Canonical
canonical
4,238 CVEs • 60 products
Products (60)
Click to collapseToggle
Products (60)
Click to collapse
CVEs (4,238)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Canonical FedoraprojectLinux+2 more7Fedora Linux Enterprise DesktopLinux Enterprise Real Time Extension+4 moreApr 29, 2026 Nov 26, 2010 N/A· v4 N/A· v3 7.2 HIGH· v2 drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly validate pointers to bl...Show more |
5Canonical DebianLinux+2 more5Debian Linux Linux Enterprise Real Time ExtensionLinux Kernel+2 moreApr 29, 2026 Nov 22, 2010 N/A· v4 N/A· v3 7.8 HIGH· v2 The sctp_packet_config function in net/sctp/output.c in the Linux kernel before 2.6.35.6 performs extraneous initializations of packet data structures, which allows remote attackers to cause a denial of service (panic) v...Show more |
9Apache AppleCanonical+6 more15Chrome Debian LinuxEnterprise Linux Desktop+12 moreApr 29, 2026 Nov 17, 2010 N/A· v4 N/A· v3 4.3 MEDIUM· v2 libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows con...Show more |
The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting...Show more |
The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafte...Show more |
fopen_wrappers.c in PHP 5.3.x through 5.3.3 might allow remote attackers to bypass open_basedir restrictions via vectors related to the length of a filename. |
9Apple CanonicalDebian+6 more11Cups Debian LinuxEnterprise Linux Desktop+8 moreApr 29, 2026 Nov 5, 2010 N/A· v4 N/A· v3 7.5 HIGH· v2 The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a deni...Show more |
7Apple CanonicalDebian+4 more13Cups Debian LinuxEnterprise Linux+10 moreApr 29, 2026 Nov 5, 2010 N/A· v4 9.8 CRITICAL· v3 9.3 HIGH· v2 ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application c...Show more |
6Canonical DebianFedoraproject+3 more9Debian Linux FedoraLinux Enterprise Desktop+6 moreApr 29, 2026 Oct 4, 2010 N/A· v4 N/A· v3 4.7 MEDIUM· v2 Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have...Show more |
5Canonical DebianLinux+2 more8Debian Linux Linux Enterprise DesktopLinux Enterprise Real Time Extension+5 moreApr 29, 2026 Oct 4, 2010 N/A· v4 N/A· v3 6.6 MEDIUM· v2 Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory or cause a denial of...Show more |
5Canonical DebianLinux+2 more7Debian Linux Linux Enterprise DesktopLinux Enterprise Real Time Extension+4 moreApr 29, 2026 Sep 30, 2010 N/A· v4 N/A· v3 2.1 LOW· v2 The hso_get_count function in drivers/net/usb/hso.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from...Show more |
5Canonical DebianLinux+2 more7Debian Linux Linux Enterprise DesktopLinux Enterprise Real Time Extension+4 moreApr 29, 2026 Sep 30, 2010 N/A· v4 N/A· v3 2.1 LOW· v2 The eql_g_master_cfg function in drivers/net/eql.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from...Show more |
5Canonical DebianLinux+2 more7Debian Linux Linux Enterprise DesktopLinux Enterprise Real Time Extension+4 moreApr 29, 2026 Sep 30, 2010 N/A· v4 N/A· v3 2.1 LOW· v2 The cxgb_extension_ioctl function in drivers/net/cxgb3/cxgb3_main.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive...Show more |
3Canonical LinuxSuse5Linux Enterprise Desktop Linux Enterprise High Availability ExtensionLinux Enterprise Server+2 moreApr 29, 2026 Sep 30, 2010 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 kernel/trace/ftrace.c in the Linux kernel before 2.6.35.5, when debugfs is enabled, does not properly handle interaction between mutex possession and llseek operations, which allows local users to cause a denial of servi...Show more |
4Avaya CanonicalLinux+1 more10Aura Communication Manager Aura Presence ServicesAura Session Manager+7 moreApr 29, 2026 Sep 30, 2010 N/A· v4 8.1 HIGH· v3 6.4 MEDIUM· v2 The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk bl...Show more |
3Canonical LinuxSuse5Linux Enterprise Desktop Linux Enterprise High Availability ExtensionLinux Enterprise Server+2 moreApr 29, 2026 Sep 30, 2010 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 Integer overflow in the btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the Linux kernel before 2.6.35 might allow local users to obtain sensitive information via a BTRFS_IOC_CLONE_RANGE ioctl call. |
3Canonical LinuxSuse5Linux Enterprise High Availability Extension Linux KernelSuse Linux Enterprise Desktop+2 moreApr 29, 2026 Sep 30, 2010 N/A· v4 7.1 HIGH· v3 6.6 MEDIUM· v2 The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the Linux kernel before 2.6.35 allows local users to overwrite an append-only file via a (1) BTRFS_IOC_CLONE or (2) BTRFS_IOC_CLONE_RANGE ioctl call that specifies th...Show more |
3Canonical DebianLinux3Debian Linux Linux KernelUbuntu LinuxApr 29, 2026 Sep 29, 2010 N/A· v4 N/A· v3 1.9 LOW· v2 Multiple integer signedness errors in net/rose/af_rose.c in the Linux kernel before 2.6.36-rc5-next-20100923 allow local users to cause a denial of service (heap memory corruption) or possibly have unspecified other impa...Show more |
2Canonical Linux2Linux Kernel Ubuntu LinuxApr 29, 2026 Sep 29, 2010 N/A· v4 N/A· v3 7.2 HIGH· v2 Buffer overflow in the niu_get_ethtool_tcam_all function in drivers/net/niu.c in the Linux kernel before 2.6.36-rc4 allows local users to cause a denial of service or possibly have unspecified other impact via the ETHTOO...Show more |
2Canonical Linux2Linux Kernel Ubuntu LinuxApr 29, 2026 Sep 29, 2010 N/A· v4 N/A· v3 2.1 LOW· v2 fs/jfs/xattr.c in the Linux kernel before 2.6.35.2 does not properly handle a certain legacy format for storage of extended attributes, which might allow local users by bypass intended xattr namespace restrictions via an...Show more |