cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 165 of 206
CVE-2020-11758P4MEDIUMCVSS 5.5v16.04v18.04+2 more2020-04-14
CVE-2020-11758 [MEDIUM] CWE-125 CVE-2020-11758: An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixel An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h.
nvd
CVE-2020-11761P4MEDIUMCVSS 5.5v16.04v18.04+2 more2020-04-14
CVE-2020-11761 [MEDIUM] CWE-125 CVE-2020-11761: An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncom An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonstrated by FastHufDecoder::refill in ImfFastHuf.cpp.
nvd
CVE-2020-16306P4MEDIUMCVSS 5.5v16.04v18.04+1 more2020-08-13
CVE-2020-16306 [MEDIUM] CWE-476 CVE-2020-16306: A null pointer dereference vulnerability in devices/gdevtsep.c of Artifex Software GhostScript v9.50 A null pointer dereference vulnerability in devices/gdevtsep.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted postscript file. This is fixed in v9.51.
nvd
CVE-2020-13800P4MEDIUMCVSS 6.0v16.04v18.04+1 more2020-06-04
CVE-2020-13800 [MEDIUM] CWE-674 CVE-2020-13800: ati-vga in hw/display/ati.c in QEMU 4.2.0 allows guest OS users to trigger infinite recursion via a ati-vga in hw/display/ati.c in QEMU 4.2.0 allows guest OS users to trigger infinite recursion via a crafted mm_index value during an ati_mm_read or ati_mm_write call.
nvd
CVE-2018-0360P4MEDIUMCVSS 5.5v12.04v14.04+2 more2018-07-16
CVE-2018-0360 [MEDIUM] CWE-190 CVE-2018-0360: ClamAV before 0.100.1 has an HWP integer overflow with a resultant infinite loop via a crafted Hangu ClamAV before 0.100.1 has an HWP integer overflow with a resultant infinite loop via a crafted Hangul Word Processor file. This is in parsehwp3_paragraph() in libclamav/hwp.c.
nvd
CVE-2017-7613P4MEDIUMCVSS 5.5v14.04v16.042017-04-09
CVE-2017-7613 [MEDIUM] CWE-20 CVE-2017-7613: elflint.c in elfutils 0.168 does not validate the number of sections and the number of segments, whi elflint.c in elfutils 0.168 does not validate the number of sections and the number of segments, which allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file.
nvd
CVE-2018-1000085P4MEDIUMCVSS 5.5v12.04v14.04+2 more2018-03-13
CVE-2018-1000085 [MEDIUM] CWE-125 CVE-2018-1000085: ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerability in XAR parser, ClamAV version version 0.99.3 contains a Out of bounds heap memory read vulnerability in XAR parser, function xar_hash_check() that can result in Leaking of memory, may help in developing exploit chains.. This attack appear to be exploitable via The victim must scan a crafted XAR file. This vulnerability appears to have been fixed in after commi
nvd
CVE-2017-15298P4MEDIUMCVSS 5.5v14.04v16.04+2 more2017-10-14
CVE-2017-15298 [MEDIUM] CWE-400 CVE-2017-15298: Git through 2.14.2 mishandles layers of tree objects, which allows remote attackers to cause a denia Git through 2.14.2 mishandles layers of tree objects, which allows remote attackers to cause a denial of service (memory consumption) via a crafted repository, aka a Git bomb. This can also have an impact of disk consumption; however, an affected process typically would not survive its attempt to build the data structure in memory before writing to
nvd
CVE-2016-4441P4MEDIUMCVSS 6.0v12.04v14.04+1 more2016-05-20
CVE-2016-4441 [MEDIUM] CWE-119 CVE-2016-4441: The get_cmd function in hw/scsi/esp.c in the 53C9X Fast SCSI Controller (FSC) support in QEMU does n The get_cmd function in hw/scsi/esp.c in the 53C9X Fast SCSI Controller (FSC) support in QEMU does not properly check DMA length, which allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via unspecified vectors, involving an SCSI command.
