Known vulnerabilities in linux-azure-fips (Ubuntu package) - page 61
Vendor:
Canonical Ltd.
Software:
linux-azure-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-azure-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
3168
Public exploits:
20
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1117.102
5.15.0-1117.126+fips1
5.15.0.1116.101
5.15.0-1116.125+fips1
6.8.0-1063.71+fips2
6.8.0-134.134+fips1
6.8.0-1062.69+fips1
6.8.0-1059.65+fips1
6.8.0-1054.60+fips1
5.15.0.1110.95
5.15.0-1110.119+fips1
5.15.0.1109.94
5.15.0-1109.118+fips1
6.8.0-1052.58+fips1
5.4.0.1160.97
5.4.0-1160.166+fips1
6.8.0-1047.53+fips1
4.15.0.2106.102
4.15.0-2106.112
6.8.0-1046.52+fips1
6.8.0-1044.50+fips1
5.4.0.1157.94
5.4.0-1157.164+fips1
4.15.0.2104.100
4.15.0-2104.110
5.15.0.1101.86
5.15.0-1101.110+fips1
5.4.0.1155.92
5.4.0-1155.162+fips1
5.15.0.1097.82
5.15.0-1097.106+fips1
4.15.0.2102.98
4.15.0-2102.108
5.15.0.1096.81
5.15.0-1096.105+fips1
4.15.0.2085.83
4.15.0.1139.136
4.15.0.2101.97
4.15.0-2101.107
4.15.0-2085.91
4.15.0-1139.150
5.15.0.1094.79
5.15.0-1094.103+fips1
5.4.0.1121.118
5.4.0.1153.90
5.4.0-1153.160+fips1
5.4.0-1121.131
5.15.0.1091.76
5.15.0-1091.100+fips1
4.15.0.2098.94
4.15.0-2098.104
5.15.0.1089.74
5.15.0-1089.98+fips1
5.4.0.1151.88
5.4.0-1151.158+fips1
Vulnerabilities (3168)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU130567 - Out-of-bounds write CVE-2026-43175 |
CWE-787 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507178 SB2026070284 SB2026070309 and 8 more |
||
| #VU130565 - NULL Pointer Dereference CVE-2026-43173 |
CWE-476 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507176 SB2026070284 SB2026070309 and 8 more |
||
| #VU130563 - Integer underflow CVE-2026-43171 |
CWE-191 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507174 SB20260522109 SB2026070176 and 25 more |
||
| #VU130562 - Improper Synchronization CVE-2026-43170 |
CWE-662 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507173 SB20260529222 SB20260529223 and 11 more |
||
| #VU130561 - Improper input validation CVE-2026-43169 |
CWE-20 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507172 SB2026070284 SB2026070309 and 10 more |
||
| #VU130559 - Improper Resource Shutdown or Release CVE-2026-43183 |
CWE-404 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507170 SB2026070284 SB2026070309 and 22 more |
||
| #VU130558 - Divide By Zero CVE-2026-43182 |
CWE-369 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507169 SB2026070284 SB2026070309 and 22 more |
||
| #VU130556 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-43180 |
CWE-362 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507167 SB2026060548 SB2026060549 and 25 more |
||
| #VU130550 - Out-of-bounds read CVE-2026-43190 |
CWE-125 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507161 SB2026052679 SB20260528263 and 74 more |
||
| #VU130549 - NULL Pointer Dereference CVE-2026-43189 |
CWE-476 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507160 SB2026070284 SB2026070309 and 10 more |
||
| #VU130547 - Improper control of a resource through its lifetime CVE-2026-43187 |
CWE-664 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507158 SB2026062493 SB2026070176 and 25 more |
||
| #VU130546 - Heap-based Buffer Overflow CVE-2026-43186 |
CWE-122 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507157 SB2026060546 SB2026070282 and 25 more |
||
| #VU130544 - Improper Initialization CVE-2026-43184 |
CWE-665 | Medium | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507155 SB2026070284 SB2026070309 and 20 more |
||
| #VU130543 - Improper control of a resource through its lifetime CVE-2026-43199 |
CWE-664 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507154 SB2026070284 SB2026070309 and 10 more |
||
| #VU130540 - Double Free CVE-2026-43196 |
CWE-415 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507151 SB2026070284 SB2026070309 and 22 more |
||
| #VU130538 - Always-Incorrect Control Flow Implementation CVE-2026-43194 |
CWE-670 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507149 SB2026060548 SB2026061290 and 25 more |
||
| #VU130532 - Use After Free CVE-2026-43203 |
CWE-416 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507143 SB2026070284 SB2026070309 and 22 more |
||
| #VU130531 - Missing release of memory after effective lifetime CVE-2026-43202 |
CWE-401 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507142 SB2026070284 SB2026070309 and 23 more |
||
| #VU130530 - Out-of-bounds read CVE-2026-43201 |
CWE-125 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507141 SB2026070284 SB2026070309 and 8 more |
||
| #VU130529 - Function Call with Incorrectly Specified Arguments CVE-2026-43200 |
CWE-628 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 07.05.2026 |
SB20260507140 SB2026070284 SB2026070310 and 20 more |
Showing elements 1201 - 1220 out of 3168