Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 25.4%
  • Veröffentlicht 23.11.2013 11:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Format string vulnerability in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.3 allows remote attackers to cause a denial of service (crash) via format string specifiers in a destination filename.

  • EPSS 0.05%
  • Veröffentlicht 20.11.2013 13:19:42
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple stack-based buffer overflows in net/netfilter/ipvs/ip_vs_ctl.c in the Linux kernel before 2.6.33, when CONFIG_IP_VS is used, allow local users to gain privileges by leveraging the CAP_NET_ADMIN capability for (1) a getsockopt system call, re...

Exploit
  • EPSS 1.56%
  • Veröffentlicht 20.11.2013 13:19:41
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The udp6_ufo_fragment function in net/ipv6/udp_offload.c in the Linux kernel through 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly perform a certain size comparison before inserting a fragment header, which allows remote at...

  • EPSS 0.21%
  • Veröffentlicht 19.11.2013 04:50:56
  • Zuletzt bearbeitet 25.11.2025 17:50:16

The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of s...

Exploit
  • EPSS 0.1%
  • Veröffentlicht 18.11.2013 02:55:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Untrusted search path vulnerability in maas-import-pxe-files in MAAS before 13.10 allows local users to execute arbitrary code via a Trojan horse import_pxe_files configuration file in the current working directory.

  • EPSS 6.47%
  • Veröffentlicht 13.11.2013 15:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Samba 3.2.x through 3.6.x before 3.6.20, 4.0.x before 4.0.11, and 4.1.x before 4.1.1, when vfs_streams_depot or vfs_streams_xattr is enabled, allows remote attackers to bypass intended file restrictions by leveraging ACL differences between a file an...

Exploit
  • EPSS 4.94%
  • Veröffentlicht 04.11.2013 15:55:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

  • EPSS 4.7%
  • Veröffentlicht 28.10.2013 22:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The compressed packet parser in GnuPG 1.4.x before 1.4.15 and 2.0.x before 2.0.22 allows remote attackers to cause a denial of service (infinite recursion) via a crafted OpenPGP message.

  • EPSS 0.05%
  • Veröffentlicht 28.10.2013 21:55:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

X.org X server 1.13.3 and earlier, when not run as root, allows local users to cause a denial of service (crash) or possibly gain privileges via vectors involving cached xkb files.

Exploit
  • EPSS 0.28%
  • Veröffentlicht 27.10.2013 00:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

OpenStack Image Registry and Delivery Service (Glance) Folsom, Grizzly before 2013.1.4, and Havana before 2013.2, when the download_image policy is configured, does not properly restrict access to cached images, which allows remote authenticated user...