Canonical

Ubuntu Linux

4108 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Veröffentlicht 23.06.2014 11:21:17
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/med...

  • EPSS 0.22%
  • Veröffentlicht 19.06.2014 15:55:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The OpenStack Nova (python-nova) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1.2 and 1:2014.1-0 before 1:2014.1-0ubuntu1.2 and Openstack Cinder (python-cinder) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1.1 and 1:2014.1-0 before 1:2014.1-0ubuntu...

Warnung Exploit
  • EPSS 68.89%
  • Veröffentlicht 07.06.2014 14:55:27
  • Zuletzt bearbeitet 21.04.2026 17:47:00

The futex_requeue function in kernel/futex.c in the Linux kernel through 3.14.5 does not ensure that calls have two different futex addresses, which allows local users to gain privileges via a crafted FUTEX_REQUEUE command that facilitates unsafe wai...

  • EPSS 1.61%
  • Veröffentlicht 02.06.2014 15:55:10
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The default configuration in the Red Hat openstack-neutron package before 2013.2.3-7 does not properly set a configuration file for rootwrap, which allows remote attackers to gain privileges via a crafted configuration file.

  • EPSS 0.4%
  • Veröffentlicht 01.06.2014 04:29:34
  • Zuletzt bearbeitet 06.05.2026 22:30:45

sosreport in Red Hat sos 1.7 and earlier on Red Hat Enterprise Linux (RHEL) 5 produces an archive with an fstab file potentially containing cleartext passwords, and lacks a warning about reviewing this archive to detect included passwords, which migh...

  • EPSS 0.05%
  • Veröffentlicht 22.05.2014 23:55:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

gdm/guest-session-cleanup.sh in gdm-guest-session 0.24 and earlier, as used in Ubuntu Linux 10.04 LTS, 10.10, and 11.04, allows local users to delete arbitrary files via a space in the name of a file in /tmp. NOTE: this identifier was SPLIT from CVE-...

  • EPSS 0.2%
  • Veröffentlicht 22.05.2014 23:55:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

debian/guest-account in Light Display Manager (lightdm) 1.0.x before 1.0.6 and 1.1.x before 1.1.7, as used in Ubuntu Linux 11.10, allows local users to delete arbitrary files via a space in the name of a file in /tmp. NOTE: this identifier was SPLIT...

  • EPSS 4.37%
  • Veröffentlicht 21.05.2014 14:55:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The default keybindings for wwm in LTSP Display Manager (ldm) 2.2.x before 2.2.7 allow remote attackers to execute arbitrary commands via the KP_RETURN keybinding, which launches a terminal window.

  • EPSS 0.99%
  • Veröffentlicht 16.05.2014 15:55:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The django.util.http.is_safe_url function in Django 1.4 before 1.4.13, 1.5 before 1.5.8, 1.6 before 1.6.5, and 1.7 before 1.7b4 does not properly validate URLs, which allows remote attackers to conduct open redirect attacks via a malformed URL, as de...

  • EPSS 0.51%
  • Veröffentlicht 16.05.2014 15:55:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Django 1.4 before 1.4.13, 1.5 before 1.5.8, 1.6 before 1.6.5, and 1.7 before 1.7b4 does not properly include the (1) Vary: Cookie or (2) Cache-Control header in responses, which allows remote attackers to obtain sensitive information or poison the ca...