nvd
CVE-2009-3238P4MEDIUMCVSS 5.5v6.06v8.04+2 more2009-09-18
CVE-2009-3238 [MEDIUM] CWE-338 CVE-2009-3238: The get_random_int function in drivers/char/random.c in the Linux kernel before 2.6.30 produces insu The get_random_int function in drivers/char/random.c in the Linux kernel before 2.6.30 produces insufficiently random numbers, which allows attackers to predict the return value, and possibly defeat protection mechanisms based on randomization, via vectors that leverage the function's tendency to "return the same value over and over again for long str
nvd
CVE-2019-9074P4MEDIUMCVSS 5.5v18.042019-02-24
CVE-2019-9074 [MEDIUM] CWE-125 CVE-2019-9074: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an out-of-bounds read leading to a SEGV in bfd_getl32 in libbfd.c, when called from pex64_get_runtime_function in pei-x86_64.c.
nvd
CVE-2015-0808P4MEDIUMCVSS 5.0v12.04v14.04+1 more2015-04-01
CVE-2015-0808 [MEDIUM] CWE-17 CVE-2015-0808: The webrtc::VPMContentAnalysis::Release function in the WebRTC implementation in Mozilla Firefox bef The webrtc::VPMContentAnalysis::Release function in the WebRTC implementation in Mozilla Firefox before 37.0 uses incompatible approaches to the deallocation of memory for simple-type arrays, which might allow remote attackers to cause a denial of service (memory corruption) via unspecified vectors.
nvd
CVE-2019-1010315P4MEDIUMCVSS 5.5v18.04v19.042019-07-11
CVE-2019-1010315 [MEDIUM] CWE-369 CVE-2019-1010315: WavPack 5.1 and earlier is affected by: CWE 369: Divide by Zero. The impact is: Divide by zero can l WavPack 5.1 and earlier is affected by: CWE 369: Divide by Zero. The impact is: Divide by zero can lead to sudden crash of a software/service that tries to parse a .wav file. The component is: ParseDsdiffHeaderConfig (dsdiff.c:282). The attack vector is: Maliciously crafted .wav file. The fixed version is: After commit https://github.com/dbry/Wa
nvd
CVE-2019-16167P4MEDIUMCVSS 5.5v16.04v18.04+2 more2019-09-09
CVE-2019-16167 [MEDIUM] CWE-190 CVE-2019-16167: sysstat before 12.1.6 has memory corruption due to an Integer Overflow in remap_struct() in sa_commo sysstat before 12.1.6 has memory corruption due to an Integer Overflow in remap_struct() in sa_common.c.
nvd
CVE-2020-29385P4MEDIUMCVSS 5.5v20.04v20.102020-12-26
CVE-2020-29385 [MEDIUM] CWE-835 CVE-2020-29385: GNOME gdk-pixbuf (aka GdkPixbuf) before 2.42.2 allows a denial of service (infinite loop) in lzw.c i GNOME gdk-pixbuf (aka GdkPixbuf) before 2.42.2 allows a denial of service (infinite loop) in lzw.c in the function write_indexes. if c->self_code equals 10, self->code_table[10].extends will assign the value 11 to c. The next execution in the loop will assign self->code_table[11].extends to c, which will give the value of 10. This will make the loop
nvd
CVE-2017-17817P4MEDIUMCVSS 5.5v14.042017-12-21
CVE-2017-17817 [MEDIUM] CWE-416 CVE-2017-17817: In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_verror in asm/preproc.c that wi In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_verror in asm/preproc.c that will cause a remote denial of service attack.
nvd
CVE-2018-2816P4MEDIUMCVSS 4.9v14.04v16.04+2 more2018-04-19
CVE-2018-2816 [MEDIUM] CVE-2018-2816: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized abi
nvd
CVE-2018-2779P4MEDIUMCVSS 4.9v14.04v16.04+1 more2018-04-19
CVE-2018-2779 [MEDIUM] CVE-2018-2779: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized abi
nvd
CVE-2018-2846P4MEDIUMCVSS 4.9v14.04v16.04+2 more2018-04-19
CVE-2018-2846 [MEDIUM] CVE-2018-2846: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Performance Schem Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Performance Schema). Supported versions that are affected are 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unautho
nvd
CVE-2018-2839P4MEDIUMCVSS 4.9v14.04v16.04+2 more2018-04-19
CVE-2018-2839 [MEDIUM] CVE-2018-2839: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported v Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported versions that are affected are 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability t
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase