Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.87%
  • Veröffentlicht 06.12.2019 18:15:12
  • Zuletzt bearbeitet 21.11.2024 04:36:48

There is an overflow bug in the x64_64 Montgomery squaring procedure used in exponentiation with 512-bit moduli. No EC algorithms are affected. Analysis suggests that attacks against 2-prime RSA1024, 3-prime RSA1536, and DSA1024 as a result of this d...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 05.12.2019 14:15:09
  • Zuletzt bearbeitet 21.11.2024 04:35:01

fpregs_state_valid in arch/x86/include/asm/fpu/internal.h in the Linux kernel before 5.4.2, when GCC 9 is used, allows context-dependent attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact because of i...

  • EPSS 0.06%
  • Veröffentlicht 03.12.2019 16:15:13
  • Zuletzt bearbeitet 21.11.2024 04:34:54

In the Linux kernel before 5.3.11, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/net/can/usb/mcba_usb.c driver, aka CID-4d6636498c41.

  • EPSS 0.12%
  • Veröffentlicht 03.12.2019 16:15:13
  • Zuletzt bearbeitet 21.11.2024 04:34:54

In the Linux kernel before 5.3.11, there is an info-leak bug that can be caused by a malicious USB device in the drivers/net/can/usb/peak_usb/pcan_usb_core.c driver, aka CID-f7a1337f0d29.

  • EPSS 0.04%
  • Veröffentlicht 03.12.2019 16:15:12
  • Zuletzt bearbeitet 21.11.2024 04:34:53

In the Linux kernel before 5.3.12, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/input/ff-memless.c driver, aka CID-fa3a5a1880c9.

  • EPSS 0.06%
  • Veröffentlicht 03.12.2019 16:15:12
  • Zuletzt bearbeitet 21.11.2024 04:34:53

In the Linux kernel before 5.3.9, there is a use-after-free bug that can be caused by a malicious USB device in the drivers/nfc/pn533/usb.c driver, aka CID-6af3aa57a098.

  • EPSS 33.32%
  • Veröffentlicht 02.12.2019 18:15:09
  • Zuletzt bearbeitet 21.11.2024 01:42:52

openslp: SLPIntersectStringList()' Function has a DoS vulnerability

  • EPSS 2.76%
  • Veröffentlicht 01.12.2019 22:15:10
  • Zuletzt bearbeitet 21.11.2024 04:33:21

An issue was discovered in amqp_handle_input in amqp_connection.c in rabbitmq-c 0.9.0. There is an integer overflow that leads to heap memory corruption in the handling of CONNECTION_STATE_HEADER. A rogue server could return a malicious frame header ...

  • EPSS 0.11%
  • Veröffentlicht 30.11.2019 01:15:10
  • Zuletzt bearbeitet 21.11.2024 04:34:47

relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as relay blockage) by triggering a NULL alloc_percpu result.

  • EPSS 1.27%
  • Veröffentlicht 29.11.2019 21:15:10
  • Zuletzt bearbeitet 21.11.2024 02:29:21

The PGP signature parsing in Module::Signature before 0.74 allows remote attackers to cause the unsigned portion of a SIGNATURE file to be treated as the signed portion via unspecified vectors.