-2013-0384P4MEDIUMCVSS 6.8v10.04v11.10+2 more2013-01-17
CVE-2013-0384 [MEDIUM] CVE-2013-0384: Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Information Schema.
nvd
CVE-2017-14166P4MEDIUMCVSS 6.5v14.04v16.042017-09-06
CVE-2017-14166 [MEDIUM] CWE-125 CVE-2017-14166: libarchive 3.3.2 allows remote attackers to cause a denial of service (xml_data heap-based buffer ov
libarchive 3.3.2 allows remote attackers to cause a denial of service (xml_data heap-based buffer over-read and application crash) via a crafted xar archive, related to the mishandling of empty strings in the atol8 function in archive_read_support_format_xar.c.
nvd
CVE-2018-16645P4MEDIUMCVSS 6.5v14.04v16.04+1 more2018-09-06
CVE-2018-16645 [MEDIUM] CWE-770 CVE-2018-16645: There is an excessive memory allocation issue in the functions ReadBMPImage of coders/bmp.c and Read
There is an excessive memory allocation issue in the functions ReadBMPImage of coders/bmp.c and ReadDIBImage of coders/dib.c in ImageMagick 7.0.8-11, which allows remote attackers to cause a denial of service via a crafted image file.
nvd
CVE-2018-20467P4MEDIUMCVSS 6.5v16.04v18.04+2 more2018-12-26
CVE-2018-20467 [MEDIUM] CWE-835 CVE-2018-20467: In coders/bmp.c in ImageMagick before 7.0.8-16, an input file can result in an infinite loop and han
In coders/bmp.c in ImageMagick before 7.0.8-16, an input file can result in an infinite loop and hang, with high CPU and memory consumption. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted file.
nvd
CVE-2018-16643P4MEDIUMCVSS 6.5v14.04v16.04+1 more2018-09-06
CVE-2018-16643 [MEDIUM] CWE-252 CVE-2018-16643: The functions ReadDCMImage in coders/dcm.c, ReadPWPImage in coders/pwp.c, ReadCALSImage in coders/ca
The functions ReadDCMImage in coders/dcm.c, ReadPWPImage in coders/pwp.c, ReadCALSImage in coders/cals.c, and ReadPICTImage in coders/pict.c in ImageMagick 7.0.8-4 do not check the return value of the fputc function, which allows remote attackers to cause a denial of service via a crafted image file.
nvd
CVE-2019-9917P4MEDIUMCVSS 6.5v18.102019-03-27
CVE-2019-9917 [MEDIUM] CWE-20 CVE-2019-9917: ZNC before 1.7.3-rc1 allows an existing remote user to cause a Denial of Service (crash) via invalid
ZNC before 1.7.3-rc1 allows an existing remote user to cause a Denial of Service (crash) via invalid encoding.
nvd
CVE-2018-10779P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-05-07
CVE-2018-10779 [MEDIUM] CWE-125 CVE-2018-10779: TIFFWriteScanline in tif_write.c in LibTIFF 3.8.2 has a heap-based buffer over-read, as demonstrated
TIFFWriteScanline in tif_write.c in LibTIFF 3.8.2 has a heap-based buffer over-read, as demonstrated by bmp2tiff.
nvd
CVE-2012-3984P4MEDIUMCVSS 6.8v10.04v11.04+2 more2012-10-10
CVE-2012-3984 [MEDIUM] CVE-2012-3984: Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly hand
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has a SELECT element's menu active, which allows remote attackers to spoof page content via vectors involving absolute positioning and scrolling.
nvd
CVE-2012-2317P4MEDIUMCVSS 4.3v10.04v11.042012-08-07
CVE-2012-2317 [MEDIUM] CWE-310 CVE-2012-2317: The Debian php_crypt_revamped.patch patch for PHP 5.3.x, as used in the php5 package before 5.3.3-7+
The Debian php_crypt_revamped.patch patch for PHP 5.3.x, as used in the php5 package before 5.3.3-7+squeeze4 in Debian GNU/Linux squeeze, the php5 package before 5.3.2-1ubuntu4.17 in Ubuntu 10.04 LTS, and the php5 package before 5.3.5-1ubuntu7.10 in Ubuntu 11.04, does not properly handle an empty salt string, which might allow remote attackers to bypa
nvd
CVE-2013-0747P4MEDIUMCVSS 6.8v10.04v11.10+2 more2013-01-13
CVE-2013-0747 [MEDIUM] CWE-20 CVE-2013-0747: The gPluginHandler.handleEvent function in the plugin handler in Mozilla Firefox before 18.0, Firefo
The gPluginHandler.handleEvent function in the plugin handler in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not properly enforce the Same Origin Policy, which allows remote attackers to conduct clickjacking attacks via crafted JavaScript code
nvd
CVE-2018-18661P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-10-26
CVE-2018-18661 [MEDIUM] CWE-476 CVE-2018-18661: An issue was discovered in LibTIFF 4.0.9. There is a NULL pointer dereference in the function LZWDec
An issue was discovered in LibTIFF 4.0.9. There is a NULL pointer dereference in the function LZWDecode in the file tif_lzw.c.
nvd
CVE-2011-3377P4MEDIUMCVSS 4.3v10.04v10.10+2 more2014-02-05
CVE-2011-3377 [MEDIUM] CWE-264 CVE-2011-3377: The web browser plug-in in IcedTea-Web 1.0.x before 1.0.6 and 1.1.x before 1.1.4 allows remote attac
The web browser plug-in in IcedTea-Web 1.0.x before 1.0.6 and 1.1.x before 1.1.4 allows remote attackers to bypass the Same Origin Policy (SOP) and execute arbitrary script or establish network connections to unintended hosts via an applet whose origin has the same second-level domain, but a different sub-domain than the targeted domain.
nvd