Known vulnerabilities in linux-fips (Ubuntu package) - page 22
Vendor:
Canonical Ltd.
Software:
linux-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
1273
Public exploits:
7
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1110.109
5.15.0.190.111
5.15.0-190.200+fips1
5.15.0-1110.116
4.4.0.1127.129
4.4.0-1127.134
6.8.0-136.136.2~22.04.1
6.8.0-136.136.2
6.8.0-136.136+fips2
6.8.0-1058.61
4.4.0.1125.127
4.4.0-1125.132
6.8.0-116.116+fips1
5.15.0.1105.95
5.15.0.176.102
5.15.0-176.186+fips1
5.15.0-1105.114+fips1
4.4.0.1123.124
4.4.0-1123.130
5.4.0.1159.101
5.4.0.1130.127
5.4.0-1159.168+fips1
5.4.0-1130.140
4.4.0.1122.123
4.4.0-1122.129
5.15.0.171.98
5.15.0-171.181+fips1
6.8.0-1048.51+fips1
6.8.0-101.101+fips1
4.4.0.1121.122
4.4.0-1121.128
4.4.0.1120.121
4.4.0-1120.127
4.4.0.1119.120
4.4.0-1119.126
5.4.0.1154.96
5.4.0.1125.122
5.4.0-1154.163+fips1
5.4.0-1125.135
4.4.0.1117.118
4.4.0-1117.124
4.4.0.1116.117
4.4.0-1116.123
4.4.0.1115.116
4.4.0-1115.122
4.15.0.1136.133
4.15.0-1136.147
4.4.0.1114.115
4.4.0-1114.121
4.4.0.1113.114
4.4.0-1113.120
Vulnerabilities (1273)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU130820 - Integer overflow CVE-2026-43368 |
CWE-190 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050928 SB20260721108 SB2026072356 and 12 more |
||
| #VU130812 - Information Exposure Through Log Files CVE-2026-43377 |
CWE-532 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050920 SB20260721108 SB2026072356 and 13 more |
||
| #VU130808 - Improper Resource Shutdown or Release CVE-2026-43373 |
CWE-404 | Medium | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050916 SB20260721108 SB20260721153 and 27 more |
||
| #VU130807 - Improper Resource Shutdown or Release CVE-2026-43372 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050915 SB20260721108 SB2026072356 and 12 more |
||
| #VU130806 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-43371 |
CWE-362 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050914 SB20260721108 SB2026072356 and 8 more |
||
| #VU130805 - Use After Free CVE-2026-43370 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050913 SB20260721108 SB20260721153 and 26 more |
||
| #VU130804 - Out-of-bounds read CVE-2026-43386 |
CWE-125 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050907 SB20260721108 SB2026072356 and 24 more |
||
| #VU130800 - Improper Locking CVE-2026-43382 |
CWE-667 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050903 SB2026062493 SB20260721108 and 27 more |
||
| #VU130799 - Improper Check for Unusual or Exceptional Conditions CVE-2026-43381 |
CWE-754 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050902 SB20260529222 SB20260529223 and 29 more |
||
| #VU130798 - Stack-based buffer overflow CVE-2026-43380 |
CWE-121 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 09.05.2026 |
SB2026050901 SB20260721108 SB20260721153 and 25 more |
||
| #VU130796 - Improper Resource Shutdown or Release CVE-2026-43395 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508147 SB20260721108 SB20260721153 and 14 more |
||
| #VU130788 - Out-of-bounds read CVE-2026-43387 |
CWE-125 | Medium | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508139 SB20260721108 SB20260721153 and 26 more |
||
| #VU130780 - Improper Resource Shutdown or Release CVE-2026-43397 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508131 SB20260721108 SB20260721153 and 14 more |
||
| #VU130778 - Divide By Zero CVE-2026-43411 |
CWE-369 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508129 SB20260721108 SB2026072356 and 24 more |
||
| #VU130776 - Improper control of a resource through its lifetime CVE-2026-43409 |
CWE-664 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508127 SB20260721108 SB2026072356 and 12 more |
||
| #VU130775 - Improper Initialization CVE-2026-43408 |
CWE-665 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508126 SB20260529222 SB20260529223 and 15 more |
||
| #VU130772 - Signed to Unsigned Conversion Error CVE-2026-43405 |
CWE-195 | Medium | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508122 SB2026070176 SB2026070325 and 28 more |
||
| #VU130767 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-43415 |
CWE-362 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508115 SB20260721108 SB2026072356 and 12 more |
||
| #VU130765 - NULL Pointer Dereference CVE-2026-43413 |
CWE-476 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508113 SB2026061291 SB20260721108 and 13 more |
||
| #VU130764 - Improper Resource Shutdown or Release CVE-2026-43412 |
CWE-404 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 08.05.2026 |
SB20260508112 SB20260721108 SB20260721153 and 14 more |
Showing elements 421 - 440 out of 1273