CVEs we hold for Ubuntu
Records whose assigning authority named Ubuntu as the affected vendor. Newest identifiers first, capped at 200.
CVE-2020-8832Ubuntu 18.04 Linux kernel i915 incomplete fix for CVE-2019-14615Ubuntu 18.04 LTS (bionic) Linux kernel
CVE-2020-15707GRUB2 contained integer overflows when handling the initrd command, leading to a heap-based buffer overflow.Ubuntu
CVE-2020-15706GRUB2 contains a race condition leading to a use-after-free vulnerability which can be triggered by redefining a…Ubuntu
CVE-2020-15705GRUB2: avoid loading unsigned kernels when GRUB is booted directly under secureboot without shimUbuntu
CVE-2020-11935aufs: improperly managed inode reference counts in the vfsub_dentry_open() methodUbuntu Linux kernel (aufs filesystem module)
CVE-2019-7307Apport contains a TOCTTOU vulnerability when reading the users ~/.apport-ignore.xmlUbuntu apport
CVE-2019-15794Reference counting error in overlayfs/shiftfs error path when used in conjuction with aufsUbuntu Linux kernel
CVE-2019-15793Mishandling of file-system uid/gid with namespaces in shiftfsUbuntu Shiftfs in the Linux kernel
CVE-2016-1584Unity8 converged application lifecycle allows background applications to use on-screen keyboard when not top-mostUbuntu Unity8
CVE-2016-1579UDM doesn't check for confinement before running post-processing commandsUbuntu Download Manager
CVE-2016-1573Using a specially crafted fallback art property, scopes can execute arbitrary QML code in context of unity8-dashUbuntu Unity8
CVE-2015-1327Content-hub DBUS API doesn't prevent confined apps from passing paths to files without accessUbuntu Content Hub
CVE-2015-1326python-dbusmock arbitrary code execution or file overwrite when templates are loaded from /tmpUbuntu python-dbusmock
44 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.