Записи Ubuntu
102 опубликованных записей вендора ubuntu.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 22
- С записью об исправлении
- 73,5 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-264 Permissions, Privileges, and Access Controls11
- CWE-20 Improper Input Validation4
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-399 Resource Management Errors4
- CWE-189 Numeric Errors3
- CWE-310 Cryptographic Issues3
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
102 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
52В плане | CVE-2007-5365Proof of concept | Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 through 4.2, and some other dhcpd implementatiopenbsd · openbsd · CWE-119 | Высокая7,2 | — | 80,3 % | 11 окт. 2007 г. |
47В плане | CVE-2004-0989Proof of concept | Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrarxmlsoft · libxml | Критическая10,0 | — | 21,7 % | 1 мар. 2005 г. |
46В плане | CVE-2004-1137Proof of concept | Multiple vulnerabilities in the IGMP functionality for Linux kernel 2.4.22 to 2.4.28, and 2.6.x to 2.6.9, allow local and remote attackers tlinux · linux kernel | Критическая10,0 | — | 20,8 % | 10 янв. 2005 г. |
44В плане | CVE-2004-0882Эксплойта нет | Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via asamba · samba | Критическая10,0 | — | 13,7 % | 27 янв. 2005 г. |
43В плане | CVE-2004-1065Эксплойта нет | Buffer overflow in the exif_read_data function in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to execute arbitrary codphp · php | Критическая10,0 | — | 10,0 % | 10 янв. 2005 г. |
43В плане | CVE-2004-0888Эксплойта нет | Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote attakde · koffice | Критическая10,0 | — | 9,5 % | 27 янв. 2005 г. |
42В плане | CVE-2004-1019Эксплойта нет | The deserialization code in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to cause a denial of service and execute arbitphp · php · CWE-20 | Критическая10,0 | — | 8,0 % | 10 янв. 2005 г. |
42В плане | CVE-2004-0891Эксплойта нет | Buffer overflow in the MSN protocol handler for gaim 0.79 to 1.0.1 allows remote attackers to cause a denial of service (application crash) rob flynn · gaim | Критическая10,0 | — | 6,9 % | 27 янв. 2005 г. |
42В плане | CVE-2004-0889Эксплойта нет | Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of servxpdf · xpdf | Критическая10,0 | — | 6,2 % | 27 янв. 2005 г. |
42В плане | CVE-2004-1012Эксплойта нет | The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary codcarnegie mellon university · cyrus imap server | Критическая10,0 | — | 6,0 % | 10 янв. 2005 г. |
42В плане | CVE-2006-6235Эксплойта нет | A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute argnu · privacy guard | Критическая10,0 | — | 5,9 % | 7 дек. 2006 г. |
42В плане | CVE-2004-1011Эксплойта нет | Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execcarnegie mellon university · cyrus imap server | Критическая10,0 | — | 5,8 % | 10 янв. 2005 г. |
42В плане | CVE-2004-1013Эксплойта нет | The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary codcarnegie mellon university · cyrus imap server | Критическая10,0 | — | 5,8 % | 10 янв. 2005 г. |
42В плане | CVE-2004-1067Эксплойта нет | Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remotecarnegie mellon university · cyrus imap server | Критическая10,0 | — | 5,2 % | 10 янв. 2005 г. |
42В плане | CVE-2004-1015Эксплойта нет | Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to execcarnegie mellon university · cyrus imap server | Критическая10,0 | — | 5,2 % | 10 янв. 2005 г. |
41В плане | CVE-2005-3625Эксплойта нет | Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial libextractor · libextractor · CWE-399 | Критическая10,0 | — | 3,8 % | 31 дек. 2005 г. |
39Наблюдать | CVE-2006-7236Proof of concept | The default configuration of xterm on Debian GNU/Linux sid and possibly Ubuntu enables the allowWindowOps resource, which allows user-assistdebian · debian linux · CWE-16 | Критическая9,3 | — | 7,5 % | 2 янв. 2009 г. |
38Наблюдать | CVE-2011-0724Эксплойта нет | The Live DVD for Edubuntu 9.10, 10.04 LTS, and 10.10 does not correctly regenerate iTALC private keys after installation, which causes each ubuntu · edubuntu · CWE-310 | Критическая9,3 | — | 2,9 % | 18 февр. 2011 г. |
38Наблюдать | CVE-2010-0834Эксплойта нет | The base-files package before 5.0.0ubuntu7.1 on Ubuntu 9.10 and before 5.0.0ubuntu20.10.04.2 on Ubuntu 10.04 LTS, as shipped on Dell Latitudubuntu · ubuntu linux · CWE-287 | Критическая9,3 | — | 2,7 % | 10 авг. 2010 г. |
38Наблюдать | CVE-2008-4306Эксплойта нет | Buffer overflow in enscript before 1.6.4 has unknown impact and attack vectors, possibly related to the font escape sequence.ubuntu · linux · CWE-119 | Критическая9,3 | — | 2,4 % | 4 нояб. 2008 г. |
36Наблюдать | CVE-2007-1351Эксплойта нет | Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allx.org · libxfont · CWE-189 | Высокая8,5 | — | 5,6 % | 5 апр. 2007 г. |
34Наблюдать | CVE-2013-2186Proof of concept | The DiskFileItem class in Apache Commons FileUpload, as used in Red Hat JBoss BRMS 5.3.1; JBoss Portal 4.3 CP07, 5.2.2, and 6.0.0; and Red Hredhat · jboss enterprise brms platform · CWE-20 | Высокая7,5 | — | 12,4 % | 28 окт. 2013 г. |
34Наблюдать | CVE-2008-4395Эксплойта нет | Multiple buffer overflows in the ndiswrapper module 1.53 for the Linux kernel 2.6 allow remote attackers to execute arbitrary code by sendinlinux · linux kernel · CWE-119 | Высокая8,3 | — | 2,4 % | 6 нояб. 2008 г. |
33Наблюдать | CVE-2017-14461Эксплойта нет | A specially crafted email delivered over SMTP and passed on to Dovecot by MTA can trigger an out of bounds read resulting in potential sensidovecot · dovecot · CWE-125 | Высокая7,1 | — | 16,7 % | 2 мар. 2018 г. |
32Наблюдать | CVE-2004-0827Эксплойта нет | Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a deimagemagick · imagemagick | Высокая7,5 | — | 5,5 % | 16 сент. 2004 г. |
- CVE-2007-536552В плане
Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 through 4.2, and some other dhcpd implementati
ВысокаяCVSS 7,2Proof of conceptEPSS 80 %openbsd · openbsd11 окт. 2007 г.
- CVE-2004-098947В плане
Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrar
КритическаяCVSS 10,0Proof of conceptEPSS 22 %xmlsoft · libxml1 мар. 2005 г.
- CVE-2004-113746В плане
Multiple vulnerabilities in the IGMP functionality for Linux kernel 2.4.22 to 2.4.28, and 2.6.x to 2.6.9, allow local and remote attackers t
КритическаяCVSS 10,0Proof of conceptEPSS 21 %linux · linux kernel10 янв. 2005 г.
- CVE-2004-088244В плане
Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via a
КритическаяCVSS 10,0Эксплойта нетEPSS 14 %samba · samba27 янв. 2005 г.
- CVE-2004-106543В плане
Buffer overflow in the exif_read_data function in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to execute arbitrary cod
КритическаяCVSS 10,0Эксплойта нетEPSS 10 %php · php10 янв. 2005 г.
- CVE-2004-088843В плане
Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote atta
КритическаяCVSS 10,0Эксплойта нетEPSS 10 %kde · koffice27 янв. 2005 г.
- CVE-2004-101942В плане
The deserialization code in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to cause a denial of service and execute arbit
КритическаяCVSS 10,0Эксплойта нетEPSS 8 %php · php10 янв. 2005 г.
- CVE-2004-089142В плане
Buffer overflow in the MSN protocol handler for gaim 0.79 to 1.0.1 allows remote attackers to cause a denial of service (application crash)
КритическаяCVSS 10,0Эксплойта нетEPSS 7 %rob flynn · gaim27 янв. 2005 г.
- CVE-2004-088942В плане
Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of serv
КритическаяCVSS 10,0Эксплойта нетEPSS 6 %xpdf · xpdf27 янв. 2005 г.
- CVE-2004-101242В плане
The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary cod
КритическаяCVSS 10,0Эксплойта нетEPSS 6 %carnegie mellon university · cyrus imap server10 янв. 2005 г.
- CVE-2006-623542В плане
A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute ar
КритическаяCVSS 10,0Эксплойта нетEPSS 6 %gnu · privacy guard7 дек. 2006 г.
- CVE-2004-101142В плане
Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to exec
КритическаяCVSS 10,0Эксплойта нетEPSS 6 %carnegie mellon university · cyrus imap server10 янв. 2005 г.
- CVE-2004-101342В плане
The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary cod
КритическаяCVSS 10,0Эксплойта нетEPSS 6 %carnegie mellon university · cyrus imap server10 янв. 2005 г.
- CVE-2004-106742В плане
Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %carnegie mellon university · cyrus imap server10 янв. 2005 г.
- CVE-2004-101542В плане
Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to exec
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %carnegie mellon university · cyrus imap server10 янв. 2005 г.
- CVE-2005-362541В плане
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %libextractor · libextractor31 дек. 2005 г.
- CVE-2006-723639Наблюдать
The default configuration of xterm on Debian GNU/Linux sid and possibly Ubuntu enables the allowWindowOps resource, which allows user-assist
КритическаяCVSS 9,3Proof of conceptEPSS 7 %debian · debian linux2 янв. 2009 г.
- CVE-2011-072438Наблюдать
The Live DVD for Edubuntu 9.10, 10.04 LTS, and 10.10 does not correctly regenerate iTALC private keys after installation, which causes each
КритическаяCVSS 9,3Эксплойта нетEPSS 3 %ubuntu · edubuntu18 февр. 2011 г.
- CVE-2010-083438Наблюдать
The base-files package before 5.0.0ubuntu7.1 on Ubuntu 9.10 and before 5.0.0ubuntu20.10.04.2 on Ubuntu 10.04 LTS, as shipped on Dell Latitud
КритическаяCVSS 9,3Эксплойта нетEPSS 3 %ubuntu · ubuntu linux10 авг. 2010 г.
- CVE-2008-430638Наблюдать
Buffer overflow in enscript before 1.6.4 has unknown impact and attack vectors, possibly related to the font escape sequence.
КритическаяCVSS 9,3Эксплойта нетEPSS 2 %ubuntu · linux4 нояб. 2008 г.
- CVE-2007-135136Наблюдать
Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier all
ВысокаяCVSS 8,5Эксплойта нетEPSS 6 %x.org · libxfont5 апр. 2007 г.
- CVE-2013-218634Наблюдать
The DiskFileItem class in Apache Commons FileUpload, as used in Red Hat JBoss BRMS 5.3.1; JBoss Portal 4.3 CP07, 5.2.2, and 6.0.0; and Red H
ВысокаяCVSS 7,5Proof of conceptEPSS 12 %redhat · jboss enterprise brms platform28 окт. 2013 г.
- CVE-2008-439534Наблюдать
Multiple buffer overflows in the ndiswrapper module 1.53 for the Linux kernel 2.6 allow remote attackers to execute arbitrary code by sendin
ВысокаяCVSS 8,3Эксплойта нетEPSS 2 %linux · linux kernel6 нояб. 2008 г.
- CVE-2017-1446133Наблюдать
A specially crafted email delivered over SMTP and passed on to Dovecot by MTA can trigger an out of bounds read resulting in potential sensi
ВысокаяCVSS 7,1Эксплойта нетEPSS 17 %dovecot · dovecot2 мар. 2018 г.
- CVE-2004-082732Наблюдать
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a de
ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %imagemagick · imagemagick16 сент. 2004 г.