cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 141 of 206
CVE-2019-3825P4MEDIUMCVSS 6.4v18.04v18.102019-02-06
CVE-2019-3825 [MEDIUM] CWE-287 CVE-2019-3825: A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, a A vulnerability was discovered in gdm before 3.31.4. When timed login is enabled in configuration, an attacker could bypass the lock screen by selecting the timed login user and waiting for the timer to expire, at which time they would gain access to the logged-in user's session.
nvd
CVE-2013-0211P4MEDIUMCVSS 5.0v12.04v14.04+1 more2013-09-30
CVE-2013-0211 [MEDIUM] CWE-189 CVE-2013-0211: Integer signedness error in the archive_write_zip_data function in archive_write_set_format_zip.c in Integer signedness error in the archive_write_zip_data function in archive_write_set_format_zip.c in libarchive 3.1.2 and earlier, when running on 64-bit machines, allows context-dependent attackers to cause a denial of service (crash) via unspecified vectors, which triggers an improper conversion between unsigned and signed types, leading to a buffer
nvd
CVE-2018-0202P4MEDIUMCVSS 5.5v12.04v14.04+2 more2018-03-27
CVE-2018-0202 [MEDIUM] CWE-125 CVE-2018-0202: clamscan in ClamAV before 0.99.4 contains a vulnerability that could allow an unauthenticated, remot clamscan in ClamAV before 0.99.4 contains a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation checking mechanisms when handling Portable Document Format (.pdf) files sent to an affected device. An unauthenticated,
nvd
CVE-2016-1682P4MEDIUMCVSS 6.1v14.04v15.10+1 more2016-06-05
CVE-2016-1682 [MEDIUM] CWE-254 CVE-2016-1682: The ServiceWorkerContainer::registerServiceWorkerImpl function in WebKit/Source/modules/serviceworke The ServiceWorkerContainer::registerServiceWorkerImpl function in WebKit/Source/modules/serviceworkers/ServiceWorkerContainer.cpp in Blink, as used in Google Chrome before 51.0.2704.63, allows remote attackers to bypass the Content Security Policy (CSP) protection mechanism via a ServiceWorker registration.
nvd
CVE-2019-19529P4MEDIUMCVSS 6.3v14.04v16.04+3 more2019-12-03
CVE-2019-19529 [MEDIUM] CWE-416 CVE-2019-19529: In the Linux kernel before 5.3.11, there is a use-after-free bug that can be caused by a malicious U In the Linux kernel before 5.3.11, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/net/can/usb/mcba_usb.c driver, aka CID-4d6636498c41.
nvd
CVE-2015-0381P4MEDIUMCVSS 4.3v12.04v14.04+1 more2015-01-21
CVE-2015-0381 [MEDIUM] CVE-2015-0381: Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows re Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote attackers to affect availability via unknown vectors related to Server : Replication, a different vulnerability than CVE-2015-0382.
nvd
CVE-2018-2599P4MEDIUMCVSS 4.8v14.04v16.04+1 more2018-01-18
CVE-2018-2599 [MEDIUM] CVE-2018-2599: Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: J Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java S
nvd
CVE-2012-3509P4MEDIUMCVSS 5.0v10.04v12.04+2 more2012-09-05
CVE-2012-3509 [MEDIUM] CWE-189 CVE-2012-3509: Multiple integer overflows in the (1) _objalloc_alloc function in objalloc.c and (2) objalloc_alloc Multiple integer overflows in the (1) _objalloc_alloc function in objalloc.c and (2) objalloc_alloc macro in include/objalloc.h in GNU libiberty, as used by binutils 2.22, allow remote attackers to cause a denial of service (crash) via vectors related to the "addition of CHUNK_HEADER_SIZE to the length," which triggers a heap-based buffer overflow.
nvd
CVE-2009-2797P4MEDIUMCVSS 5.0v9.10v10.04+1 more2009-09-10
CVE-2009-2797 [MEDIUM] CWE-200 CVE-2009-2797: The WebKit component in Safari in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod to The WebKit component in Safari in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, does not remove usernames and passwords from URLs sent in Referer headers, which allows remote attackers to obtain sensitive information by reading Referer logs on a web server.
nvd
CVE-2020-16304P4MEDIUMCVSS 5.5v16.04v18.04+1 more2020-08-13
CVE-2020-16304 [MEDIUM] CWE-787 CVE-2020-16304: A buffer overflow vulnerability in image_render_color_thresh() in base/gxicolor.c of Artifex Softwar A buffer overflow vulnerability in image_render_color_thresh() in base/gxicolor.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to escalate privileges via a crafted eps file. This is fixed in v9.51.
nvd
CVE-2020-16302P4MEDIUMCVSS 5.5v16.04v18.04+1 more2020-08-13
CVE-2020-16302 [MEDIUM] CWE-120 CVE-2020-16302: A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software G A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attacker to escalate privileges via a crafted PDF file. This is fixed in v9.51.
nvd
CVE-2020-11565P4MEDIUMCVSS 6.0v14.04v16.04+2 more2020-04-06
CVE-2020-11565 [MEDIUM] CWE-787 CVE-2020-11565: An issue was discovered in the Linux kernel through 5.6.2. mpol_parse_str in mm/mempolicy.c has a st An issue was discovered in the Linux kernel through 5.6.2. mpol_parse_str in mm/mempolicy.c has a stack-based out-of-bounds write because an empty nodelist is mishandled during mount option parsing, aka CID-aa9f7d5172fa. NOTE: Someone in the security community disagrees that this is a vulnerability because the issue “is a bug in parsing mount option
nvd
CVE-2020-14367P4MEDIUMCVSS 6.0v18.04v20.042020-08-24
CVE-2020-14367 [MEDIUM] CWE-59 CVE-2020-14367: A flaw was found in chrony versions before 3.5.1 when creating the PID file under the /var/run/chron A flaw was found in chrony versions before 3.5.1 when creating the PID file under the /var/run/chrony folder. The file is created during chronyd startup while still running as the root user, and when it's opened for writing, chronyd does not check for an existing symbolic link with the same file name. This flaw allows an attacker with privileged acce
nvd
CVE-2020-14550P4MEDIUMCVSS 5.3v16.04v18.04+1 more2020-07-15
CVE-2020-14550 [MEDIUM] CVE-2020-14550: Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions tha Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.48 and prior, 5.7.30 and prior and 8.0.20 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can r
nvd
CVE-2015-2620P4MEDIUMCVSS 4.3v12.04v14.04+2 more2015-07-16
CVE-2015-2620 [MEDIUM] CVE-2015-2620: Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.23 and earlier allows re Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.23 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges.
nvd
CVE-2014-5031P4MEDIUMCVSS 5.0v10.04v12.04+1 more2014-07-29
CVE-2014-5031 [MEDIUM] CWE-264 CVE-2014-5031: The web interface in CUPS before 2.0 does not check that files have world-readable permissions, whic The web interface in CUPS before 2.0 does not check that files have world-readable permissions, which allows remote attackers to obtains sensitive information via unspecified vectors.
nvd
CVE-2026-47328P4MEDIUMCVSS 6.1v24.04v25.10+4 more2026-05-28
CVE-2026-47328 [MEDIUM] CWE-590 CVE-2026-47328: Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly attempt to free a po Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly attempt to free a pointer which was not previously kmalloc()d, while at the same time leaking allocated memory. The bug can be triggered by an unprivileged local user and can result in the corruption of slab metadata and could lead to resource exhaustion.
nvd
CVE-2005-4808P4HIGHCVSS 7.6v5.102005-12-31
CVE-2005-4808 [HIGH] CVE-2005-4808: Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foun Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.
nvd
CVE-2020-2593P4MEDIUMCVSS 4.8v16.04v18.04+1 more2020-01-15
CVE-2020-2593 [MEDIUM] CVE-2020-2593: Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Su Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Succ
nvd
CVE-2015-6727P4MEDIUMCVSS 5.0v15.042015-09-01
CVE-2015-6727 [MEDIUM] CWE-200 CVE-2015-6727: The Special:DeletedContributions page in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x The Special:DeletedContributions page in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 allows remote attackers to determine if an IP is autoblocked via the "Change block" text.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase