cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 199 of 206
CVE-2020-13361P4LOWCVSS 3.9v16.04v18.04+1 more2020-05-28
CVE-2020-13361 [LOW] CWE-787 CVE-2020-13361: In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.
nvd
CVE-2020-16092P4LOWCVSS 3.8v16.04v18.04+1 more2020-08-11
CVE-2020-16092 [LOW] CWE-617 CVE-2020-16092: In QEMU through 5.0.0, an assertion failure can occur in the network packet processing. This issue a In QEMU through 5.0.0, an assertion failure can occur in the network packet processing. This issue affects the e1000e and vmxnet3 network devices. A malicious guest user/process could use this flaw to abort the QEMU process on the host, resulting in a denial of service condition in net_tx_pkt_add_raw_fragment in hw/net/net_tx_pkt.c.
nvd
CVE-2005-2492P4LOWCVSS 3.6v4.10v5.042005-09-14
CVE-2005-2492 [LOW] CWE-264 CVE-2005-2492: The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denia The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denial of service (change hardware state) or read from arbitrary memory via crafted input.
nvd
CVE-2018-18310P4MEDIUMCVSS 5.5v16.04v18.04+1 more2018-10-15
CVE-2018-18310 [MEDIUM] CWE-119 CVE-2018-18310: An invalid memory address dereference was discovered in dwfl_segment_report_module.c in libdwfl in e An invalid memory address dereference was discovered in dwfl_segment_report_module.c in libdwfl in elfutils through v0.174. The vulnerability allows attackers to cause a denial of service (application crash) with a crafted ELF file, as demonstrated by consider_notes.
nvd
CVE-2015-0820P4LOWCVSS 2.6v12.04v14.04+1 more2015-02-25
CVE-2015-0820 [LOW] CWE-284 CVE-2015-0820: Mozilla Firefox before 36.0 does not properly restrict transitions of JavaScript objects from a non- Mozilla Firefox before 36.0 does not properly restrict transitions of JavaScript objects from a non-extensible state to an extensible state, which allows remote attackers to bypass a Caja Compiler sandbox protection mechanism or a Secure EcmaScript sandbox protection mechanism via a crafted web site.
nvd
CVE-2013-2037P4LOWCVSS 2.6v10.04v12.04+2 more2014-01-18
CVE-2013-2037 [LOW] CWE-20 CVE-2013-2037: httplib2 0.7.2, 0.8, and earlier, after an initial connection is made, does not verify that the serv httplib2 0.7.2, 0.8, and earlier, after an initial connection is made, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
nvd
CVE-2011-1593P4MEDIUMCVSS 4.9v8.042011-05-03
CVE-2011-1593 [MEDIUM] CWE-190 CVE-2011-1593: Multiple integer overflows in the next_pidmap function in kernel/pid.c in the Linux kernel before 2. Multiple integer overflows in the next_pidmap function in kernel/pid.c in the Linux kernel before 2.6.38.4 allow local users to cause a denial of service (system crash) via a crafted (1) getdents or (2) readdir system call.
nvd
CVE-2008-3534P4MEDIUMCVSS 4.9v6.06v7.10+1 more2008-08-08
CVE-2008-3534 [MEDIUM] CWE-400 CVE-2008-3534: The shmem_delete_inode function in mm/shmem.c in the tmpfs implementation in the Linux kernel before The shmem_delete_inode function in mm/shmem.c in the tmpfs implementation in the Linux kernel before 2.6.26.1 allows local users to cause a denial of service (system crash) via a certain sequence of file create, remove, and overwrite operations, as demonstrated by the insserv program, related to allocation of "useless pages" and improper maintenance o
nvd
CVE-2010-3067P4MEDIUMCVSS 4.9v6.06v8.04+4 more2010-09-21
CVE-2010-3067 [MEDIUM] CWE-190 CVE-2010-3067: Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact via crafted use of the io_submit system call.
nvd
CVE-2010-0623P4MEDIUMCVSS 4.9v6.06v8.04+3 more2010-02-15
CVE-2010-0623 [MEDIUM] CVE-2010-0623: The futex_lock_pi function in kernel/futex.c in the Linux kernel before 2.6.33-rc7 does not properly The futex_lock_pi function in kernel/futex.c in the Linux kernel before 2.6.33-rc7 does not properly manage a certain reference count, which allows local users to cause a denial of service (OOPS) via vectors involving an unmount of an ext3 filesystem.
