Vulnerabilidades em canonical
135 resultadosAnálise Vexday
Canonical possui 3 vulnerabilidades registradas na base Vexday, todas de severidade abaixo de crítica, sem exploração ativa documentada. Nenhuma vulnerabilidade foi publicada nos últimos 90 dias, indicando que o risco atual é estável e não apresenta exposição recente imediata. A fraqueza dominante (CWE-532 - Log Insertion) reflete problemas de integridade de logs, com menor impacto comparado a vulnerabilidades de execução remota.
CVE-2026-49238HIGHSFTP Server VM Escape in Canonical MultipassEPSS 0.5%CVE-2014-1420LOWInsecure temp file usage in Ubuntu UI toolkitEPSS 0.5%CVE-2019-15789HIGHMicrok8s Privilege Escalation VulnerabilityEPSS 0.5%CVE-2026-28384CRITICALAuthenticated RCE via unsanitized compression_algorithmEPSS 0.5%CVE-2020-15702HIGHTOCTOU in apportEPSS 0.5%CVE-2019-15796MEDIUMpython-apt downloads from untrusted sourcesEPSS 0.5%CVE-2020-15703MEDIUMaptdaemon allows unprivileged users to test for the presence of local files via the transaction Locale propertyEPSS 0.5%CVE-2020-11937MEDIUMResource exhaustion vulnerability in whoopsieEPSS 0.5%CVE-2021-3710MEDIUMApport info disclosure via path traversal bug in read_fileEPSS 0.5%CVE-2021-3709MEDIUMApport file permission bypass through emacs byte compilation errorsEPSS 0.5%CVE-2021-25682HIGHapport improperly parses /proc/pid/statusEPSS 0.5%CVE-2026-5412CRITICALJuju CloudSpec API could leak senstive informationEPSS 0.4%CVE-2019-15795MEDIUMpython-apt uses MD5 for validationEPSS 0.4%CVE-2019-11481LOWApport reads arbitrary files if ~/.config/apport/settings is a symlinkEPSS 0.4%CVE-2020-15701MEDIUMUnhandled exception in apportEPSS 0.4%CVE-2021-25683HIGHapport improperly parses /proc/pid/statEPSS 0.4%CVE-2019-11484MEDIUMInteger overflow in bson_ensure_spaceEPSS 0.4%CVE-2026-34178CRITICALImporting a crafted backup leads to project restriction bypassEPSS 0.4%CVE-2020-16119MEDIUMDCCP CCID structure use-after-freeEPSS 0.4%CVE-2026-9639MEDIUMAuthenticated Denial of Service via Malicious Backup Tarball in LXDEPSS 0.4%