canonical

4,226 tracked vulnerabilities.

CVE-2019-11758 HIGH
Firefox < 69.0, Firefox ESR < 68.2, Thunderbird < 68.2 - Out-of-bounds Write in Accessibility Engine
Jan 08, 2020
CVSS 8.8
EPSS 0.01
CVE-2019-11757 HIGH
Firefox < 70, Thunderbird < 68.2, Firefox ESR < 68.2 - Use After Free
Jan 08, 2020
CVSS 8.8
EPSS 0.02
CVE-2019-11745 HIGH
Thunderbird <68.3-Firefox <71 - Buffer Overflow
Jan 08, 2020
CVSS 8.8
EPSS 0.01
CVE-2019-20367 CRITICAL
libbsd < 0.10.0 - Out-of-bounds Read in nlist.c Symbol Name Comparison
Jan 08, 2020
CVSS 9.1
EPSS 0.01
CVE-2019-5188 HIGH
e2fsprogs 1.43.3-1.45.4 - Remote Code Execution via Directory Rehashing
Jan 08, 2020
CVSS 7.5
EPSS 0.00
CVE-2019-19911 HIGH
Pillow < 6.2.2 - Denial of Service via FpxImagePlugin Integer Overflow
Jan 05, 2020
CVSS 7.5
EPSS 0.01
CVE-2019-19959 HIGH
SQLite 3.30.1 - Memory Management Error via Embedded Null Characters in Filenames
Jan 03, 2020
CVSS 7.5
EPSS 0.01
CVE-2019-20218 HIGH
SQLite 3.30.1 - Denial of Service via SELECT Expander Parsing Error
Jan 02, 2020
CVSS 7.5
EPSS 0.00
CVE-2019-20096 MEDIUM
Linux Kernel < 5.1 - Denial of Service via Memory Leak in DCCP Feature Registration
Dec 30, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-20079 HIGH
Vim 8.1.2121-8.1.2135 - Use-After-Free in Autocmd Feature
Dec 30, 2019
CVSS 7.8
EPSS 0.01
CVE-2019-19965 MEDIUM
Linux Kernel < 5.4.6 - NULL Pointer Dereference in SAS Discovery
Dec 25, 2019
CVSS 4.7
EPSS 0.00
CVE-2019-19956 HIGH
libxml2 < 2.9.10 - Memory Leak in xmlParseBalancedChunkMemoryRecover
Dec 24, 2019
CVSS 7.5
EPSS 0.00
CVE-2019-19949 CRITICAL
ImageMagick 7.0.8-43 - Heap-Based Buffer Over-Read in WritePNGImage
Dec 24, 2019
CVSS 9.1
EPSS 0.00
CVE-2019-19948 CRITICAL
ImageMagick 7.0.8-43 - Heap-Based Buffer Overflow in WriteSGIImage
Dec 24, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-19947 MEDIUM
Linux Kernel < 5.4.6 - Information Disclosure via Uninitialized Memory in Kvaser USB CAN Driver
Dec 24, 2019
CVSS 4.6
EPSS 0.00
CVE-2019-5108 MEDIUM
Linux Kernel < 5.3 - Denial of Service via IAPP Location Update Spoofing
Dec 23, 2019
CVSS 6.5
EPSS 0.01
CVE-2019-3467 HIGH
debian-lan-config < 0.26 and debian-edu-config < 2.11.10 - Incorrect Permission Assignment for Kerberos Admin Server
Dec 23, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-12418 HIGH
Apache Tomcat <9.0.29, 8.5.48, 7.0.98 - RCE
Dec 23, 2019
CVSS 7.0
EPSS 0.00
CVE-2019-17563 HIGH
Apache Tomcat <9.0.29, 8.5.49, 7.0.98 - Session Fixation
Dec 23, 2019
CVSS 7.5
EPSS 0.04
CVE-2019-11050 MEDIUM
PHP 7.2.0-7.2.25, 7.3.0-7.3.12, 7.4.0 - Out-of-bounds Read in EXIF Extension
Dec 23, 2019
CVSS 4.8
EPSS 0.03
CVE-2019-11047 MEDIUM
PHP 7.2.0-7.2.25, 7.3.0-7.3.12, 7.4.0 - Out-of-bounds Read in EXIF Extension
Dec 23, 2019
CVSS 4.8
EPSS 0.03
CVE-2019-11046 LOW
PHP 7.2.0-7.2.25, 7.3.0-7.3.12, 7.4.0 - Out-of-bounds Read in bcmath Extension
Dec 23, 2019
CVSS 3.7
EPSS 0.08
CVE-2019-11045 LOW
PHP 7.2.0-7.2.25, 7.3.0-7.3.12, 7.4.0 - Improper Null Termination in DirectoryIterator
Dec 23, 2019
CVSS 3.7
EPSS 0.41
CVE-2019-19922 MEDIUM
Linux Kernel < 5.3.9 - Denial of Service via Slice Expiration in CFS Quota
Dec 22, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-19920 HIGH
sa-exim 4.2.1 - OS Command Injection via Greylisting.pm Eval
Dec 22, 2019
CVSS 8.8
EPSS 0.03