cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 90 of 206
CVE-2018-2640P3MEDIUMCVSS 6.5v12.04v14.04+2 more2018-01-18
CVE-2018-2640 [MEDIUM] CVE-2018-2640: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.5.58 and prior, 5.6.38 and prior and 5.7.20 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulner
nvd
CVE-2012-3406P3MEDIUMCVSS 6.8v8.04v10.04+3 more2014-02-10
CVE-2012-3406 [MEDIUM] CVE-2012-3406: The vfprintf function in stdio-common/vfprintf.c in GNU C Library (aka glibc) 2.5, 2.12, and probabl The vfprintf function in stdio-common/vfprintf.c in GNU C Library (aka glibc) 2.5, 2.12, and probably other versions does not "properly restrict the use of" the alloca function when allocating the SPECS array, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (crash) or possi
nvd
CVE-2019-16235P3HIGHCVSS 7.5v18.042019-09-11
CVE-2019-16235 [HIGH] CWE-346 CVE-2019-16235: Dino before 2019-09-10 does not properly check the source of a carbons message in module/xep/0280_me Dino before 2019-09-10 does not properly check the source of a carbons message in module/xep/0280_message_carbons.vala.
nvd
CVE-2017-7980P3HIGHCVSS 7.8v14.04v16.04+2 more2017-07-25
CVE-2017-7980 [HIGH] CWE-119 CVE-2017-7980: Heap-based buffer overflow in Cirrus CLGD 54xx VGA Emulator in Quick Emulator (Qemu) 2.8 and earlier Heap-based buffer overflow in Cirrus CLGD 54xx VGA Emulator in Quick Emulator (Qemu) 2.8 and earlier allows local guest OS users to execute arbitrary code or cause a denial of service (crash) via vectors related to a VNC client updating its display after a VGA operation.
nvd
CVE-2015-5260P3HIGHCVSS 7.8v14.04v15.042016-06-07
CVE-2015-5260 [HIGH] CWE-119 CVE-2015-5260: Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to cause a denial of service Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to cause a denial of service (heap-based memory corruption and QEMU-KVM crash) or possibly execute arbitrary code on the host via QXL commands related to the surface_id parameter.
nvd
CVE-2020-13974P3HIGHCVSS 7.8v14.04v16.04+2 more2020-06-09
CVE-2020-13974 [HIGH] CWE-190 CVE-2020-13974: An issue was discovered in the Linux kernel 4.4 through 5.7.1. drivers/tty/vt/keyboard.c has an inte An issue was discovered in the Linux kernel 4.4 through 5.7.1. drivers/tty/vt/keyboard.c has an integer overflow if k_ascii is called several times in a row, aka CID-b86dab054059. NOTE: Members in the community argue that the integer overflow does not lead to a security issue in this case.
nvd
CVE-2020-7729P3HIGHCVSS 7.1v18.042020-09-03
CVE-2020-7729 [HIGH] CWE-1188 CVE-2020-7729: The package grunt before 1.3.0 are vulnerable to Arbitrary Code Execution due to the default usage o The package grunt before 1.3.0 are vulnerable to Arbitrary Code Execution due to the default usage of the function load() instead of its secure replacement safeLoad() of the package js-yaml inside grunt.file.readYAML.
nvd
CVE-2018-13406P3HIGHCVSS 7.8v14.04v16.04+1 more2018-07-06
CVE-2018-13406 [HIGH] CWE-190 CVE-2018-13406: An integer overflow in the uvesafb_setcmap function in drivers/video/fbdev/uvesafb.c in the Linux ke An integer overflow in the uvesafb_setcmap function in drivers/video/fbdev/uvesafb.c in the Linux kernel before 4.17.4 could result in local attackers being able to crash the kernel or potentially elevate privileges because kmalloc_array is not used.
