Canonical Security Advisories · December 2013 — Canonical Security Advisories
90 advisories 90 CVEs 2 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2013-12. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 2 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

UBUNTU-CVE-2013-7233

USNExploitedCISA KEV listedLOW2013-12-30

CVEs:CVE-2013-7233

Affected products

ProductStatusVendorPackageEcosystem
wordpress affected Ubuntu:22.04:LTS wordpress
wordpress affected Ubuntu:20.04:LTS wordpress
wordpress affected Ubuntu:16.04:LTS wordpress
wordpress affected Ubuntu:18.04:LTS wordpress
wordpress affected Ubuntu:25.10 wordpress
wordpress affected Ubuntu:24.04:LTS wordpress
Upstream advisory

UBUNTU-CVE-2013-6397

USNExploitedVulnCheck KEV listedMEDIUM2013-12-07

CVEs:CVE-2013-6397

Affected products

ProductStatusVendorPackageEcosystem
lucene-solr affected Ubuntu:16.04:LTS lucene-solr
lucene-solr affected Ubuntu:14.04:LTS lucene-solr
Upstream advisory

UBUNTU-CVE-2013-7026

USNPoC exploitMEDIUM2013-12-09

CVEs:CVE-2013-7026

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux affected Ubuntu:16.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2013-6407

USNEPSS <= 49%MEDIUM2013-12-07

CVEs:CVE-2013-6407

Affected products

ProductStatusVendorPackageEcosystem
lucene-solr affected Ubuntu:16.04:LTS lucene-solr
lucene-solr affected Ubuntu:14.04:LTS lucene-solr
Upstream advisory

UBUNTU-CVE-2013-6408

USNEPSS <= 49%MEDIUM2013-12-07

CVEs:CVE-2013-6408

Affected products

ProductStatusVendorPackageEcosystem
lucene-solr affected Ubuntu:16.04:LTS lucene-solr
lucene-solr affected Ubuntu:14.04:LTS lucene-solr
Upstream advisory

UBUNTU-CVE-2013-7447

USNEPSS <= 49%MEDIUM2013-12-31

CVEs:CVE-2013-7447

Affected products

ProductStatusVendorPackageEcosystem
eog affected Ubuntu:16.04:LTS eog
eog affected Ubuntu:14.04:LTS eog
gambas3 affected Ubuntu:24.04:LTS gambas3
gambas3 affected Ubuntu:16.04:LTS gambas3
gambas3 affected Ubuntu:25.10 gambas3
gambas3 affected Ubuntu:20.04:LTS gambas3
gambas3 affected Ubuntu:22.04:LTS gambas3
gnome-photos affected Ubuntu:16.04:LTS gnome-photos
gtk+2.0 affected Ubuntu:14.04:LTS gtk+2.0
pinpoint affected Ubuntu:25.10 pinpoint
pinpoint affected Ubuntu:24.04:LTS pinpoint
pinpoint affected Ubuntu:20.04:LTS pinpoint
pinpoint affected Ubuntu:16.04:LTS pinpoint
pinpoint affected Ubuntu:18.04:LTS pinpoint
pinpoint affected Ubuntu:22.04:LTS pinpoint
thunar affected Ubuntu:16.04:LTS thunar
Upstream advisory

UBUNTU-CVE-2013-4549

USNEPSS <= 49%MEDIUM2013-12-05

CVEs:CVE-2013-4549

Affected products

ProductStatusVendorPackageEcosystem
phantomjs affected Ubuntu:Pro:14.04:LTS phantomjs
qt4-x11 affected Ubuntu:14.04:LTS qt4-x11
qtbase-opensource-src affected Ubuntu:14.04:LTS qtbase-opensource-src
Upstream advisory

UBUNTU-CVE-2013-5653

USNEPSS <= 49%MEDIUM2013-12-31

CVEs:CVE-2013-5653

Affected products

ProductStatusVendorPackageEcosystem
ghostscript affected Ubuntu:16.04:LTS ghostscript
ghostscript affected Ubuntu:14.04:LTS ghostscript
Upstream advisory

UBUNTU-CVE-2012-6615

USNEPSS <= 49%MEDIUM2013-12-24

CVEs:CVE-2012-6615

Affected products

ProductStatusVendorPackageEcosystem
gst-libav1.0 affected Ubuntu:20.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:25.10 gst-libav1.0
gst-libav1.0 affected Ubuntu:22.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:18.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:24.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:16.04:LTS gst-libav1.0
libav affected Ubuntu:Pro:14.04:LTS libav
mythtv affected Ubuntu:18.04:LTS mythtv
mythtv affected Ubuntu:24.04:LTS mythtv
mythtv affected Ubuntu:16.04:LTS mythtv
mythtv affected Ubuntu:20.04:LTS mythtv
mythtv affected Ubuntu:22.04:LTS mythtv
mythtv affected Ubuntu:25.10 mythtv
oxide-qt affected Ubuntu:16.04:LTS oxide-qt
qtwebengine-opensource-src affected Ubuntu:18.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:24.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:25.10 qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:22.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:20.04:LTS qtwebengine-opensource-src
Upstream advisory

UBUNTU-CVE-2012-6617

USNEPSS <= 49%MEDIUM2013-12-24

CVEs:CVE-2012-6617

Affected products

ProductStatusVendorPackageEcosystem
gst-libav1.0 affected Ubuntu:25.10 gst-libav1.0
gst-libav1.0 affected Ubuntu:18.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:24.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:16.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:20.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:22.04:LTS gst-libav1.0
libav affected Ubuntu:Pro:14.04:LTS libav
mythtv affected Ubuntu:18.04:LTS mythtv
mythtv affected Ubuntu:24.04:LTS mythtv
mythtv affected Ubuntu:20.04:LTS mythtv
mythtv affected Ubuntu:16.04:LTS mythtv
mythtv affected Ubuntu:22.04:LTS mythtv
mythtv affected Ubuntu:25.10 mythtv
oxide-qt affected Ubuntu:16.04:LTS oxide-qt
qtwebengine-opensource-src affected Ubuntu:20.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:24.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:25.10 qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:18.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:22.04:LTS qtwebengine-opensource-src
Upstream advisory

UBUNTU-CVE-2013-4492

USNEPSS <= 49%MEDIUM2013-12-03

CVEs:CVE-2013-4492

Affected products

ProductStatusVendorPackageEcosystem
ruby-i18n affected Ubuntu:24.04:LTS ruby-i18n
ruby-i18n affected Ubuntu:25.10 ruby-i18n
ruby-i18n affected Ubuntu:20.04:LTS ruby-i18n
ruby-i18n affected Ubuntu:16.04:LTS ruby-i18n
ruby-i18n affected Ubuntu:22.04:LTS ruby-i18n
ruby-i18n affected Ubuntu:Pro:14.04:LTS ruby-i18n
ruby-i18n affected Ubuntu:18.04:LTS ruby-i18n
Upstream advisory

UBUNTU-CVE-2013-6395

USNEPSS <= 49%MEDIUM2013-12-05

CVEs:CVE-2013-6395

Affected products

ProductStatusVendorPackageEcosystem
ganglia-web affected Ubuntu:16.04:LTS ganglia-web
ganglia-web affected Ubuntu:14.04:LTS ganglia-web
Upstream advisory

UBUNTU-CVE-2013-5199

USNEPSS <= 49%MEDIUM2013-12-17

CVEs:CVE-2013-5199

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2013-5198

USNEPSS <= 49%MEDIUM2013-12-17

CVEs:CVE-2013-5198

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2013-5228

USNEPSS <= 49%MEDIUM2013-12-17

CVEs:CVE-2013-5228

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2013-5196

USNEPSS <= 49%MEDIUM2013-12-17

CVEs:CVE-2013-5196

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2013-5197

USNEPSS <= 49%MEDIUM2013-12-17

CVEs:CVE-2013-5197

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2013-5225

USNEPSS <= 49%MEDIUM2013-12-17

CVEs:CVE-2013-5225

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2013-5195

USNEPSS <= 49%MEDIUM2013-12-17

CVEs:CVE-2013-5195

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2013-4566

USNEPSS <= 49%MEDIUM2013-12-03

CVEs:CVE-2013-4566

Affected products

ProductStatusVendorPackageEcosystem
libapache2-mod-nss affected Ubuntu:18.04:LTS libapache2-mod-nss
libapache2-mod-nss affected Ubuntu:16.04:LTS libapache2-mod-nss
Upstream advisory

