Canonical Ubuntu Linux vulnerabilities
4,117 known vulnerabilities affecting canonical/ubuntu_linux.
Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222
Vulnerabilities
Page 163 of 206
CVE-2015-1852P4MEDIUMCVSS 4.3v14.04v15.042015-04-17
CVE-2015-1852 [MEDIUM] CVE-2015-1852: The s3_token middleware in OpenStack keystonemiddleware before 1.6.0 and python-keystoneclient befor
The s3_token middleware in OpenStack keystonemiddleware before 1.6.0 and python-keystoneclient before 1.4.0 disables certification verification when the "insecure" option is set in a paste configuration (paste.ini) file regardless of the value, which allows remote attackers to conduct man-in-the-middle attacks via a crafted certificate, a different vulnerabil
nvd
CVE-2012-3986P4MEDIUMCVSS 4.3v10.04v11.04+2 more2012-10-10
CVE-2012-3986 [MEDIUM] CWE-20 CVE-2012-3986: Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ES
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly restrict calls to DOMWindowUtils (aka nsDOMWindowUtils) methods, which allows remote attackers to bypass intended access restrictions via crafted JavaScript code.
nvd
CVE-2019-2745P4MEDIUMCVSS 5.1v16.042019-07-23
CVE-2019-2745 [MEDIUM] CVE-2019-2745: Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Security). Supported version
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 7u221, 8u212 and 11.0.3. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Java SE executes to compromise Java SE. Successful attacks of this vulnerability can result in un
nvd
CVE-2018-3058P4MEDIUMCVSS 4.3v12.04v14.04+2 more2018-07-18
CVE-2018-3058 [MEDIUM] CVE-2018-3058: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: MyISAM). Supported versio
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: MyISAM). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can
nvd
CVE-2018-14434P4MEDIUMCVSS 6.5v14.04v16.04+1 more2018-07-20
CVE-2018-14434 [MEDIUM] CWE-772 CVE-2018-14434: ImageMagick 7.0.8-4 has a memory leak for a colormap in WriteMPCImage in coders/mpc.c.
ImageMagick 7.0.8-4 has a memory leak for a colormap in WriteMPCImage in coders/mpc.c.
nvd
CVE-2013-2275P4MEDIUMCVSS 4.0v11.10v12.04+1 more2013-03-20
CVE-2013-2275 [MEDIUM] CVE-2013-2275: The default configuration for puppet masters 0.25.0 and later in Puppet before 2.6.18, 2.7.x before
The default configuration for puppet masters 0.25.0 and later in Puppet before 2.6.18, 2.7.x before 2.7.21, and 3.1.x before 3.1.1, and Puppet Enterprise before 1.2.7 and 2.7.x before 2.7.2, allows remote authenticated nodes to submit reports for other nodes via unspecified vectors.
nvd
CVE-2019-16680P4MEDIUMCVSS 4.3v16.04v18.042019-09-21
CVE-2019-16680 [MEDIUM] CWE-22 CVE-2019-16680: An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal
An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.
nvd
CVE-2020-14553P4MEDIUMCVSS 4.3v16.04v18.04+1 more2020-07-15
CVE-2020-14553 [MEDIUM] CVE-2020-14553: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Suppo
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affected are 5.7.30 and prior and 8.0.20 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can resu
nvd
CVE-2020-14559P4MEDIUMCVSS 4.3v16.04v18.04+1 more2020-07-15
CVE-2020-14559 [MEDIUM] CVE-2020-14559: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). S
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 5.6.48 and prior, 5.7.30 and prior and 8.0.20 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this
nvd
CVE-2025-5054P4MEDIUMCVSS 4.7v16.04v18.04+5 more2025-05-30
CVE-2025-5054 [MEDIUM] CWE-362 CVE-2025-5054: Race condition in Canonical apport up to and including 2.32.0 allows a local attacker to leak sensit
Race condition in Canonical apport up to and including 2.32.0 allows a local attacker to leak sensitive information via PID-reuse by leveraging namespaces.
When handling a crash, the function `_check_global_pid_and_forward`, which detects if the crashing process resided in a container, was being called before `consistency_checks`, which attempts to
nvd
CVE-2018-14435P4MEDIUMCVSS 6.5v14.04v16.04+1 more2018-07-20
CVE-2018-14435 [MEDIUM] CWE-772 CVE-2018-14435: ImageMagick 7.0.8-4 has a memory leak in DecodeImage in coders/pcd.c.
ImageMagick 7.0.8-4 has a memory leak in DecodeImage in coders/pcd.c.
nvd
CVE-2018-14436P4MEDIUMCVSS 6.5v14.04v16.04+1 more2018-07-20
CVE-2018-14436 [MEDIUM] CWE-772 CVE-2018-14436: ImageMagick 7.0.8-4 has a memory leak in ReadMIFFImage in coders/miff.c.
ImageMagick 7.0.8-4 has a memory leak in ReadMIFFImage in coders/miff.c.
nvd
CVE-2018-14437P4MEDIUMCVSS 6.5v14.04v16.04+1 more2018-07-20
CVE-2018-14437 [MEDIUM] CWE-772 CVE-2018-14437: ImageMagick 7.0.8-4 has a memory leak in parse8BIM in coders/meta.c.
ImageMagick 7.0.8-4 has a memory leak in parse8BIM in coders/meta.c.
nvd
CVE-2020-16123P4MEDIUMCVSS 4.7v16.04v18.04+2 more2020-12-04
CVE-2020-16123 [MEDIUM] CWE-362 CVE-2020-16123: An Ubuntu-specific patch in PulseAudio created a race condition where the snap policy module would f
An Ubuntu-specific patch in PulseAudio created a race condition where the snap policy module would fail to identify a client connection from a snap as coming from a snap if SCM_CREDENTIALS were missing, allowing the snap to connect to PulseAudio without proper confinement. This could be exploited by an attacker to expose sensitive information. Fixed
nvd
CVE-2009-2416P4MEDIUMCVSS 6.5v6.06v8.04+2 more2009-08-11
CVE-2009-2416 [MEDIUM] CWE-416 CVE-2009-2416: Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and l
Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (application crash) via crafted (1) Notation or (2) Enumeration attribute types in an XML file, as demonstrated by the Codenomicon XML fuzzing framework.
nvd
CVE-2015-1322P4MEDIUMCVSS 4.6v14.04v14.10+1 more2015-04-29
CVE-2015-1322 [MEDIUM] CWE-22 CVE-2015-1322: Directory traversal vulnerability in the Ubuntu network-manager package for Ubuntu (vivid) before 0.
Directory traversal vulnerability in the Ubuntu network-manager package for Ubuntu (vivid) before 0.9.10.0-4ubuntu15.1, Ubuntu 14.10 before 0.9.8.8-0ubuntu28.1, and Ubuntu 14.04 LTS before 0.9.8.8-0ubuntu7.1 allows local users to change the modem device configuration or read arbitrary files via a .. (dot dot) in the file name in a request to read modem
nvd
CVE-2019-11482P4MEDIUMCVSS 4.7v14.04v16.04+3 more2020-02-08
CVE-2019-11482 [MEDIUM] CWE-367 CVE-2019-11482: Sander Bos discovered a time of check to time of use (TOCTTOU) vulnerability in apport that allowed
Sander Bos discovered a time of check to time of use (TOCTTOU) vulnerability in apport that allowed a user to cause core files to be written in arbitrary directories.
nvd
CVE-2013-4314P4MEDIUMCVSS 4.3v10.04v12.04+2 more2013-09-30
CVE-2013-4314 [MEDIUM] CWE-20 CVE-2013-4314: The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' character in a domain n
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.
nvd
CVE-2017-9404P4MEDIUMCVSS 6.5v14.04v16.042017-06-02
CVE-2017-9404 [MEDIUM] CWE-772 CVE-2017-9404: In LibTIFF 4.0.7, a memory leak vulnerability was found in the function OJPEGReadHeaderInfoSecTables
In LibTIFF 4.0.7, a memory leak vulnerability was found in the function OJPEGReadHeaderInfoSecTablesQTable in tif_ojpeg.c, which allows attackers to cause a denial of service via a crafted file.
nvd
CVE-2017-9403P4MEDIUMCVSS 6.5v14.04v16.042017-06-02
CVE-2017-9403 [MEDIUM] CWE-772 CVE-2017-9403: In LibTIFF 4.0.7, a memory leak vulnerability was found in the function TIFFReadDirEntryLong8Array i
In LibTIFF 4.0.7, a memory leak vulnerability was found in the function TIFFReadDirEntryLong8Array in tif_dirread.c, which allows attackers to cause a denial of service via a crafted file.
nvd