nvd
CVE-2018-6954P3HIGHCVSS 7.8v16.04v18.04+1 more2018-02-13
CVE-2018-6954 [HIGH] CWE-59 CVE-2018-6954: systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain ownership of arbitrary files via vectors involving creation of a directory and a file under that directory, and later replacing that directory with a symlink. This occurs even if the fs.protected_symlinks sysctl is turne
nvd
CVE-2019-2805P3MEDIUMCVSS 6.5v16.04v18.04+1 more2019-07-23
CVE-2019-2805 [MEDIUM] CVE-2019-2805: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supporte Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerabi
nvd
CVE-2018-2794P3HIGHCVSS 7.7v14.04v16.04+1 more2018-04-19
CVE-2018-2794 [HIGH] CVE-2018-2794: Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Security). Supporte Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162, 10 and JRockit: R28.3.17. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Java SE, JRockit executes to compromise Java SE, JRockit. Successful
nvd
CVE-2019-2974P3MEDIUMCVSS 6.5v16.04v18.04+2 more2019-10-16
CVE-2019-2974 [MEDIUM] CVE-2019-2974: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.6.45 and prior, 5.7.27 and prior and 8.0.17 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerabilit
nvd
CVE-2020-5390P3HIGHCVSS 7.5v16.04v18.04+2 more2020-01-13
CVE-2020-5390 [HIGH] CWE-347 CVE-2020-5390: PySAML2 before 5.0.0 does not check that the signature in a SAML document is enveloped and thus sign PySAML2 before 5.0.0 does not check that the signature in a SAML document is enveloped and thus signature wrapping is effective, i.e., it is affected by XML Signature Wrapping (XSW). The signature information and the node/object that is signed can be in different places and thus the signature verification will succeed, but the wrong data will be used. T
nvd
CVE-2016-1659P3CRITICALCVSS 9.8v14.04v15.10+1 more2016-04-18
CVE-2016-1659 [CRITICAL] CVE-2016-1659: Multiple unspecified vulnerabilities in Google Chrome before 50.0.2661.75 allow attackers to cause a Multiple unspecified vulnerabilities in Google Chrome before 50.0.2661.75 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
nvd
CVE-2018-4180P3HIGHCVSS 7.8v14.04v16.04+2 more2019-01-11
CVE-2018-4180 [HIGH] CVE-2018-4180: In macOS High Sierra before 10.13.5, an issue existed in CUPS. This issue was addressed with improve In macOS High Sierra before 10.13.5, an issue existed in CUPS. This issue was addressed with improved access restrictions.
nvd
CVE-2011-2725P3MEDIUMCVSS 6.8v10.04v10.10+2 more2014-02-04
CVE-2011-2725 [MEDIUM] CWE-22 CVE-2011-2725: Directory traversal vulnerability in Ark 4.7.x and earlier allows remote attackers to delete and for Directory traversal vulnerability in Ark 4.7.x and earlier allows remote attackers to delete and force the display of arbitrary files via .. (dot dot) sequences in a zip file.
nvd
CVE-2015-1341P3HIGHCVSS 7.8v12.04v14.04+2 more2019-04-22
CVE-2015-1341 [HIGH] CWE-264 CVE-2015-1341: Any Python module in sys.path can be imported if the command line of the process triggering the core Any Python module in sys.path can be imported if the command line of the process triggering the coredump is Python and the first argument is -m in Apport before 2.19.2 function _python_module_path.
nvd
CVE-2017-17805P3HIGHCVSS 7.8v12.04v14.04+2 more2017-12-20
CVE-2017-17805 [HIGH] CWE-20 CVE-2017-17805: The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-le The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a local attacker able to use the AF_ALG-based skcipher interface (CONFIG_CRYPTO_USER_API_SKCIPHER) to cause a denial of service (uninitialized-memory free and kernel crash) or have unspecified other impact by executing a crafted seq
nvd
CVE-2018-14678P3HIGHCVSS 7.8v14.04v16.04+1 more2018-07-28
CVE-2018-14678 [HIGH] CWE-665 CVE-2018-14678: An issue was discovered in the Linux kernel through 4.17.11, as used in Xen through 4.11.x. The xen_ An issue was discovered in the Linux kernel through 4.17.11, as used in Xen through 4.11.x. The xen_failsafe_callback entry point in arch/x86/entry/entry_64.S does not properly maintain RBX, which allows local users to cause a denial of service (uninitialized memory usage and system crash). Within Xen, 64-bit x86 PV Linux guest OS users can trigger a
nvd
CVE-2019-16237P3HIGHCVSS 7.5v18.042019-09-11
CVE-2019-16237 [HIGH] CWE-346 CVE-2019-16237: Dino before 2019-09-10 does not properly check the source of an MAM message in module/xep/0313_messa Dino before 2019-09-10 does not properly check the source of an MAM message in module/xep/0313_message_archive_management.vala.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase