Known vulnerabilities in linux-fips (Ubuntu package) - page 39
Vendor:
Canonical Ltd.
Software:
linux-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
1273
Public exploits:
7
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1110.109
5.15.0.190.111
5.15.0-190.200+fips1
5.15.0-1110.116
4.4.0.1127.129
4.4.0-1127.134
6.8.0-136.136.2~22.04.1
6.8.0-136.136.2
6.8.0-136.136+fips2
6.8.0-1058.61
4.4.0.1125.127
4.4.0-1125.132
6.8.0-116.116+fips1
5.15.0.1105.95
5.15.0.176.102
5.15.0-176.186+fips1
5.15.0-1105.114+fips1
4.4.0.1123.124
4.4.0-1123.130
5.4.0.1159.101
5.4.0.1130.127
5.4.0-1159.168+fips1
5.4.0-1130.140
4.4.0.1122.123
4.4.0-1122.129
5.15.0.171.98
5.15.0-171.181+fips1
6.8.0-1048.51+fips1
6.8.0-101.101+fips1
4.4.0.1121.122
4.4.0-1121.128
4.4.0.1120.121
4.4.0-1120.127
4.4.0.1119.120
4.4.0-1119.126
5.4.0.1154.96
5.4.0.1125.122
5.4.0-1154.163+fips1
5.4.0-1125.135
4.4.0.1117.118
4.4.0-1117.124
4.4.0.1116.117
4.4.0-1116.123
4.4.0.1115.116
4.4.0-1115.122
4.15.0.1136.133
4.15.0-1136.147
4.4.0.1114.115
4.4.0-1114.121
4.4.0.1113.114
4.4.0-1113.120
Vulnerabilities (1273)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU127718 - Out-of-bounds read CVE-2026-31430 |
CWE-125 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424298 SB20260513116 SB2026060546 and 17 more |
||
| #VU127717 - Double Free CVE-2026-31429 |
CWE-415 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 24.04.2026 |
SB20260424297 SB20260513116 SB2026060546 and 19 more |
||
| #VU125865 - Incorrect Calculation CVE-2026-31416 |
CWE-682 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041425 SB2026050312 SB2026050315 and 32 more |
||
| #VU125864 - Integer overflow CVE-2026-31415 |
CWE-190 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041424 SB2026050312 SB2026050315 and 31 more |
||
| #VU125863 - Use After Free CVE-2026-31414 |
CWE-416 | Low | 4.4.0.1127.129, 4.4.0-1127.134, 5.15.0.190.111, 5.15.0-190.200+fips1, 5.15.0.1110.109, 5.15.0-1110.116, 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041423 SB20260513116 SB2026051411 and 44 more |
||
| #VU125862 - NULL Pointer Dereference CVE-2026-31422 |
CWE-476 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041422 SB20260513116 SB2026051411 and 31 more |
||
| #VU125861 - NULL Pointer Dereference CVE-2026-31421 |
CWE-476 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041420 SB20260513116 SB2026051411 and 30 more |
||
| #VU125857 - Integer overflow CVE-2026-31417 |
CWE-190 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041414 SB20260513116 SB2026051411 and 28 more |
||
| #VU125856 - Use of Uninitialized Variable CVE-2026-31428 |
CWE-457 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041413 SB2026050312 SB2026050315 and 32 more |
||
| #VU125855 - Use of Uninitialized Variable CVE-2026-31427 |
CWE-457 | Medium | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041412 SB2026050312 SB2026050315 and 32 more |
||
| #VU125854 - Use After Free CVE-2026-31426 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041411 SB2026042519 SB2026042520 and 20 more |
||
| #VU125853 - NULL Pointer Dereference CVE-2026-31425 |
CWE-476 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041410 SB20260513116 SB2026051411 and 29 more |
||
| #VU125852 - Improper Access Control CVE-2026-31424 |
CWE-284 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041409 SB20260509143 SB20260509144 and 32 more |
||
| #VU125851 - Divide By Zero CVE-2026-31423 |
CWE-369 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 14.04.2026 |
SB2026041408 SB20260509143 SB20260509144 and 32 more |
||
| #VU125837 - Integer overflow CVE-2026-31412 |
CWE-190 | High | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 13.04.2026 |
SB2026041324 SB20260513116 SB2026051411 and 16 more |
||
| #VU125836 - Always-Incorrect Control Flow Implementation CVE-2026-31413 |
CWE-670 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 13.04.2026 |
SB2026041323 SB20260721108 SB2026072356 and 8 more |
||
| #VU124964 - Improper control of a resource through its lifetime CVE-2026-31409 |
CWE-664 | Medium | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 06.04.2026 |
SB20260406124 SB20260513116 SB2026051411 and 26 more |
||
| #VU124963 - Use After Free CVE-2026-31408 |
CWE-416 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 06.04.2026 |
SB20260406123 SB20260417140 SB20260417142 and 49 more |
||
| #VU124962 - Improper input validation CVE-2026-31407 |
CWE-20 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 06.04.2026 |
SB20260406122 SB20260509143 SB20260509144 and 31 more |
||
| #VU124961 - Out-of-bounds read CVE-2026-31407 |
CWE-125 | Low | 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61 | 06.04.2026 |
SB20260406121 SB20260509143 SB20260509144 and 31 more |
Showing elements 761 - 780 out of 1273