Canonical

Ubuntu Linux

4107 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 01.12.2017 08:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an ...

  • EPSS 42.99%
  • Veröffentlicht 27.11.2017 22:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary code via a crafted SMB1 request.

  • EPSS 44.01%
  • Veröffentlicht 27.11.2017 22:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Samba before 4.7.3 might allow remote attackers to obtain sensitive information by leveraging failure of the server to clear allocated heap memory.

  • EPSS 1.76%
  • Veröffentlicht 27.11.2017 10:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Bazaar through 2.7.0, when Subprocess SSH is used, allows remote attackers to execute arbitrary commands via a bzr+ssh URL with an initial dash character in the hostname, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-12976, CVE-2017-1622...

Exploit
  • EPSS 3.31%
  • Veröffentlicht 20.11.2017 15:29:00
  • Zuletzt bearbeitet 09.06.2025 16:15:26

In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the termin...

  • EPSS 2.07%
  • Veröffentlicht 17.11.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

hw/input/ps2.c in Qemu does not validate 'rptr' and 'count' values during guest migration, leading to out-of-bounds access.

  • EPSS 0.11%
  • Veröffentlicht 15.11.2017 21:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occur...

  • EPSS 0.04%
  • Veröffentlicht 15.11.2017 21:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The sctp_do_peeloff function in net/sctp/socket.c in the Linux kernel before 4.14 does not check whether the intended netns is used in a peel-off action, which allows local users to cause a denial of service (use-after-free and system crash) or possi...

Exploit
  • EPSS 8.26%
  • Veröffentlicht 07.11.2017 21:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the in...

  • EPSS 0.06%
  • Veröffentlicht 06.11.2017 17:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$host...