Canonical Ubuntu Linux vulnerabilities
4,117 known vulnerabilities affecting canonical/ubuntu_linux.
Total CVEs
4,117
CISA KEV
46
actively exploited
Public exploits
275
Exploited in wild
85
Severity breakdown
CRITICAL546HIGH1402MEDIUM1947LOW222
Vulnerabilities
Page 99 of 206
CVE-2010-3113P4CRITICALCVSS 10.0v9.10v10.04+1 more2010-08-24
CVE-2010-3113 [CRITICAL] CWE-119 CVE-2010-3113: Google Chrome before 5.0.375.127, and webkitgtk before 1.2.5, does not properly handle SVG documents
Google Chrome before 5.0.375.127, and webkitgtk before 1.2.5, does not properly handle SVG documents, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors related to state changes when using DeleteButtonController.
nvd
CVE-2007-1667P4CRITICALCVSS 9.3v6.06v6.10+1 more2007-03-24
CVE-2007-1667 [CRITICAL] CWE-189 CVE-2007-1667: Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, a
Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage function in xwd.c for ImageMagick, allow user-assisted remote attackers to cause a denial of service (crash) or obtain sensitive information via crafted images with large or negative values that trigger a buffer overflow.
nvd
CVE-2019-12979P4HIGHCVSS 7.8v16.04v18.04+2 more2019-06-26
CVE-2019-12979 [HIGH] CWE-665 CVE-2019-12979: ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the SyncImageSettings funct
ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the SyncImageSettings function in MagickCore/image.c. This is related to AcquireImage in magick/image.c.
nvd
CVE-2014-8547P4HIGHCVSS 7.5v12.042014-11-05
CVE-2014-8547 [HIGH] CWE-119 CVE-2014-8547: libavcodec/gifdec.c in FFmpeg before 2.4.2 does not properly compute image heights, which allows rem
libavcodec/gifdec.c in FFmpeg before 2.4.2 does not properly compute image heights, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted GIF data.
nvd
CVE-2019-7310P4HIGHCVSS 7.8v14.04v16.04+2 more2019-02-03
CVE-2019-7310 [HIGH] CWE-125 CVE-2019-7310: In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::ge
In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in XRef.cc) allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document, as demonstrated by pdftocairo.
nvd
CVE-2018-5345P4HIGHCVSS 7.8v16.04v17.102018-01-12
CVE-2018-5345 [HIGH] CWE-787 CVE-2018-5345: A stack-based buffer overflow within GNOME gcab through 0.7.4 can be exploited by malicious attacker
A stack-based buffer overflow within GNOME gcab through 0.7.4 can be exploited by malicious attackers to cause a crash or, potentially, execute arbitrary code via a crafted .cab file.
nvd
CVE-2016-4356P4HIGHCVSS 7.5v12.04v14.042016-06-13
CVE-2016-4356 [HIGH] CWE-119 CVE-2016-4356: The append_utf8_value function in the DN decoder (dn.c) in Libksba before 1.3.3 allows remote attack
The append_utf8_value function in the DN decoder (dn.c) in Libksba before 1.3.3 allows remote attackers to cause a denial of service (out-of-bounds read) by clearing the high bit of the byte after invalid utf-8 encoded data.
nvd
CVE-2015-5522P4MEDIUMCVSS 6.8v12.04v14.04+1 more2015-08-11
CVE-2015-5522 [MEDIUM] CWE-119 CVE-2015-5522: Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote
Heap-based buffer overflow in the ParseValue function in lexer.c in tidy before 4.9.31 allows remote attackers to cause a denial of service (crash) via vectors involving a command character in an href.
nvd
CVE-2018-10119P4HIGHCVSS 7.8v14.04v16.042018-04-16
CVE-2018-10119 [HIGH] CWE-416 CVE-2018-10119: sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrec
sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrect integer data type in the StgSmallStrm class, which allows remote attackers to cause a denial of service (use-after-free with write access) or possibly have unspecified other impact via a crafted document that uses the structured storage ole2 wrapper f
nvd
CVE-2019-14494P4HIGHCVSS 7.5v18.04v19.042019-08-01
CVE-2019-14494 [HIGH] CWE-369 CVE-2019-14494: An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function S
An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tilingPatternFill at SplashOutputDev.cc.
