cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 148 of 206
CVE-2018-6541P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-02-02
CVE-2018-6541 [MEDIUM] CVE-2018-6541: In ZZIPlib 0.13.67, there is a bus error caused by loading of a misaligned address (when handling di In ZZIPlib 0.13.67, there is a bus error caused by loading of a misaligned address (when handling disk64_trailer local entries) in __zzip_fetch_disk_trailer (zzip/zip.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.
nvd
CVE-2010-3084P4HIGHCVSS 7.2v6.06v8.04+4 more2010-09-29
CVE-2010-3084 [HIGH] CWE-119 CVE-2010-3084: Buffer overflow in the niu_get_ethtool_tcam_all function in drivers/net/niu.c in the Linux kernel be Buffer overflow in the niu_get_ethtool_tcam_all function in drivers/net/niu.c in the Linux kernel before 2.6.36-rc4 allows local users to cause a denial of service or possibly have unspecified other impact via the ETHTOOL_GRXCLSRLALL ethtool command.
nvd
CVE-2019-13310P4MEDIUMCVSS 6.5v16.04v18.04+2 more2019-07-05
CVE-2019-13310 [MEDIUM] CWE-401 CVE-2019-13310: ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of an error in MagickWand/m ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c.
nvd
CVE-2010-2478P4HIGHCVSS 7.2v6.06v8.04+4 more2010-09-29
CVE-2010-2478 [HIGH] CWE-190 CVE-2010-2478: Integer overflow in the ethtool_get_rxnfc function in net/core/ethtool.c in the Linux kernel before Integer overflow in the ethtool_get_rxnfc function in net/core/ethtool.c in the Linux kernel before 2.6.33.7 on 32-bit platforms allows local users to cause a denial of service or possibly have unspecified other impact via an ETHTOOL_GRXCLSRLALL ethtool command with a large info.rule_cnt value that triggers a buffer overflow, a different vulnerability th
nvd
CVE-2018-19535P4MEDIUMCVSS 6.5v16.04v18.04+2 more2018-11-26
CVE-2018-19535 [MEDIUM] CWE-125 CVE-2018-19535: In Exiv2 0.26 and previous versions, PngChunk::readRawProfile in pngchunk_int.cpp may cause a denial In Exiv2 0.26 and previous versions, PngChunk::readRawProfile in pngchunk_int.cpp may cause a denial of service (application crash due to a heap-based buffer over-read) via a crafted PNG file.
nvd
CVE-2017-17914P4MEDIUMCVSS 6.5v14.04v16.04+2 more2017-12-27
CVE-2017-17914 [MEDIUM] CWE-834 CVE-2017-17914: In ImageMagick 7.0.7-16 Q16, a vulnerability was found in the function ReadOnePNGImage in coders/png In ImageMagick 7.0.7-16 Q16, a vulnerability was found in the function ReadOnePNGImage in coders/png.c, which allows attackers to cause a denial of service (ReadOneMNGImage large loop) via a crafted mng image file.
nvd
CVE-2017-18252P4MEDIUMCVSS 6.5v14.04v16.04+2 more2018-03-27
CVE-2017-18252 [MEDIUM] CWE-617 CVE-2017-18252: An issue was discovered in ImageMagick 7.0.7. The MogrifyImageList function in MagickWand/mogrify.c An issue was discovered in ImageMagick 7.0.7. The MogrifyImageList function in MagickWand/mogrify.c allows attackers to cause a denial of service (assertion failure and application exit in ReplaceImageInList) via a crafted file.
nvd
CVE-2018-18897P4MEDIUMCVSS 6.5v16.04v18.04+2 more2018-11-02
CVE-2018-18897 [MEDIUM] CWE-772 CVE-2018-18897: An issue was discovered in Poppler 0.71.0. There is a memory leak in GfxColorSpace::setDisplayProfil An issue was discovered in Poppler 0.71.0. There is a memory leak in GfxColorSpace::setDisplayProfile in GfxState.cc, as demonstrated by pdftocairo.