UBUNTU-CVE-2013-6639

USNEPSS <= 49%MEDIUM2013-12-05

CVEs:CVE-2013-6639

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:14.04:LTS libv8-3.14
Upstream advisory

UBUNTU-CVE-2013-1953

USNEPSS <= 49%MEDIUM2013-12-09

CVEs:CVE-2013-1953

Affected products

ProductStatusVendorPackageEcosystem
autotrace affected Ubuntu:14.04:LTS autotrace
sam2p affected Ubuntu:14.04:LTS sam2p
sam2p affected Ubuntu:16.04:LTS sam2p
Upstream advisory

UBUNTU-CVE-2012-6616

USNEPSS <= 49%MEDIUM2013-12-24

CVEs:CVE-2012-6616

Affected products

ProductStatusVendorPackageEcosystem
gst-libav1.0 affected Ubuntu:25.10 gst-libav1.0
gst-libav1.0 affected Ubuntu:18.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:24.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:16.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:20.04:LTS gst-libav1.0
gst-libav1.0 affected Ubuntu:22.04:LTS gst-libav1.0
libav affected Ubuntu:Pro:14.04:LTS libav
mythtv affected Ubuntu:18.04:LTS mythtv
mythtv affected Ubuntu:24.04:LTS mythtv
mythtv affected Ubuntu:20.04:LTS mythtv
mythtv affected Ubuntu:16.04:LTS mythtv
mythtv affected Ubuntu:22.04:LTS mythtv
mythtv affected Ubuntu:25.10 mythtv
oxide-qt affected Ubuntu:16.04:LTS oxide-qt
qtwebengine-opensource-src affected Ubuntu:20.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:24.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:25.10 qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:18.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:22.04:LTS qtwebengine-opensource-src
Upstream advisory

UBUNTU-CVE-2012-6618

USNEPSS <= 49%LOW2013-12-24

CVEs:CVE-2012-6618

Affected products

ProductStatusVendorPackageEcosystem
libav affected Ubuntu:Pro:14.04:LTS libav
qtwebengine-opensource-src affected Ubuntu:25.10 qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:24.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:18.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:22.04:LTS qtwebengine-opensource-src
qtwebengine-opensource-src affected Ubuntu:20.04:LTS qtwebengine-opensource-src
Upstream advisory

UBUNTU-CVE-2014-7844

USNEPSS <= 49%HIGH2013-12-10

CVEs:CVE-2014-7844

Affected products

ProductStatusVendorPackageEcosystem
bsd-mailx affected Ubuntu:14.04:LTS bsd-mailx
heirloom-mailx affected Ubuntu:14.04:LTS heirloom-mailx
Upstream advisory

UBUNTU-CVE-2013-6376

USNEPSS <= 49%MEDIUM2013-12-14

CVEs:CVE-2013-6376

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux affected Ubuntu:16.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2013-7421

USNEPSS <= 49%MEDIUM2013-12-31

CVEs:CVE-2013-7421

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
Upstream advisory

UBUNTU-CVE-2013-2930

USNEPSS <= 49%MEDIUM2013-12-09

CVEs:CVE-2013-2930

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:16.04:LTS linux
linux affected Ubuntu:14.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2013-6432

USNEPSS <= 49%MEDIUM2013-12-09

CVEs:CVE-2013-6432

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:16.04:LTS linux
linux affected Ubuntu:14.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2013-6431

USNEPSS <= 49%MEDIUM2013-12-09

CVEs:CVE-2013-6431

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux affected Ubuntu:16.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.