nvd
CVE-2007-5000P4MEDIUMCVSS 4.3v6.06v6.10+2 more2007-12-13
CVE-2007-5000 [MEDIUM] CWE-79 CVE-2007-5000: Cross-site scripting (XSS) vulnerability in the (1) mod_imap module in the Apache HTTP Server 1.3.0
Cross-site scripting (XSS) vulnerability in the (1) mod_imap module in the Apache HTTP Server 1.3.0 through 1.3.39 and 2.0.35 through 2.0.61 and the (2) mod_imagemap module in the Apache HTTP Server 2.2.0 through 2.2.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd
CVE-2019-9070P4HIGHCVSS 7.8v16.04v18.042019-02-24
CVE-2019-9070 [HIGH] CWE-125 CVE-2019-9070: An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based bu
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based buffer over-read in d_expression_1 in cp-demangle.c after many recursive calls.
nvd
CVE-2015-6818P4HIGHCVSS 7.5v12.042015-09-06
CVE-2015-6818 [HIGH] CWE-17 CVE-2015-6818: The decode_ihdr_chunk function in libavcodec/pngdec.c in FFmpeg before 2.7.2 does not enforce unique
The decode_ihdr_chunk function in libavcodec/pngdec.c in FFmpeg before 2.7.2 does not enforce uniqueness of the IHDR (aka image header) chunk in a PNG image, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted image with two or more of these chunks.
nvd
CVE-2014-8541P4HIGHCVSS 7.5v12.042014-11-05
CVE-2014-8541 [HIGH] CWE-119 CVE-2014-8541: libavcodec/mjpegdec.c in FFmpeg before 2.4.2 considers only dimension differences, and not bits-per-
libavcodec/mjpegdec.c in FFmpeg before 2.4.2 considers only dimension differences, and not bits-per-pixel differences, when determining whether an image size has changed, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted MJPEG data.
nvd
CVE-2018-5180P4HIGHCVSS 7.5v14.04v16.04+2 more2018-06-11
CVE-2018-5180 [HIGH] CWE-416 CVE-2018-5180: A use-after-free vulnerability can occur during WebGL operations. While this results in a potentiall
A use-after-free vulnerability can occur during WebGL operations. While this results in a potentially exploitable crash, the vulnerability is limited because the memory is freed and reused in a brief window of time during the freeing of the same callstack. This vulnerability affects Firefox < 60.
nvd
CVE-2018-12401P4HIGHCVSS 7.5v14.04v16.04+2 more2019-02-28
CVE-2018-12401 [HIGH] CWE-20 CVE-2018-12401: Some special resource URIs will cause a non-exploitable crash if loaded with optional parameters fol
Some special resource URIs will cause a non-exploitable crash if loaded with optional parameters following a '?' in the parsed string. This could lead to denial of service (DOS) attacks. This vulnerability affects Firefox < 63.
nvd
CVE-2018-13005P4CRITICALCVSS 9.8v16.04v18.04+1 more2018-06-29
CVE-2018-13005 [CRITICAL] CWE-125 CVE-2018-13005: An issue was discovered in MP4Box in GPAC 0.7.1. The function urn_Read in isomedia/box_code_base.c h
An issue was discovered in MP4Box in GPAC 0.7.1. The function urn_Read in isomedia/box_code_base.c has a heap-based buffer over-read.
nvd
CVE-2018-13006P4CRITICALCVSS 9.8v16.04v18.04+1 more2018-06-29
CVE-2018-13006 [CRITICAL] CWE-125 CVE-2018-13006: An issue was discovered in MP4Box in GPAC 0.7.1. There is a heap-based buffer over-read in the isome
An issue was discovered in MP4Box in GPAC 0.7.1. There is a heap-based buffer over-read in the isomedia/box_dump.c function hdlr_dump.
nvd
CVE-2016-4355P4HIGHCVSS 7.5v12.04v14.042016-06-13
CVE-2016-4355 [HIGH] CWE-119 CVE-2016-4355: Multiple integer overflows in ber-decoder.c in Libksba before 1.3.3 allow remote attackers to cause
Multiple integer overflows in ber-decoder.c in Libksba before 1.3.3 allow remote attackers to cause a denial of service (crash) via crafted BER data, which leads to a buffer overflow.
nvd
CVE-2018-1000100P4HIGHCVSS 7.8v16.04v18.04+1 more2018-03-06
CVE-2018-1000100 [HIGH] CWE-119 CVE-2018-1000100: GPAC MP4Box version 0.7.1 and earlier contains a Buffer Overflow vulnerability in src/isomedia/avc_e
GPAC MP4Box version 0.7.1 and earlier contains a Buffer Overflow vulnerability in src/isomedia/avc_ext.c lines 2417 to 2420 that can result in Heap chunks being modified, this could lead to RCE. This attack appear to be exploitable via an attacker supplied MP4 file that when run by the victim may result in RCE.
nvd