cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 173 of 206
CVE-2017-7611P4MEDIUMCVSS 5.5v14.04v16.042017-04-09
CVE-2017-7611 [MEDIUM] CWE-125 CVE-2017-7611: The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a de The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.
nvd
CVE-2017-7610P4MEDIUMCVSS 5.5v14.04v16.042017-04-09
CVE-2017-7610 [MEDIUM] CWE-125 CVE-2017-7610: The check_group function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of The check_group function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.
nvd
CVE-2017-7612P4MEDIUMCVSS 5.5v14.04v16.042017-04-09
CVE-2017-7612 [MEDIUM] CWE-125 CVE-2017-7612: The check_sysv_hash function in elflint.c in elfutils 0.168 allows remote attackers to cause a denia The check_sysv_hash function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.
nvd
CVE-2019-15143P4MEDIUMCVSS 5.5v16.04v18.04+2 more2019-08-18
CVE-2019-15143 [MEDIUM] CWE-835 CVE-2019-15143: In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error (resource exhaustion caused by a GBitmap::read_rle_raw infinite loop) by crafting a corrupted image file, related to libdjvu/DjVmDir.cpp and libdjvu/GBitmap.cpp.
nvd
CVE-2020-11765P4MEDIUMCVSS 5.5v16.04v18.04+2 more2020-04-14
CVE-2020-11765 [MEDIUM] CWE-125 CVE-2020-11765: An issue was discovered in OpenEXR before 2.4.1. There is an off-by-one error in use of the ImfXdr.h An issue was discovered in OpenEXR before 2.4.1. There is an off-by-one error in use of the ImfXdr.h read function by DwaCompressor::Classifier::Classifier, leading to an out-of-bounds read.
nvd
CVE-2017-18236P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-03-15
CVE-2017-18236 [MEDIUM] CWE-835 CVE-2017-18236: An issue was discovered in Exempi before 2.4.4. The ASF_Support::ReadHeaderObject function in XMPFil An issue was discovered in Exempi before 2.4.4. The ASF_Support::ReadHeaderObject function in XMPFiles/source/FormatSupport/ASF_Support.cpp allows remote attackers to cause a denial of service (infinite loop) via a crafted .asf file.
nvd
CVE-2013-6425P4MEDIUMCVSS 5.0v12.04v12.10+2 more2014-01-18
CVE-2013-6425 [MEDIUM] CWE-191 CVE-2013-6425: Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as used i Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as used in X.Org server and cairo, allows context-dependent attackers to cause a denial of service (crash) via a negative bottom value.
nvd
CVE-2014-9756P4MEDIUMCVSS 5.0v12.04v14.04+2 more2015-11-19
CVE-2014-9756 [MEDIUM] CWE-369 CVE-2014-9756: The psf_fwrite function in file_io.c in libsndfile allows attackers to cause a denial of service (di The psf_fwrite function in file_io.c in libsndfile allows attackers to cause a denial of service (divide-by-zero error and application crash) via unspecified vectors related to the headindex variable.
nvd
CVE-2019-1010319P4MEDIUMCVSS 5.5v18.04v19.042019-07-11
CVE-2019-1010319 [MEDIUM] CWE-457 CVE-2019-1010319: WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable. The impact is: Une WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable. The impact is: Unexpected control flow, crashes, and segfaults. The component is: ParseWave64HeaderConfig (wave64.c:211). The attack vector is: Maliciously crafted .wav file. The fixed version is: After commit https://github.com/dbry/WavPack/commit/33a0025d1d63ccd0
nvd
CVE-2019-1010317P4MEDIUMCVSS 5.5v18.04v19.042019-07-11
CVE-2019-1010317 [MEDIUM] CWE-457 CVE-2019-1010317: WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable. The impact is: Une WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable. The impact is: Unexpected control flow, crashes, and segfaults. The component is: ParseCaffHeaderConfig (caff.c:486). The attack vector is: Maliciously crafted .wav file. The fixed version is: After commit https://github.com/dbry/WavPack/commit/f68a9555b548306c5b1e
nvd
CVE-2020-10994P4MEDIUMCVSS 5.5v16.04v18.042020-06-25
CVE-2020-10994 [MEDIUM] CWE-125 CVE-2020-10994: In libImaging/Jpeg2KDecode.c in Pillow before 7.1.0, there are multiple out-of-bounds reads via a cr In libImaging/Jpeg2KDecode.c in Pillow before 7.1.0, there are multiple out-of-bounds reads via a crafted JP2 file.
nvd
CVE-2018-16541P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-09-05
CVE-2018-16541 [MEDIUM] CWE-416 CVE-2018-16541: In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use inco In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect free logic in pagedevice replacement to crash the interpreter.
nvd
CVE-2019-7150P4MEDIUMCVSS 5.5v16.04v18.04+1 more2019-01-29
CVE-2019-7150 [MEDIUM] CWE-125 CVE-2019-7150: An issue was discovered in elfutils 0.175. A segmentation fault can occur in the function elf64_xlat An issue was discovered in elfutils 0.175. A segmentation fault can occur in the function elf64_xlatetom in libelf/elf32_xlatetom.c, due to dwfl_segment_report_module not checking whether the dyn data read from a core file is truncated. A crafted input can cause a program crash, leading to denial-of-service, as demonstrated by eu-stack.
nvd
CVE-2006-6503P4MEDIUMCVSS 6.8v5.10v6.06+1 more2006-12-20
CVE-2006-6503 [MEDIUM] CWE-254 CVE-2006-6503: Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to bypass cross-site scripting (XSS) protection by changing the src attribute of an IMG element to a javascript: URI.
nvd
CVE-2017-9208P4MEDIUMCVSS 5.5v14.04v16.04+1 more2017-05-23
CVE-2017-9208 [MEDIUM] CWE-835 CVE-2017-9208: libqpdf.a in QPDF 6.0.0 allows remote attackers to cause a denial of service (infinite recursion and libqpdf.a in QPDF 6.0.0 allows remote attackers to cause a denial of service (infinite recursion and stack consumption) via a crafted PDF document, related to releaseResolved functions, aka qpdf-infiniteloop1.
nvd
CVE-2017-15873P4MEDIUMCVSS 5.5v14.04v16.04+2 more2017-10-24
CVE-2017-15873 [MEDIUM] CWE-190 CVE-2017-15873: The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Int The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Integer Overflow that may lead to a write access violation.
nvd
CVE-2018-15378P4MEDIUMCVSS 5.5v12.04v14.04+2 more2018-10-15
CVE-2018-15378 [MEDIUM] CWE-125 CVE-2018-15378: A vulnerability in ClamAV versions prior to 0.100.2 could allow an attacker to cause a denial of ser A vulnerability in ClamAV versions prior to 0.100.2 could allow an attacker to cause a denial of service (DoS) condition. The vulnerability is due to an error related to the MEW unpacker within the "unmew11()" function (libclamav/mew.c), which can be exploited to trigger an invalid read memory access via a specially crafted EXE file.
nvd
CVE-2020-3810P4MEDIUMCVSS 5.5v12.04v14.04+4 more2020-05-15
CVE-2020-3810 [MEDIUM] CWE-20 CVE-2020-3810: Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in d Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
nvd
CVE-2017-17811P4MEDIUMCVSS 5.5v14.042017-12-21
CVE-2017-17811 [MEDIUM] CVE-2017-17811: In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer overflow that will cause a remote In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer overflow that will cause a remote denial of service attack, related to a strcpy in paste_tokens in asm/preproc.c, a similar issue to CVE-2017-11111.
nvd
CVE-2019-18849P4MEDIUMCVSS 5.5v16.042019-11-11
CVE-2019-18849 [MEDIUM] CWE-125 CVE-2019-18849: In tnef before 1.4.18, an attacker may be able to write to the victim's .ssh/authorized_keys file vi In tnef before 1.4.18, an attacker may be able to write to the victim's .ssh/authorized_keys file via an e-mail message with a crafted winmail.dat application/ms-tnef attachment, because of a heap-based buffer over-read involving strdup.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase