Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 12.53%
  • Veröffentlicht 16.09.2018 21:29:00
  • Zuletzt bearbeitet 13.08.2025 20:48:07

An issue has been discovered in mpruett Audio File Library (aka audiofile) 0.3.6, 0.3.5, 0.3.4, 0.3.3, 0.3.2, 0.3.1, 0.3.0. A heap-based buffer overflow in Expand3To4Module::run has occurred when running sfconvert.

Exploit
  • EPSS 1.21%
  • Veröffentlicht 13.09.2018 16:29:01
  • Zuletzt bearbeitet 21.11.2024 03:53:40

A NULL pointer dereference in the function _TIFFmemcmp at tif_unix.c (called from TIFFWriteDirectoryTagTransferfunction) in LibTIFF 4.0.9 allows an attacker to cause a denial-of-service through a crafted tiff file. This vulnerability can be triggered...

  • EPSS 0.03%
  • Veröffentlicht 11.09.2018 14:29:01
  • Zuletzt bearbeitet 21.11.2024 03:42:08

A flaw was found in the way Linux kernel KVM hypervisor before 4.18 emulated instructions such as sgdt/sidt/fxsave/fxrstor. It did not check current privilege(CPL) level while emulating unprivileged instructions. An unprivileged guest user/process co...

  • EPSS 0.33%
  • Veröffentlicht 10.09.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 02:57:22

A timing attack flaw was found in OpenSSL 1.0.1u and before that could allow a malicious user with local access to recover ECDSA P-256 private keys.

  • EPSS 0.97%
  • Veröffentlicht 10.09.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:22

An issue was discovered in Artifex Ghostscript before 9.25. Incorrect "restoration of privilege" checking when running out of stack during exception handling could be used by attackers able to supply crafted PostScript to execute code using the "pipe...

  • EPSS 0.06%
  • Veröffentlicht 10.09.2018 13:29:00
  • Zuletzt bearbeitet 21.11.2024 03:49:27

A flaw was found in the Linux Kernel where an attacker may be able to have an uncontrolled read to kernel-memory from within a vm guest. A race condition between connect() and close() function may allow an attacker using the AF_VSOCK protocol to gath...

Exploit
  • EPSS 0.24%
  • Veröffentlicht 09.09.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:17

In ImageMagick 7.0.7-29 and earlier, a missing NULL check in ReadOneJNGImage in coders/png.c allows an attacker to cause a denial of service (WriteBlob assertion failure and application exit) via a crafted file.

Exploit
  • EPSS 0.13%
  • Veröffentlicht 09.09.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:17

In ImageMagick 7.0.7-29 and earlier, a memory leak in the formatIPTCfromBuffer function in coders/meta.c was found.

  • EPSS 0.02%
  • Veröffentlicht 07.09.2018 14:29:03
  • Zuletzt bearbeitet 21.11.2024 03:53:09

An issue was discovered in the Linux kernel before 4.18.6. An information leak in cdrom_ioctl_drive_status in drivers/cdrom/cdrom.c could be used by local attackers to read kernel memory because a cast from unsigned long to int interferes with bounds...

  • EPSS 0.64%
  • Veröffentlicht 07.09.2018 14:29:01
  • Zuletzt bearbeitet 21.11.2024 03:38:39

Buffer overflow in Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 4.8.0 (panda-client2) 1:1.4.9+p41-u4jma1 and earlier, Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 5.0.0 (panda-client2) 1:2.0.0+p48-u4jma1 and earlier, and Ubuntu16.04 O...