CVE-2026-15226
- EPSS 0.13%
- Veröffentlicht 21.07.2026 14:02:04
- Zuletzt bearbeitet 22.07.2026 19:16:54
A sandbox confinement bypass vulnerability exists in Canonical snapd within its internal execution environment compiler (snap-confine). The default seccomp security templates generated by the engine to restrict system calls do not filter or reject pr...
CVE-2024-5300
- EPSS 0.1%
- Veröffentlicht 21.07.2026 14:00:51
- Zuletzt bearbeitet 22.07.2026 19:16:53
An access control bypass and information disclosure vulnerability exists in the base AppArmor security profile configuration of Canonical snapd. The abstraction rules located in /etc/apparmor.d/abstractions/nss-systemd (inherited via ) inadvertently ...
- EPSS 0.16%
- Veröffentlicht 16.07.2026 12:17:01
- Zuletzt bearbeitet 16.07.2026 14:16:48
An insecure symlink following vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools) within the pro collect-logs command framework. The utility creates or utilizes predictable temporary file paths or user-accessible log...
- EPSS 0.34%
- Veröffentlicht 16.07.2026 12:16:02
- Zuletzt bearbeitet 16.07.2026 14:16:48
An input validation and injection vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools). The client constructs APT source files (such as /etc/apt/sources.list.d/ubuntu-.list or their DEB822 equivalents) using data rece...
CVE-2026-9494
- EPSS 0.11%
- Veröffentlicht 16.07.2026 12:12:27
- Zuletzt bearbeitet 16.07.2026 16:19:16
An information disclosure vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools). The client validates Ubuntu Pro APT credentials by executing /usr/lib/apt/apt-helper using the download-file command. During this process...
- EPSS 0.14%
- Veröffentlicht 22.06.2026 15:43:33
- Zuletzt bearbeitet 22.06.2026 20:18:53
An issue was discovered in Canonical ADSys upstream versions through v0.16.2. During Active Directory Certificate Services (AD CS) certificate auto-enrollment via the vendored Samba client script (internal/policies/certificate/python/vendor_samba/gp/...
CVE-2023-54326
- EPSS 0.13%
- Veröffentlicht 30.12.2025 12:37:09
- Zuletzt bearbeitet 04.08.2026 11:16:40
In the Linux kernel, the following vulnerability has been resolved: misc: pci_endpoint_test: Free IRQs before removing the device In pci_endpoint_test_remove(), freeing the IRQs after removing the device creates a small race window for IRQs to be r...
- EPSS 0.19%
- Veröffentlicht 30.12.2025 12:37:06
- Zuletzt bearbeitet 15.04.2026 00:35:42
In the Linux kernel, the following vulnerability has been resolved: dm integrity: Fix UAF in dm_integrity_dtr() Dm_integrity also has the same UAF problem when dm_resume() and dm_destroy() are concurrent. Therefore, cancelling timer again in dm_in...
- EPSS 0.21%
- Veröffentlicht 30.12.2025 12:37:05
- Zuletzt bearbeitet 15.04.2026 00:35:42
In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix unbalanced of node refcount in regulator_dev_lookup() I got the the following report: OF: ERROR: memory leak, expected refcount 1 instead of 2, of_node_ge...
- EPSS 0.19%
- Veröffentlicht 30.12.2025 12:34:13
- Zuletzt bearbeitet 15.04.2026 00:35:42
In the Linux kernel, the following vulnerability has been resolved: pinctrl: at91-pio4: check return value of devm_kasprintf() devm_kasprintf() returns a pointer to dynamically allocated memory. Pointer could be NULL in case allocation fails. Check...