canonical

4,254 tracked vulnerabilities.

CVE-2013-0305
Django 1.3.x < 1.3.6, 1.4.x < 1.4.4, 1.5 < RC2 - Authenticated Sensitive Object History Information Exposure
May 02, 2013
EPSS 0.02
CVE-2013-1944
curl < 7.30.0 - Cookie Domain Path Matching Information Disclosure
Apr 29, 2013
EPSS 0.05
CVE-2013-1927
IcedTea-Web < 1.2.3 and 1.3.x < 1.3.2 - Remote Code Execution via GIFAR
Apr 29, 2013
EPSS 0.04
CVE-2013-1926
IcedTea-Web <1.2.3 & <1.3.2 - Info Disclosure
Apr 29, 2013
EPSS 0.02
CVE-2013-0338
libxml2 < 2.9.0 - Denial of Service via Internal Entity Expansion
Apr 25, 2013
EPSS 0.03
CVE-2013-2423 LOW KEV
Oracle JRE - Improper Access Control
Apr 17, 2013
CVSS 3.7
EPSS 0.85
CVE-2013-1901
PostgreSQL 9.1.x-9.2.x - Authenticated Privilege Escalation via pg_start_backup and pg_stop_backup Functions
Apr 04, 2013
EPSS 0.03
CVE-2013-1900
PostgreSQL 8.4.x-9.2.x - Insufficient Random Number Generation in pgcrypto Functions
Apr 04, 2013
EPSS 0.05
CVE-2013-1899
PostgreSQL Database Name Command Line Flag Injection
Apr 04, 2013
EPSS 0.54
CVE-2013-0800
Firefox < 20.0 - Remote Code Execution via Integer Signedness Error in pixman_fill_sse2
Apr 03, 2013
EPSS 0.04
CVE-2013-0791
Firefox < 20.0 - Memory Corruption via Crafted Certificate
Apr 03, 2013
EPSS 0.05
CVE-2013-1799
GNOME Online Accounts < 3.6.3/3.7.91 MITM Info Disclosure via SSL Bypass
Apr 02, 2013
EPSS 0.01
CVE-2013-0240
GNOME Online Accounts < 3.6.3/3.7.5 MiTM Credential Exposure via SSL Bypass
Apr 02, 2013
EPSS 0.01
CVE-2013-1861
MariaDB 5.1.x-5.5.x - Denial of Service via Crafted Geometry Feature
Mar 28, 2013
EPSS 0.19
CVE-2013-0454
Canonical Ubuntu Linux < 3.6.5 - Access Control
Mar 26, 2013
EPSS 0.03
CVE-2013-1865
OpenStack Keystone Folsom 2012.2 - Improper Authentication via Revoked PKI Token Bypass
Mar 22, 2013
EPSS 0.03
CVE-2013-1838
OpenStack Nova Essex/Folsom/Grizzly - Authenticated DoS via IP Quota Exhaustion
Mar 22, 2013
EPSS 0.03
CVE-2013-0335
OpenStack Compute (Nova) Essex, Folsom, and Grizzly - Authenticated VM Access via VNC Token Reuse
Mar 22, 2013
EPSS 0.02
CVE-2013-1860
Linux Kernel < 3.8.4 - Heap-Based Buffer Overflow in wdm_in_callback
Mar 22, 2013
EPSS 0.01
CVE-2013-1052
pam-xdg-support - Privilege Escalation
Mar 21, 2013
EPSS 0.00
CVE-2013-1051
APT 0.8.16 and 0.9.7 - Man-in-the-Middle Package Modification via InRelease File Handling
Mar 21, 2013
EPSS 0.01
CVE-2013-2275
Puppet <2.6.18, <2.7.21, <3.1.1 - Auth Bypass
Mar 20, 2013
EPSS 0.03
CVE-2013-1654
Puppet <2.7.21-3.1.1 - SSLv2 Downgrade
Mar 20, 2013
EPSS 0.03
CVE-2013-1653
Puppet < 2.6.18, 2.7.x < 2.7.21, 3.1.x < 3.1.1 - Authenticated Remote Code Execution via REST Endpoint
Mar 20, 2013
EPSS 0.05
CVE-2013-1652
Puppet < 2.6.18, 2.7.x < 2.7.21, 3.1.x < 3.1.1 - Authenticated Arbitrary Catalog Read or Cache Poisoning
Mar 20, 2013
EPSS 0.02