cbcvebase.

Canonical Ubuntu Linux vulnerabilities

4,117 known vulnerabilities affecting canonical/ubuntu_linux.

Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222

Vulnerabilities

Page 92 of 206
CVE-2008-4061P3CRITICALCVSS 10.0v6.06v7.04+2 more2008-09-24
CVE-2008-4061 [CRITICAL] CWE-189 CVE-2008-4061: Integer overflow in the MathML component in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Th Integer overflow in the MathML component in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via an mtd element with a large integer value in the rowspan attri
nvd
CVE-2008-4062P3CRITICALCVSS 10.0v6.06v7.04+2 more2008-09-24
CVE-2008-4062 [CRITICAL] CWE-399 CVE-2008-4062: Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunde Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the JavaScript engine and (1) misinterpretation
nvd
CVE-2019-19783P3MEDIUMCVSS 6.5v18.042019-12-16
CVE-2019-19783 [MEDIUM] CWE-269 CVE-2019-19783: An issue was discovered in Cyrus IMAP before 2.5.15, 3.0.x before 3.0.13, and 3.1.x through 3.1.8. I An issue was discovered in Cyrus IMAP before 2.5.15, 3.0.x before 3.0.13, and 3.1.x through 3.1.8. If sieve script uploading is allowed (3.x) or certain non-default sieve options are enabled (2.x), a user with a mail account on the service can use a sieve script containing a fileinto directive to create any mailbox with administrator privileges, bec
nvd
CVE-2014-9658P3HIGHCVSS 7.5v10.04v12.04+3 more2015-02-08
CVE-2014-9658 [HIGH] CWE-125 CVE-2014-9658: The tt_face_load_kern function in sfnt/ttkern.c in FreeType before 2.5.4 enforces an incorrect minim The tt_face_load_kern function in sfnt/ttkern.c in FreeType before 2.5.4 enforces an incorrect minimum table length, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted TrueType font.
nvd
CVE-2019-16391P3MEDIUMCVSS 6.5v18.042019-09-17
CVE-2019-16391 [MEDIUM] CVE-2019-16391: SPIP before 3.1.11 and 3.2 before 3.2.5 allows authenticated visitors to modify any published conten SPIP before 3.1.11 and 3.2 before 3.2.5 allows authenticated visitors to modify any published content and execute other modifications in the database. This is related to ecrire/inc/meta.php and ecrire/inc/securiser_action.php.
nvd
CVE-2015-3415P3HIGHCVSS 7.5v12.04v14.04+1 more2015-04-24
CVE-2015-3415 [HIGH] CWE-404 CVE-2015-3415: The sqlite3VdbeExec function in vdbe.c in SQLite before 3.8.9 does not properly implement comparison The sqlite3VdbeExec function in vdbe.c in SQLite before 3.8.9 does not properly implement comparison operators, which allows context-dependent attackers to cause a denial of service (invalid free operation) or possibly have unspecified other impact via a crafted CHECK clause, as demonstrated by CHECK(0&O>O) in a CREATE TABLE statement.
nvd
CVE-2020-15157P3MEDIUMCVSS 6.1v16.04v18.04+1 more2020-10-16
CVE-2020-15157 [MEDIUM] CWE-522 CVE-2020-15157: In containerd (an industry-standard container runtime) before version 1.2.14 there is a credential l In containerd (an industry-standard container runtime) before version 1.2.14 there is a credential leaking vulnerability. If a container image manifest in the OCI Image format or Docker Image V2 Schema 2 format includes a URL for the location of a specific image layer (otherwise known as a “foreign layer”), the default containerd resolver will follo
nvd
CVE-2010-2519P3MEDIUMCVSS 6.8v6.06v8.04+3 more2010-08-19
CVE-2010-2519 [MEDIUM] CWE-787 CVE-2010-2519: Heap-based buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType befor Heap-based buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted length value in a POST fragment header in a font file.
nvd
CVE-2008-2726P3HIGHCVSS 7.8v6.06v7.04+2 more2008-06-24
CVE-2008-2726 [HIGH] CWE-189 CVE-2008-2726: Integer overflow in the (1) rb_ary_splice function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p23 Integer overflow in the (1) rb_ary_splice function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, 1.8.7 before 1.8.7-p22, and 1.9.0 before 1.9.0-2; and (2) the rb_ary_replace function in 1.6.x allows context-dependent attackers to trigger memory corruption, aka the "beg + rlen" issue. NOTE: as of 20080624, there has been in
nvd
CVE-2012-5836P3HIGHCVSS 7.5v10.04v11.10+2 more2012-11-21
CVE-2012-5836 [HIGH] CWE-94 CVE-2012-5836: Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allow remote attacke Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving the setting of Cascading Style Sheets (CSS) properties in conjunction with SVG text.
nvd
CVE-2019-19074P3HIGHCVSS 7.5v14.04v16.04+1 more2019-11-18
CVE-2019-19074 [HIGH] CWE-401 CVE-2019-19074: A memory leak in the ath9k_wmi_cmd() function in drivers/net/wireless/ath/ath9k/wmi.c in the Linux k A memory leak in the ath9k_wmi_cmd() function in drivers/net/wireless/ath/ath9k/wmi.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption), aka CID-728c1e2a05e4.
nvd
CVE-2013-2126P3HIGHCVSS 7.5v12.04v12.10+1 more2013-08-14
CVE-2013-2126 [HIGH] CWE-399 CVE-2013-2126: Multiple double free vulnerabilities in the LibRaw::unpack function in libraw_cxx.cpp in LibRaw befo Multiple double free vulnerabilities in the LibRaw::unpack function in libraw_cxx.cpp in LibRaw before 0.15.2 allow context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a malformed full-color (1) Foveon or (2) sRAW image file.
nvd
CVE-2018-6197P3HIGHCVSS 7.5v12.04v14.04+2 more2018-01-25
CVE-2018-6197 [HIGH] CWE-476 CVE-2018-6197: w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c. w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c.
nvd
CVE-2018-12406P3HIGHCVSS 8.8v14.04v16.04+2 more2019-02-28
CVE-2018-12406 [HIGH] CWE-119 CVE-2018-12406: Mozilla developers and community members reported memory safety bugs present in Firefox 63. Some of Mozilla developers and community members reported memory safety bugs present in Firefox 63. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 64.
nvd
CVE-2020-11655P3HIGHCVSS 7.5v16.04v18.04+2 more2020-04-09
CVE-2020-11655 [HIGH] CWE-665 CVE-2020-11655: SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malfo SQLite through 3.31.1 allows attackers to cause a denial of service (segmentation fault) via a malformed window-function query because the AggInfo object's initialization is mishandled.
nvd
CVE-2015-8917P3HIGHCVSS 7.5v12.04v14.04+2 more2016-09-20
CVE-2015-8917 [HIGH] CWE-476 CVE-2015-8917: bsdtar in libarchive before 3.2.0 allows remote attackers to cause a denial of service (NULL pointer bsdtar in libarchive before 3.2.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an invalid character in the name of a cab file.
nvd
CVE-2016-10109P3HIGHCVSS 7.5v12.04v14.04+2 more2017-02-23
CVE-2016-10109 [HIGH] CWE-416 CVE-2016-10109: Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of service (crash) via a command that uses "cardsList" after the handle has been released through the SCardReleaseContext function.
nvd
CVE-2013-0170P3MEDIUMCVSS 6.8v12.04v12.102013-02-08
CVE-2013-0170 [MEDIUM] CWE-416 CVE-2013-0170: Use-after-free vulnerability in the virNetMessageFree function in rpc/virnetserverclient.c in libvir Use-after-free vulnerability in the virNetMessageFree function in rpc/virnetserverclient.c in libvirt 1.0.x before 1.0.2, 0.10.2 before 0.10.2.3, 0.9.11 before 0.9.11.9, and 0.9.6 before 0.9.6.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by triggering certain errors during an RPC connection, which
nvd
CVE-2015-0823P3HIGHCVSS 7.5v12.04v14.04+1 more2015-02-25
CVE-2015-0823 [HIGH] CVE-2015-0823: Multiple use-after-free vulnerabilities in OpenType Sanitiser, as used in Mozilla Firefox before 36. Multiple use-after-free vulnerabilities in OpenType Sanitiser, as used in Mozilla Firefox before 36.0, might allow remote attackers to trigger problematic Developer Console information or possibly have unspecified other impact by leveraging incorrect macro expansion, related to the ots::ots_gasp_parse function.
nvd
CVE-2016-6261P3HIGHCVSS 7.5v12.04v14.04+1 more2016-09-07
CVE-2016-6261 [HIGH] CWE-125 CVE-2016-6261: The idna_to_ascii_4i function in lib/idna.c in libidn before 1.33 allows context-dependent attackers The idna_to_ascii_4i function in lib/idna.c in libidn before 1.33 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via 64 bytes of input.
nvd
Canonical Ubuntu Linux vulnerabilities | cvebase