cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 144 of 206
CVE-2019-13137P4MEDIUMCVSS 6.5v16.04v18.04+2 more2019-07-01
CVE-2019-13137 [MEDIUM] CWE-401 CVE-2019-13137: ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadPSImage in coders/ps ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadPSImage in coders/ps.c.
nvd
CVE-2018-19058P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-11-07
CVE-2018-19058 [MEDIUM] CWE-670 CVE-2018-19058: An issue was discovered in Poppler 0.71.0. There is a reachable abort in Object.h, will lead to deni An issue was discovered in Poppler 0.71.0. There is a reachable abort in Object.h, will lead to denial of service because EmbFile::save2 in FileSpec.cc lacks a stream check before saving an embedded file.
nvd
CVE-2019-3874P4MEDIUMCVSS 6.5v14.04v16.04+3 more2019-03-25
CVE-2019-3874 [MEDIUM] CWE-400 CVE-2019-3874: The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem. An The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem. An attacker can use this flaw to cause a denial of service attack. Kernel 3.10.x and 4.18.x branches are believed to be vulnerable.
nvd
CVE-2018-19060P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-11-07
CVE-2018-19060 [MEDIUM] CWE-476 CVE-2018-19060: An issue was discovered in Poppler 0.71.0. There is a NULL pointer dereference in goo/GooString.h, w An issue was discovered in Poppler 0.71.0. There is a NULL pointer dereference in goo/GooString.h, will lead to denial of service, as demonstrated by utils/pdfdetach.cc not validating a filename of an embedded file before constructing a save path.
nvd
CVE-2017-18028P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-01-12
CVE-2017-18028 [MEDIUM] CWE-770 CVE-2017-18028: In ImageMagick 7.0.7-1 Q16, a memory exhaustion vulnerability was found in the function ReadTIFFImag In ImageMagick 7.0.7-1 Q16, a memory exhaustion vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allow remote attackers to cause a denial of service via a crafted file.
nvd
CVE-2018-5358P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-01-12
CVE-2018-5358 [MEDIUM] CWE-772 CVE-2018-5358: ImageMagick 7.0.7-22 Q16 has memory leaks in the EncodeImageAttributes function in coders/json.c, as ImageMagick 7.0.7-22 Q16 has memory leaks in the EncodeImageAttributes function in coders/json.c, as demonstrated by the ReadPSDLayersInternal function in coders/psd.c.
nvd
CVE-2018-6405P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-01-30
CVE-2018-6405 [MEDIUM] CWE-772 CVE-2018-6405: In the ReadDCMImage function in coders/dcm.c in ImageMagick before 7.0.7-23, each redmap, greenmap, In the ReadDCMImage function in coders/dcm.c in ImageMagick before 7.0.7-23, each redmap, greenmap, and bluemap variable can be overwritten by a new pointer. The previous pointer is lost, which leads to a memory leak. This allows remote attackers to cause a denial of service.
nvd
CVE-2013-0791P4MEDIUMCVSS 5.0v10.04v11.10+2 more2013-04-03
CVE-2013-0791 [MEDIUM] CWE-119 CVE-2013-0791: The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla F The CERT_DecodeCertPackage function in Mozilla Network Security Services (NSS), as used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to cause a denial of service (out-of-bounds read and memory corruption)
nvd
CVE-2018-19787P4MEDIUMCVSS 6.1v12.04v14.04+2 more2018-12-02
CVE-2018-19787 [MEDIUM] CVE-2018-19787: An issue was discovered in lxml before 4.2.5. lxml/html/clean.py in the lxml.html.clean module does An issue was discovered in lxml before 4.2.5. lxml/html/clean.py in the lxml.html.clean module does not remove javascript: URLs that use escaping, allowing a remote attacker to conduct XSS attacks, as demonstrated by "j a v a s c r i p t:" in Internet Explorer. This is a similar issue to CVE-2014-3146.
nvd
CVE-2018-5169P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-06-11
CVE-2018-5169 [MEDIUM] CWE-20 CVE-2018-5169: If manipulated hyperlinked text with "chrome:" URL contained in it is dragged and dropped on the "ho If manipulated hyperlinked text with "chrome:" URL contained in it is dragged and dropped on the "home" icon, the home page can be reset to include a normally-unlinkable chrome page as one of the home page tabs. This vulnerability affects Firefox < 60.
nvd
CVE-2013-4343P4MEDIUMCVSS 6.9v13.04v13.102013-09-25
CVE-2013-4343 [MEDIUM] CWE-399 CVE-2013-4343: Use-after-free vulnerability in drivers/net/tun.c in the Linux kernel through 3.11.1 allows local us Use-after-free vulnerability in drivers/net/tun.c in the Linux kernel through 3.11.1 allows local users to gain privileges by leveraging the CAP_NET_ADMIN capability and providing an invalid tuntap interface name in a TUNSETIFF ioctl call.
