Known vulnerabilities in linux-azure-fips (Ubuntu package) - page 139
Vendor:
Canonical Ltd.
Software:
linux-azure-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-azure-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
3168
Public exploits:
20
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1117.102
5.15.0-1117.126+fips1
5.15.0.1116.101
5.15.0-1116.125+fips1
6.8.0-1063.71+fips2
6.8.0-134.134+fips1
6.8.0-1062.69+fips1
6.8.0-1059.65+fips1
6.8.0-1054.60+fips1
5.15.0.1110.95
5.15.0-1110.119+fips1
5.15.0.1109.94
5.15.0-1109.118+fips1
6.8.0-1052.58+fips1
5.4.0.1160.97
5.4.0-1160.166+fips1
6.8.0-1047.53+fips1
4.15.0.2106.102
4.15.0-2106.112
6.8.0-1046.52+fips1
6.8.0-1044.50+fips1
5.4.0.1157.94
5.4.0-1157.164+fips1
4.15.0.2104.100
4.15.0-2104.110
5.15.0.1101.86
5.15.0-1101.110+fips1
5.4.0.1155.92
5.4.0-1155.162+fips1
5.15.0.1097.82
5.15.0-1097.106+fips1
4.15.0.2102.98
4.15.0-2102.108
5.15.0.1096.81
5.15.0-1096.105+fips1
4.15.0.2085.83
4.15.0.1139.136
4.15.0.2101.97
4.15.0-2101.107
4.15.0-2085.91
4.15.0-1139.150
5.15.0.1094.79
5.15.0-1094.103+fips1
5.4.0.1121.118
5.4.0.1153.90
5.4.0-1153.160+fips1
5.4.0-1121.131
5.15.0.1091.76
5.15.0-1091.100+fips1
4.15.0.2098.94
4.15.0-2098.104
5.15.0.1089.74
5.15.0-1089.98+fips1
5.4.0.1151.88
5.4.0-1151.158+fips1
Vulnerabilities (3168)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU113806 - Improper Privilege Management CVE-2025-38498 |
CWE-269 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 11.08.2025 |
SB2025081152 SB2025081162 SB2025081163 and 98 more |
||
| #VU113376 - Use After Free CVE-2025-38477 |
CWE-416 | Low | 4.15.0.2102.98, 4.15.0-2102.108, 5.4.0.1155.92, 5.4.0-1155.162+fips1, 5.15.0.1097.82, 5.15.0-1097.106+fips1 | 29.07.2025 |
SB2025072925 SB2025081507 SB2025081508 and 120 more |
||
| #VU113313 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2025-38352 |
CWE-362 | High | 4.15.0.2104.100, 4.15.0-2104.110, 5.4.0.1157.94, 5.4.0-1157.164+fips1, 5.15.0.1096.81, 5.15.0-1096.105+fips1, 6.8.0-1044.50+fips1 | 27.07.2025 |
SB2025072788 SB2025081507 SB20250816180 and 144 more |
||
| #VU113101 - Use After Free CVE-2025-38350 |
CWE-416 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107, 5.4.0.1155.92, 5.4.0-1155.162+fips1 | 22.07.2025 |
SB2025072210 SB2025081507 SB20250818100 and 73 more |
||
| #VU112805 - Improper Locking CVE-2025-38237 |
CWE-667 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 11.07.2025 |
SB2025071159 SB2025092533 SB2025092534 and 14 more |
||
| #VU112746 - Use After Free CVE-2025-38273 |
CWE-416 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 10.07.2025 |
SB2025071054 SB2025081507 SB20250818103 and 15 more |
||
| #VU112315 - Double Free CVE-2025-38206 |
CWE-415 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 05.07.2025 |
SB2025070543 SB2025080162 SB20250818103 and 67 more |
||
| #VU112297 - NULL Pointer Dereference CVE-2025-38203 |
CWE-476 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 05.07.2025 |
SB2025070523 SB20250818103 SB20250820120 and 21 more |
||
| #VU112291 - Out-of-bounds read CVE-2025-38204 |
CWE-125 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 05.07.2025 |
SB2025070517 SB20250818103 SB20250820120 and 21 more |
||
| #VU112288 - Use After Free CVE-2025-38227 |
CWE-416 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1, 6.8.0-1044.50+fips1 | 05.07.2025 |
SB2025070514 SB2025081507 SB20250818103 and 35 more |
||
| #VU109532 - Improper Locking CVE-2025-37958 |
CWE-667 | Low | 4.15.0.2104.100, 4.15.0-2104.110, 5.4.0.1157.94, 5.4.0-1157.164+fips1, 5.15.0.1096.81, 5.15.0-1096.105+fips1, 6.8.0-1044.50+fips1 | 21.05.2025 |
SB2025052136 SB2025061222 SB2025061343 and 64 more |
||
| #VU109496 - Missing release of memory after effective lifetime CVE-2025-37954 |
CWE-401 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 20.05.2025 |
SB20250520126 SB2025061637 SB2025061639 and 27 more |
||
| #VU106111 - Use After Free CVE-2025-21888 |
CWE-416 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 27.03.2025 |
SB2025032737 SB2025040917 SB2025040929 and 35 more |
||
| #VU102893 - Missing release of memory after effective lifetime CVE-2024-57883 |
CWE-401 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 17.01.2025 |
SB2025011735 SB2025030762 SB2025032180 and 25 more |
||
| #VU98870 - Use After Free CVE-2024-49924 |
CWE-416 | Low | 4.15.0.2102.98, 4.15.0-2102.108 | 21.10.2024 |
SB2024102175 SB2024110892 SB2024110893 and 57 more |
||
| #VU96551 - NULL Pointer Dereference CVE-2024-44939 |
CWE-476 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 26.08.2024 |
SB2024082679 SB2024091077 SB2024091080 and 23 more |
||
| #VU91345 - Exposure of sensitive information to an unauthorized actor CVE-2024-35849 |
CWE-200 | Low | 4.15.0.2102.98, 4.15.0-2102.108 | 08.06.2024 |
SB2024060868 SB2024061046 SB2024070828 and 40 more |
||
| #VU90791 - Improper Locking CVE-2024-26726 |
CWE-667 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 03.06.2024 |
SB2024060391 SB2024070850 SB2024070851 and 24 more |
||
| #VU90786 - Improper Locking CVE-2024-26775 |
CWE-667 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 03.06.2024 |
SB2024060386 SB2024070828 SB2024070845 and 17 more |
||
| #VU90514 - NULL Pointer Dereference CVE-2022-48703 |
CWE-476 | Low | 5.15.0.1096.81, 5.15.0-1096.105+fips1 | 31.05.2024 |
SB20240531416 SB2024070449 SB2024070713 and 15 more |
Showing elements 2761 - 2780 out of 3168