cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 87 of 206
CVE-2013-2112P3HIGHCVSS 7.8v12.04v12.10+1 more2013-07-31
CVE-2013-2112 [HIGH] CVE-2013-2112: The svnserve server in Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote attackers to c The svnserve server in Subversion before 1.6.23 and 1.7.x before 1.7.10 allows remote attackers to cause a denial of service (exit) by aborting a connection.
nvd
CVE-2014-9656P3HIGHCVSS 7.5v10.04v12.04+3 more2015-02-08
CVE-2014-9656 [HIGH] CWE-119 CVE-2014-9656: The tt_sbit_decoder_load_image function in sfnt/ttsbit.c in FreeType before 2.5.4 does not properly The tt_sbit_decoder_load_image function in sfnt/ttsbit.c in FreeType before 2.5.4 does not properly check for an integer overflow, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted OpenType font.
nvd
CVE-2005-1513P3CRITICALCVSS 9.8v20.042005-05-11
CVE-2005-1513 [CRITICAL] CWE-190 CVE-2005-1513: Integer overflow in the stralloc_readyplus function in qmail, when running on 64 bit platforms with Integer overflow in the stralloc_readyplus function in qmail, when running on 64 bit platforms with a large amount of virtual memory, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large SMTP request.
nvd
CVE-2019-17025P3HIGHCVSS 8.8v16.04v18.04+2 more2020-01-08
CVE-2019-17025 [HIGH] CWE-787 CVE-2019-17025: Mozilla developers reported memory safety bugs present in Firefox 71. Some of these bugs showed evid Mozilla developers reported memory safety bugs present in Firefox 71. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 72.
nvd
CVE-2018-1283P3MEDIUMCVSS 5.3v14.04v16.04+2 more2018-03-26
CVE-2018-1283 [MEDIUM] CVE-2018-1283: In Apache httpd 2.4.0 to 2.4.29, when mod_session is configured to forward its session data to CGI a In Apache httpd 2.4.0 to 2.4.29, when mod_session is configured to forward its session data to CGI applications (SessionEnv on, not the default), a remote user may influence their content by using a "Session" header. This comes from the "HTTP_SESSION" variable name used by mod_session to forward its data to CGIs, since the prefix "HTTP_" is also used by the A
nvd
CVE-2014-9661P3HIGHCVSS 7.5v10.04v12.04+3 more2015-02-08
CVE-2014-9661 [HIGH] CVE-2014-9661: type42/t42parse.c in FreeType before 2.5.4 does not consider that scanning can be incomplete without type42/t42parse.c in FreeType before 2.5.4 does not consider that scanning can be incomplete without triggering an error, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted Type42 font.
nvd
CVE-2013-0749P3CRITICALCVSS 9.3v10.04v11.10+2 more2013-01-13
CVE-2013-0749 [CRITICAL] CVE-2013-0749: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 18.0, Firefox E Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.1, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.1, and SeaMonkey before 2.15 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vector
nvd
CVE-2019-20421P3HIGHCVSS 7.5v16.04v18.04+1 more2020-01-27
CVE-2019-20421 [HIGH] CWE-835 CVE-2019-20421: In Jp2Image::readMetadata() in jp2image.cpp in Exiv2 0.27.2, an input file can result in an infinite In Jp2Image::readMetadata() in jp2image.cpp in Exiv2 0.27.2, an input file can result in an infinite loop and hang, with high CPU consumption. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted file.
nvd
CVE-2015-8930P3HIGHCVSS 7.5v12.04v14.04+2 more2016-09-20
CVE-2015-8930 [HIGH] CWE-20 CVE-2015-8930: bsdtar in libarchive before 3.2.0 allows remote attackers to cause a denial of service (infinite loo bsdtar in libarchive before 3.2.0 allows remote attackers to cause a denial of service (infinite loop) via an ISO with a directory that is a member of itself.
