Vulnerability index

Browse CVEs

248 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ubuntu Linux MEDIUM 5.5
CVE-2026-47335

Ubuntu Linux 6.8 contains SAUCE patches with a possible NULL pointer dereference in the handling of AppArmor notifications. The bug can be triggered …

Mitigation only
Fix from $1,600 2026-05-28
Pdfunite MEDIUM 5.5
CVE-2018-25306

PDFunite 0.41.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by processing malformed PDF files durin…

No fix yet
Fix from $1,600 2026-04-29
Ubuntu Linux HIGH 7.8
CVE-2026-3888

Local privilege escalation in snapd on Linux allows local attackers to get root privilege by re-creating snap's private /tmp directory when systemd-t…

Mitigation only
Fix from $1,950 2026-03-17
Ubuntu Linux HIGH 7.5
CVE-2026-3497

Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerability affects the GSSAPI patches added by various Lin…

Mitigation only
Fix from $1,950 2026-03-12
Ubuntu Linux MEDIUM 5.9
CVE-2025-26466EPSS 40%

A flaw was found in the OpenSSH package. For each ping packet the SSH server receives, a pong packet is allocated in a memory buffer and stored in a …

Mitigation only
Fix from $1,600 2025-02-28
Ubuntu Linux CRITICAL 9.8
CVE-2022-1736

Ubuntu's configuration of gnome-control-center allowed Remote Desktop Sharing to be enabled by default.

Mitigation only
Fix from $2,300 2025-01-31
Ubuntu Linux MEDIUM 5.3
CVE-2023-44216

PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that enables cross-origin pixel-s…

No fix yet
Fix from $1,600 2023-09-27
Ubuntu Linux MEDIUM 5.5
CVE-2020-11935

It was discovered that aufs improperly managed inode reference counts in the vfsub_dentry_open() method. A local attacker could use this vulnerabilit…

Mitigation only
Fix from $1,600 2023-04-07
Apport MEDIUM 5.5
CVE-2021-3710

An information disclosure via path traversal was discovered in apport/hookutils.py function read_file(). This issue affects: apport 2.14.1 versions p…

No fix yet
Fix from $1,600 2021-10-01
Apport MEDIUM 5.5
CVE-2021-3709

Function check_attachment_for_errors() in file data/general-hooks/ubuntu.py could be tricked into exposing private data via a constructed crash file.…

No fix yet
Fix from $1,600 2021-10-01
Ubuntu Linux MEDIUM 5.5
CVE-2021-32552

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-16 pac…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux MEDIUM 5.5
CVE-2021-32553

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-17 pac…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux MEDIUM 5.5
CVE-2021-32554

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the xorg package a…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux MEDIUM 5.5
CVE-2021-32555

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the xorg-hwe-18.04…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux MEDIUM 5.5
CVE-2021-32548

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-8 pack…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux MEDIUM 5.5
CVE-2021-32549

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-13 pac…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux MEDIUM 5.5
CVE-2021-32550

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-14 pac…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux MEDIUM 5.5
CVE-2021-32551

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-15 pac…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux MEDIUM 5.5
CVE-2021-32547

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-lts pa…

Mitigation only
Fix from $1,600 2021-06-12
Ubuntu Linux HIGH 7.8
CVE-2020-16122

PackageKit's apt backend mistakenly treated all local debs as trusted. The apt security model is based on repository trust and not on the contents of…

Mitigation only
Fix from $1,950 2020-11-07
Ubuntu Linux HIGH 7.8
CVE-2020-15708

Ubuntu's packaging of libvirt in 20.04 LTS created a control socket with world read and write permissions. An attacker could use this to overwrite ar…

Mitigation only
Fix from $1,950 2020-11-06
Checkinstall HIGH 7.8
CVE-2020-25031

checkinstall 1.6.2, when used to create a package that contains a symlink, may trigger the creation of a mode 0777 executable file.

No fix yet
Fix from $1,950 2020-08-31
Apport HIGH 7.0
CVE-2020-15702

TOCTOU Race Condition vulnerability in apport allows a local attacker to escalate privileges and execute arbitrary code. An attacker may exit the cra…

Mitigation only
Fix from $1,950 2020-08-06
Whoopsie MEDIUM 5.5
CVE-2020-11937

In whoopsie, parse_report() from whoopsie.c allows a local attacker to cause a denial of service via a crafted file. The DoS is caused by resource ex…

No fix yet
Fix from $1,600 2020-08-06
Apport MEDIUM 5.5
CVE-2020-15701

An unhandled exception in check_ignored() in apport/report.py can be exploited by a local attacker to cause a denial of service. If the mtime attribu…

No fix yet
Fix from $1,600 2020-08-06
Ubuntu Linux MEDIUM 5.9
CVE-2020-11934

It was discovered that snapctl user-open allowed altering the $XDG_DATA_DIRS environment variable when calling the system xdg-open. OpenURL() in user…

Mitigation only
Fix from $1,600 2020-07-29
Ubuntu Linux MEDIUM 5.5
CVE-2020-0543

Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable i…

Mitigation only
Fix from $1,600 2020-06-15
Ubuntu Linux MEDIUM 6.0
CVE-2020-13800

ati-vga in hw/display/ati.c in QEMU 4.2.0 allows guest OS users to trigger infinite recursion via a crafted mm_index value during an ati_mm_read or a…

Mitigation only
Fix from $1,600 2020-06-04
Ubuntu Linux MEDIUM 5.5
CVE-2020-8831

Apport creates a world writable lock file with root ownership in the world writable /var/lock/apport directory. If the apport/ directory does not exi…

No fix yet
Fix from $1,600 2020-04-22
Ubuntu Linux HIGH 7.5
CVE-2019-7306

Byobu Apport hook may disclose sensitive information since it automatically uploads the local user's .screenrc which may contain private hostnames, u…

No fix yet
Fix from $1,950 2020-04-17