Canonical
canonical
4,238 CVEs • 60 products
Products (60)
Click to collapseToggle
Products (60)
Click to collapse
CVEs (4,238)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Canonical Libreoffice2Libreoffice Ubuntu LinuxMay 6, 2026 Feb 18, 2016 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 The lwp filter in LibreOffice before 5.0.4 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document. |
10Canonical DebianF5+7 more30Big Ip Access Policy Manager Big Ip Advanced Firewall ManagerBig Ip Analytics+27 moreMay 6, 2026 Feb 18, 2016 N/A· v4 8.1 HIGH· v3 6.8 MEDIUM· v2 Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc or libc6) before 2.23 allow remote attackers to cause a denial of service (crash...Show more |
3Canonical DebianPostgresql3Debian Linux PostgresqlUbuntu LinuxMay 6, 2026 Feb 17, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large...Show more |
3Canonical DebianPostgresql3Debian Linux PostgresqlUbuntu LinuxMay 6, 2026 Feb 17, 2016 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allo...Show more |
2Canonical Samsung2Ubuntu Linux X14j FirmwareMay 6, 2026 Feb 17, 2016 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, allows remote attackers...Show more |
5Apple CanonicalDebian+2 more5Debian Linux LeapNginx+2 moreMay 6, 2026 Feb 15, 2016 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 does not properly limit CNAME resolution, which allows remote attackers to cause a denial of service (worker process resource consumption) via vectors related to...Show more |
5Apple CanonicalDebian+2 more5Debian Linux LeapNginx+2 moreMay 6, 2026 Feb 15, 2016 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1.8.0 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via...Show more |
6Apple CanonicalDebian+3 more6Debian Linux LeapNginx+3 moreMay 6, 2026 Feb 15, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (invalid pointer dereference and worker process crash) via a crafted UDP DNS response. |
3Canonical DebianXmlsoft3Debian Linux Libxml2Ubuntu LinuxMay 6, 2026 Feb 12, 2016 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 The htmlParseNameComplex function in HTMLparser.c in libxml2 allows attackers to cause a denial of service (out-of-bounds read) via a crafted XML document. |
2Canonical Ffmpeg2Ffmpeg Ubuntu LinuxMay 6, 2026 Feb 12, 2016 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 libavcodec/gif.c in FFmpeg before 2.8.6 does not properly calculate a buffer size, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a c...Show more |
3Canonical DebianFfmpeg3Debian Linux FfmpegUbuntu LinuxMay 6, 2026 Feb 12, 2016 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Integer overflow in the asf_write_packet function in libavformat/asfenc.c in FFmpeg before 2.8.5 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted PTS (aka prese...Show more |
5Canonical DebianGoogle+2 more5Android Debian LinuxLinux Kernel+2 moreMay 6, 2026 Feb 8, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The join_session_keyring function in security/keys/process_keys.c in the Linux kernel before 4.4.1 mishandles object references in a certain error case, which allows local users to gain privileges or cause a denial of se...Show more |
3Canonical DebianLinux3Debian Linux Linux KernelUbuntu LinuxMay 6, 2026 Feb 8, 2016 N/A· v4 6.2 MEDIUM· v3 4.9 MEDIUM· v2 net/sctp/sm_sideeffect.c in the Linux kernel before 4.3 does not properly manage the relationship between a lock and a socket, which allows local users to cause a denial of service (deadlock) via a crafted sctp_accept ca...Show more |
3Canonical LinuxSuse3Linux Enterprise Real Time Extension Linux KernelUbuntu LinuxMay 6, 2026 Feb 8, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The KEYS subsystem in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (BUG) via crafted keyctl commands that negatively instantiate a key, related to security/keys/encrypted...Show more |
4Canonical DebianFedoraproject+1 more4Debian Linux FedoraLinux Kernel+1 moreMay 6, 2026 Feb 8, 2016 N/A· v4 6.5 MEDIUM· v3 4.9 MEDIUM· v2 arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state restoration, which allows guest OS users to cause a denial of service (divide-by-zero error and host OS crash) via a ze...Show more |
3Canonical MozillaOpensuse4Firefox LeapOpensuse+1 moreMay 6, 2026 Jan 31, 2016 N/A· v4 4.7 MEDIUM· v3 4.3 MEDIUM· v2 Mozilla Firefox 43.x mishandles attempts to connect to the Application Reputation service, which makes it easier for remote attackers to trigger an unintended download by leveraging the absence of reputation data. |
3Canonical DebianHaxx3Curl Debian LinuxUbuntu LinuxMay 6, 2026 Jan 29, 2016 N/A· v4 7.3 HIGH· v3 5.0 MEDIUM· v2 The ConnectionExists function in lib/url.c in libcurl before 7.47.0 does not properly re-use NTLM-authenticated proxy connections, which might allow remote attackers to authenticate as other users via a request, a simila...Show more |
6Canonical DebianMariadb+3 more7Debian Linux Enterprise LinuxLeap+4 moreMay 6, 2026 Jan 27, 2016 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 The ssl_verify_server_cert function in sql-common/client.c in MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10; Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier; and Perc...Show more |
5Canonical DebianEcryptfs+2 more6Debian Linux Ecryptfs UtilsFedora+3 moreMay 6, 2026 Jan 22, 2016 N/A· v4 8.4 HIGH· v3 4.6 MEDIUM· v2 mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid. |
6Canonical DebianMariadb+3 more14Debian Linux Enterprise Linux DesktopEnterprise Linux Hpc Node+11 moreMay 6, 2026 Jan 21, 2016 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via unknown vectors relate...Show more |