Skip to main content

Vendor archive

canonical CVEs

Beta · best-effort

4,287 CVEs tagged to vendor canonical561 Critical, 1,458 High, 2,016 Medium, 252 Low, 0 Unrated.

CVE-2024-5138

Published May 31, 2024

The snapctl component within snapd allows a confined snap to interact with the snapd daemon to take certain privileged actions on behalf of the snap. It was found that snapctl did…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-3250

Published Apr 4, 2024

It was discovered that Canonical's Pebble service manager read-file API and the associated pebble pull command, before v1.10.2, allowed unprivileged local users to read files with…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-49721

Published Feb 14, 2024

An insecure default to allow UEFI Shell in EDK2 was left enabled in LXD. This allows an OS-resident attacker to bypass Secure Boot.

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-1032

Published Jan 8, 2024

The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socket_file() in file net/socket.c. This issue was introduced in da214a475f8bd1d3e9e…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-2588

Published Jan 8, 2024

It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if its handle had the value 0.

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2022-2586

Published Jan 8, 2024

It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was deleted.

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
45.4
KEV listed
Vendor/product tagsBeta · best-effort
Showing 101-125 of 4,287 CVEsPage 5 of 172