nvd
CVE-2019-19044P3HIGHCVSS 7.5v18.04v19.102019-11-18
CVE-2019-19044 [HIGH] CWE-401 CVE-2019-19044: Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux Two memory leaks in the v3d_submit_cl_ioctl() function in drivers/gpu/drm/v3d/v3d_gem.c in the Linux kernel before 5.3.11 allow attackers to cause a denial of service (memory consumption) by triggering kcalloc() or v3d_job_init() failures, aka CID-29cd13cfd762.
nvd
CVE-2015-3143P3MEDIUMCVSS 5.0v12.04v14.04+2 more2015-04-24
CVE-2015-3143 [MEDIUM] CVE-2015-3143: cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remot cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remote attackers to connect as other users via an unauthenticated request, a similar issue to CVE-2014-0015.
nvd
CVE-2018-20216P3HIGHCVSS 7.5v14.04v16.04+2 more2018-12-20
CVE-2018-20216 [HIGH] CWE-252 CVE-2018-20216: QEMU can have an infinite loop in hw/rdma/vmw/pvrdma_dev_ring.c because return values are not checke QEMU can have an infinite loop in hw/rdma/vmw/pvrdma_dev_ring.c because return values are not checked (and -1 is mishandled).
nvd
CVE-2022-39177P3HIGHCVSS 8.8v18.04v20.042022-09-02
CVE-2022-39177 [HIGH] CVE-2022-39177: BlueZ before 5.59 allows physically proximate attackers to cause a denial of service because malform BlueZ before 5.59 allows physically proximate attackers to cause a denial of service because malformed and invalid capabilities can be processed in profiles/audio/avdtp.c.
nvd
CVE-2016-2124P3MEDIUMCVSS 5.9v18.04v20.04+2 more2022-02-18
CVE-2016-2124 [MEDIUM] CWE-287 CVE-2016-2124: A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw t A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.
nvd
CVE-2019-18804P3HIGHCVSS 7.5v16.04v18.04+2 more2019-11-07
CVE-2019-18804 [HIGH] CWE-476 CVE-2019-18804: DjVuLibre 3.5.27 has a NULL pointer dereference in the function DJVU::filter_fv at IW44EncodeCodec.c DjVuLibre 3.5.27 has a NULL pointer dereference in the function DJVU::filter_fv at IW44EncodeCodec.cpp.
nvd
CVE-2018-2799P3MEDIUMCVSS 5.3v14.04v16.04+1 more2018-04-19
CVE-2018-2799 [MEDIUM] CVE-2018-2799: Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: J Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE E
nvd
CVE-2016-1577P3HIGHCVSS 7.6v12.04v14.04+1 more2016-04-13
CVE-2016-1577 [HIGH] CVE-2016-1577: Double free vulnerability in the jas_iccattrval_destroy function in JasPer 1.900.1 and earlier allow Double free vulnerability in the jas_iccattrval_destroy function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted ICC color profile in a JPEG 2000 image file, a different vulnerability than CVE-2014-8137.
nvd
CVE-2016-9243P3HIGHCVSS 7.5v16.04v16.102017-03-27
CVE-2016-9243 [HIGH] CVE-2016-9243: HKDF in cryptography before 1.5.2 returns an empty byte-string if used with a length less than algor HKDF in cryptography before 1.5.2 returns an empty byte-string if used with a length less than algorithm.digest_size.
nvd
CVE-2020-14397P3HIGHCVSS 7.5v14.04v16.04+3 more2020-06-17
CVE-2020-14397 [HIGH] CWE-476 CVE-2020-14397: An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rfbregion.c has a NULL pointer d An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rfbregion.c has a NULL pointer dereference.
nvd
CVE-2019-19244P3HIGHCVSS 7.5v19.04v19.102019-11-25
CVE-2019-19244 [HIGH] CVE-2019-19244: sqlite3Select in select.c in SQLite 3.30.1 allows a crash if a sub-select uses both DISTINCT and win sqlite3Select in select.c in SQLite 3.30.1 allows a crash if a sub-select uses both DISTINCT and window functions, and also has certain ORDER BY usage.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase