cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 59 of 206
CVE-2018-12395P3HIGHCVSS 7.5v14.04v16.04+2 more2019-02-28
CVE-2018-12395 [HIGH] CVE-2018-12395: By rewriting the Host: request headers using the webRequest API, a WebExtension can bypass domain re By rewriting the Host: request headers using the webRequest API, a WebExtension can bypass domain restrictions through domain fronting. This would allow access to domains that share a host that are otherwise restricted. This vulnerability affects Firefox ESR < 60.3 and Firefox < 63.
nvd
CVE-2018-5099P3CRITICALCVSS 9.8v14.04v16.04+1 more2018-06-11
CVE-2018-5099 [CRITICAL] CWE-416 CVE-2018-5099: A use-after-free vulnerability can occur when the widget listener is holding strong references to br A use-after-free vulnerability can occur when the widget listener is holding strong references to browser objects that have previously been freed, resulting in a potentially exploitable crash when these references are used. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.
nvd
CVE-2018-5103P3CRITICALCVSS 9.8v14.04v16.04+1 more2018-06-11
CVE-2018-5103 [CRITICAL] CWE-416 CVE-2018-5103: A use-after-free vulnerability can occur during mouse event handling due to issues with multiprocess A use-after-free vulnerability can occur during mouse event handling due to issues with multiprocess support. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.6, Firefox ESR < 52.6, and Firefox < 58.
nvd
CVE-2018-5148P3CRITICALCVSS 9.8v14.04v16.04+1 more2018-06-11
CVE-2018-5148 [CRITICAL] CWE-416 CVE-2018-5148: A use-after-free vulnerability can occur in the compositor during certain graphics operations when a A use-after-free vulnerability can occur in the compositor during certain graphics operations when a raw pointer is used instead of a reference counted one. This results in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52.7.3 and Firefox < 59.0.2.
nvd
CVE-2019-16163P3HIGHCVSS 7.5v14.042019-09-09
CVE-2019-16163 [HIGH] CWE-674 CVE-2019-16163: Oniguruma before 6.9.3 allows Stack Exhaustion in regcomp.c because of recursion in regparse.c. Oniguruma before 6.9.3 allows Stack Exhaustion in regcomp.c because of recursion in regparse.c.
nvd
CVE-2018-9363P3HIGHCVSS 8.4v12.04v14.04+2 more2018-11-06
CVE-2018-9363 [HIGH] CWE-190 CVE-2018-9363: In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of bounds write with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-65853588 References: Upstream kernel.
nvd
CVE-2018-16884P3HIGHCVSS 8.0v14.04v16.042018-12-18
CVE-2018-16884 [HIGH] CWE-416 CVE-2018-16884: A flaw was found in the Linux kernel's NFS41+ subsystem. NFS41+ shares mounted in different network A flaw was found in the Linux kernel's NFS41+ subsystem. NFS41+ shares mounted in different network namespaces at the same time can make bc_svc_process() use wrong back-channel IDs and cause a use-after-free vulnerability. Thus a malicious container user can cause a host kernel memory corruption and a system panic. Due to the nature of the flaw, privil
nvd
CVE-2013-0756P3CRITICALCVSS 9.3v10.04v11.10+2 more2013-01-13
CVE-2013-0756 [CRITICAL] CWE-416 CVE-2013-0756: Use-after-free vulnerability in the obj_toSource function in Mozilla Firefox before 18.0, Firefox ES Use-after-free vulnerability in the obj_toSource function in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 allows remote attackers to execute arbitrary code via a crafted web page referencing JavaScript Proxy objects that are not properly handled
nvd
CVE-2019-18218P3HIGHCVSS 7.8v12.04v14.04+4 more2019-10-21
CVE-2019-18218 [HIGH] CWE-787 CVE-2019-18218: cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elem cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).
nvd
CVE-2014-9402P3HIGHCVSS 7.8v10.04v12.04+2 more2015-02-24
CVE-2014-9402 [HIGH] CWE-399 CVE-2014-9402: The nss_dns implementation of getnetbyname in GNU C Library (aka glibc) before 2.21, when the DNS ba The nss_dns implementation of getnetbyname in GNU C Library (aka glibc) before 2.21, when the DNS backend in the Name Service Switch configuration is enabled, allows remote attackers to cause a denial of service (infinite loop) by sending a positive answer while a network name is being process.