nvd
CVE-2013-1067P4MEDIUMCVSS 4.9v12.04v12.10+2 more2013-10-25
CVE-2013-1067 [MEDIUM] CWE-264 CVE-2013-1067: Apport 2.12.5 and earlier uses weak permissions for core dump files created by setuid binaries, whic Apport 2.12.5 and earlier uses weak permissions for core dump files created by setuid binaries, which allows local users to obtain sensitive information by reading the file.
nvd
CVE-2014-4508P4MEDIUMCVSS 4.7v12.042014-06-23
CVE-2014-4508 [MEDIUM] CWE-189 CVE-2014-4508: arch/x86/kernel/entry_32.S in the Linux kernel through 3.15.1 on 32-bit x86 platforms, when syscall arch/x86/kernel/entry_32.S in the Linux kernel through 3.15.1 on 32-bit x86 platforms, when syscall auditing is enabled and the sep CPU feature flag is set, allows local users to cause a denial of service (OOPS and system crash) via an invalid syscall number, as demonstrated by number 1000.
nvd
CVE-2016-3951P4MEDIUMCVSS 4.6v12.04v14.04+1 more2016-05-02
CVE-2016-3951 [MEDIUM] CVE-2016-3951: Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physica Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (system crash) or possibly have unspecified other impact by inserting a USB device with an invalid USB descriptor.
nvd
CVE-2014-5388P4MEDIUMCVSS 4.6v10.04v12.04+2 more2014-11-15
CVE-2014-5388 [MEDIUM] CWE-193 CVE-2014-5388: Off-by-one error in the pci_read function in the ACPI PCI hotplug interface (hw/acpi/pcihp.c) in QEM Off-by-one error in the pci_read function in the ACPI PCI hotplug interface (hw/acpi/pcihp.c) in QEMU allows local guest users to obtain sensitive information and have other unspecified impact related to a crafted PCI device that triggers memory corruption.
nvd
CVE-2014-9644P4LOWCVSS 2.1v12.04v14.04+1 more2015-03-02
CVE-2014-9644 [LOW] CVE-2014-9644: The Crypto API in the Linux kernel before 3.18.5 allows local users to load arbitrary kernel modules The Crypto API in the Linux kernel before 3.18.5 allows local users to load arbitrary kernel modules via a bind system call for an AF_ALG socket with a parenthesized module template expression in the salg_name field, as demonstrated by the vfat(aes) expression, a different vulnerability than CVE-2013-7421.
nvd
CVE-2008-1945P4LOWCVSS 2.1v8.04v8.102008-08-08
CVE-2008-1945 [LOW] CVE-2008-1945: QEMU 0.9.0 does not properly handle changes to removable media, which allows guest OS users to read QEMU 0.9.0 does not properly handle changes to removable media, which allows guest OS users to read arbitrary files on the host OS by using the diskformat: parameter in the -usbdevice option to modify the disk-image header to identify a different format, a related issue to CVE-2008-2004.
nvd
CVE-2019-19045P4MEDIUMCVSS 4.4v14.04v16.04+3 more2019-11-18
CVE-2019-19045 [MEDIUM] CWE-401 CVE-2019-19045: A memory leak in the mlx5_fpga_conn_create_cq() function in drivers/net/ethernet/mellanox/mlx5/core/ A memory leak in the mlx5_fpga_conn_create_cq() function in drivers/net/ethernet/mellanox/mlx5/core/fpga/conn.c in the Linux kernel before 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering mlx5_vector2eqn() failures, aka CID-c8c2a057fdc7.
nvd
CVE-2012-3167P4LOWCVSS 3.5v10.04v11.10+2 more2012-10-17
CVE-2012-3167 [LOW] CVE-2012-3167: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.63 and earlier, and 5.5. Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.63 and earlier, and 5.5.25 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Full Text Search.
nvd
CVE-2016-4453P4MEDIUMCVSS 4.4v12.04v14.04+1 more2016-06-01
CVE-2016-4453 [MEDIUM] CWE-835 CVE-2016-4453: The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU allows local guest OS administrators The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via a VGA command.
nvd
CVE-2019-2797P4MEDIUMCVSS 4.2v16.04v18.04+1 more2019-07-23
CVE-2019-2797 [MEDIUM] CVE-2019-2797: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client programs). Support Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client programs). Supported versions that are affected are 5.7.26 and prior and 8.0.16 and prior. Difficult to exploit vulnerability allows high privileged attacker with access to the physical communication segment attached to the hardware where the MySQL Server executes to compromise
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase