Known vulnerabilities in linux-azure-fips (Ubuntu package) - page 140
Vendor:
Canonical Ltd.
Software:
linux-azure-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-azure-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
3168
Public exploits:
20
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1117.102
5.15.0-1117.126+fips1
5.15.0.1116.101
5.15.0-1116.125+fips1
6.8.0-1063.71+fips2
6.8.0-134.134+fips1
6.8.0-1062.69+fips1
6.8.0-1059.65+fips1
6.8.0-1054.60+fips1
5.15.0.1110.95
5.15.0-1110.119+fips1
5.15.0.1109.94
5.15.0-1109.118+fips1
6.8.0-1052.58+fips1
5.4.0.1160.97
5.4.0-1160.166+fips1
6.8.0-1047.53+fips1
4.15.0.2106.102
4.15.0-2106.112
6.8.0-1046.52+fips1
6.8.0-1044.50+fips1
5.4.0.1157.94
5.4.0-1157.164+fips1
4.15.0.2104.100
4.15.0-2104.110
5.15.0.1101.86
5.15.0-1101.110+fips1
5.4.0.1155.92
5.4.0-1155.162+fips1
5.15.0.1097.82
5.15.0-1097.106+fips1
4.15.0.2102.98
4.15.0-2102.108
5.15.0.1096.81
5.15.0-1096.105+fips1
4.15.0.2085.83
4.15.0.1139.136
4.15.0.2101.97
4.15.0-2101.107
4.15.0-2085.91
4.15.0-1139.150
5.15.0.1094.79
5.15.0-1094.103+fips1
5.4.0.1121.118
5.4.0.1153.90
5.4.0-1153.160+fips1
5.4.0-1121.131
5.15.0.1091.76
5.15.0-1091.100+fips1
4.15.0.2098.94
4.15.0-2098.104
5.15.0.1089.74
5.15.0-1089.98+fips1
5.4.0.1151.88
5.4.0-1151.158+fips1
Vulnerabilities (3168)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU112334 - Improper input validation CVE-2025-38177 |
CWE-20 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1 | 05.07.2025 |
SB2025070562 SB2025071791 SB2025071899 and 68 more |
||
| #VU112240 - Improper Locking CVE-2025-38094 |
CWE-667 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 04.07.2025 |
SB2025070487 SB20250711138 SB20250711139 and 38 more |
||
| #VU111702 - Improper input validation CVE-2025-38065 |
CWE-20 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 20.06.2025 |
SB20250620234 SB20250704136 SB20250704137 and 36 more |
||
| #VU111661 - Memory corruption CVE-2025-38068 |
CWE-119 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 20.06.2025 |
SB20250620193 SB2025072898 SB2025081507 and 44 more |
||
| #VU111647 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2025-38083 |
CWE-362 | Low | 5.4.0.1155.92, 5.4.0-1155.162+fips1, 5.15.0.1094.79, 5.15.0-1094.103+fips1 | 20.06.2025 |
SB20250620179 SB2025072897 SB2025072898 and 71 more |
||
| #VU111639 - Divide By Zero CVE-2025-38072 |
CWE-369 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 20.06.2025 |
SB20250620171 SB20250711138 SB20250711139 and 38 more |
||
| #VU111636 - Memory corruption CVE-2025-38077 |
CWE-119 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 20.06.2025 |
SB20250620168 SB2025072898 SB2025081507 and 33 more |
||
| #VU111598 - Improper Locking CVE-2025-38066 |
CWE-667 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 20.06.2025 |
SB2025062089 SB2025081507 SB20250820111 and 31 more |
||
| #VU111547 - NULL Pointer Dereference CVE-2025-38075 |
CWE-476 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 20.06.2025 |
SB2025062025 SB2025072550 SB2025072551 and 42 more |
||
| #VU111460 - Use After Free CVE-2025-38078 |
CWE-416 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 19.06.2025 |
SB20250619182 SB20250704136 SB20250704137 and 38 more |
||
| #VU111459 - Use After Free CVE-2025-38079 |
CWE-416 | Low | 5.15.0.1094.79, 5.15.0-1094.103+fips1, 6.8.0-1046.52+fips1 | 19.06.2025 |
SB20250619181 SB20250711142 SB2025072550 and 100 more |
||
| #VU108259 - Out-of-bounds read CVE-2025-37752 |
CWE-125 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107, 5.4.0.1155.92, 5.4.0-1155.162+fips1 | 02.05.2025 |
SB20250502164 SB2025053054 SB2025061747 and 74 more |
||
| #VU104987 - Out-of-bounds read CVE-2024-57996 |
CWE-125 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107, 5.4.0.1155.92, 5.4.0-1155.162+fips1 | 27.02.2025 |
SB2025022785 SB2025032193 SB2025032664 and 87 more |
||
| #VU102917 - Use After Free CVE-2024-50051 |
CWE-416 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107 | 17.01.2025 |
SB2025011759 SB2025020351 SB2025021179 and 53 more |
||
| #VU101226 - NULL Pointer Dereference CVE-2024-53131 |
CWE-476 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107 | 04.12.2024 |
SB2024120446 SB2024122049 SB20250115100 and 53 more |
||
| #VU101225 - NULL Pointer Dereference CVE-2024-53130 |
CWE-476 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107 | 04.12.2024 |
SB2024120443 SB2024121358 SB2024121359 and 52 more |
||
| #VU100130 - Improper input validation CVE-2024-50202 |
CWE-20 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107 | 08.11.2024 |
SB2024110854 SB2024112267 SB2024112933 and 58 more |
||
| #VU99087 - Use of Uninitialized Resource CVE-2024-47685 |
CWE-908 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107 | 22.10.2024 |
SB20241022199 SB2024110167 SB2024110169 and 59 more |
||
| #VU90453 - Missing release of memory after effective lifetime CVE-2024-27074 |
CWE-401 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107 | 31.05.2024 |
SB20240531362 SB2024070850 SB2024070851 and 33 more |
||
| #VU89393 - Use of Uninitialized Resource CVE-2023-52477 |
CWE-908 | Low | 4.15.0.1139.136, 4.15.0-1139.150, 4.15.0.2085.83, 4.15.0-2085.91, 4.15.0.2101.97, 4.15.0-2101.107 | 13.05.2024 |
SB2024051343 SB2024051353 SB2024062412 and 47 more |
Showing elements 2781 - 2800 out of 3168