nvd
CVE-2013-1927P3MEDIUMCVSS 6.8v10.04v11.10+2 more2013-04-29
CVE-2013-1927 [MEDIUM] CVE-2013-1927: The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitr The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."
nvd
CVE-2019-3839P3HIGHCVSS 7.8v16.04v18.04+2 more2019-05-16
CVE-2019-3839 [HIGH] CWE-648 CVE-2019-3839: It was found that in ghostscript some privileged operators remained accessible from various places a It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript file could use this flaw in order to, for example, have access to the file system outside of the constrains imposed by -dSAFER. Ghostscript versions before 9.27 are vulnerable.
nvd
CVE-2014-10071P3CRITICALCVSS 9.8v14.04v16.04+1 more2018-02-27
CVE-2014-10071 [CRITICAL] CWE-119 CVE-2014-10071: In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax. In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax.
nvd
CVE-2018-13259P3CRITICALCVSS 9.8v14.04v16.04+1 more2018-09-05
CVE-2018-13259 [CRITICAL] CWE-20 CVE-2018-13259: An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, pot An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.
nvd
CVE-2018-5205P3HIGHCVSS 7.5v14.04v16.04+2 more2018-01-06
CVE-2018-5205 [HIGH] CWE-134 CVE-2018-5205: When using incomplete escape codes, Irssi before 1.0.6 may access data beyond the end of the string. When using incomplete escape codes, Irssi before 1.0.6 may access data beyond the end of the string.
nvd
CVE-2018-5166P3HIGHCVSS 7.5v14.04v16.04+2 more2018-06-11
CVE-2018-5166 [HIGH] CWE-269 CVE-2018-5166: WebExtensions can use request redirection and a "filterReponseData" filter to bypass host permission WebExtensions can use request redirection and a "filterReponseData" filter to bypass host permission settings to redirect network traffic and access content from a host for which they do not have explicit user permission. This vulnerability affects Firefox < 60.
nvd
CVE-2019-13241P3HIGHCVSS 7.8v16.04v18.04+2 more2019-07-04
CVE-2019-13241 [HIGH] CWE-22 CVE-2019-13241: FlightCrew v0.9.2 and older are vulnerable to a directory traversal, allowing attackers to write arb FlightCrew v0.9.2 and older are vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in a ZIP archive entry that is mishandled during extraction.
nvd
CVE-2016-0763P3MEDIUMCVSS 6.3v12.04v14.04+2 more2016-02-25
CVE-2016-0763 [MEDIUM] CWE-264 CVE-2016-0763: The setGlobalContext method in org/apache/naming/factory/ResourceLinkFactory.java in Apache Tomcat 7 The setGlobalContext method in org/apache/naming/factory/ResourceLinkFactory.java in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M3 does not consider whether ResourceLinkFactory.setGlobalContext callers are authorized, which allows remote authenticated users to bypass intended SecurityManager restrictions and read or write
nvd
CVE-2018-9234P3HIGHCVSS 7.5v14.04v16.04+2 more2018-04-04
CVE-2018-9234 [HIGH] CWE-320 CVE-2018-9234: GnuPG 2.2.4 and 2.2.5 does not enforce a configuration in which key certification requires an offlin GnuPG 2.2.4 and 2.2.5 does not enforce a configuration in which key certification requires an offline master Certify key, which results in apparently valid certifications that occurred only with access to a signing subkey.
nvd
CVE-2014-8109P3MEDIUMCVSS 4.3v10.04v12.04+2 more2014-12-29
CVE-2014-8109 [MEDIUM] CWE-863 CVE-2014-8109: mod_lua.c in the mod_lua module in the Apache HTTP Server 2.3.x and 2.4.x through 2.4.10 does not su mod_lua.c in the mod_lua module in the Apache HTTP Server 2.3.x and 2.4.x through 2.4.10 does not support an httpd configuration in which the same Lua authorization provider is used with different arguments within different contexts, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging multi
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase