Known vulnerabilities in linux-fips (Ubuntu package) - page 36
Vendor:
Canonical Ltd.
Software:
linux-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
1273
Public exploits:
7
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1110.109
5.15.0.190.111
5.15.0-190.200+fips1
5.15.0-1110.116
4.4.0.1127.129
4.4.0-1127.134
6.8.0-136.136.2~22.04.1
6.8.0-136.136.2
6.8.0-136.136+fips2
6.8.0-1058.61
4.4.0.1125.127
4.4.0-1125.132
6.8.0-116.116+fips1
5.15.0.1105.95
5.15.0.176.102
5.15.0-176.186+fips1
5.15.0-1105.114+fips1
4.4.0.1123.124
4.4.0-1123.130
5.4.0.1159.101
5.4.0.1130.127
5.4.0-1159.168+fips1
5.4.0-1130.140
4.4.0.1122.123
4.4.0-1122.129
5.15.0.171.98
5.15.0-171.181+fips1
6.8.0-1048.51+fips1
6.8.0-101.101+fips1
4.4.0.1121.122
4.4.0-1121.128
4.4.0.1120.121
4.4.0-1120.127
4.4.0.1119.120
4.4.0-1119.126
5.4.0.1154.96
5.4.0.1125.122
5.4.0-1154.163+fips1
5.4.0-1125.135
4.4.0.1117.118
4.4.0-1117.124
4.4.0.1116.117
4.4.0-1116.123
4.4.0.1115.116
4.4.0-1115.122
4.15.0.1136.133
4.15.0-1136.147
4.4.0.1114.115
4.4.0-1114.121
4.4.0.1113.114
4.4.0-1113.120
Vulnerabilities (1273)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU127649 - Improper Access Control CVE-2026-31503 |
CWE-284 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424218 SB20260513116 SB2026051411 and 19 more |
||
| #VU127648 - Type confusion CVE-2026-31502 |
CWE-843 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424217 SB20260513116 SB2026070835 and 21 more |
||
| #VU127646 - Use After Free CVE-2026-31500 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424215 SB20260513116 SB20260625277 and 22 more |
||
| #VU127645 - Deadlock CVE-2026-31499 |
CWE-833 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424214 SB20260515113 SB2026060546 and 20 more |
||
| #VU127643 - Improper Locking CVE-2026-31509 |
CWE-667 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424212 SB20260513116 SB2026051411 and 28 more |
||
| #VU127642 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-31508 |
CWE-362 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424211 SB20260513116 SB2026051411 and 28 more |
||
| #VU127641 - Double Free CVE-2026-31507 |
CWE-415 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424210 SB20260513116 SB2026051411 and 34 more |
||
| #VU127640 - Double Free CVE-2026-31506 |
CWE-415 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424209 SB20260513116 SB20260721108 and 9 more |
||
| #VU127639 - Out-of-bounds write CVE-2026-31505 |
CWE-787 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424208 SB20260513116 SB2026060227 and 39 more |
||
| #VU127637 - Heap-based Buffer Overflow CVE-2026-31515 |
CWE-122 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424206 SB20260513116 SB2026051411 and 33 more |
||
| #VU127634 - Out-of-bounds read CVE-2026-31512 |
CWE-125 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424203 SB20260513116 SB2026051411 and 35 more |
||
| #VU127633 - Use After Free CVE-2026-31511 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424202 SB20260513116 SB2026060546 and 17 more |
||
| #VU127632 - NULL Pointer Dereference CVE-2026-31510 |
CWE-476 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424201 SB20260513116 SB2026051411 and 30 more |
||
| #VU127631 - Out-of-bounds read CVE-2026-31521 |
CWE-125 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424200 SB20260513116 SB2026051411 and 27 more |
||
| #VU127630 - Missing release of memory after effective lifetime CVE-2026-31520 |
CWE-401 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424199 SB20260513116 SB2026051411 and 16 more |
||
| #VU127629 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-31519 |
CWE-362 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424198 SB20260513116 SB2026051411 and 16 more |
||
| #VU127628 - Missing Release of Resource after Effective Lifetime CVE-2026-31518 |
CWE-772 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424197 SB20260513116 SB2026051411 and 28 more |
||
| #VU127626 - Use After Free CVE-2026-31516 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424195 SB20260513116 SB2026060546 and 15 more |
||
| #VU127621 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2026-31523 |
CWE-362 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424190 SB20260513116 SB2026051411 and 30 more |
||
| #VU127620 - Missing release of memory after effective lifetime CVE-2026-31522 |
CWE-401 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424189 SB20260513116 SB2026051411 and 28 more |
Showing elements 701 - 720 out of 1273