cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 189 of 206
CVE-2019-15215P4MEDIUMCVSS 4.6v16.04v18.04+1 more2019-08-19
CVE-2019-15215 [MEDIUM] CWE-416 CVE-2019-15215: An issue was discovered in the Linux kernel before 5.2.6. There is a use-after-free caused by a mali An issue was discovered in the Linux kernel before 5.2.6. There is a use-after-free caused by a malicious USB device in the drivers/media/usb/cpia2/cpia2_usb.c driver.
nvd
CVE-2019-19083P4MEDIUMCVSS 4.7v14.04v16.04+3 more2019-11-18
CVE-2019-19083 [MEDIUM] CWE-401 CVE-2019-19083: Memory leaks in *clock_source_create() functions under drivers/gpu/drm/amd/display/dc in the Linux k Memory leaks in *clock_source_create() functions under drivers/gpu/drm/amd/display/dc in the Linux kernel before 5.3.8 allow attackers to cause a denial of service (memory consumption). This affects the dce112_clock_source_create() function in drivers/gpu/drm/amd/display/dc/dce112/dce112_resource.c, the dce100_clock_source_create() function in drive
nvd
CVE-2017-9117P4MEDIUMCVSS 4.0v14.04v16.04+1 more2017-05-21
CVE-2017-9117 [MEDIUM] CWE-125 CVE-2017-9117: In LibTIFF 4.0.6 and possibly other versions, the program processes BMP images without verifying tha In LibTIFF 4.0.6 and possibly other versions, the program processes BMP images without verifying that biWidth and biHeight in the bitmap-information header match the actual input, as demonstrated by a heap-based buffer over-read in bmp2tiff. NOTE: mentioning bmp2tiff does not imply that the activation point is in the bmp2tiff.c file (which was removed
nvd
CVE-2018-5167P4MEDIUMCVSS 4.3v14.04v16.04+2 more2018-06-11
CVE-2018-5167 [MEDIUM] CWE-20 CVE-2018-5167: The web console and JavaScript debugger do not sanitize all output that can be hyperlinked. Both wil The web console and JavaScript debugger do not sanitize all output that can be hyperlinked. Both will display "chrome:" links as active, clickable hyperlinks in their output. Web sites should not be able to directly link to internal chrome pages. Additionally, the JavaScript debugger will display "javascript:" links, which users could be tricked into c
nvd
CVE-2016-0598P4LOWCVSS 3.5v12.04v14.04+2 more2016-01-21
CVE-2016-0598 [LOW] CVE-2016-0598: Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and Mari Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via vectors related to DML.
nvd
CVE-2016-0608P4LOWCVSS 3.5v12.04v14.04+2 more2016-01-21
CVE-2016-0608 [LOW] CVE-2016-0608: Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and Mari Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via vectors related to UDF.
nvd
CVE-2016-0600P4LOWCVSS 3.5v12.04v14.04+2 more2016-01-21
CVE-2016-0600 [LOW] CVE-2016-0600: Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and Mari Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via unknown vectors related to InnoDB.
nvd
CVE-2013-1051P4MEDIUMCVSS 4.3v11.10v12.04+1 more2013-03-21
CVE-2013-1051 [MEDIUM] CWE-20 CVE-2013-1051: apt 0.8.16, 0.9.7, and possibly other versions does not properly handle InRelease files, which allow apt 0.8.16, 0.9.7, and possibly other versions does not properly handle InRelease files, which allows man-in-the-middle attackers to modify packages before installation via unknown vectors, possibly related to integrity checking and the use of third-party repositories.
nvd
CVE-2018-16888P4MEDIUMCVSS 4.7v16.04v18.04+1 more2019-01-14
CVE-2018-16888 [MEDIUM] CWE-250 CVE-2018-16888: It was discovered systemd does not correctly check the content of PIDFile files before using it to k It was discovered systemd does not correctly check the content of PIDFile files before using it to kill processes. When a service is run from an unprivileged user (e.g. User field set in the service file), a local attacker who is able to write to the PIDFile of the mentioned service may use this flaw to trick systemd into killing other services and/
nvd
CVE-2014-3611P4MEDIUMCVSS 4.7v10.04v12.042014-11-10
CVE-2014-3611 [MEDIUM] CWE-362 CVE-2014-3611: Race condition in the __kvm_migrate_pit_timer function in arch/x86/kvm/i8254.c in the KVM subsystem Race condition in the __kvm_migrate_pit_timer function in arch/x86/kvm/i8254.c in the KVM subsystem in the Linux kernel through 3.17.2 allows guest OS users to cause a denial of service (host OS crash) by leveraging incorrect PIT emulation.
nvd
CVE-2023-2612P4MEDIUMCVSS 4.7v20.04v22.04+1 more2023-05-31
CVE-2023-2612 [MEDIUM] CWE-667 CVE-2023-2612: Jean-Baptiste Cayrou discovered that the shiftfs file system in the Ubuntu Linux kernel contained a Jean-Baptiste Cayrou discovered that the shiftfs file system in the Ubuntu Linux kernel contained a race condition when handling inode locking in some situations. A local attacker could use this to cause a denial of service (kernel deadlock).
nvd
CVE-2015-0834P4MEDIUMCVSS 4.3v12.04v14.04+1 more2015-02-25
CVE-2015-0834 [MEDIUM] CWE-200 CVE-2015-0834: The WebRTC subsystem in Mozilla Firefox before 36.0 recognizes turns: and stuns: URIs but accesses t The WebRTC subsystem in Mozilla Firefox before 36.0 recognizes turns: and stuns: URIs but accesses the TURN or STUN server without using TLS, which makes it easier for man-in-the-middle attackers to discover credentials by spoofing a server and completing a brute-force attack within a short time window.
nvd
CVE-2014-4653P4MEDIUMCVSS 4.6v12.042014-07-03
CVE-2014-4653 [MEDIUM] CWE-416 CVE-2014-4653: sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not e sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not ensure possession of a read/write lock, which allows local users to cause a denial of service (use-after-free) and obtain sensitive information from kernel memory by leveraging /dev/snd/controlCX access.
nvd
CVE-2019-19947P4MEDIUMCVSS 4.6v14.04v16.04+2 more2019-12-24
CVE-2019-19947 [MEDIUM] CWE-908 CVE-2019-19947: In the Linux kernel through 5.4.6, there are information leaks of uninitialized memory to a USB devi In the Linux kernel through 5.4.6, there are information leaks of uninitialized memory to a USB device in the drivers/net/can/usb/kvaser_usb/kvaser_usb_leaf.c driver, aka CID-da2311a6385c.
nvd
CVE-2015-1342P4MEDIUMCVSS 4.6v15.04v15.102015-12-07
CVE-2015-1342 [MEDIUM] CWE-264 CVE-2015-1342: LXCFS before 0.12 does not properly enforce directory escapes, which might allow local users to gain LXCFS before 0.12 does not properly enforce directory escapes, which might allow local users to gain privileges by (1) querying or (2) updating a cgroup.
nvd
CVE-2020-28040P4MEDIUMCVSS 4.3v16.04v18.04+1 more2020-11-02
CVE-2020-28040 [MEDIUM] CWE-352 CVE-2020-28040: WordPress before 5.5.2 allows CSRF attacks that change a theme's background image. WordPress before 5.5.2 allows CSRF attacks that change a theme's background image.
nvd
CVE-2020-12862P4MEDIUMCVSS 4.3v16.04v18.04+1 more2020-06-24
CVE-2020-12862 [MEDIUM] CWE-125 CVE-2020-12862: An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the s An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-082.
nvd
CVE-2020-12863P4MEDIUMCVSS 4.3v16.04v18.04+1 more2020-06-24
CVE-2020-12863 [MEDIUM] CWE-125 CVE-2020-12863: An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the s An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-083.
nvd
CVE-2019-19318P4MEDIUMCVSS 4.4v14.04v16.04+1 more2019-11-28
CVE-2019-19318 [MEDIUM] CWE-416 CVE-2019-19318: In the Linux kernel 5.3.11, mounting a crafted btrfs image twice can cause an rwsem_down_write_slowp In the Linux kernel 5.3.11, mounting a crafted btrfs image twice can cause an rwsem_down_write_slowpath use-after-free because (in rwsem_can_spin_on_owner in kernel/locking/rwsem.c) rwsem_owner_flags returns an already freed pointer,
nvd
CVE-2007-5023P4MEDIUMCVSS 6.9v6.06v6.10+1 more2007-09-21
CVE-2007-5023 [MEDIUM] CWE-264 CVE-2007-5023: Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6. Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075, and Server before 1.0.4 Build 56528 allows local users to gain privileges via unspecified vectors, possibly involving a mali
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase