Known vulnerabilities in linux-fips (Ubuntu package) - page 12
Vendor:
Canonical Ltd.
Software:
linux-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
1273
Public exploits:
7
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1110.109
5.15.0.190.111
5.15.0-190.200+fips1
5.15.0-1110.116
4.4.0.1127.129
4.4.0-1127.134
6.8.0-136.136.2~22.04.1
6.8.0-136.136.2
6.8.0-136.136+fips2
6.8.0-1058.61
4.4.0.1125.127
4.4.0-1125.132
6.8.0-116.116+fips1
5.15.0.1105.95
5.15.0.176.102
5.15.0-176.186+fips1
5.15.0-1105.114+fips1
4.4.0.1123.124
4.4.0-1123.130
5.4.0.1159.101
5.4.0.1130.127
5.4.0-1159.168+fips1
5.4.0-1130.140
4.4.0.1122.123
4.4.0-1122.129
5.15.0.171.98
5.15.0-171.181+fips1
6.8.0-1048.51+fips1
6.8.0-101.101+fips1
4.4.0.1121.122
4.4.0-1121.128
4.4.0.1120.121
4.4.0-1120.127
4.4.0.1119.120
4.4.0-1119.126
5.4.0.1154.96
5.4.0.1125.122
5.4.0-1154.163+fips1
5.4.0-1125.135
4.4.0.1117.118
4.4.0-1117.124
4.4.0.1116.117
4.4.0-1116.123
4.4.0.1115.116
4.4.0-1115.122
4.15.0.1136.133
4.15.0-1136.147
4.4.0.1114.115
4.4.0-1114.121
4.4.0.1113.114
4.4.0-1113.120
Vulnerabilities (1273)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU133049 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-46152 |
CWE-362 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529153 SB2026061693 SB20260619116 and 29 more |
||
| #VU133039 - Out-of-bounds read CVE-2026-46163 |
CWE-125 | Medium | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529143 SB20260721107 SB20260721108 and 33 more |
||
| #VU133037 - Divide By Zero CVE-2026-46161 |
CWE-369 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529141 SB20260721107 SB20260721108 and 33 more |
||
| #VU133036 - Improper control of a resource through its lifetime CVE-2026-46160 |
CWE-664 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529140 SB2026062309 SB2026070176 and 24 more |
||
| #VU133035 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2026-46159 |
CWE-367 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529139 SB20260625277 SB20260625278 and 24 more |
||
| #VU133033 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-46157 |
CWE-362 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529137 SB20260721107 SB20260721108 and 19 more |
||
| #VU133029 - Use After Free CVE-2026-46173 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529133 SB20260619116 SB2026062226 and 75 more |
||
| #VU133028 - Missing release of memory after effective lifetime CVE-2026-46172 |
CWE-401 | Medium | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529132 SB2026061292 SB2026070176 and 36 more |
||
| #VU133025 - Use of Uninitialized Variable CVE-2026-46169 |
CWE-457 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529127 SB20260721107 SB20260721108 and 20 more |
||
| #VU133024 - Improper Locking CVE-2026-46168 |
CWE-667 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529125 SB20260721107 SB20260721108 and 31 more |
||
| #VU133023 - Improper Clearing of Heap Memory Before Release ('Heap Inspection') CVE-2026-46167 |
CWE-244 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529124 SB2026060548 SB20260721107 and 34 more |
||
| #VU133020 - Double Free CVE-2026-46164 |
CWE-415 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529121 SB20260721107 SB20260721108 and 19 more |
||
| #VU133016 - Use After Free CVE-2026-46180 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529117 SB20260721107 SB20260721108 and 19 more |
||
| #VU133015 - Divide By Zero CVE-2026-46179 |
CWE-369 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529116 SB20260721107 SB20260721108 and 21 more |
||
| #VU133014 - Improper Resource Shutdown or Release CVE-2026-46178 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529115 SB2026060546 SB2026061292 and 36 more |
||
| #VU133013 - Excessive Iteration CVE-2026-46177 |
CWE-834 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529114 SB20260721107 SB20260721108 and 33 more |
||
| #VU133012 - Use After Free CVE-2026-46176 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529113 SB2026063095 SB20260721107 and 20 more |
||
| #VU133010 - Exposure of resource to wrong sphere CVE-2026-46174 |
CWE-668 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529111 SB20260529126 SB2026062493 and 35 more |
||
| #VU133002 - Out-of-bounds read CVE-2026-46186 |
CWE-125 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529103 SB20260721107 SB20260721108 and 33 more |
||
| #VU133000 - Improper input validation CVE-2026-46184 |
CWE-20 | Medium | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 29.05.2026 |
SB20260529101 SB2026061292 SB20260721107 and 34 more |
Showing elements 221 - 240 out of 1273