cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 135 of 206
CVE-2020-10722P4MEDIUMCVSS 6.7v18.04v19.10+1 more2020-05-19
CVE-2020-10722 [MEDIUM] CWE-190 CVE-2020-10722: A vulnerability was found in DPDK versions 18.05 and above. A missing check for an integer overflow A vulnerability was found in DPDK versions 18.05 and above. A missing check for an integer overflow in vhost_user_set_log_base() could result in a smaller memory map than requested, possibly allowing memory corruption.
nvd
CVE-2012-6702P4MEDIUMCVSS 5.9v12.04v14.04+2 more2016-06-16
CVE-2012-6702 [MEDIUM] CWE-310 CVE-2012-6702: Expat, when used in a parser that has not called XML_SetHashSalt or passed it a seed of 0, makes it Expat, when used in a parser that has not called XML_SetHashSalt or passed it a seed of 0, makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms via vectors involving use of the srand function.
nvd
CVE-2016-2373P4MEDIUMCVSS 5.9v12.04v14.04+1 more2017-01-06
CVE-2016-2373 [MEDIUM] CWE-125 CVE-2016-2373: A denial of service vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially c A denial of service vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could potentially result in an out-of-bounds read. A malicious server or user can send an invalid mood to trigger this vulnerability.
nvd
CVE-2016-2369P4MEDIUMCVSS 5.9v12.04v14.04+1 more2017-01-06
CVE-2016-2369 [MEDIUM] CWE-476 CVE-2016-2369: A NULL pointer dereference vulnerability exists in the handling of the MXIT protocol in Pidgin. Spec A NULL pointer dereference vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could potentially result in a denial of service vulnerability. A malicious server can send a packet starting with a NULL byte triggering the vulnerability.
nvd
CVE-2020-1760P4MEDIUMCVSS 6.1v16.04v18.042020-04-23
CVE-2020-1760 [MEDIUM] CWE-79 CVE-2020-1760: A flaw was found in the Ceph Object Gateway, where it supports request sent by an anonymous user in A flaw was found in the Ceph Object Gateway, where it supports request sent by an anonymous user in Amazon S3. This flaw could lead to potential XSS attacks due to the lack of proper neutralization of untrusted input.
nvd
CVE-2009-1387P4MEDIUMCVSS 5.0v6.06v8.04+2 more2009-06-04
CVE-2009-1387 [MEDIUM] CWE-476 CVE-2009-1387: The dtls1_retrieve_buffered_fragment function in ssl/d1_both.c in OpenSSL before 1.0.0 Beta 2 allows The dtls1_retrieve_buffered_fragment function in ssl/d1_both.c in OpenSSL before 1.0.0 Beta 2 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an out-of-sequence DTLS handshake message, related to a "fragment bug."
nvd
CVE-2016-2367P4MEDIUMCVSS 5.9v12.04v14.04+1 more2017-01-06
CVE-2016-2367 [MEDIUM] CWE-125 CVE-2016-2367: An information leak exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT da An information leak exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could potentially result in an out-of-bounds read. A malicious user, server, or man-in-the-middle can send an invalid size for an avatar which will trigger an out-of-bounds read vulnerability. This could result in a denial of serv
nvd
CVE-2018-10880P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-07-25
CVE-2018-10880 [MEDIUM] CWE-787 CVE-2018-10880: Linux kernel is vulnerable to a stack-out-of-bounds write in the ext4 filesystem code when mounting Linux kernel is vulnerable to a stack-out-of-bounds write in the ext4 filesystem code when mounting and writing to a crafted ext4 image in ext4_update_inline_data(). An attacker could use this to cause a system crash and a denial of service.
nvd
CVE-2018-1000808P4MEDIUMCVSS 5.9v16.042018-10-08
CVE-2018-1000808 [MEDIUM] CWE-404 CVE-2018-1000808: Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Rel Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Failure to Release Memory Before Removing Last Reference vulnerability in PKCS #12 Store that can result in Denial of service if memory runs low or is exhausted. This attack appear to be exploitable via Depends upon calling application, however it could be as s
nvd
CVE-2019-15214P4MEDIUMCVSS 6.4v16.04v18.042019-08-19
CVE-2019-15214 [MEDIUM] CWE-416 CVE-2019-15214: An issue was discovered in the Linux kernel before 5.0.10. There is a use-after-free in the sound su An issue was discovered in the Linux kernel before 5.0.10. There is a use-after-free in the sound subsystem because card disconnection causes certain data structures to be deleted too early. This is related to sound/core/init.c and sound/core/info.c.
nvd
CVE-2018-3247P4MEDIUMCVSS 5.5v14.04v16.04+2 more2018-10-17
CVE-2018-3247 [MEDIUM] CVE-2018-3247: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Merge). Supported Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Merge). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerabi
nvd
CVE-2018-3187P4MEDIUMCVSS 5.5v14.04v16.04+2 more2018-10-17
CVE-2018-3187 [MEDIUM] CVE-2018-3187: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can resul
nvd
CVE-2014-4975P4MEDIUMCVSS 5.0v12.04v14.04+1 more2014-11-15
CVE-2014-4975 [MEDIUM] CWE-119 CVE-2014-4975: Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, Off-by-one error in the encodes function in pack.c in Ruby 1.9.3 and earlier, and 2.x through 2.1.2, when using certain format string specifiers, allows context-dependent attackers to cause a denial of service (segmentation fault) via vectors that trigger a stack-based buffer overflow.
nvd
CVE-2020-10690P4MEDIUMCVSS 6.4v14.04v16.042020-05-08
CVE-2020-10690 [MEDIUM] CWE-416 CVE-2020-10690: There is a use-after-free in kernel versions before 5.5 due to a race condition between the release There is a use-after-free in kernel versions before 5.5 due to a race condition between the release of ptp_clock and cdev while resource deallocation. When a (high privileged) process allocates a ptp device file (like /dev/ptpX) and voluntarily goes to sleep. During this time if the underlying device is removed, it can cause an exploitable condition
nvd
CVE-2018-3185P4MEDIUMCVSS 5.5v14.04v16.04+2 more2018-10-17
CVE-2018-3185 [MEDIUM] CVE-2018-3185: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versio Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauth
nvd
CVE-2018-2786P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-04-19
CVE-2018-2786 [MEDIUM] CVE-2018-2786: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versio Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cau
nvd
CVE-2018-3062P4MEDIUMCVSS 5.3v14.04v16.04+1 more2018-07-18
CVE-2018-3062 [MEDIUM] CVE-2018-3062: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Memcached). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Memcached). Supported versions that are affected are 5.6.40 and prior, 5.7.22 and prior and 8.0.11 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via memcached to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2018-2812P4MEDIUMCVSS 5.5v14.04v16.04+2 more2018-04-19
CVE-2018-2812 [MEDIUM] CVE-2018-2812: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized abi
nvd
CVE-2019-2969P4MEDIUMCVSS 6.2v16.04v18.04+2 more2019-10-16
CVE-2019-2969 [MEDIUM] CVE-2019-2969: Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported ve Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of
nvd
CVE-2017-15102P4MEDIUMCVSS 6.3v12.04v14.042017-11-15
CVE-2017-15102 [MEDIUM] CWE-476 CVE-2017-15102: The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occurs after a race condition and a NULL pointer dereference.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase