cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 88 of 206
CVE-2014-8544P3HIGHCVSS 7.5v12.042014-11-05
CVE-2014-8544 [HIGH] CWE-20 CVE-2014-8544: libavcodec/tiff.c in FFmpeg before 2.4.2 does not properly validate bits-per-pixel fields, which all libavcodec/tiff.c in FFmpeg before 2.4.2 does not properly validate bits-per-pixel fields, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted TIFF data.
nvd
CVE-2015-1317P3HIGHCVSS 7.5v14.04v14.102015-04-08
CVE-2015-1317 [HIGH] CVE-2015-1317: Use-after-free vulnerability in Oxide before 1.5.6 and 1.6.x before 1.6.1 allows remote attackers to Use-after-free vulnerability in Oxide before 1.5.6 and 1.6.x before 1.6.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code by deleting all WebContents while a RenderProcessHost instance still exists.
nvd
CVE-2019-11596P3HIGHCVSS 7.5v18.04v18.10+1 more2019-04-29
CVE-2019-11596 [HIGH] CWE-476 CVE-2019-11596: In memcached before 1.5.14, a NULL pointer dereference was found in the "lru mode" and "lru temp_ttl In memcached before 1.5.14, a NULL pointer dereference was found in the "lru mode" and "lru temp_ttl" commands. This causes a denial of service when parsing crafted lru command messages in process_lru_command in memcached.c.
nvd
CVE-2019-7175P3HIGHCVSS 7.5v16.04v18.04+2 more2019-03-07
CVE-2019-7175 [HIGH] CWE-401 CVE-2019-7175: In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage in coders/pcd.c. In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage in coders/pcd.c.
nvd
CVE-2018-10120P3HIGHCVSS 7.8v14.04v16.042018-04-16
CVE-2018-10120 [HIGH] CWE-129 CVE-2018-10120: The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreOffice before 5.4.6.1 The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreOffice before 5.4.6.1 and 6.x before 6.0.2.1 does not validate a customizations index, which allows remote attackers to cause a denial of service (heap-based buffer overflow with write access) or possibly have unspecified other impact via a crafted document that contains a
nvd
CVE-2020-15890P3HIGHCVSS 7.5v16.042020-07-21
CVE-2020-15890 [HIGH] CWE-125 CVE-2020-15890: LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishand LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled.
nvd
CVE-2020-12059P3HIGHCVSS 7.5v16.04v18.042020-04-22
CVE-2020-12059 [HIGH] CWE-476 CVE-2020-12059: An issue was discovered in Ceph through 13.2.9. A POST request with an invalid tagging XML can crash An issue was discovered in Ceph through 13.2.9. A POST request with an invalid tagging XML can crash the RGW process by triggering a NULL pointer exception.
nvd
CVE-2018-17183P3HIGHCVSS 7.8v14.04v16.04+1 more2018-09-19
CVE-2018-17183 [HIGH] CVE-2018-17183: Artifex Ghostscript before 9.25 allowed a user-writable error exception table, which could be used b Artifex Ghostscript before 9.25 allowed a user-writable error exception table, which could be used by remote attackers able to supply crafted PostScript to potentially overwrite or replace error handlers to inject code.
nvd
CVE-2014-3564P3MEDIUMCVSS 6.8v10.04v12.042014-10-20
CVE-2014-3564 [MEDIUM] CWE-119 CVE-2014-3564: Multiple heap-based buffer overflows in the status_handler function in (1) engine-gpgsm.c and (2) en Multiple heap-based buffer overflows in the status_handler function in (1) engine-gpgsm.c and (2) engine-uiserver.c in GPGME before 1.5.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to "different line lengths in a specific order."
nvd
CVE-2018-16510P3HIGHCVSS 7.8v14.04v16.04+1 more2018-09-05
CVE-2018-16510 [HIGH] CWE-119 CVE-2018-16510: An issue was discovered in Artifex Ghostscript before 9.24. Incorrect exec stack handling in the "CS An issue was discovered in Artifex Ghostscript before 9.24. Incorrect exec stack handling in the "CS" and "SC" PDF primitives could be used by remote attackers able to supply crafted PDFs to crash the interpreter or possibly have unspecified other impact.
nvd
CVE-2014-1490P3CRITICALCVSS 9.3v12.04v12.10+1 more2014-02-06
CVE-2014-1490 [CRITICAL] CWE-362 CVE-2014-1490: Race condition in libssl in Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozill Race condition in libssl in Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via vectors involv
nvd
CVE-2018-16585P3HIGHCVSS 7.8v14.04v16.04+1 more2018-09-06
CVE-2018-16585 [HIGH] CVE-2018-16585: An issue was discovered in Artifex Ghostscript before 9.24. The .setdistillerkeys PostScript command An issue was discovered in Artifex Ghostscript before 9.24. The .setdistillerkeys PostScript command is accepted even though it is not intended for use during document processing (e.g., after the startup phase). This leads to memory corruption, allowing remote attackers able to supply crafted PostScript to crash the interpreter or possibly have unspecified ot
nvd
CVE-2019-9075P3HIGHCVSS 7.8v18.042019-02-24
CVE-2019-9075 [HIGH] CWE-787 CVE-2019-9075: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is a heap-based buffer overflow in _bfd_archive_64_bit_slurp_armap in archive64.c.
nvd
CVE-2013-4348P3HIGHCVSS 7.1v12.04v13.102013-11-04
CVE-2013-4348 [HIGH] CWE-399 CVE-2013-4348: The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows r The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.
nvd
CVE-2020-11958P3HIGHCVSS 7.8v19.10v20.042020-04-21
CVE-2020-11958 [HIGH] CWE-787 CVE-2020-11958: re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme. re2c 1.3 has a heap-based buffer overflow in Scanner::fill in parse/scanner.cc via a long lexeme.
nvd
CVE-2017-14532P3CRITICALCVSS 9.8v14.04v16.04+2 more2017-09-18
CVE-2017-14532 [CRITICAL] CWE-476 CVE-2017-14532: ImageMagick 7.0.7-0 has a NULL Pointer Dereference in TIFFIgnoreTags in coders/tiff.c. ImageMagick 7.0.7-0 has a NULL Pointer Dereference in TIFFIgnoreTags in coders/tiff.c.
nvd
CVE-2018-21247P3HIGHCVSS 7.5v14.04v16.04+2 more2020-06-17
CVE-2018-21247 [HIGH] CWE-909 CVE-2018-21247: An issue was discovered in LibVNCServer before 0.9.13. There is an information leak (of uninitialize An issue was discovered in LibVNCServer before 0.9.13. There is an information leak (of uninitialized memory contents) in the libvncclient/rfbproto.c ConnectToRFBRepeater function.
nvd
CVE-2020-13114P3HIGHCVSS 7.5v12.04v14.04+4 more2020-05-21
CVE-2020-13114 [HIGH] CWE-770 CVE-2020-13114: An issue was discovered in libexif before 0.6.22. An unrestricted size in handling Canon EXIF MakerN An issue was discovered in libexif before 0.6.22. An unrestricted size in handling Canon EXIF MakerNote data could lead to consumption of large amounts of compute time for decoding EXIF data.
nvd
CVE-2018-10916P3MEDIUMCVSS 6.5v12.042018-08-01
CVE-2018-10916 [MEDIUM] CWE-20 CVE-2018-10916: It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote It has been discovered that lftp up to and including version 4.8.3 does not properly sanitize remote file names, leading to a loss of integrity on the local system when reverse mirroring is used. A remote attacker may trick a user to use reverse mirroring on an attacker controlled FTP server, resulting in the removal of all files in the current worki
nvd
CVE-2016-4486P4LOWCVSS 3.3PoCv12.04v14.04+2 more2016-05-23
CVE-2016-4486 [LOW] CWE-200 CVE-2016-4486: The rtnl_fill_link_ifmap function in net/core/rtnetlink.c in the Linux kernel before 4.5.5 does not The rtnl_fill_link_ifmap function in net/core/rtnetlink.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory by reading a Netlink message.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase