Canonical Security Advisories · October 2014 — Canonical Security Advisories
170 advisories 195 CVEs 4 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2014-10. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 4 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

UBUNTU-CVE-2014-6593

USNWeaponized exploitMEDIUM2014-10-24

CVEs:CVE-2014-6593

Affected products

ProductStatusVendorPackageEcosystem
openjdk-6 affected Ubuntu:14.04:LTS openjdk-6
openjdk-7 affected Ubuntu:14.04:LTS openjdk-7
Upstream advisory

UBUNTU-CVE-2014-6394

USNWeaponized exploitMEDIUM2014-10-08

CVEs:CVE-2014-6394

Affected products

ProductStatusVendorPackageEcosystem
node-send affected Ubuntu:18.04:LTS node-send
node-send affected Ubuntu:16.04:LTS node-send
Upstream advisory

USN-2389-1

USNWeaponized exploitHIGH2014-10-27

libxml2 vulnerability

CVEs:CVE-2014-3660

Affected products

ProductStatusVendorPackageEcosystem
libxml2 affected Ubuntu:14.04:LTS libxml2
Upstream advisory

UBUNTU-CVE-2014-6585

USNPoC exploitMEDIUM2014-10-24

CVEs:CVE-2014-6585

Affected products

ProductStatusVendorPackageEcosystem
icu affected Ubuntu:14.04:LTS icu
openjdk-6 affected Ubuntu:14.04:LTS openjdk-6
openjdk-7 affected Ubuntu:14.04:LTS openjdk-7
Upstream advisory

UBUNTU-CVE-2014-6591

USNPoC exploitMEDIUM2014-10-24

CVEs:CVE-2014-6591

Affected products

ProductStatusVendorPackageEcosystem
icu affected Ubuntu:14.04:LTS icu
openjdk-6 affected Ubuntu:14.04:LTS openjdk-6
openjdk-7 affected Ubuntu:14.04:LTS openjdk-7
Upstream advisory

UBUNTU-CVE-2014-3188

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-3188

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:16.04:LTS libv8-3.14
libv8-3.14 affected Ubuntu:18.04:LTS libv8-3.14
Upstream advisory

USN-2371-1

USNEPSS <= 49%2014-10-08

exuberant-ctags vulnerability

CVEs:CVE-2014-7204

Affected products

ProductStatusVendorPackageEcosystem
exuberant-ctags affected Ubuntu:14.04:LTS exuberant-ctags
Upstream advisory

UBUNTU-CVE-2014-8355

USNEPSS <= 49%MEDIUM2014-10-31

CVEs:CVE-2014-8355

Affected products

ProductStatusVendorPackageEcosystem
graphicsmagick affected Ubuntu:14.04:LTS graphicsmagick
imagemagick affected Ubuntu:14.04:LTS imagemagick
Upstream advisory

UBUNTU-CVE-2014-3192

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-3192

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-3191

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-3191

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-3200

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-3200

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:16.04:LTS libv8-3.14
libv8-3.14 affected Ubuntu:18.04:LTS libv8-3.14
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-3190

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-3190

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-3199

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-3199

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:18.04:LTS libv8-3.14
libv8-3.14 affected Ubuntu:16.04:LTS libv8-3.14
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-3195

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-3195

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:18.04:LTS libv8-3.14
libv8-3.14 affected Ubuntu:16.04:LTS libv8-3.14
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-3194

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-3194

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-6251

USNEPSS <= 49%MEDIUM2014-10-25

CVEs:CVE-2014-6251

Affected products

ProductStatusVendorPackageEcosystem
cgminer affected Ubuntu:18.04:LTS cgminer
cgminer affected Ubuntu:16.04:LTS cgminer
cgminer affected Ubuntu:22.04:LTS cgminer
cgminer affected Ubuntu:20.04:LTS cgminer
Upstream advisory

UBUNTU-CVE-2013-4488

USNEPSS <= 49%LOW2014-10-10

CVEs:CVE-2013-4488

Affected products

ProductStatusVendorPackageEcosystem
libgadu affected Ubuntu:18.04:LTS libgadu
libgadu affected Ubuntu:22.04:LTS libgadu
libgadu affected Ubuntu:25.10 libgadu
libgadu affected Ubuntu:24.04:LTS libgadu
libgadu affected Ubuntu:16.04:LTS libgadu
libgadu affected Ubuntu:20.04:LTS libgadu
Upstream advisory

UBUNTU-CVE-2014-1928

USNEPSS <= 49%MEDIUM2014-10-25

CVEs:CVE-2014-1928

Affected products

ProductStatusVendorPackageEcosystem
python-gnupg affected Ubuntu:14.04:LTS python-gnupg
python-gnupg affected Ubuntu:16.04:LTS python-gnupg
Upstream advisory

UBUNTU-CVE-2014-7967

USNEPSS <= 49%MEDIUM2014-10-08

CVEs:CVE-2014-7967

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Ubuntu:14.04:LTS chromium-browser
libv8-3.14 affected Ubuntu:18.04:LTS libv8-3.14
libv8-3.14 affected Ubuntu:16.04:LTS libv8-3.14
oxide-qt affected Ubuntu:14.04:LTS oxide-qt
Upstream advisory

UBUNTU-CVE-2014-7230

USNEPSS <= 49%LOW2014-10-08

CVEs:CVE-2014-7230

Affected products

ProductStatusVendorPackageEcosystem
cinder affected Ubuntu:14.04:LTS cinder
nova affected Ubuntu:14.04:LTS nova
trove affected Ubuntu:18.04:LTS trove
trove affected Ubuntu:16.04:LTS trove
Upstream advisory

UBUNTU-CVE-2014-7975

USNEPSS <= 49%MEDIUM2014-10-13

CVEs:CVE-2014-7975

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux-azure affected Ubuntu:18.04:LTS linux-azure
linux-azure-6.11 affected Ubuntu:24.04:LTS linux-azure-6.11
linux-azure-fde affected Ubuntu:20.04:LTS linux-azure-fde
linux-azure-fde-5.15 affected Ubuntu:Pro:20.04:LTS linux-azure-fde-5.15
linux-gcp affected Ubuntu:18.04:LTS linux-gcp
linux-gcp-6.11 affected Ubuntu:24.04:LTS linux-gcp-6.11
linux-gke affected Ubuntu:20.04:LTS linux-gke
linux-gkeop affected Ubuntu:20.04:LTS linux-gkeop
linux-hwe affected Ubuntu:18.04:LTS linux-hwe
linux-hwe-6.11 affected Ubuntu:24.04:LTS linux-hwe-6.11
linux-hwe-edge affected Ubuntu:18.04:LTS linux-hwe-edge
linux-intel-iot-realtime affected Ubuntu:22.04:LTS linux-intel-iot-realtime
linux-lowlatency-hwe-6.11 affected Ubuntu:24.04:LTS linux-lowlatency-hwe-6.11
linux-raspi2 affected Ubuntu:20.04:LTS linux-raspi2
linux-raspi-realtime affected Ubuntu:24.04:LTS linux-raspi-realtime
linux-realtime affected Ubuntu:24.04:LTS linux-realtime
linux-realtime affected Ubuntu:22.04:LTS linux-realtime
linux-riscv affected Ubuntu:24.04:LTS linux-riscv
linux-riscv affected Ubuntu:20.04:LTS linux-riscv
linux-riscv affected Ubuntu:22.04:LTS linux-riscv
Upstream advisory

UBUNTU-CVE-2014-3645

USNEPSS <= 49%HIGH2014-10-28

CVEs:CVE-2014-3645

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:14.04:LTS linux
linux affected Ubuntu:16.04:LTS linux
linux-aws affected Ubuntu:14.04:LTS linux-aws
linux-aws affected Ubuntu:16.04:LTS linux-aws
linux-gke affected Ubuntu:16.04:LTS linux-gke
linux-hwe affected Ubuntu:16.04:LTS linux-hwe
linux-lts-utopic affected Ubuntu:14.04:LTS linux-lts-utopic
linux-lts-vivid affected Ubuntu:14.04:LTS linux-lts-vivid
linux-lts-wily affected Ubuntu:14.04:LTS linux-lts-wily
linux-lts-xenial affected Ubuntu:14.04:LTS linux-lts-xenial
linux-raspi2 affected Ubuntu:16.04:LTS linux-raspi2
linux-snapdragon affected Ubuntu:16.04:LTS linux-snapdragon
Upstream advisory

USN-2387-1

USNAll remaining2014-10-22

pollinate update

Affected products

ProductStatusVendorPackageEcosystem
pollinate affected Ubuntu:14.04:LTS pollinate
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.