cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 187 of 206
CVE-2020-12767P4MEDIUMCVSS 5.5v12.04v14.04+4 more2020-05-09
CVE-2020-12767 [MEDIUM] CWE-369 CVE-2020-12767: exif_entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error. exif_entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error.
nvd
CVE-2019-19047P4MEDIUMCVSS 5.5v18.04v19.102019-11-18
CVE-2019-19047 [MEDIUM] CWE-401 CVE-2019-19047: A memory leak in the mlx5_fw_fatal_reporter_dump() function in drivers/net/ethernet/mellanox/mlx5/co A memory leak in the mlx5_fw_fatal_reporter_dump() function in drivers/net/ethernet/mellanox/mlx5/core/health.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering mlx5_crdump_collect() failures, aka CID-c7ed6d0183d5.
nvd
CVE-2008-3275P4MEDIUMCVSS 5.5v6.06v7.04+2 more2008-08-12
CVE-2008-3275 [MEDIUM] CWE-120 CVE-2008-3275: The (1) real_lookup and (2) __lookup_hash functions in fs/namei.c in the vfs implementation in the L The (1) real_lookup and (2) __lookup_hash functions in fs/namei.c in the vfs implementation in the Linux kernel before 2.6.25.15 do not prevent creation of a child dentry for a deleted (aka S_DEAD) directory, which allows local users to cause a denial of service ("overflow" of the UBIFS orphan area) via a series of attempted file creations within dele
nvd
CVE-2018-8087P4MEDIUMCVSS 5.5v14.04v16.04+2 more2018-03-13
CVE-2018-8087 [MEDIUM] CWE-772 CVE-2018-8087: Memory leak in the hwsim_new_radio_nl function in drivers/net/wireless/mac80211_hwsim.c in the Linux Memory leak in the hwsim_new_radio_nl function in drivers/net/wireless/mac80211_hwsim.c in the Linux kernel through 4.15.9 allows local users to cause a denial of service (memory consumption) by triggering an out-of-array error case.
nvd
CVE-2009-2906P4MEDIUMCVSS 4.0v6.06v8.04+2 more2009-10-07
CVE-2009-2906 [MEDIUM] CWE-835 CVE-2009-2906: smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows re smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated users to cause a denial of service (infinite loop) via an unanticipated oplock break notification reply packet.
nvd
CVE-2018-15855P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-08-25
CVE-2018-15855 [MEDIUM] CWE-476 CVE-2018-15855: Unchecked NULL pointer usage in xkbcommon before 0.8.1 could be used by local attackers to crash (NU Unchecked NULL pointer usage in xkbcommon before 0.8.1 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file, because the XkbFile for an xkb_geometry section was mishandled.
nvd
CVE-2018-15862P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-08-25
CVE-2018-15862 [MEDIUM] CWE-476 CVE-2018-15862: Unchecked NULL pointer usage in LookupModMask in xkbcomp/expr.c in xkbcommon before 0.8.2 could be u Unchecked NULL pointer usage in LookupModMask in xkbcomp/expr.c in xkbcommon before 0.8.2 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file with invalid virtual modifiers.
nvd
CVE-2018-15858P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-08-25
CVE-2018-15858 [MEDIUM] CWE-476 CVE-2018-15858: Unchecked NULL pointer usage when handling invalid aliases in CopyKeyAliasesToKeymap in xkbcomp/keyc Unchecked NULL pointer usage when handling invalid aliases in CopyKeyAliasesToKeymap in xkbcomp/keycodes.c in xkbcommon before 0.8.1 could be used by local attackers to crash (NULL pointer dereference) the xkbcommon parser by supplying a crafted keymap file.
nvd
CVE-2020-8992P4MEDIUMCVSS 5.5v14.04v16.04+2 more2020-02-14
CVE-2020-8992 [MEDIUM] CWE-400 CVE-2020-8992: ext4_protect_reserved_inode in fs/ext4/block_validity.c in the Linux kernel through 5.5.3 allows att ext4_protect_reserved_inode in fs/ext4/block_validity.c in the Linux kernel through 5.5.3 allows attackers to cause a denial of service (soft lockup) via a crafted journal size.
nvd
CVE-2018-8043P4MEDIUMCVSS 5.5v14.04v16.04+1 more2018-03-10
CVE-2018-8043 [MEDIUM] CWE-476 CVE-2018-8043: The unimac_mdio_probe function in drivers/net/phy/mdio-bcm-unimac.c in the Linux kernel through 4.15 The unimac_mdio_probe function in drivers/net/phy/mdio-bcm-unimac.c in the Linux kernel through 4.15.8 does not validate certain resource availability, which allows local users to cause a denial of service (NULL pointer dereference).
nvd
CVE-2019-19077P4MEDIUMCVSS 5.5v18.04v19.102019-11-18
CVE-2019-19077 [MEDIUM] CWE-401 CVE-2019-19077: A memory leak in the bnxt_re_create_srq() function in drivers/infiniband/hw/bnxt_re/ib_verbs.c in th A memory leak in the bnxt_re_create_srq() function in drivers/infiniband/hw/bnxt_re/ib_verbs.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering copy to udata failures, aka CID-4a9d46a9fe14.
nvd
CVE-2019-19043P4MEDIUMCVSS 5.5v18.04v19.102019-11-18
CVE-2019-19043 [MEDIUM] CWE-401 CVE-2019-19043: A memory leak in the i40e_setup_macvlans() function in drivers/net/ethernet/intel/i40e/i40e_main.c i A memory leak in the i40e_setup_macvlans() function in drivers/net/ethernet/intel/i40e/i40e_main.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering i40e_setup_channel() failures, aka CID-27d461333459.
nvd
CVE-2020-12768P4MEDIUMCVSS 5.5v18.04v19.10+1 more2020-05-09
CVE-2020-12768 [MEDIUM] CWE-401 CVE-2020-12768: An issue was discovered in the Linux kernel before 5.6. svm_cpu_uninit in arch/x86/kvm/svm.c has a m An issue was discovered in the Linux kernel before 5.6. svm_cpu_uninit in arch/x86/kvm/svm.c has a memory leak, aka CID-d80b64ff297e. NOTE: third parties dispute this issue because it's a one-time leak at the boot, the size is negligible, and it can't be triggered at will
nvd
CVE-2010-3079P4MEDIUMCVSS 5.5v9.10v10.04+1 more2010-09-30
CVE-2010-3079 [MEDIUM] CWE-476 CVE-2010-3079: kernel/trace/ftrace.c in the Linux kernel before 2.6.35.5, when debugfs is enabled, does not properl kernel/trace/ftrace.c in the Linux kernel before 2.6.35.5, when debugfs is enabled, does not properly handle interaction between mutex possession and llseek operations, which allows local users to cause a denial of service (NULL pointer dereference and outage of all function tracing files) via an lseek call on a file descriptor associated with the set
nvd
CVE-2018-3174P4MEDIUMCVSS 5.3v12.04v14.04+3 more2018-10-17
CVE-2018-3174 [MEDIUM] CVE-2018-3174: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client programs). Support Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client programs). Supported versions that are affected are 5.5.61 and prior, 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Serv
nvd
CVE-2020-11935P4MEDIUMCVSS 5.5v14.04v16.04+2 more2023-04-07
CVE-2020-11935 [MEDIUM] CWE-911 CVE-2020-11935: It was discovered that aufs improperly managed inode reference counts in the vfsub_dentry_open() met It was discovered that aufs improperly managed inode reference counts in the vfsub_dentry_open() method. A local attacker could use this vulnerability to cause a denial of service attack.
nvd
CVE-2007-5268P4MEDIUMCVSS 4.3v6.06v6.10+2 more2007-10-08
CVE-2007-5268 [MEDIUM] CVE-2007-5268: pngrtran.c in libpng before 1.0.29 and 1.2.x before 1.2.21 use (1) logical instead of bitwise operat pngrtran.c in libpng before 1.0.29 and 1.2.x before 1.2.21 use (1) logical instead of bitwise operations and (2) incorrect comparisons, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG image.
nvd
CVE-2007-4772P4MEDIUMCVSS 4.0v6.06v6.10+2 more2008-01-09
CVE-2007-4772 [MEDIUM] CWE-399 CVE-2007-4772: The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 befo The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows context-dependent attackers to cause a denial of service (infinite loop) via a crafted regular expression.
nvd
CVE-2012-4194P4MEDIUMCVSS 4.3v10.04v11.04+3 more2012-10-29
CVE-2012-4194 [MEDIUM] CWE-79 CVE-2012-4194: Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbi Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 do not prevent use of the valueOf method to shadow the location object (aka window.location), which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via vectors inv
nvd
CVE-2020-2756P4LOWCVSS 3.7v16.04v18.04+1 more2020-04-15
CVE-2020-2756 [LOW] CWE-502 CVE-2020-2756: Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase