Known vulnerabilities in linux-fips (Ubuntu package) - page 60
Vendor:
Canonical Ltd.
Software:
linux-fips (Ubuntu package)
Software CPE:
cpe:2.3:o:canonical:linux-fips_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Website:
https://www.ubuntu.com/
Total vulnerabilities:
1273
Public exploits:
7
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
5.15.0.1110.109
5.15.0.190.111
5.15.0-190.200+fips1
5.15.0-1110.116
4.4.0.1127.129
4.4.0-1127.134
6.8.0-136.136.2~22.04.1
6.8.0-136.136.2
6.8.0-136.136+fips2
6.8.0-1058.61
4.4.0.1125.127
4.4.0-1125.132
6.8.0-116.116+fips1
5.15.0.1105.95
5.15.0.176.102
5.15.0-176.186+fips1
5.15.0-1105.114+fips1
4.4.0.1123.124
4.4.0-1123.130
5.4.0.1159.101
5.4.0.1130.127
5.4.0-1159.168+fips1
5.4.0-1130.140
4.4.0.1122.123
4.4.0-1122.129
5.15.0.171.98
5.15.0-171.181+fips1
6.8.0-1048.51+fips1
6.8.0-101.101+fips1
4.4.0.1121.122
4.4.0-1121.128
4.4.0.1120.121
4.4.0-1120.127
4.4.0.1119.120
4.4.0-1119.126
5.4.0.1154.96
5.4.0.1125.122
5.4.0-1154.163+fips1
5.4.0-1125.135
4.4.0.1117.118
4.4.0-1117.124
4.4.0.1116.117
4.4.0-1116.123
4.4.0.1115.116
4.4.0-1115.122
4.15.0.1136.133
4.15.0-1136.147
4.4.0.1114.115
4.4.0-1114.121
4.4.0.1113.114
4.4.0-1113.120
Vulnerabilities (1273)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU115656 - Improper input validation CVE-2025-40300 |
CWE-20 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 16.09.2025 |
SB20250916398 SB20250916401 SB20250916402 and 67 more |
||
| #VU113313 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2025-38352 |
CWE-362 | High | 4.4.0.1119.120, 4.4.0-1119.126 | 27.07.2025 |
SB2025072788 SB2025081507 SB20250816180 and 144 more |
||
| #VU107657 - Use After Free CVE-2025-37838 |
CWE-416 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 22.04.2025 |
SB2025042235 SB2025042801 SB2025062462 and 34 more |
||
| #VU102397 - Use After Free CVE-2024-56767 |
CWE-416 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 07.01.2025 |
SB2025010726 SB2025020351 SB2025021179 and 50 more |
||
| #VU101910 - Out-of-bounds read CVE-2024-53150 |
CWE-125 | High | 4.4.0.1119.120, 4.4.0-1119.126 | 27.12.2024 |
SB2024122704 SB2025010314 SB2025010315 and 92 more |
||
| #VU101113 - Race Condition within a Thread CVE-2024-53124 |
CWE-366 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 03.12.2024 |
SB2024120319 SB2025011049 SB2025020805 and 53 more |
||
| #VU100631 - Improper input validation CVE-2024-50299 |
CWE-20 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 19.11.2024 |
SB2024111942 SB2024112401 SB2024112952 and 62 more |
||
| #VU99011 - Improper Locking CVE-2024-50006 |
CWE-667 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 22.10.2024 |
SB20241022123 SB2024110896 SB2024111334 and 58 more |
||
| #VU98870 - Use After Free CVE-2024-49924 |
CWE-416 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 21.10.2024 |
SB2024102175 SB2024110892 SB2024110893 and 57 more |
||
| #VU93279 - Resource Management Errors CVE-2021-47294 |
CWE-399 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 25.06.2024 |
SB2024062560 SB2024070360 SB20240711191 and 4 more |
||
| #VU92300 - Use After Free CVE-2021-47589 |
CWE-416 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 20.06.2024 |
SB2024062020 SB2024070969 SB2024070973 and 18 more |
||
| #VU92048 - Improper Locking CVE-2021-47146 |
CWE-667 | Low | 4.4.0.1120.121, 4.4.0-1120.127 | 13.06.2024 |
SB2024061353 SB2024070867 SB2024070868 and 7 more |
||
| #VU91345 - Exposure of sensitive information to an unauthorized actor CVE-2024-35849 |
CWE-200 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 08.06.2024 |
SB2024060868 SB2024061046 SB2024070828 and 40 more |
||
| #VU90620 - NULL Pointer Dereference CVE-2021-47149 |
CWE-476 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 31.05.2024 |
SB20240531522 SB2024070716 SB2024070834 and 9 more |
||
| #VU90517 - NULL Pointer Dereference CVE-2023-52650 |
CWE-476 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 31.05.2024 |
SB20240531419 SB2024061046 SB2024070838 and 35 more |
||
| #VU90477 - NULL Pointer Dereference CVE-2021-47269 |
CWE-476 | Low | 4.4.0.1120.121, 4.4.0-1120.127 | 31.05.2024 |
SB20240531386 SB2024070828 SB2024070838 and 10 more |
||
| #VU90450 - Missing release of memory after effective lifetime CVE-2024-27078 |
CWE-401 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 31.05.2024 |
SB20240531359 SB2024070838 SB2024070839 and 33 more |
||
| #VU89960 - Missing release of memory after effective lifetime CVE-2021-47330 |
CWE-401 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 30.05.2024 |
SB2024053065 SB2024062808 SB2024070828 and 9 more |
||
| #VU89958 - Missing release of memory after effective lifetime CVE-2021-47319 |
CWE-401 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 30.05.2024 |
SB2024053063 SB2024070828 SB2024070845 and 6 more |
||
| #VU89390 - NULL Pointer Dereference CVE-2023-52574 |
CWE-476 | Low | 4.4.0.1119.120, 4.4.0-1119.126 | 13.05.2024 |
SB2024051339 SB2024051357 SB2024061808 and 37 more |
Showing elements 1181 - 1200 out of 1273