canonical

4,226 tracked vulnerabilities.

CVE-2020-11609 MEDIUM
Linux Kernel < 5.6.1 - NULL Pointer Dereference in stv06xx USB Camera Driver
Apr 07, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-11608 MEDIUM
Linux Kernel < 5.6.1 - NULL Pointer Dereference in ov519.c
Apr 07, 2020
CVSS 4.3
EPSS 0.00
CVE-2020-11565 MEDIUM
Linux Kernel < 5.6.2 - Stack-based Out-of-bounds Write in mpol_parse_str
Apr 06, 2020
CVSS 6.0
EPSS 0.00
CVE-2020-11501 HIGH
GnuTLS <3.6.13 - Cryptographic Error
Apr 03, 2020
CVSS 7.4
EPSS 0.11
CVE-2020-11494 MEDIUM
Linux Kernel 3.16-5.6.2 - Information Disclosure via Uninitialized can_frame Data in slc_bump
Apr 02, 2020
CVSS 4.4
EPSS 0.00
CVE-2020-8835 HIGH
Linux kernel <5.6.1, <5.5.14, <5.4.29 - Memory Corruption
Apr 02, 2020
CVSS 7.8
EPSS 0.23
CVE-2020-11100 HIGH
HAProxy 1.8-2.x - Out-of-Bounds Write in HPACK Decoder via Crafted HTTP/2 Request
Apr 02, 2020
CVSS 8.8
EPSS 0.75
CVE-2020-1927 MEDIUM
Apache HTTP Server 2.4.0-2.4.41 - URL Redirection to Untrusted Site via Encoded Newlines
Apr 02, 2020
CVSS 6.1
EPSS 0.07
CVE-2020-1934 MEDIUM
Apache HTTP Server 2.4.0-2.4.41 - Use of Uninitialized Resource in mod_proxy_ftp
Apr 01, 2020
CVSS 5.3
EPSS 0.27
CVE-2020-7065 HIGH
PHP 7.3.0-7.3.15 - Stack-based Buffer Overflow in mb_strtolower() with UTF-32LE Encoding
Apr 01, 2020
CVSS 7.4
EPSS 0.05
CVE-2020-7064 MEDIUM
PHP 7.2.0-7.2.28 - Out-of-bounds Read in EXIF Data Parsing
Apr 01, 2020
CVSS 6.5
EPSS 0.02
CVE-2020-6814 CRITICAL
Firefox < 74.0 and Firefox ESR < 68.6.0 - Out-of-bounds Write
Mar 25, 2020
CVSS 9.8
EPSS 0.01
CVE-2020-6812 MEDIUM
Firefox < 74.0 and Firefox ESR < 68.6.0 - Exposure of Sensitive Information via AirPods Device Name Enumeration
Mar 25, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-6811 HIGH
Firefox < 74.0 and Firefox ESR < 68.6.0 - Command Injection via Devtools Copy as cURL
Mar 25, 2020
CVSS 8.8
EPSS 0.01
CVE-2020-6807 HIGH
Firefox < 74.0 and Firefox ESR < 68.6.0 - Use-After-Free via Stream Reinitialization
Mar 25, 2020
CVSS 8.8
EPSS 0.01
CVE-2020-6806 HIGH
Firefox < 74.0 and Firefox ESR < 68.6.0 - Out-of-bounds Read via Promise Resolution
Mar 25, 2020
CVSS 8.8
EPSS 0.03
CVE-2020-6805 HIGH
Firefox < 74.0 and Firefox ESR < 68.6.0 - Use-After-Free in Quota Manager
Mar 25, 2020
CVSS 8.8
EPSS 0.01
CVE-2020-10942 MEDIUM
Linux kernel <5.5.8 - Memory Corruption
Mar 24, 2020
CVSS 5.3
EPSS 0.00
CVE-2020-1951 MEDIUM
Apache Tika 1.0-1.23 - Denial of Service via Crafted PSD File
Mar 23, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-1950 MEDIUM
Apache Tika 1.0-1.23 - Uncontrolled Resource Consumption in PSDParser
Mar 23, 2020
CVSS 5.5
EPSS 0.00
CVE-2020-0556 HIGH
BlueZ < 5.54 - Unauthenticated Privilege Escalation and Denial of Service via Adjacent Access
Mar 12, 2020
CVSS 7.1
EPSS 0.00
CVE-2020-10531 HIGH
International Components for Unicode < 66.1 - Heap-Based Buffer Overflow via UnicodeString::doAppend() Integer Overflow
Mar 12, 2020
CVSS 8.8
EPSS 0.01
CVE-2020-10109 CRITICAL
Twisted Web < 19.10.0 - HTTP Request Smuggling via Content-Length and Chunked Encoding
Mar 12, 2020
CVSS 9.8
EPSS 0.04
CVE-2020-10108 CRITICAL
Twisted Web < 19.10.0 - HTTP Request Smuggling via Dual Content-Length Headers
Mar 12, 2020
CVSS 9.8
EPSS 0.03
CVE-2020-10174 HIGH
Timeshift < 20.03 - Unauthenticated Race Condition via Predictable Temporary Directory
Mar 05, 2020
CVSS 7.0
EPSS 0.00