Known vulnerabilities in linux-azure-fips (Ubuntu package) - page 58
Vendor:
Canonical Ltd.
Software:
linux-azure-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-azure-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
3168
Public exploits:
20
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1117.102
5.15.0-1117.126+fips1
5.15.0.1116.101
5.15.0-1116.125+fips1
6.8.0-1063.71+fips2
6.8.0-134.134+fips1
6.8.0-1062.69+fips1
6.8.0-1059.65+fips1
6.8.0-1054.60+fips1
5.15.0.1110.95
5.15.0-1110.119+fips1
5.15.0.1109.94
5.15.0-1109.118+fips1
6.8.0-1052.58+fips1
5.4.0.1160.97
5.4.0-1160.166+fips1
6.8.0-1047.53+fips1
4.15.0.2106.102
4.15.0-2106.112
6.8.0-1046.52+fips1
6.8.0-1044.50+fips1
5.4.0.1157.94
5.4.0-1157.164+fips1
4.15.0.2104.100
4.15.0-2104.110
5.15.0.1101.86
5.15.0-1101.110+fips1
5.4.0.1155.92
5.4.0-1155.162+fips1
5.15.0.1097.82
5.15.0-1097.106+fips1
4.15.0.2102.98
4.15.0-2102.108
5.15.0.1096.81
5.15.0-1096.105+fips1
4.15.0.2085.83
4.15.0.1139.136
4.15.0.2101.97
4.15.0-2101.107
4.15.0-2085.91
4.15.0-1139.150
5.15.0.1094.79
5.15.0-1094.103+fips1
5.4.0.1121.118
5.4.0.1153.90
5.4.0-1153.160+fips1
5.4.0-1121.131
5.15.0.1091.76
5.15.0-1091.100+fips1
4.15.0.2098.94
4.15.0-2098.104
5.15.0.1089.74
5.15.0-1089.98+fips1
5.4.0.1151.88
5.4.0-1151.158+fips1
Vulnerabilities (3168)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU130898 - Always-Incorrect Control Flow Implementation CVE-2026-43289 |
CWE-670 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB20260509106 SB20260522107 SB20260529224 and 23 more |
||
| #VU130897 - Improper Initialization CVE-2026-43288 |
CWE-665 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB20260509105 SB2026060546 SB2026070284 and 11 more |
||
| #VU130896 - Resource exhaustion CVE-2026-43287 |
CWE-400 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB20260509104 SB2026060548 SB2026070284 and 23 more |
||
| #VU130892 - NULL Pointer Dereference CVE-2026-43297 |
CWE-476 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB20260509100 SB2026070284 SB2026070309 and 8 more |
||
| #VU130891 - Deadlock CVE-2026-43296 |
CWE-833 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB2026050999 SB2026070284 SB2026070309 and 20 more |
||
| #VU130890 - Expired pointer dereference CVE-2026-43295 |
CWE-825 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB2026050998 SB2026070284 SB2026070309 and 22 more |
||
| #VU130886 - Improper input validation CVE-2026-43291 |
CWE-20 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB2026050994 SB2026070284 SB2026070309 and 21 more |
||
| #VU130882 - Improper input validation CVE-2026-43304 |
CWE-20 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB2026050990 SB2026070282 SB2026070283 and 24 more |
||
| #VU130880 - Improper Initialization CVE-2026-43302 |
CWE-665 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB2026050988 SB2026070284 SB2026070309 and 22 more |
||
| #VU130878 - NULL Pointer Dereference CVE-2026-43300 |
CWE-476 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB2026050986 SB2026070284 SB2026070309 and 10 more |
||
| #VU130869 - NULL Pointer Dereference CVE-2026-43312 |
CWE-476 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 09.05.2026 |
SB2026050977 SB2026070284 SB2026070309 and 22 more |
||
| #VU130434 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-43275 |
CWE-362 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050743 SB2026070284 SB2026070309 and 20 more |
||
| #VU130432 - Always-Incorrect Control Flow Implementation CVE-2026-43273 |
CWE-670 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050741 SB2026060546 SB2026060547 and 22 more |
||
| #VU130430 - NULL Pointer Dereference CVE-2026-43271 |
CWE-476 | Medium | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050739 SB2026070284 SB2026070309 and 8 more |
||
| #VU130429 - Missing Release of Resource after Effective Lifetime CVE-2026-43270 |
CWE-772 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050738 SB2026070284 SB2026070309 and 22 more |
||
| #VU130428 - Missing release of memory after effective lifetime CVE-2026-43269 |
CWE-401 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050737 SB2026070284 SB2026070309 and 22 more |
||
| #VU130427 - Improper Resource Shutdown or Release CVE-2026-43283 |
CWE-404 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050736 SB2026070284 SB2026070309 and 19 more |
||
| #VU130422 - Out-of-bounds write CVE-2026-43279 |
CWE-787 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050731 SB20260619130 SB20260619131 and 37 more |
||
| #VU130421 - Double Free CVE-2026-43278 |
CWE-415 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050730 SB2026070284 SB2026070309 and 10 more |
||
| #VU130420 - Out-of-bounds read CVE-2026-43277 |
CWE-125 | Medium | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB2026050729 SB2026070284 SB2026070309 and 22 more |
Showing elements 1141 - 1160 out of 3168