Skip to main content

Vendor/product archive

canonical / ubuntu_linux CVEs

Beta · best-effort

4,174 CVEs tagged to canonical / ubuntu_linux551 Critical, 1,414 High, 1,969 Medium, 240 Low, 0 Unrated.

CVE-2021-3155

Published Feb 17, 2022

snapd 2.54.2 and earlier created ~/snap directories in user home directories without specifying owner-only permissions. This could allow a local attacker to read information that…

CVSS 3.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-3560

Published Feb 16, 2022

It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be u…

CVSS 7.8 · High
evidence mentions
8
Buzz score
64.9
KEV listedPublic PoC observed

CVE-2021-45417

Published Jan 20, 2022

AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attributes or tmpfs ACLs), because of a heap-based buffer overflow.

CVSS 7.8 · High

CVE-2021-32555

Published Jun 12, 2021

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the xorg-hwe-18.04 package apport hooks, it coul…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort
Showing 101-125 of 4,174 CVEsPage 5 of 167