Known vulnerabilities in linux-azure-fips (Ubuntu package) - page 64
Vendor:
Canonical Ltd.
Software:
linux-azure-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-azure-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
3168
Public exploits:
20
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1117.102
5.15.0-1117.126+fips1
5.15.0.1116.101
5.15.0-1116.125+fips1
6.8.0-1063.71+fips2
6.8.0-134.134+fips1
6.8.0-1062.69+fips1
6.8.0-1059.65+fips1
6.8.0-1054.60+fips1
5.15.0.1110.95
5.15.0-1110.119+fips1
5.15.0.1109.94
5.15.0-1109.118+fips1
6.8.0-1052.58+fips1
5.4.0.1160.97
5.4.0-1160.166+fips1
6.8.0-1047.53+fips1
4.15.0.2106.102
4.15.0-2106.112
6.8.0-1046.52+fips1
6.8.0-1044.50+fips1
5.4.0.1157.94
5.4.0-1157.164+fips1
4.15.0.2104.100
4.15.0-2104.110
5.15.0.1101.86
5.15.0-1101.110+fips1
5.4.0.1155.92
5.4.0-1155.162+fips1
5.15.0.1097.82
5.15.0-1097.106+fips1
4.15.0.2102.98
4.15.0-2102.108
5.15.0.1096.81
5.15.0-1096.105+fips1
4.15.0.2085.83
4.15.0.1139.136
4.15.0.2101.97
4.15.0-2101.107
4.15.0-2085.91
4.15.0-1139.150
5.15.0.1094.79
5.15.0-1094.103+fips1
5.4.0.1121.118
5.4.0.1153.90
5.4.0-1153.160+fips1
5.4.0-1121.131
5.15.0.1091.76
5.15.0-1091.100+fips1
4.15.0.2098.94
4.15.0-2098.104
5.15.0.1089.74
5.15.0-1089.98+fips1
5.4.0.1151.88
5.4.0-1151.158+fips1
Vulnerabilities (3168)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU127796 - Heap-based Buffer Overflow CVE-2026-31607 |
CWE-122 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 25.04.2026 |
SB20260425114 SB20260513116 SB2026052679 and 53 more |
||
| #VU127751 - Improper input validation CVE-2026-31637 |
CWE-20 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 25.04.2026 |
SB2026042569 SB20260513116 SB2026070282 and 35 more |
||
| #VU127744 - Integer underflow CVE-2026-31649 |
CWE-191 | Low | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 25.04.2026 |
SB2026042562 SB20260513116 SB2026051411 and 42 more |
||
| #VU127737 - Heap-based Buffer Overflow CVE-2026-31659 |
CWE-122 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 25.04.2026 |
SB2026042555 SB20260513116 SB2026051411 and 38 more |
||
| #VU127735 - Use After Free CVE-2026-31657 |
CWE-416 | Low | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 25.04.2026 |
SB2026042553 SB20260513116 SB2026051411 and 35 more |
||
| #VU127713 - Double Free CVE-2026-31436 |
CWE-415 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 24.04.2026 |
SB20260424293 SB20260513116 SB2026051582 and 26 more |
||
| #VU127703 - Improper control of a resource through its lifetime CVE-2026-31448 |
CWE-664 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 24.04.2026 |
SB20260424283 SB20260513116 SB2026051411 and 39 more |
||
| #VU127673 - Incorrect Calculation of Buffer Size CVE-2026-31478 |
CWE-131 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 24.04.2026 |
SB20260424253 SB20260513116 SB2026051411 and 24 more |
||
| #VU125858 - Improper control of a resource through its lifetime CVE-2026-31418 |
CWE-664 | Low | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 14.04.2026 |
SB2026041416 SB20260509143 SB20260509144 and 31 more |
||
| #VU125838 - Improper input validation CVE-2026-31411 |
CWE-20 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 13.04.2026 |
SB2026041325 SB20260513116 SB2026051411 and 32 more |
||
| #VU124943 - Use After Free CVE-2026-23428 |
CWE-416 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 06.04.2026 |
SB20260406107 SB20260513116 SB2026051411 and 24 more |
||
| #VU124921 - NULL Pointer Dereference CVE-2026-23450 |
CWE-476 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 06.04.2026 |
SB2026040685 SB2026042519 SB2026042520 and 32 more |
||
| #VU124920 - Use After Free CVE-2026-23450 |
CWE-416 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 06.04.2026 |
SB2026040684 SB2026042519 SB2026042520 and 32 more |
||
| #VU124910 - Out-of-bounds read CVE-2026-23455 |
CWE-125 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 06.04.2026 |
SB2026040668 SB2026050312 SB2026050315 and 52 more |
||
| #VU124880 - Heap-based Buffer Overflow CVE-2026-31402 |
CWE-122 | Medium | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 06.04.2026 |
SB2026040636 SB2026042519 SB2026042521 and 89 more |
||
| #VU124450 - Use After Free CVE-2026-23392 |
CWE-416 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 25.03.2026 |
SB2026032556 SB2026041129 SB2026041130 and 53 more |
||
| #VU124183 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2026-23267 |
CWE-367 | Low | 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 20.03.2026 |
SB2026032088 SB2026070284 SB2026070309 and 8 more |
||
| #VU124182 - Symbolic Name not Mapping to Correct Object CVE-2026-23266 |
CWE-386 | Low | 5.15.0.1117.102, 5.15.0-1117.126+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 20.03.2026 |
SB2026032087 SB2026060229 SB2026060354 and 22 more |
||
| #VU124176 - Use After Free CVE-2026-23272 |
CWE-416 | Low | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 20.03.2026 |
SB2026032081 SB20260415174 SB2026042328 and 45 more |
||
| #VU124174 - Resource exhaustion CVE-2026-23278 |
CWE-400 | Low | 5.15.0.1116.101, 5.15.0-1116.125+fips1, 6.8.0-134.134+fips1, 6.8.0-1062.69+fips1 | 20.03.2026 |
SB2026032079 SB2026041129 SB2026041130 and 33 more |
Showing elements 1261 - 1280 out of 3168