nvd
CVE-2013-1054P4MEDIUMCVSS 6.5v14.04v15.042021-04-07
CVE-2013-1054 [MEDIUM] CWE-404 CVE-2013-1054: The unity-firefox-extension package could be tricked into destroying the Unity webapps context, caus The unity-firefox-extension package could be tricked into destroying the Unity webapps context, causing Firefox to crash. This could be achieved by spinning the event loop inside the webapps initialization callback. Fixed in 3.0.0+14.04.20140416-0ubuntu1.14.04.1 by shipping an empty package, thus disabling the extension entirely.
nvd
CVE-2015-0272P4MEDIUMCVSS 5.0v12.042015-11-17
CVE-2015-0272 [MEDIUM] CVE-2015-0272: GNOME NetworkManager allows remote attackers to cause a denial of service (IPv6 traffic disruption) GNOME NetworkManager allows remote attackers to cause a denial of service (IPv6 traffic disruption) via a crafted MTU value in an IPv6 Router Advertisement (RA) message, a different vulnerability than CVE-2015-8215.
nvd
CVE-2014-3203P4MEDIUMCVSS 4.4v14.042014-05-06
CVE-2014-3203 [MEDIUM] CWE-264 CVE-2014-3203: Unity before 7.2.1, as used in Ubuntu 14.04, does not properly restrict access to the Dash when the Unity before 7.2.1, as used in Ubuntu 14.04, does not properly restrict access to the Dash when the lock screen is active, which allows physically proximate attackers to bypass the lock screen and execute arbitrary commands, as demonstrated by pressing the SUPER key before the screen auto-locks.
nvd
CVE-2014-3633P4MEDIUMCVSS 5.8v10.04v12.04+1 more2014-10-06
CVE-2014-3633 [MEDIUM] CWE-119 CVE-2014-3633: The qemuDomainGetBlockIoTune function in qemu/qemu_driver.c in libvirt before 1.2.9, when a disk has The qemuDomainGetBlockIoTune function in qemu/qemu_driver.c in libvirt before 1.2.9, when a disk has been hot-plugged or removed from the live image, allows remote attackers to cause a denial of service (crash) or read sensitive heap information via a crafted blkiotune query, which triggers an out-of-bounds read.
nvd
CVE-2019-17022P4MEDIUMCVSS 6.1v16.04v18.04+2 more2020-01-08
CVE-2019-17022 [MEDIUM] CWE-79 CVE-2019-17022: When pasting a &lt;style&gt; tag from the clipboard into a rich text editor, the CSS sanitizer does When pasting a tag from the clipboard into a rich text editor, the CSS sanitizer does not escape characters. Because the resulting string is pasted directly into the text node of the element this does not result in a direct injection into the webpage; however, if a webpage subsequently copies the node's innerHTML, assigning it to another innerHTML, th
nvd
CVE-2019-6133P4MEDIUMCVSS 6.7v12.04v14.04+3 more2019-01-11
CVE-2019-6133 [MEDIUM] CWE-362 CVE-2019-6133: In PolicyKit (aka polkit) 0.115, the "start time" protection mechanism can be bypassed because fork( In PolicyKit (aka polkit) 0.115, the "start time" protection mechanism can be bypassed because fork() is not atomic, and therefore authorization decisions are improperly cached. This is related to lack of uid checking in polkitbackend/polkitbackendinteractiveauthority.c.
nvd
CVE-2017-5934P4MEDIUMCVSS 6.1v14.04v16.04+1 more2018-10-15
CVE-2017-5934 [MEDIUM] CWE-79 CVE-2017-5934: Cross-site scripting (XSS) vulnerability in the link dialogue in GUI editor in MoinMoin before 1.9.1 Cross-site scripting (XSS) vulnerability in the link dialogue in GUI editor in MoinMoin before 1.9.10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd
CVE-2018-4133P4MEDIUMCVSS 6.1v16.04v17.102018-04-03
CVE-2018-4133 [MEDIUM] CWE-79 CVE-2018-4133: An issue was discovered in certain Apple products. Safari before 11.1 is affected. The issue involve An issue was discovered in certain Apple products. Safari before 11.1 is affected. The issue involves the "WebKit" component. A Safari cross-site scripting (XSS) vulnerability allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
nvd
CVE-2018-15572P4MEDIUMCVSS 6.5v12.04v14.04+2 more2018-08-20
CVE-2018-15572 [MEDIUM] CVE-2018-15572: The spectre_v2_select_mitigation function in arch/x86/kernel/cpu/bugs.c in the Linux kernel before 4 The spectre_v2_select_mitigation function in arch/x86/kernel/cpu/bugs.c in the Linux kernel before 4.18.1 does not always fill RSB upon a context switch, which makes it easier for attackers to conduct userspace-userspace spectreRSB attacks.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase