Canonical Security Advisories · April 2014 — Canonical Security Advisories
158 advisories 168 CVEs 2 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2014-04. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 2 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

UBUNTU-CVE-2014-0114

USNExploitedVulnCheck KEV listedMEDIUM2014-04-29

CVEs:CVE-2014-0114

Affected products

ProductStatusVendorPackageEcosystem
commons-beanutils affected Ubuntu:Pro:16.04:LTS commons-beanutils
commons-beanutils affected Ubuntu:Pro:18.04:LTS commons-beanutils
commons-beanutils affected Ubuntu:Pro:14.04:LTS commons-beanutils
Upstream advisory

USN-2187-1

USNPoC exploitHIGH2014-04-30

openjdk-7 vulnerabilities

CVEs:CVE-2014-0429CVE-2014-0446CVE-2014-0451CVE-2014-0452CVE-2014-0453CVE-2014-0454CVE-2014-0455CVE-2014-0456CVE-2014-0457CVE-2014-0458CVE-2014-0459CVE-2014-0460CVE-2014-0461CVE-2014-1876CVE-2014-2397CVE-2014-2398CVE-2014-2402CVE-2014-2403CVE-2014-2412CVE-2014-2413CVE-2014-2414CVE-2014-2421CVE-2014-2423CVE-2014-2427

Affected products

ProductStatusVendorPackageEcosystem
openjdk-7 affected Ubuntu:14.04:LTS openjdk-7
Upstream advisory

UBUNTU-CVE-2014-1313

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1313

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1311

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1311

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1307

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1307

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1308

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1308

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1309

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1309

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1310

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1310

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1298

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1298

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1299

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1299

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1302

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1302

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1312

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1312

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1304

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1304

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1305

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1305

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-1297

USNPoC exploitMEDIUM2014-04-02

CVEs:CVE-2014-1297

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

USN-2188-1

USNEPSS <= 49%HIGH2014-04-30

elfutils vulnerability

CVEs:CVE-2014-0172

Affected products

ProductStatusVendorPackageEcosystem
elfutils affected Ubuntu:14.04:LTS elfutils
Upstream advisory

UBUNTU-CVE-2014-1731

USNEPSS <= 49%MEDIUM2014-04-26

CVEs:CVE-2014-1731

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-1730

USNEPSS <= 49%MEDIUM2014-04-26

CVEs:CVE-2014-1730

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:18.04:LTS libv8-3.14
libv8-3.14 affected Ubuntu:16.04:LTS libv8-3.14
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-2672

USNEPSS <= 49%MEDIUM2014-04-01

CVEs:CVE-2014-2672

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux affected Ubuntu:16.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2014-2907

USNEPSS <= 49%MEDIUM2014-04-23

CVEs:CVE-2014-2907

Affected products

ProductStatusVendorPackageEcosystem
wireshark affected Ubuntu:14.04:LTS wireshark
wireshark affected Ubuntu:18.04:LTS wireshark
wireshark affected Ubuntu:16.04:LTS wireshark
Upstream advisory

UBUNTU-CVE-2014-1735

USNEPSS <= 49%MEDIUM2014-04-26

CVEs:CVE-2014-1735

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:16.04:LTS libv8-3.14
libv8-3.14 affected Ubuntu:18.04:LTS libv8-3.14
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-1301

USNEPSS <= 49%MEDIUM2014-04-02

CVEs:CVE-2014-1301

Affected products

ProductStatusVendorPackageEcosystem
qtwebkit-opensource-src affected Ubuntu:16.04:LTS qtwebkit-opensource-src
qtwebkit-source affected Ubuntu:16.04:LTS qtwebkit-source
Upstream advisory

UBUNTU-CVE-2014-2739

USNEPSS <= 49%MEDIUM2014-04-14

CVEs:CVE-2014-2739

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux affected Ubuntu:16.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2012-4230

USNEPSS <= 49%MEDIUM2014-04-25

CVEs:CVE-2012-4230

Affected products

ProductStatusVendorPackageEcosystem
tinymce affected Ubuntu:16.04:LTS tinymce
tinymce affected Ubuntu:20.04:LTS tinymce
tinymce affected Ubuntu:18.04:LTS tinymce
Upstream advisory

UBUNTU-CVE-2014-0105

USNEPSS <= 49%LOW2014-04-15

CVEs:CVE-2014-0105

Affected products

ProductStatusVendorPackageEcosystem
keystone affected Ubuntu:14.04:LTS keystone
python-keystoneclient affected Ubuntu:14.04:LTS python-keystoneclient
Upstream advisory

UBUNTU-CVE-2013-7220

USNEPSS <= 49%MEDIUM2014-04-29

CVEs:CVE-2013-7220

Affected products

ProductStatusVendorPackageEcosystem
gnome-shell affected Ubuntu:14.04:LTS gnome-shell
gnome-shell affected Ubuntu:16.04:LTS gnome-shell
Upstream advisory

UBUNTU-CVE-2013-7221

USNEPSS <= 49%MEDIUM2014-04-29

CVEs:CVE-2013-7221

Affected products

ProductStatusVendorPackageEcosystem
gnome-shell affected Ubuntu:14.04:LTS gnome-shell
gnome-shell affected Ubuntu:16.04:LTS gnome-shell
Upstream advisory

UBUNTU-CVE-2014-2673

USNEPSS <= 49%MEDIUM2014-04-01

CVEs:CVE-2014-2673

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:16.04:LTS linux
linux affected Ubuntu:14.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2013-4116

USNEPSS <= 49%MEDIUM2014-04-22

CVEs:CVE-2013-4116

Affected products

ProductStatusVendorPackageEcosystem
npm affected Ubuntu:16.04:LTS npm
npm affected Ubuntu:14.04:LTS npm
npm affected Ubuntu:18.04:LTS npm
Upstream advisory

UBUNTU-CVE-2014-2889

USNEPSS <= 49%MEDIUM2014-04-27

CVEs:CVE-2014-2889

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:16.04:LTS linux
linux affected Ubuntu:14.04:LTS linux
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-flo affected Ubuntu:14.04:LTS linux-flo
linux-flo affected Ubuntu:16.04:LTS linux-flo
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-goldfish affected Ubuntu:14.04:LTS linux-goldfish
linux-goldfish affected Ubuntu:16.04:LTS linux-goldfish
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-mako affected Ubuntu:14.04:LTS linux-mako
linux-mako affected Ubuntu:16.04:LTS linux-mako
linux-manta affected Ubuntu:14.04:LTS linux-manta
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2013-7348

USNEPSS <= 49%MEDIUM2014-04-01

CVEs:CVE-2013-7348

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:16.04:LTS linux
linux affected Ubuntu:14.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

UBUNTU-CVE-2010-5105

USNEPSS <= 49%LOW2014-04-27

CVEs:CVE-2010-5105

Affected products

ProductStatusVendorPackageEcosystem
blender affected Ubuntu:20.04:LTS blender
blender affected Ubuntu:22.04:LTS blender
blender affected Ubuntu:18.04:LTS blender
blender affected Ubuntu:24.04:LTS blender
blender affected Ubuntu:25.10 blender
blender affected Ubuntu:16.04:LTS blender
Upstream advisory

USN-2184-2

USNAll remainingNONE2014-04-30

unity vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
unity affected Ubuntu:14.04:LTS unity
Upstream advisory

USN-2184-1

USNAll remainingNONE2014-04-29

unity vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
unity affected Ubuntu:14.04:LTS unity
Upstream advisory

USN-2169-2

USNAll remaining2014-04-23

python-django regression

Affected products

ProductStatusVendorPackageEcosystem
python-django affected Ubuntu:14.04:LTS python-django
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.