Known vulnerabilities in linux-azure-fips (Ubuntu package) - page 28
Vendor:
Canonical Ltd.
Software:
linux-azure-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-azure-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
3168
Public exploits:
20
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1117.102
5.15.0-1117.126+fips1
5.15.0.1116.101
5.15.0-1116.125+fips1
6.8.0-1063.71+fips2
6.8.0-134.134+fips1
6.8.0-1062.69+fips1
6.8.0-1059.65+fips1
6.8.0-1054.60+fips1
5.15.0.1110.95
5.15.0-1110.119+fips1
5.15.0.1109.94
5.15.0-1109.118+fips1
6.8.0-1052.58+fips1
5.4.0.1160.97
5.4.0-1160.166+fips1
6.8.0-1047.53+fips1
4.15.0.2106.102
4.15.0-2106.112
6.8.0-1046.52+fips1
6.8.0-1044.50+fips1
5.4.0.1157.94
5.4.0-1157.164+fips1
4.15.0.2104.100
4.15.0-2104.110
5.15.0.1101.86
5.15.0-1101.110+fips1
5.4.0.1155.92
5.4.0-1155.162+fips1
5.15.0.1097.82
5.15.0-1097.106+fips1
4.15.0.2102.98
4.15.0-2102.108
5.15.0.1096.81
5.15.0-1096.105+fips1
4.15.0.2085.83
4.15.0.1139.136
4.15.0.2101.97
4.15.0-2101.107
4.15.0-2085.91
4.15.0-1139.150
5.15.0.1094.79
5.15.0-1094.103+fips1
5.4.0.1121.118
5.4.0.1153.90
5.4.0-1153.160+fips1
5.4.0-1121.131
5.15.0.1091.76
5.15.0-1091.100+fips1
4.15.0.2098.94
4.15.0-2098.104
5.15.0.1089.74
5.15.0-1089.98+fips1
5.4.0.1151.88
5.4.0-1151.158+fips1
Vulnerabilities (3168)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU130633 - Improper Resource Shutdown or Release CVE-2025-71287 |
CWE-404 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 07.05.2026 |
SB20260507240 SB20260721108 SB2026072356 and 24 more |
||
| #VU124581 - NULL Pointer Dereference CVE-2026-23279 |
CWE-476 | Medium | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 25.03.2026 |
SB20260325175 SB20260513116 SB2026051411 and 28 more |
||
| #VU124195 - Exposure of resource to wrong sphere CVE-2026-23253 |
CWE-668 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 20.03.2026 |
SB20260320100 SB20260417140 SB20260513116 and 32 more |
||
| #VU124173 - NULL Pointer Dereference CVE-2026-23277 |
CWE-476 | Medium | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 20.03.2026 |
SB2026032078 SB2026041129 SB2026041130 and 32 more |
||
| #VU124152 - Use After Free CVE-2026-23270 |
CWE-416 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 20.03.2026 |
SB2026032001 SB2026041129 SB2026041130 and 40 more |
||
| #VU123034 - Use After Free CVE-2026-23227 |
CWE-416 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 18.02.2026 |
SB2026021878 SB20260513116 SB2026051411 and 26 more |
||
| #VU122954 - Improper input validation CVE-2026-23141 |
CWE-20 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1 | 16.02.2026 |
SB20260216136 SB2026032361 SB20260325204 and 26 more |
||
| #VU122922 - Improper Locking CVE-2026-23113 |
CWE-667 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1 | 16.02.2026 |
SB20260216106 SB2026032072 SB2026032073 and 28 more |
||
| #VU122913 - Improper Locking CVE-2026-23157 |
CWE-667 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 16.02.2026 |
SB2026021698 SB2026032361 SB20260325204 and 35 more |
||
| #VU122881 - Out-of-bounds read CVE-2026-23204 |
CWE-125 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1 | 16.02.2026 |
SB2026021665 SB2026021911 SB2026031902 and 77 more |
||
| #VU122874 - Use After Free CVE-2025-71221 |
CWE-416 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 16.02.2026 |
SB2026021658 SB2026030678 SB2026031530 and 30 more |
||
| #VU122331 - Use After Free CVE-2026-23066 |
CWE-416 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 04.02.2026 |
SB2026020496 SB2026042085 SB20260420135 and 35 more |
||
| #VU122167 - Missing release of memory after effective lifetime CVE-2026-23031 |
CWE-401 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1 | 02.02.2026 |
SB2026020238 SB2026020972 SB2026020973 and 24 more |
||
| #VU121999 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2025-71161 |
CWE-835 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 24.01.2026 |
SB2026012401 SB20260513116 SB2026051411 and 32 more |
||
| #VU120510 - Improper Locking CVE-2025-68358 |
CWE-667 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1 | 26.12.2025 |
SB20251226252 SB2026020972 SB2026031305 and 24 more |
||
| #VU120136 - Resource Management Errors CVE-2025-68239 |
CWE-399 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 16.12.2025 |
SB20251216180 SB2026012390 SB2026012633 and 37 more |
||
| #VU115360 - Missing release of memory after effective lifetime CVE-2025-39764 |
CWE-401 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-1063.71+fips2 | 16.09.2025 |
SB20250916102 SB20251015148 SB20251015149 and 36 more |
||
| #VU105676 - Improper input validation CVE-2025-21863 |
CWE-20 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1 | 12.03.2025 |
SB2025031275 SB20250403105 SB20250403106 and 30 more |
||
| #VU105061 - Improper Initialization CVE-2025-21712 |
CWE-665 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1 | 27.02.2025 |
SB20250227157 SB20250422196 SB2025042540 and 22 more |
||
| #VU104935 - Missing release of memory after effective lifetime CVE-2025-21739 |
CWE-401 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1 | 27.02.2025 |
SB2025022733 SB2025040917 SB2025040929 and 32 more |
Showing elements 541 - 560 out of 3168