nvd
CVE-2013-4256P4MEDIUMCVSS 4.6v12.04v12.10+1 more2013-10-09
CVE-2013-4256 [MEDIUM] CWE-119 CVE-2013-4256: Multiple stack-based and heap-based buffer overflows in Network Audio System (NAS) 1.9.3 allow local Multiple stack-based and heap-based buffer overflows in Network Audio System (NAS) 1.9.3 allow local users to cause a denial of service (crash) or possibly execute arbitrary code via the (1) display command argument to the ProcessCommandLine function in server/os/utils.c; (2) ResetHosts function in server/os/access.c; (3) open_unix_socket, (4) open_is
nvd
CVE-2017-12691P4MEDIUMCVSS 6.5v14.04v16.04+2 more2017-09-01
CVE-2017-12691 [MEDIUM] CWE-770 CVE-2017-12691: The ReadOneLayer function in coders/xcf.c in ImageMagick 7.0.6-6 allows remote attackers to cause a The ReadOneLayer function in coders/xcf.c in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
nvd
CVE-2010-3689P4MEDIUMCVSS 6.9v8.04v9.10+2 more2011-01-28
CVE-2010-3689 [MEDIUM] CWE-22 CVE-2010-3689: soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
nvd
CVE-2014-8159P4MEDIUMCVSS 6.9v10.04v12.04+2 more2015-03-16
CVE-2014-8159 [MEDIUM] CWE-264 CVE-2014-8159: The InfiniBand (IB) implementation in the Linux kernel package before 2.6.32-504.12.2 on Red Hat Ent The InfiniBand (IB) implementation in the Linux kernel package before 2.6.32-504.12.2 on Red Hat Enterprise Linux (RHEL) 6 does not properly restrict use of User Verbs for registration of memory regions, which allows local users to access arbitrary physical memory locations, and consequently cause a denial of service (system crash) or gain privileges,
nvd
CVE-2017-13769P4MEDIUMCVSS 6.5v14.04v16.04+2 more2017-08-30
CVE-2017-13769 [MEDIUM] CWE-125 CVE-2017-13769: The WriteTHUMBNAILImage function in coders/thumbnail.c in ImageMagick through 7.0.6-10 allows an att The WriteTHUMBNAILImage function in coders/thumbnail.c in ImageMagick through 7.0.6-10 allows an attacker to cause a denial of service (buffer over-read) by sending a crafted JPEG file.
nvd
CVE-2016-4053P4LOWCVSS 3.7v12.04v14.04+2 more2016-04-25
CVE-2016-4053 [LOW] CWE-119 CVE-2016-4053: Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote attackers to obtain sensitive stack layout Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote attackers to obtain sensitive stack layout information via crafted Edge Side Includes (ESI) responses, related to incorrect use of assert and compiler optimization.
nvd
CVE-2018-20169P4MEDIUMCVSS 6.8v14.04v16.042018-12-17
CVE-2018-20169 [MEDIUM] CWE-400 CVE-2018-20169: An issue was discovered in the Linux kernel before 4.19.9. The USB subsystem mishandles size checks An issue was discovered in the Linux kernel before 4.19.9. The USB subsystem mishandles size checks during the reading of an extra descriptor, related to __usb_get_extra_descriptor in drivers/usb/core/usb.c.
nvd
CVE-2013-2145P4MEDIUMCVSS 4.4v12.04v12.10+1 more2013-08-19
CVE-2013-2145 [MEDIUM] CWE-20 CVE-2013-2145: The cpansign verify functionality in the Module::Signature module before 0.72 for Perl allows attack The cpansign verify functionality in the Module::Signature module before 0.72 for Perl allows attackers to bypass the signature check and execute arbitrary code via a SIGNATURE file with a "special unknown cipher" that references an untrusted module in Digest/.
nvd
CVE-2011-1783P4MEDIUMCVSS 4.3v10.04v10.10+1 more2011-06-06
CVE-2011-1783 [MEDIUM] CVE-2011-1783: The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6 The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, when the SVNPathAuthz short_circuit option is enabled, allows remote attackers to cause a denial of service (infinite loop and memory consumption) in opportunistic circumstances by requesting data.
nvd
CVE-2016-1689P4MEDIUMCVSS 6.5v14.04v15.10+1 more2016-06-05
CVE-2016-1689 [MEDIUM] CWE-119 CVE-2016-1689: Heap-based buffer overflow in content/renderer/media/canvas_capture_handler.cc in Google Chrome befo Heap-based buffer overflow in content/renderer/media/canvas_capture_handler.cc in Google Chrome before 51.0.2704.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted web site.
nvd
CVE-2018-5164P4MEDIUMCVSS 6.1v14.04v16.04+2 more2018-06-11
CVE-2018-5164 [MEDIUM] CWE-79 CVE-2018-5164: Content Security Policy (CSP) is not applied correctly to all parts of multipart content sent with t Content Security Policy (CSP) is not applied correctly to all parts of multipart content sent with the "multipart/x-mixed-replace" MIME type. This could allow for script to run where CSP should block it, allowing for cross-site scripting (XSS) and other attacks. This vulnerability affects Firefox < 60.
nvd
CVE-2015-7513P4MEDIUMCVSS 6.5v12.04v14.04+2 more2016-02-08
CVE-2015-7513 [MEDIUM] CWE-369 CVE-2015-7513: arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state restoration, which allows guest OS users to cause a denial of service (divide-by-zero error and host OS crash) via a zero value, related to the kvm_vm_ioctl_set_pit and kvm_vm_ioctl_set_pit2 functions.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase