Known vulnerabilities in linux-fips (Ubuntu package) - page 2
Vendor:
Canonical Ltd.
Software:
linux-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
1273
Public exploits:
7
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1110.109
5.15.0.190.111
5.15.0-190.200+fips1
5.15.0-1110.116
4.4.0.1127.129
4.4.0-1127.134
6.8.0-136.136.2~22.04.1
6.8.0-136.136.2
6.8.0-136.136+fips2
6.8.0-1058.61
4.4.0.1125.127
4.4.0-1125.132
6.8.0-116.116+fips1
5.15.0.1105.95
5.15.0.176.102
5.15.0-176.186+fips1
5.15.0-1105.114+fips1
4.4.0.1123.124
4.4.0-1123.130
5.4.0.1159.101
5.4.0.1130.127
5.4.0-1159.168+fips1
5.4.0-1130.140
4.4.0.1122.123
4.4.0-1122.129
5.15.0.171.98
5.15.0-171.181+fips1
6.8.0-1048.51+fips1
6.8.0-101.101+fips1
4.4.0.1121.122
4.4.0-1121.128
4.4.0.1120.121
4.4.0-1120.127
4.4.0.1119.120
4.4.0-1119.126
5.4.0.1154.96
5.4.0.1125.122
5.4.0-1154.163+fips1
5.4.0-1125.135
4.4.0.1117.118
4.4.0-1117.124
4.4.0.1116.117
4.4.0-1116.123
4.4.0.1115.116
4.4.0-1115.122
4.15.0.1136.133
4.15.0-1136.147
4.4.0.1114.115
4.4.0-1114.121
4.4.0.1113.114
4.4.0-1113.120
Vulnerabilities (1273)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU138886 - Improper Resource Shutdown or Release CVE-2026-53379 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 21.07.2026 |
SB2026072162 SB2026072356 SB2026072357 and 27 more |
||
| #VU138813 - Out-of-bounds read CVE-2026-63838 |
CWE-125 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720432 SB2026072356 SB2026072363 and 16 more |
||
| #VU138811 - Improper input validation CVE-2026-63851 |
CWE-20 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720430 SB2026072356 SB2026072363 and 16 more |
||
| #VU138808 - Improper Access Control CVE-2026-63848 |
CWE-284 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720427 SB2026072356 SB2026072363 and 16 more |
||
| #VU138807 - Improper Access Control CVE-2026-63847 |
CWE-284 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720426 SB2026072356 SB2026072363 and 16 more |
||
| #VU138806 - Improper Check or Handling of Exceptional Conditions CVE-2026-63846 |
CWE-703 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720425 SB2026072356 SB2026072363 and 16 more |
||
| #VU138805 - Improper Access Control CVE-2026-63845 |
CWE-284 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720424 SB2026072356 SB2026072363 and 16 more |
||
| #VU138804 - Improper Access Control CVE-2026-63844 |
CWE-284 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720423 SB2026072356 SB2026072363 and 16 more |
||
| #VU138803 - Improper input validation CVE-2026-63843 |
CWE-20 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720422 SB2026072356 SB2026072363 and 16 more |
||
| #VU138802 - Improper Resource Shutdown or Release CVE-2026-63861 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720421 SB2026072356 SB2026072363 and 16 more |
||
| #VU138801 - Improper input validation CVE-2026-63860 |
CWE-20 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720420 SB2026072356 SB2026072357 and 29 more |
||
| #VU138797 - Improper input validation CVE-2026-63856 |
CWE-20 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720416 SB2026072356 SB2026072363 and 16 more |
||
| #VU138796 - Improper input validation CVE-2026-63855 |
CWE-20 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720415 SB2026072356 SB2026072363 and 16 more |
||
| #VU138795 - Improper input validation CVE-2026-63854 |
CWE-20 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720414 SB2026072356 SB2026072363 and 16 more |
||
| #VU138793 - Improper input validation CVE-2026-63852 |
CWE-20 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720412 SB2026072356 SB2026072363 and 16 more |
||
| #VU138787 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-63865 |
CWE-362 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720406 SB2026072356 SB2026072357 and 27 more |
||
| #VU138784 - Improper Resource Shutdown or Release CVE-2026-63862 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB20260720403 SB2026072356 SB2026072363 and 16 more |
||
| #VU138464 - Improper Resource Shutdown or Release CVE-2026-64164 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 20.07.2026 |
SB2026072051 SB2026072356 SB2026072357 and 24 more |
||
| #VU131218 - Improper Privilege Management CVE-2025-54518 |
CWE-269 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 12.05.2026 |
SB20260512104 SB2026051316 SB2026051320 and 87 more |
||
| #VU117652 - Insufficient Entropy CVE-2025-62626 |
CWE-331 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.10.2025 |
SB2025102470 SB2025120853 SB2025122706 and 21 more |
Showing elements 21 - 40 out of 1273