Canonical Security Advisories · January 2010 — Canonical Security Advisories
5 advisories 5 CVEs 1 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2010-01. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

UBUNTU-CVE-2009-4490

USNExploitedVulnCheck KEV listed2010-01-13

CVEs:CVE-2009-4490

Affected products

ProductStatusVendorPackageEcosystem
mini-httpd affected Ubuntu:22.04:LTS mini-httpd
mini-httpd affected Ubuntu:24.04:LTS mini-httpd
mini-httpd affected Ubuntu:Pro:18.04:LTS mini-httpd
mini-httpd affected Ubuntu:20.04:LTS mini-httpd
mini-httpd affected Ubuntu:25.10 mini-httpd
mini-httpd affected Ubuntu:Pro:16.04:LTS mini-httpd
mini-httpd affected Ubuntu:Pro:14.04:LTS mini-httpd
Upstream advisory

UBUNTU-CVE-2009-4488

USNActive exploitation (sightings)CRITICAL2010-01-13

CVEs:CVE-2009-4488

Affected products

ProductStatusVendorPackageEcosystem
varnish affected Ubuntu:Pro:16.04:LTS varnish
varnish affected Ubuntu:14.04:LTS varnish
Upstream advisory

UBUNTU-CVE-2009-4495

USNActive exploitation (sightings)2010-01-13

CVEs:CVE-2009-4495

Affected products

ProductStatusVendorPackageEcosystem
yaws affected Ubuntu:20.04:LTS yaws
yaws affected Ubuntu:24.04:LTS yaws
yaws affected Ubuntu:25.10 yaws
yaws affected Ubuntu:18.04:LTS yaws
yaws affected Ubuntu:16.04:LTS yaws
yaws affected Ubuntu:22.04:LTS yaws
Upstream advisory

UBUNTU-CVE-2009-4494

USNActive exploitation (sightings)2010-01-13

CVEs:CVE-2009-4494

Affected products

ProductStatusVendorPackageEcosystem
aolserver4 affected Ubuntu:16.04:LTS aolserver4
aolserver4 affected Ubuntu:18.04:LTS aolserver4
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.